Infosecurity News

Formjacking Now Accounts For Most Web Breaches
Magecart and similar attacks siphon payment details direct from websites

ZeroFOX Seeks to Protect Election Campaigns
ZeroFOX is targeting growing election interference with a dedicated product.

Network Deception Techniques Cut Dwell Times, Says Report
Those who lay false trails for hackers can often detect them more quickly, says a survey released this week.

Clickjacking Still Popular Among Online Scammers
A perennial technique among online fraudsters, clickjacking isn't going away anytime soon, researchers say.

Researchers Discover Stealthy Crypto-Miner “Norman”
Malware used in campaign that infected an entire organization

#Alevelresults: Cybersecurity Options Appear
Opportunities exist when the A-level grades do not deliver

Choice Hotels Breach: Hackers Leave Ransom Note For 700K Records
Third party exposed hotel chain's data in MongoDB instance

New Allegations: Capital One Suspect Stole From 30+ Organizations
Seattle woman is alleged to have targeted wide sweep of data

Trend Micro Patches Password Manager Flaw
Trend Micro has patched a flaw that could have allowed attackers to take over a system.

Researchers: Cloud Services Compromise Mobile Apps
Developers should be careful which cloud-based services they connect to, researchers warned this week.

Millions of Records Exposed in Biometric Database
BioStar 2's public data exposure could spell disaster for users, warn experts.

Microsoft Patches 93 CVEs But No Zero-Days in August
Admins urged to prioritize wormable bugs

BA Under Fire For Leaking Passenger Info in Links
Check-in links contained sensitive unencrypted details

FCA Gives Firms More Time to Comply With Strong Authentication Rules
SCA is a key part of the new PSD2 rules

Canada Launches Small Business Cybersecurity Certification Program
Cyber-savvy businesses in Canada could get certification to prove they take care of customer data.

Google Offers Password-Free Android Access to its Services
Support for FIDO2 in Android allows users to log into some Google services with a fingerprint.

Microsoft Warns of New Wormable RDP Flaw
Three months after BlueKeep, there's a new set of RDP vulnerabilities in town—and this time, they affect Windows 10.

Unsolicited Blank Emails Could Portend BEC Attacks
Agari warns organizations to be on the lookout for reconnaissance efforts

Certificate Giant Slams Plan to Shorten HTTPS Lifespans
Digicert claims no security benefit from proposal for 13-month lifecycles

UK Cops Take Down 13 Organized Crime Gangs
DCPCU warns that criminals are moving from drug trafficking to online fraud



