Infosecurity News

TikTok Engaging in Excessive Data Collection
Latest industry whitepaper from Internet 2.0 claims TikTok data harvesting is excessive and uses China based server connection

Pegasus Spyware Used Against Thailand’s Pro-Democracy Movement
Citizen Lab claim their investigation has revealed an “extensive espionage campaign” targeting pro-democracy protestors and activists

Tor Browser Adds Automatic Censorship Circumvention
Tor Project’s latest release promises major feature enhancements

Broker Fined £2m for Financial Crime Control Failings
TJM Partnership is already in liquidation

Public Cloud Customers Admit Security Challenges
Cloud Security Alliance claims most are already storing sensitive data there

Average American Accesses Suspicious Sites 6.5 Times a Day
The survey highlights significant security oversights in the general population

DHS Releases Report into Log4j Vulnerabilities and Response
The analysis provides fresh insights into the notorious Log4j vulnerability

North Korean Threat Actor Targeting SME Businesses with Ransomware
The group, going by the name H0lyGh0st, has been developing and conducting cross-national malware attacks for over a year

Falling Cryptocurrency Market Stalling Cybercrime Activity
Falling cryptocurrency prices are making it harder for threat actors to monetize their attacks

Firms Not Planning for Supply Chain Threats
Boards underestimate cyber risks from outside their organizations, report suggests

Financial Firms Failing to Fix Authentication Breaches
Four in five breaches down to compromised credentials, research finds

Healthcare Provider Exposed Transplant Donor and Recipient Data
4500 transplant participants have been warned about a privacy breach affecting their healthcare information

1.9 Million Healthcare Records Breached in Ransomware Attack
A US debt collector has reported a breach of 1.9 million healthcare records across 650 providers

BlackCat Ransomware Group Deploys Brute Ratel Pen Testing Kit
The BlackCat ransomware group has deployed a new binary to help with its intrusion efforts

Fewer Fall Victim to Data Breaches as Attackers Switch to Business in 2022
The ITRC reports a decline in publicly reported breaches in H1 2022

State-Sponsored Hackers Targeting Journalists
APT groups targeting media outlets to gain sensitive information

ICO Calls for Review of Government “Private” Messaging
The ICO found that the use of WhatsApp and other messaging services in government carries significant risks

Microsoft Patches Windows Zero-Day as Attackers Exploit it in the Wild
CISA has added the bug to its Known Exploited Vulnerabilities (KEV) list

Critical Industries Failing at IIoT/OT Security
93% of companies admit failure when implementing IIoT/OT security projects

Ransomware Activity Resurges in Q2
Ransomware activity rose by 21% compared to Q1 2022, according to a new report



