Infosecurity News

Report Provides Updates on July's Maui Ransomware Incident
The report extends CISA's “first seen” date and the geolocation of the target to other countries

Health Adviser Fined After Illegally Accessing Medical Records
Former NHS employee ordered to pay victims compensation

Smishing Attack Led to Major Twilio Breach
Firm tight-lipped on how many customers are affected

Number of Firms Unable to Access Cyber-Insurance Set to Double
Even those with policies may see coverage greatly reduced

Meta Takes Action Against Cyber Espionage Operations Targeting Facebook in South Asia
The groups' attacks were reportedly relatively low in sophistication but persistent and well-resourced

Chinese Hackers May Be Behind Attacks Targeting Eastern Europe and Afghanistan
The phishing emails contained Microsoft Word documents that exploited the CVE-2017-11882 flaw

Hackers Exploit Open Redirect Vulnerabilities to Conduct LogoKit Phishing Campaigns
LogoKit is based on JavaScript and can change logos and text on landing pages in real-time

North Korean Hackers Target Crypto Job Seekers
New social engineering campaign leverages Coinbase

Zero-Day Bug Responsible for Massive Twitter Breach
Over five million accounts were exposed

NHS Cyber-Attack Delays Ambulances
Digital supplier hit by suspected ransomware

GwisinLocker Ransomware Targets Linux Systems in South Korea
The malware was detected in campaigns targeting firms in the industrial and pharmaceutical space

Hackers Exploit Hostinger's Preview Domain Feature to Launch Phishing Campaigns
The new feature enables access to a site before it is accessible globally

Cybercrime a Key Revenue Stream For North Korea's Weapons Program
North Korea stole millions of dollars in crypto assets in at least one major hack

Over 60% of Organizations Expose SSH to the Internet
ExtraHop study finds sensitive protocols are not being managed securely

UK Branded Europe’s “Capital of Card Fraud”
Think tank claims British consumers suffer the highest losses

Chinese Info Ops Campaign Tied to PR Firm
Inauthentic internet assets used to improve China’s image abroad

Hackers Exploit Atlassian Confluence Vulnerability to Deploy New 'Ljl' Backdoor
The TA likely used RAR and 7zip to archive files and folders from multiple directories

CREST and OWASP Partner on Verification Standard Program
The standard is designed to provide buyers of application security assessment services with high levels of assurance

Gaming Sector Cyber-Attacks Up 167% in Last 12 Months
The US was the main target of attackers, followed by Switzerland, India, Japan and the UK

Users Still in the Dark Over $5m Theft From Blockchain Firm Solana
Thousands of hot wallets drained in latest crypto blow



