Infosecurity News

FSB: Lack of Cyber-Skills Holding Back Small Business
Government needs to raise its game, says industry body

Cybercrime Now Driven by Four Distinct Groups
There are four distinct groups of cyber-criminals: traditional gangs, state-sponsored attackers, ideological hackers and hackers-for-hire

Ransomware Takes Out North Carolina County
Key services disrupted for over a million residents

Iranian State-Sponsored APT 34 Launches Spy Campaign with Just-Patched Microsoft Vulns
An espionage campaign being carried out in the Middle East uses a vulnerability less than a week after Microsoft patched it.

State Officials Showcase Election Security Plan in US
The plan addresses a hot-button topic in the wake of Russian meddling in the US presidential election last year.

$64m in Bitcoin Stolen from NiceHash Mining Platform
The compromise was highly professional and involved “sophisticated social engineering"—leading to the loss of 4,700 bitcoins.

#BHEU: Attackers and Spies Merge with Evolved Attacks
Attackers and spies are merging to use tools to extort companies, using espionage and cybercrime tools.

FCA: Banks Are Under-Reporting Cyber-Attacks
UK regulator urges more openness for the good of the industry

RNIB Breach May Have Hit Hundreds — Report
Shoppers at charity’s web store hit by follow-on fraud

#BHEU: Social Engineer Shows How to Get Easy Cash
Crumbaugh demonstrated how to get a target to install malware, bypass anti-virus and how he won the confidence of the target

Kylie Makeup, Yeezy Trainers and Holiday Online Shopping Scams
Three-quarters of UK consumers have been scammed in the process of purchasing goods online.

#BHEU: Government Agreements Needed on How to Prevent Cyber-Conflict
Better understanding of cybersecurity issues, cross-border agreements and the tools to take action will offer better security for governments

Connected Rental Cars Leak Personal Driver Data
Privacy International claims firms are failing to protect driver and passenger privacy

Israeli Start-Up Leaks Data on 31m Users
Virtual keyboard maker collected huge range of personal and device data

#BHEU: Security Created Fragility Without Consideration for the World
Understanding and communication of problems will continue to be a challenge for security practitioners

UK CNI Firms Face 100% Increase in Attacks
Huntsman Security warns skills shortage will hamper efforts over next two years

Mailsploit Allows Spoofed Mails to Fool DMARC
The spoofing is not detected by email servers, and can thus circumvent email security mechanisms such as DMARC.

Breached Password-Trading Site Leakbase Goes Dark
It now redirects to legit breach notification site

Security is Biggest Barrier to Smart City, IIoT Projects
Wi-SUN Alliance research finds many struggling to implement initiatives

Global Police Dismantle Andromeda Botnet
Malware-spewing infrastructure gets sinkholed



