Infosecurity News

  1. Critical Vulnerabilities Found in NVIDIA's Triton Inference Server

    Critical vulnerabilities in NVIDIA's Triton Inference Server, discovered by researchers, could allow unauthenticated attackers to gain full server control through remote code execution

  2. Cybersecurity Teams Hit by Lowest Budget Growth in Five Years

    IANS found that stagnant budget growth rates have significantly impacted CISOs ability to increase their teams’ headcount

  3. Pro-Iran Hackers Aligned Cyber with Kinetic War Aims

    SecurityScorecard analysis highlights wide variety of Iranian threat actors and coordination with military activity

  4. AI Fuels Record Number of Fraud Cases

    Cifas noted a record number of filings in its National Fraud Database for the first half of 2025

  5. Ghost in the Zip Reveals Expanding Ecosystem Behind PXA Stealer

    Python-based PXA Stealer has stolen data from more than 4000 victims in over 62 countries, according to SentinalLabs

  6. #BHUSA: Microsoft and Google Among Most Affected as Zero Day Exploits Jump 46%

    Forescout also observed a big rise in CVEs added to CISA’s KEV catalog, some of which impacted end-of-life products

  7. Web-Based AI Usage Surge Shifts Global Internet Traffic Patterns

    Web traffic to AI sites surged 50% from Feb 2024 to Jan 2025, driven by browser-based GenAI tools

  8. Uptick in Akira Ransomware Actors Targeting SonicWall VPNs

    Arctic Wolf has spotted an increase in Akira ransomware attacks targeting SonicWall SSL VPNs

  9. Pwn2Own Offers $1m for Zero-Click WhatsApp Exploit

    The Pwn2Own competition is offering a $1m reward to any teams able to unearth a WhatsApp code execution exploit

  10. #BHUSA: Cloud Intrusions Skyrocket in 2025

    CrowdStrike revealed the surge in cloud intrusions was partly driven by a 40% increase in Chinese-state actors exploiting these environments

  11. Secret Blizzard Targets Moscow-Based Embassies in New Espionage Campaign

    Microsoft has observed Russian state actor Secret Blizzard using an AiTM position to gain initial access, assisted by official domestic intercept systems

  12. Hackers Regularly Exploit Vulnerabilities Before Public Disclosure, Study Finds

    Spikes in attacker activity precede the disclosure of vulnerabilities 80% of the time, according to a new GreyNoise report

  13. Staggering 800% Rise in Infostealer Credential Theft

    Flashpoint data reveals an 800% increase in credentials stolen via infostealers in just six months

  14. UK Leads the Way with £15m AI Alignment Project

    The UK’s AI Security Institute has announced a new AI misalignment research program

  15. Android Malware Targets Banking Users Through Discord Channels

    The DoubleTrouble Android banking Trojan has evolved, using Discord for delivery and introducing several new features

  16. CISA Unveils Eviction Strategies Tool to Aid Incident Response

    CISA has launched a new tool to streamline cyber incident response and aid in adversary eviction

  17. Ransomware Attacks Escalate to Physical Threats Against Executives

    Semperis found that executives were physically threatened in 40% of ransomware incidents, in a bid to pressure victims to pay demands

  18. Cybercriminals ‘Spooked’ After Scattered Spider Arrests

    The arrest of members of the Scattered Spider cyber-attack group have temporarily halted new intrusions, however, similar threat actors continue to pose risks

  19. FunkSec Ransomware Victims Can Now Recover Files with Free Decryptor

    Avast researchers shared a step-by-step guide to decrypt files for victims of FunkSec ransomware

  20. Passwordless Future Years Away Despite Microsoft Authenticator Move

    Experts argue that password managers are still useful despite Microsoft Authenticator ditching its capabilities

What’s Hot on Infosecurity Magazine?