Infosecurity News

  1. NCSC Issues Guidance to Protect UK Research and Innovation

    The UK’s National Cyber Security Centre has published a new set of resources for startups and researchers

  2. Spanish Police Arrest Suspected NATO and US Army Hacker

    Spain’s National Police force has arrested a suspected data thief who targeted government and military victims

  3. Sophisticated Phishing Campaign Targets Ukraine’s Largest Bank

    A new phishing attack by UAC-0006 has been discovered targeting PrivatBank with malicious files in password-protected archives to evade detection

  4. Ransomware Payments Decline 35% as Victims Resist Demands

    Chainalysis found that ransomware payments fell significantly year-over-year despite a recorded increase in the number of ransomware events in 2024

  5. Mobile Malware Targeting Indian Banks Exposes 50,000 Users

    Indian banking malware attack exposes 50,000 users, stealing financial data via SMS interception and phishing

  6. Five Eyes Launch Guidance to Improve Edge Device Security

    The UK and its Five Eyes partners have launched new security guidance for edge device manufacturers and network defenders

  7. Cybercriminals Eye DeepSeek, Alibaba LLMs for Malware Development

    Check Point has observed cybercriminals toy with Alibaba’s Qwen LLM to develop infostealers

  8. Destructive Attacks on Financial Institutions Surge

    Contrast Security reveals a 12.5% annual increase in destructive cyber-attacks on banks

  9. DaggerFly-Linked Linux Malware Targets Network Appliances

    DaggerFly’s Lunar Peek campaign is using a new malware strain, identified by FortiGuard Labs, to compromise Linux networks

  10. Sophisticated Phishing Attack Bypasses Microsoft ADFS MFA

    A sophisticated phishing campaign targeting Microsoft ADFS has been observed, affecting more than 150 organizations

  11. Threefold Increase in Malware Targeting Credential Stores

    Picus Security reports infostealer surge after revealing credentials appear in 29% of malware

  12. Surge in Infostealer Attacks Threatens EMEA Organizations' Data Security

    Check Point Research has found over 10 million stolen credentials associated with EMEA organizations exposed on cybercrime markets

  13. Texas to Establish Cyber Command Amid “Dramatic” Rise in Attacks

    Texas Governor Greg Abbott announced a Cyber Command, designed to combat surging attacks on the state by nation-states and cybercriminals

  14. Casio and Others Hit by Magento Web Skimmer Campaign

    Jscambler claims at least 17 sites have been infected with web skimmers, including Casio’s

  15. CISA Warns of Backdoor Vulnerability in Contec Patient Monitors

    CISA has identified a backdoor in Contec CMS8000 devices that could allow unauthorized access to patient data and disrupt monitoring functions

  16. High-profile X Accounts Targeted in Phishing Campaign

    Hackers hijack high-profile X accounts with phishing scams to steal credentials and promote fraudulent cryptocurrency schemes

  17. 768 CVEs Exploited in the Wild in 2024

    VulnCheck observed 768 public reports of CVEs exploited in the wild for the first time in 2024, a 20% rise compared to 2023

  18. European Police: Data Volumes and Deletion Hindering Investigations

    A new Europol report warns of major challenges accessing and analyzing data for cybercrime investigations

  19. UK Announces “World-First” AI Security Standard

    The UK government has launched a new AI security code of practice it believes will become an ETSI standard

  20. Threat Actors Target Public-Facing Apps for Initial Access

    Cisco Talos found that exploitation of public-facing applications made up 40% of incidents it observed in Q4 2024, marking a notable shift in initial access techniques

What’s Hot on Infosecurity Magazine?