Infosecurity News

Millions of Email Servers at Risk from Cryptomining Worm
Researchers urge admins to patch Exim installations now

MI5 Breached Surveillance Law for Years
New documents detail “extraordinary and persistent illegality”

Employees Out of Work After ASCO Hit by Ransomware
Aircraft parts manufacturer ASCO decided to temporarily close its Belgium office

Gaming's All Fun and Games Till Someone Gets Hacked
The gaming industry is increasingly the target of cyber-criminals looking to turn a quick profit.

AGs Warn ACMA Breach Impact Rose to Over 20 Million
The third-party breach at American Medical Collection Agency has impacted millions of patients.

UK Orgs Lose 2 & 1/2 Months a Year on Poor Password Management
Companies are failing to effectively manage password security

“Major Flaw” Discovered in Evernote’s Chrome Extension
Code flaw could have allowed threat actors to extract personal information from the browser environment

KnowBe4 Gets Whopping $300m in Funding
Dubbed a cybersecurity unicorn, KnowBe4's valuation soars to $1bn.

Philly Courts Still Down After Cyber-Attack
Some Philadelphia Court systems are still down three weeks post-attack

Flaw in SymCrypt Can Trigger DDoS
A Google researcher reported a Windows vulnerability as part of Project Zero.

XSS is Most Rewarding Bug Bounty as CSRF is Revived
XSS is the most rewarding security vulnerability, according to data on the number of bug bounties paid

Microsoft Fixes Four SandboxEscaper Zero-Days
Patch Tuesday sees updates for 88 flaws

FBI: Don’t Trust HTTPS or Padlock on Websites
Feds warn that hackers are increasingly using certs to ‘secure’ their phishing sites

Code Signing Shortcomings Leave Gaps for Hackers
Venafi research finds just 14% of European firms have security in place

Radiohead Officially Releases Music Stolen in Hack
Rather than pay the $150K ransom, Radiohead has made the stolen tracks available to fans.

SOCs Struggle with Staffing, Reporting and Visibility
Alert overload and false positives remain a problem in the SOC.

HaveIBeenPwned.com Open to Acquisition
Maintaining the site at its level of growth has become overwhelming for Troy Hunt.

FTSE 250+ Demonstrate Weak Security, But Low SMB Exposure
FTSE 250+ organizations leave an average of 35 servers and devices exposed

Welsh Man Gets Four Years for TalkTalk Attack
Asperger’s syndrome sufferer sentenced to young offender institute

US Customs Contractor Hack Breaches Traveller Images
Data on tens of thousands is reportedly stolen



