Infosecurity News

Broker Fined £2m for Financial Crime Control Failings
TJM Partnership is already in liquidation

Public Cloud Customers Admit Security Challenges
Cloud Security Alliance claims most are already storing sensitive data there

Average American Accesses Suspicious Sites 6.5 Times a Day
The survey highlights significant security oversights in the general population

DHS Releases Report into Log4j Vulnerabilities and Response
The analysis provides fresh insights into the notorious Log4j vulnerability

North Korean Threat Actor Targeting SME Businesses with Ransomware
The group, going by the name H0lyGh0st, has been developing and conducting cross-national malware attacks for over a year

Falling Cryptocurrency Market Stalling Cybercrime Activity
Falling cryptocurrency prices are making it harder for threat actors to monetize their attacks

Firms Not Planning for Supply Chain Threats
Boards underestimate cyber risks from outside their organizations, report suggests

Financial Firms Failing to Fix Authentication Breaches
Four in five breaches down to compromised credentials, research finds

Healthcare Provider Exposed Transplant Donor and Recipient Data
4500 transplant participants have been warned about a privacy breach affecting their healthcare information

1.9 Million Healthcare Records Breached in Ransomware Attack
A US debt collector has reported a breach of 1.9 million healthcare records across 650 providers

BlackCat Ransomware Group Deploys Brute Ratel Pen Testing Kit
The BlackCat ransomware group has deployed a new binary to help with its intrusion efforts

Fewer Fall Victim to Data Breaches as Attackers Switch to Business in 2022
The ITRC reports a decline in publicly reported breaches in H1 2022

State-Sponsored Hackers Targeting Journalists
APT groups targeting media outlets to gain sensitive information

ICO Calls for Review of Government “Private” Messaging
The ICO found that the use of WhatsApp and other messaging services in government carries significant risks

Microsoft Patches Windows Zero-Day as Attackers Exploit it in the Wild
CISA has added the bug to its Known Exploited Vulnerabilities (KEV) list

Critical Industries Failing at IIoT/OT Security
93% of companies admit failure when implementing IIoT/OT security projects

Ransomware Activity Resurges in Q2
Ransomware activity rose by 21% compared to Q1 2022, according to a new report

HavanaCrypt Ransomware Masquerades as a Fake Google Update
Researchers at Trend Micro have uncovered stealthy ransomware named 'HavanaCrypt,' which presents itself as a Google Software Update

Ukraine's Cyber Agency Reports Q2 Cyber-Attack Surge
The volume of cyber-attacks targeting the country has risen substantially over the second quarter of the year

Microsoft Details How Phishing Campaign Bypassed MFA
A large-scale phishing campaign stole passwords, hijacked a user’s sign-in session and skipped the authentication process even if MFA was enabled



