Infosecurity News

Revolut Breach May Have Hit 50,000+ Customers
Major phishing risk as personal details are compromised

Uber Blames Lapsus$ for Breach
Threat actor bombarded Uber contractor with 2FA requests

New Spear Phish Methodology Relies on PuTTY SSH Client to Infect Systems
It tried to trick victims into clicking on malicious files as part of a fake Amazon job assessment

CISA Expands Vulnerabilities Catalog With Old, Exploited Flaws
Four of the CVEs posted are from 2013, and one is from 2010

Allies Warn of Iranian Ransom Attacks Using Log4Shell
US authorities indict and sanction in fresh crackdown

Uber Hacker May Have Compromised Secret Bug Reports
Attacker looks to have admin access to cloud accounts

Crypto Scams Soar as Domains Surge 335%
Most fake domains are registered in Russia

Webworm Attackers Deploy Modified RATs in Espionage Attacks
The group reportedly developed customized versions of Trochilus, Gh0st RAT and 9002 RAT

Notepad++ Plugins Allow Attackers to Infiltrate Systems, Achieve Persistence
APT groups have leveraged Notepad++ plugins for nefarious purposes in the past

YouTube Users Targeted By RedLine Self-Spreading Stealer
RedLine can steal usernames, passwords, cookies, bank card details and autofill data from browsers

User Alert as Phishing Campaigns Exploit Queen's Passing
Experts urge the public not to fall for classic scams

Cybercrime Forum Admins Steal from Site Users
Report reveals there’s no honor among thieves

Cybercrime Fears for Children as Cost-of-Living Bites
UK parents concerned about repercussions of soaring inflation

ISACA: Ensuring Digital Trust Key to Digital Transformation Success
ISACA's State of Digital Trust 2022 report highlights increasing importance of digital trust across businesses

Vulnerabilities Found in Airplane WiFi Devices, Passengers' Data Exposed
The flaws affected the Flexlan FX3000 and FX2000 series wireless LAN devices made by Contec

SparklingGoblin APT Targeted Hong Kong University With New Linux Backdoor
Eset also said the same university was targeted during student protests in May 2020

FormBook Knocks Off Emotet As Most Used Malware in August
The report also suggested the Android spyware Joker took third place in the mobile index

Four-Fifths of Firms Hit by Critical Cloud Security Incident
Data leaks, breaches and intrusions caused headaches over past year

DDoS Attacks on UK Firms Surge During Ukraine War
Overall incidents fell in H1 2022, according to FOI data

Microsoft Fixes Two Zero-Days This Patch Tuesday
Redmond passes 1000 CVEs for the year already



