Infosecurity News

Purple Fox Exploit Kit Adds Two Microsoft Vulnerabilities
Exploit kits may be on the decline, but that hasn’t stopped Purple Fox from keeping its game sharp

Account-Snooping Yahoo Engineer Escapes Jail Time
Man escapes jail time after using his position to snoop on thousands of accounts

Mobile Users Increasingly Targeted by Undeletable Malicious Files
Adware is often being pre-installed on mobile devices

Volume and Size of Fines for Data Breaches Expected to Rise
37% of workers expect the number and size of fines for their employers to increase

Flaw Fixed in Hotels.com Generator as Tesco Clubcard Users Impacted
Weakness exploited in way Hotels.com generates vouchers

Corporate Cybercrime Victims Double in Five Years
ISP estimates cost to UK economy of £87bn

North Korean Hackers Behind Magecart Attacks
Sansec claims Pyongyang-sponsored attackers struck Claire’s

Google VP Withdraws from Black Hat 2020 Over its Name
Heated debate in infosec community after calls for change in terminology

NSA Issues VPN Security Guidance
Be careful which pre-configured policies you leave on your IPsec VPN, warns the US government

Moose Remain Unaware of Lottery Privacy Breach
The Nova Scotia moose hunting lottery didn’t go entirely to plan this year

Avaddon Ransomware Still Using Excel 4.0 Macros
The Avaddon ransomware is using Excel 4.0 macros as an infection vector

Record Number Enrol in Online NCSC CyberFirst Courses
The NCSC plans to provide a mix of classroom and virtual classes going forward

V Shred Exposes Pics and PII on 100,000 Customers
Researchers at vpnMentor claim fitness firm misconfigured S3 bucket

GoldenSpy Uninstaller Appears Out of Nowhere
Backdoor removal asks more questions than it answers

Global Dating App Users Exposed in Multiple Security Snafus
WizCase researchers find unsecured online databases in US and Asia

Researchers Find Vulnerabilities in Apache Remote Desktop Software
Apache Guacamole is an open source remote access gateway

US Schools and Colleges Have Leaked 24.5 Million Records Since 2005
Educational establishments across the US have leaked millions of records since 2005, according to an analysis of public data

Hundreds Arrested After Cops Dismantle Encrypted Phone Network
EncroChat was one of the largest encrypted phone networks in operation and was mostly used for criminal activity

Security Analysts Disproportionate in their Investigation of Malware
The amount of requests to investigate Backdoors and Droppers does not correspond with their use

New Mac Ransomware Hidden in Pirated Software
OSX.ThiefQuest also contains keylogger



