Infosecurity News

Number of Fake Homograph Domains Continues to Increase
The number of IDN lookalike domain pages continues to increase

Rights Groups: EU States Ignored CJEU Mass Surveillance Rulings
Non-targeted bulk data retention still widespread, say activists

HMRC’s Taxpayer Voice ID Database Could Breach GDPR Rules
Big Brother Watch claims tax office did not get consent from 5.1 million individuals

Lazarus Targets South Korea with Malicious Docs
Researchers try to connect the dots between North Korean-linked group and attacks on South Korea.

Air-Gapped Systems Targeted with Weaponized USBs
A cyber-espionage group targets Japan and South Korea with malware.

Known Threat Actor Develops Malware Downloader
Kardon Loader is a new malware downloader with full bot capabilities.

Supreme Court Boosts Privacy with Mobile Data Ruling
Landmark decision will force government to obtain warrant for location data

Researchers Warn of Hackable Baby Monitor
SEC Consult confirms mother’s suspicion she was spied on

Hundreds Report WannaCry Phishing Campaign
Action Fraud warns UK users not to fall for scam

Default Passwords Aid Satori IoT Botnet Attacks
Netlab 360 detected a surge in Satori botnet infecting vulnerable routers and IoT devices.

Security Pros Expect Rise in Nation-State Attacks
Concerns for nation-state threats grow, with many fearing attackers intend to do harm.

Afghan-Based Attack Disguised as News
Attackers use Metasploit to target victims with malware.

ACLU Warns on Forced Malicious Software Updates
The ACLU has issued guidance on how software developers should deal with demands on malicious security updates.

Attackers Pick Microsoft Office for Zero-Day Exploits
Malicious actors leverage Word as the vector of choice.

New HospitalGown Variant in iOS, Android Apps
A Firebase variant was reportedly downloaded 620 million times.

Oregon.Gov Email Domain Remains Blacklisted
A successful phishing campaign leaves oregon.gov email on many blacklists.

Fortnite's Android Debut Sees Malicious Apps Launched
YouTube videos have been detected claiming to contain downloads for the Android version of Fortnite

A Third of UK Orgs Have Sacked Employees for Data Breach Negligence
Businesses recognize employee negligence as major security risk, but fail to take action with robust training programs

Younger Employees Identified as 'Main Culprits' of Security Breaches
New survey assesses senior-level attitudes towards security risks posed by 18-24-year-old workers

Attackers Spy and Steal from Financial Firms
Financial services companies are being targeted by sophisticated attackers.



