Infosecurity News

  1. US Sanctions Chinese Hackers for Treasury, Telecom Breaches

    The US has issued sanctions against an individual and a company involved in recent high-profile compromises of government officials by Chinese state-affiliated hackers

  2. Former CIA Analyst Pleads Guilty to Sharing Top Secret Files

    CIA analysts Asif William Rahman has pleaded guilty to sharing classified documents about an Israeli attack

  3. Data on Half a Million Hotel Guests Exposed After Otelier Breach

    At least half a million accounts have been compromised after a breach at hotel management software firm Otelier

  4. US Supreme Court Gives Green Light to TikTok Ban

    The Supreme Court has upheld a law that could potentially ban TikTok in the US

  5. Lazarus Group Targets Developers in New Data Theft Campaign

    SecurityScorecard identified a new campaign in which the North Korean Lazarus group aims to steal source code, secrets and cryptocurrency wallet keys from developer environments

  6. Star Blizzard Targets WhatsApp in New Campaign

    Microsoft highlighted a new Star Blizzard campaign targeting WhatsApp accounts, as the group adapts its TTPs following the takedown of its infrastructure by law enforcement

  7. Noyb Files GDPR Complaints Against TikTok and Five Chinese Tech Giants

    AliExpress, Shein, Temu, TikTok, WeChat and Xiaomi are accused of operating unlawful data transfers to China

  8. DORA Takes Effect: Financial Firms Still Navigating Compliance Headwinds

    The EU’s DORA regulation is in effect as of January 17, with mixed evidence around compliance levels among financial firms

  9. Middle Eastern Real Estate Fraud Grows with Online Listings

    Middle East real estate scams are surging as fraudsters exploit online listings and bypassed due diligence checks

  10. Trump’s Truth Social Users Targeted by Rampant Scams Online

    Truth Social, launched by the Trump Media & Technology Group in 2022, has become a hotspot for scams like phishing and investment fraud

  11. Biden Tightens Software Supply Chain Security Requirements Ahead of Trump Takeover

    The US President’s second cybersecurity Executive Order will impose stricter security standards on software providers

  12. DORA Compliance Costs Soar Past €1m for Many UK and EU Businesses

    Compliance with the Digital Operational Resilience Act (DORA) has cost many businesses over €1 million, according to research from Rubrik

  13. New Hacking Group Leaks Configuration of 15,000 Fortinet Firewalls

    The leak likely comes from a zero-day exploit affecting Fortinet’s products

  14. GoDaddy Accused of Serious Security Failings by FTC

    A proposed settlement order from the FTC will require GoDaddy to strengthen its security practices following multiple data breaches at the web hosting giant

  15. Hackers Use Image-Based Malware and GenAI to Evade Email Security

    HP Wolf highlighted novel techniques used by attackers to bypass email protections, including embedding malicious code inside images and utilizing GenAI

  16. EU To Launch New Support Centre by 2026 to Boost Healthcare Cybersecurity

    A new EU action plan will be structured around four pillars: prevention, threat detection and identification, response to cyber-attacks and deterrence

  17. CISA Launches Playbook to Boost AI Cybersecurity Collaboration

    CISA launched the JCDC AI Cybersecurity Playbook to enhance collaboration on AI cybersecurity risks

  18. Chinese PlugX Malware Deleted in Global Law Enforcement Operation

    The FBI deleted Chinese PlugX malware from thousands of devices in the US, using a technique developed by French cybersecurity firm Sekoia.io

  19. Multi-Cloud Adoption Surges Amid Rising Security Concerns

    A new report from Fortinet reveals increased adoption of multi-cloud strategies and hybrid implementations combining on-premises and public cloud infrastructure

  20. Illicit Crypto-Inflows Set to Top $51bn in a Year

    Chainalysis estimates threat actors made at least $51bn through crypto crime in 2024

What’s Hot on Infosecurity Magazine?