Infosecurity News

Former Amazon Worker Convicted of Capital One Data Breach
The software engineer mined stolen data and installed cryptocurrency miners on some AWS servers

BRATA Android Malware Group Now Classified As Advanced Persistent Threat
BRATA now targeting a specific financial institution at a time

Governance Gap Raises AI Security Concerns
Cyber now seen as most important component for adoption

QNAP Customers Hit by Double Ransomware Blitz
Taiwanese manufacturer braced for twin threat

Investigators Disrupt Giant RSocks Botnet
Russian cyber-criminals rented it out to other groups

Microsoft Addresses Wi-Fi Hotspots Issues in Latest Update
Host devices might lose connection to the internet after client device connects

US Man Sentenced to Nine Years in Prison for Hacking iCloud Accounts and Stealing Nudes
Hao Kuo Chi illegally obtained iCloud credentials of 4700 victims

WordPress Updates More Than a Million Sites to Fix Critical Ninja Forms Vulnerability
The code injection vulnerability allowed attackers to call methods in various Ninja Forms classes

Experts Discuss Next Steps in Trust, Privacy and Security
The complex interrelation between trust, privacy and cybersecurity was discussed by experts during Okta Forum 2022

UK Proposes Post-Brexit Data Laws to Boost Innovation
Proposals designed to unlock businesses' ability to use data and clamp down on nuisance calls and cookie pop-ups

Cybersecurity Researchers Find Several Google Play Store Apps Stealing User Data
Most dangerous are spyware tools capable of stealing information from other apps' notifications

NakedPages Phishing Toolkit is Now Available on Cybercrime Forums
The toolkit is reportedly fully automated and comes preloaded with more than 50 phishing templates and site projects

Office 365 Functionality Could Allow Ransomware to Hold Files Stored on SharePoint and OneDrive
Malicious actors could reduce versioning limit of files to a low number and encrypt them more times than versioning limit

Cyber-Criminals Smuggle Ukrainian Men Across Border
Researchers also warn of surge in travel-related fraud

Global Police Arrest Thousands in Fraud Crackdown
Interpol claims to have intercepted $50m in illicit funds

Corporate Network Access Selling for Under $1000 on Dark Web
RDP is the main access vector for brokers

BeanVPN leaks 25 million user records
The cache of 18.5GB connection logs allegedly contained more than 25 million records

SAP Patches Critical NetWeaver and ABAP Platform Vulnerabilities
SAP confirmed most of the vulnerabilities have now available fixes, and advised companies to update their systems as soon as possible.

US Researchers Spot New Hertzbleed Flaw Affecting AMD and Intel CPUs
New side-channel attacks reportedly use frequency side channels to extract cryptographic keys

BNPL Fraud Alert as Account Takeovers Surge
Buy now, pay later services represent an increasingly attractive target



