Infosecurity News

  1. Majority of Firms Make Cybersecurity Decisions Without Attacker Insight

    Cybersecurity experts believe senior leadership teams underestimate cyber-threats

  2. Researchers Uncover 700+ Malicious Open Source Packages

    Latest npm and PyPI finds should be kept out of build environments

  3. MoneyGram Fraud Victims Get $115m in Compensation

    Money transfer firm failed to crack down on scam agents

  4. Namecheap Customers Flooded with Phishing Emails

    Domain registrar blames upstream provider

  5. Reddit Hit By Phishing Attack, Source Code Stolen

    Reddit said there was “no indication” of a breach of the company’s primary production systems

  6. US Warns Critical Sectors Against North Korean Ransomware Attacks

    The latest iteration of the document is now analyzing activity by the Maui and H0lyGh0st groups

  7. Malicious Npm Package Uses Typosquatting, Downloads Malware

    Reversing Labs said aabquerys was able to download second- and third-stage malware payloads

  8. Fifth of ICS Bugs Have No Patch Available

    Some industrial systems have been exposed for three years

  9. Refund and Invoice Scams Surge in Q4

    Avast also warns of increase in tech support fraud

  10. New Threat Group Reviews Screenshots Before Striking

    Threat actor has been dubbed TA866 by Proofpoint

  11. #SOOCon23: Open Source Tools can Automate SBOM Requirements

    Open source enterprise software users presented tools to automate SBOMs during the State of Open Con 23 conference in London

  12. US and UK Sanction Seven Russian Cyber-Criminals

    The seven Russian nationals are members of the notorious Trickbot malware gang

  13. Dark Web Market Revenues Sink 50% in 2022

    Closure of Hydra has major impact on underground sales

  14. Trio Arrested in COVID PPE Fraud Probe

    UK company set up to illegally profit from trade in protective equipment

  15. New Info-Stealer Discovered as Russia Prepares Fresh Offensive

    Ukraine braced for more critical infrastructure attacks

  16. UK Politician's Email Hacked by Suspected Russian Threat Actors

    The SNP MP revealed details of the incident, in which he clicked on a malicious file purportedly about the military situation in Ukraine

  17. #SOOCon23: UK Government Urges Industry Input on Software Security Policy

    A UK government official asks the cyber industry, including the open software community, to help shape software security policies

  18. BEC Attacks Surge 81% in 2022

    Open rates for emails hit 28%

  19. #SOOCon23: Global Cooperation Needed to Enhance Open Source Software Security

    A panel of policy experts discuss how to improve global cooperation around open source software security

  20. CISA Releases Recovery Tool for VMware Ransomware Victims

    Legacy bug in ESXi servers is being targeted by threat actors

What’s Hot on Infosecurity Magazine?