<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/">
  <channel>
    <link>https://www.infosecurity-magazine.com/network-security/</link>
    <copyright>Copyright © 2026 Reed Exhibitions Ltd. All Rights Reserved.</copyright>
    <item>
      <title>How Borussia Dortmund's IT Chief Makes the Case for Cybersecurity</title>
      <link>https://www.infosecurity-magazine.com/interviews/borussia-dortmund-it-chief/</link>
      <description>From stadium infrastructure to player contracts, Borussia Dortmund's Head of IT reveals the cybersecurity challenges facing modern football clubs</description>
      <pubDate>Wed, 19 Aug 2026 14:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/interviews/borussia-dortmund-it-chief/</guid>
    </item>
    <item>
      <title>Over 500 Critical Infrastructure Organizations Hit by Medusa Ransomware</title>
      <link>https://www.infosecurity-magazine.com/news/critical-infrastructure-medusa/</link>
      <description>The FBI warned that the RaaS operation has significantly enhanced its tactics, techniques and procedures, making it harder for defenders to counter</description>
      <pubDate>Wed, 19 Aug 2026 10:50:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/critical-infrastructure-medusa/</guid>
    </item>
    <item>
      <title>Cyber Incident Disrupts Student Services at UT San Antonio </title>
      <link>https://www.infosecurity-magazine.com/news/cyber-incident-ut-san-antonio/</link>
      <description>UT San Antonio has taken IT systems offline following a cyber incident, disrupting student registration and tuition payments days before term is due to resume</description>
      <pubDate>Tue, 18 Aug 2026 11:20:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cyber-incident-ut-san-antonio/</guid>
    </item>
    <item>
      <title>ETSI Proposes 17 Cybersecurity Standards to Support Cyber Resilience Act</title>
      <link>https://www.infosecurity-magazine.com/news/etsi-proposes-17-cybersecurity/</link>
      <description>The European Telecommunications Standards Institute has launched an approval process for standards vendors will have to meet under the Cyber Resilience Act</description>
      <pubDate>Mon, 17 Aug 2026 11:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/etsi-proposes-17-cybersecurity/</guid>
    </item>
    <item>
      <title>New Mirai-Based Linux Botnet ‘Evooo1Bot’ Turns Victims Into Proxies</title>
      <link>https://www.infosecurity-magazine.com/news/new-linux-botnet-evooo1bot-victims/</link>
      <description>Evooo1Bot is a newly observed botnet based on the Mirai framework but equipped with advanced features, turning edge devices into persistent proxies</description>
      <pubDate>Fri, 14 Aug 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/new-linux-botnet-evooo1bot-victims/</guid>
    </item>
    <item>
      <title>Gunra Ransomware Exploits Fortinet Flaws to Target Critical Infrastructure</title>
      <link>https://www.infosecurity-magazine.com/news/gunra-ransomware-fortinet-flaws/</link>
      <description>Gunra actors are using stealth to exfiltrate vast volumes of data from Microsoft services, US and Korean agencies have warned</description>
      <pubDate>Wed, 12 Aug 2026 13:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/gunra-ransomware-fortinet-flaws/</guid>
    </item>
    <item>
      <title>Russian-Linked Hackers Accessed Polish Power Plant OT Network Through Private APN, Says CERT.PL</title>
      <link>https://www.infosecurity-magazine.com/news/attack-polish-power-plant-2025-led/</link>
      <description>The Polish CERT has released details of another 2025 attack on a combined heat and power plant in the country </description>
      <pubDate>Wed, 12 Aug 2026 09:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/attack-polish-power-plant-2025-led/</guid>
    </item>
    <item>
      <title>“Ghostjacking” Exploits AI Agents’ Trusted Access to Evade Firewall Controls</title>
      <link>https://www.infosecurity-magazine.com/news/ghostjacking-ai-gents-access/</link>
      <description>Tenet reported that half of Fortune 500 companies are vulnerable to the Ghostjacking technique, which involves tricking AI agents with fake reports</description>
      <pubDate>Mon, 10 Aug 2026 10:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ghostjacking-ai-gents-access/</guid>
    </item>
    <item>
      <title>Toolkit Hidden Inside Oracle Database Evades Endpoint Tools</title>
      <link>https://www.infosecurity-magazine.com/news/khunt-toolkit-oracle-database-sql/</link>
      <description>Attackers used SQL injection to compile a post-exploitation toolkit inside an Oracle database</description>
      <pubDate>Thu, 06 Aug 2026 15:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/khunt-toolkit-oracle-database-sql/</guid>
    </item>
    <item>
      <title>University of the Arts London Head of Technology on Securing Creativity in an Age of Cyber Threats</title>
      <link>https://www.infosecurity-magazine.com/interviews/university-of-arts-london/</link>
      <description>University of the Arts London's Keith Joy explains the unique cybersecurity challenges facing higher education and how institutions can secure users without restricting creativity</description>
      <pubDate>Tue, 04 Aug 2026 09:06:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/interviews/university-of-arts-london/</guid>
    </item>
    <item>
      <title>HollowFrame Loader Uses Fake Python DLL to Evade Defender</title>
      <link>https://www.infosecurity-magazine.com/news/hollowframe-fake-python-dll/</link>
      <description>New HollowFrame loader hid Go code in a fake Python DLL after pre-staging Defender exclusions</description>
      <pubDate>Mon, 03 Aug 2026 11:26:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/hollowframe-fake-python-dll/</guid>
    </item>
    <item>
      <title>TrickBot Ditches HTTP for DNS Tunneling in Latest Variant</title>
      <link>https://www.infosecurity-magazine.com/news/trickbot-dns-tunneling-c2/</link>
      <description>New TrickBot variant hides C2 communication inside DNS queries, replacing decade-old HTTP pattern</description>
      <pubDate>Wed, 22 Jul 2026 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/trickbot-dns-tunneling-c2/</guid>
    </item>
    <item>
      <title>From FBI Cybercrime to Barbie’s CISO: a Leadership Story for Execs Under Pressure</title>
      <link>https://www.infosecurity-magazine.com/opinions/from-fbi-cybercrime-to-barbie-ciso/</link>
      <description>Mattel CISO Jill Knesek on what working as a Special Agent at the FBI taught her about cybersecurity leadership</description>
      <pubDate>Mon, 20 Jul 2026 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/opinions/from-fbi-cybercrime-to-barbie-ciso/</guid>
    </item>
    <item>
      <title>Ferrari Cybersecurity Head on Defending Formula 1’s Most Iconic Team</title>
      <link>https://www.infosecurity-magazine.com/interviews/interview-ferrari-head-of/</link>
      <description>The longest tenured and most successful Formula 1 team is no stranger to evolving with technological developments. This is how Ferrari ensures its cybersecurity strategy helps the team push forward</description>
      <pubDate>Mon, 20 Jul 2026 08:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/interviews/interview-ferrari-head-of/</guid>
    </item>
    <item>
      <title>Compromised Logins Surge as the Most Common Entry Point for Ransomware Attacks</title>
      <link>https://www.infosecurity-magazine.com/news/compromised-logins-ransomware-entry/</link>
      <description>Research of incidents by Sophos finds that phishing, brute force attacks and other identity-based threats have surpassed software vulnerabilities as means of delivering ransomware</description>
      <pubDate>Wed, 15 Jul 2026 12:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/compromised-logins-ransomware-entry/</guid>
    </item>
    <item>
      <title>China-Linked APT Expands Proxy Network With New Malware</title>
      <link>https://www.infosecurity-magazine.com/news/uat-7810-china-apt-orb-proxy/</link>
      <description>Cisco Talos said China-linked APT UAT-7810 is growing its proxy relay network with new malware</description>
      <pubDate>Wed, 08 Jul 2026 14:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/uat-7810-china-apt-orb-proxy/</guid>
    </item>
    <item>
      <title>FBI, Google Take Down NetNut Proxy Network Used by Cyber Threat Actors</title>
      <link>https://www.infosecurity-magazine.com/news/fbi-google-take-down-netnut-proxy/</link>
      <description>The NetNut proxy network and the ‘Popa’ botnet are known to have infected devices with variants of Mirai DDoS botnets</description>
      <pubDate>Fri, 03 Jul 2026 09:35:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/fbi-google-take-down-netnut-proxy/</guid>
    </item>
    <item>
      <title>Telegram-Based Millenium RAT Campaign Infects 60,000 Devices</title>
      <link>https://www.infosecurity-magazine.com/news/millenium-rat-telegram-60000/</link>
      <description>Group-IB says Millenium RAT, now rewritten in C++, has hit 62,289 devices in 160+ countries</description>
      <pubDate>Mon, 29 Jun 2026 14:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/millenium-rat-telegram-60000/</guid>
    </item>
    <item>
      <title>Ethical AI Is an Operational Discipline, Not a Philosophy</title>
      <link>https://www.infosecurity-magazine.com/opinions/ethical-ai-operational-discipline/</link>
      <description>Safety requirements for AI in cybersecurity cannot be limited to proselytizing about good intents, it must demonstrate control, containment, and cleanup</description>
      <pubDate>Mon, 29 Jun 2026 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/opinions/ethical-ai-operational-discipline/</guid>
    </item>
    <item>
      <title>Cisco Vulnerability Exploited Months Before Disclosure, Google Warns</title>
      <link>https://www.infosecurity-magazine.com/news/cisco-vulnerability-exploited/</link>
      <description>A high-severity flaw in Cisco Catalyst SD-WAN Manager disclosed in early June was exploited as early as March</description>
      <pubDate>Thu, 25 Jun 2026 14:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cisco-vulnerability-exploited/</guid>
    </item>
    <item>
      <title>Twenty Million US IP Connections Used by Proxy Services</title>
      <link>https://www.infosecurity-magazine.com/news/twenty-million-us-ip-connections/</link>
      <description>Digital Citizens Alliance report claims that millions of Americans may have unwittingly had IP connections used by cybercriminals</description>
      <pubDate>Thu, 25 Jun 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/twenty-million-us-ip-connections/</guid>
    </item>
    <item>
      <title>New CISA Guide Helps Agencies Adopt SASE For Zero Trust</title>
      <link>https://www.infosecurity-magazine.com/news/cisa-sase-tic-3-0-zero-trust/</link>
      <description>New CISA guidance shows federal agencies how to use SASE to move from legacy TIC 2.0 to zero trust</description>
      <pubDate>Thu, 25 Jun 2026 11:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cisa-sase-tic-3-0-zero-trust/</guid>
    </item>
    <item>
      <title>Iran-Linked MuddyWater Poses as Ransomware Gang to Mask Cyber Espionage</title>
      <link>https://www.infosecurity-magazine.com/news/iranlinked-muddywater-poses-as/</link>
      <description>An NCC Group report warns state-backed hackers are attempting to hide activity by posing as ransomware groups and deploying commercially available malware</description>
      <pubDate>Wed, 24 Jun 2026 12:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/iranlinked-muddywater-poses-as/</guid>
    </item>
    <item>
      <title>Interview: Shopify CISO Andrew Dunbar on Securing an E-Commerce Giant Against Cyber Threats</title>
      <link>https://www.infosecurity-magazine.com/interviews/interview-shopify-ciso-andrew/</link>
      <description>Millions of online stores, from global brands to independent retailers, rely on Shopify’s platform to sell their products. This is how the company deploys zero trust, bug bounties, AI and more to keep itself and its customers safe from evolving hacker threats</description>
      <pubDate>Wed, 24 Jun 2026 08:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/interviews/interview-shopify-ciso-andrew/</guid>
    </item>
    <item>
      <title>LATAM Infrastructure Hit by Fortinet and Ivanti Exploits</title>
      <link>https://www.infosecurity-magazine.com/news/operation-escaneo-cloudsek-latam/</link>
      <description>CloudSEK maps Operation Escaneo, a campaign hitting Latin American infrastructure via perimeter bugs</description>
      <pubDate>Thu, 18 Jun 2026 11:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/operation-escaneo-cloudsek-latam/</guid>
    </item>
    <item>
      <title>AI Threats and Alert Fatigue Challenge Cybersecurity Teams </title>
      <link>https://www.infosecurity-magazine.com/news/ai-threats-alert-fatigue-challenge/</link>
      <description>Filigran survey at Infosecurity Europe 2026 reveals AI-powered attacks as the top concern, with false positives, alert fatigue and manual processes draining security teams</description>
      <pubDate>Wed, 17 Jun 2026 12:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ai-threats-alert-fatigue-challenge/</guid>
    </item>
    <item>
      <title>Staffing Is Top SOC Challenge Even as AI Proliferates, Says SANS</title>
      <link>https://www.infosecurity-magazine.com/news/staffing-top-soc-challenge-ai/</link>
      <description>SANS Institute study finds few SOCs have built AI into defined workflows, despite widespread adoption</description>
      <pubDate>Wed, 17 Jun 2026 08:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/staffing-top-soc-challenge-ai/</guid>
    </item>
    <item>
      <title>Adriatic Port Cyber-Attack by Anubis Sparks Warning Over Maritime Security Risks</title>
      <link>https://www.infosecurity-magazine.com/news/anubis-ransomware-adriatic-port/</link>
      <description>How the Anubis ransomware group stole and leaked an Italian Adriatic port authority's data</description>
      <pubDate>Mon, 15 Jun 2026 16:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/anubis-ransomware-adriatic-port/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: AI Coding Tools Need Built-In Security for Agentic Development Era</title>
      <link>https://www.infosecurity-magazine.com/news/ai-coding-tools-security-agentic/</link>
      <description>Ox Security field CTO, Boaz Barzel, makes the case for vibe security to tackle AI agent coding risks</description>
      <pubDate>Fri, 05 Jun 2026 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ai-coding-tools-security-agentic/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: Reactive Security Is Failing Healthcare Organizations, Experts Warn</title>
      <link>https://www.infosecurity-magazine.com/news/reactive-security-failing/</link>
      <description>A perfect storm of legacy devices, hyper connectivity and human fatigue is bad news for the healthcare sector, warns Cyber Salus</description>
      <pubDate>Fri, 05 Jun 2026 08:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/reactive-security-failing/</guid>
    </item>
    <item>
      <title>Threat Actor Uses AI to Build EDR Evasion Tools</title>
      <link>https://www.infosecurity-magazine.com/news/ai-edr-evasion-tooling/</link>
      <description>A threat actor used AI coding tools to build and test EDR evasion malware, Sophos finds</description>
      <pubDate>Tue, 02 Jun 2026 11:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ai-edr-evasion-tooling/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: Tabletop Exercise to Test How CISOs Respond to Major Supermarket Cyber-Attack </title>
      <link>https://www.infosecurity-magazine.com/news/infosecurity-europe-semperis/</link>
      <description>Semperis is set to bring ‘Enter the War Room: A Tabletop Experience’ to Infosecurity Europe to help cybersecurity leaders prepare to face real incidents</description>
      <pubDate>Mon, 01 Jun 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/infosecurity-europe-semperis/</guid>
    </item>
    <item>
      <title>Infosecurity Europe: AI SOCs Will Still Need SOC Analysts, Security Vendors Say</title>
      <link>https://www.infosecurity-magazine.com/news/ai-soc-still-need-analysts/</link>
      <description>Top cybersecurity vendors said AI won't replace entry-level – only routine ticket-taking and triage</description>
      <pubDate>Mon, 01 Jun 2026 11:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ai-soc-still-need-analysts/</guid>
    </item>
    <item>
      <title>Cybercriminal VPN Dismantled in Europol Crackdown</title>
      <link>https://www.infosecurity-magazine.com/news/first-vpn-takedown-europol/</link>
      <description>First VPN, a service used by ransomware actors and fraudsters, was dismantled by Europol</description>
      <pubDate>Thu, 21 May 2026 15:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/first-vpn-takedown-europol/</guid>
    </item>
    <item>
      <title>What Fronter AI Models Like Mythos and GPT-Cyber Mean for Modern Cybersecurity</title>
      <link>https://www.infosecurity-magazine.com/news-features/what-mythos-gptcybe-ai-mean-for/</link>
      <description>OpenAI and Anthropic’s frontier AI models appear to have upended how we will think about cybersecurity. Infosecurity explores what this means for cyber practitioners</description>
      <pubDate>Fri, 15 May 2026 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news-features/what-mythos-gptcybe-ai-mean-for/</guid>
    </item>
    <item>
      <title>Mustang Panda Linked to Updated FDMTP Backdoor in Asia-Pacific Espionage Campaign</title>
      <link>https://www.infosecurity-magazine.com/news/mustang-panda-fdmtp-backdoor-apj/</link>
      <description>Mustang Panda campaign deploys updated FDMTP backdoor against Asia-Pacific and Japan networks</description>
      <pubDate>Thu, 14 May 2026 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/mustang-panda-fdmtp-backdoor-apj/</guid>
    </item>
    <item>
      <title>Interview: How Alpine’s Head of IT Secures the High-Speed Environment of an F1 Team</title>
      <link>https://www.infosecurity-magazine.com/interviews/how-alpines-head-of-it-secures-an/</link>
      <description>In Formula 1 speed is of the essence and team members need secure, but swift, access to data at all times. Here’s how BWT Alpine Formula One Team ensures it meets that challenge all season long</description>
      <pubDate>Thu, 14 May 2026 09:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/interviews/how-alpines-head-of-it-secures-an/</guid>
    </item>
    <item>
      <title>Ransomware: Over Half of CISOs Would Consider Paying Ransom to Hackers</title>
      <link>https://www.infosecurity-magazine.com/news/ransomware-over-half-cisos-would/</link>
      <description>Survey of cybersecurity leaders suggests that majority would strongly consider paying cybercriminals, if that’s what it took to help restore encrypted systems</description>
      <pubDate>Wed, 13 May 2026 12:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ransomware-over-half-cisos-would/</guid>
    </item>
    <item>
      <title>US: FCC Relaxes Foreign-Made Router Ban to Allow for Security Updates</title>
      <link>https://www.infosecurity-magazine.com/news/us-fcc-relaxes-foreign-router-ban/</link>
      <description>The same extension applies to security updates shipped to US-based users of foreign-made drones</description>
      <pubDate>Mon, 11 May 2026 11:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/us-fcc-relaxes-foreign-router-ban/</guid>
    </item>
    <item>
      <title>Australian Cyber Security Centre Issues Alert Over ClickFix Attacks</title>
      <link>https://www.infosecurity-magazine.com/news/australian-cyber-security-centre/</link>
      <description>ACSC warns over a campaign targeting organizations which uses ClickFix to deliver Vidar infostealer malware</description>
      <pubDate>Fri, 08 May 2026 11:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/australian-cyber-security-centre/</guid>
    </item>
    <item>
      <title>OpenAI and Anthropic LLMs Used in Critical Infrastructure Cyber-Attack, Warns Dragos</title>
      <link>https://www.infosecurity-magazine.com/news/llm-critical-infrastructure/</link>
      <description>Commercial AI models were used to help plan and conduct cyber-attack against operational technology of a water and drainage facility, say researchers</description>
      <pubDate>Thu, 07 May 2026 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/llm-critical-infrastructure/</guid>
    </item>
    <item>
      <title>Five Years Later: Lessons Learned From Colonial Pipeline Ransomware Attack  </title>
      <link>https://www.infosecurity-magazine.com/opinions/lessons-learned-from-colonial/</link>
      <description>In May 2021, a coordinated government response helped contain the ransomware attack that disrupted America’s gas supply. Are we ready for the next major attack against critical infrastructure?</description>
      <pubDate>Wed, 06 May 2026 13:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/opinions/lessons-learned-from-colonial/</guid>
    </item>
    <item>
      <title>CISA Urges Critical Infrastructure Providers to Make Plans to Remain Operational if hit by Cyber-Attack</title>
      <link>https://www.infosecurity-magazine.com/news/cisa-ci-fortify-isolation-recovery/</link>
      <description>CISA’s CI Fortify initiative aim for critical infrastructure operators to build isolation &amp; recovery</description>
      <pubDate>Wed, 06 May 2026 13:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cisa-ci-fortify-isolation-recovery/</guid>
    </item>
    <item>
      <title>Trellix Reveals Unauthorized Access to Source Code</title>
      <link>https://www.infosecurity-magazine.com/news/trellix-reveals-unauthorized/</link>
      <description>Security vendor Trellix has suffered a breach involving unauthorized access</description>
      <pubDate>Tue, 05 May 2026 08:55:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/trellix-reveals-unauthorized/</guid>
    </item>
    <item>
      <title>Small Defense Firms Lack Network Data to Stop Nation-State Hackers, Analyst Says</title>
      <link>https://www.infosecurity-magazine.com/news/small-defense-firms-lack-network/</link>
      <description>Team Cymru’s Stephen Campbell warned that small US defense contractors are not well prepared to face cyber intrusions through edge devices</description>
      <pubDate>Mon, 04 May 2026 12:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/small-defense-firms-lack-network/</guid>
    </item>
    <item>
      <title>Why Organizations Need to Adapt Their Defenses to Protect Against the Rise of Phishing-as-a-Service</title>
      <link>https://www.infosecurity-magazine.com/opinions/adapt-defenses-to-protect-against/</link>
      <description>Democratization of cybercrime is driving PhaaS expansion. Here's what you need to know to protect your network</description>
      <pubDate>Fri, 01 May 2026 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/opinions/adapt-defenses-to-protect-against/</guid>
    </item>
    <item>
      <title>Interview: How YKK Is Securing the World’s Largest Zipper Manufacturing Operation</title>
      <link>https://www.infosecurity-magazine.com/interviews/interview-ykk-securing-largest/</link>
      <description>Infosecurity spoke to YKK  Americas’ cybersecurity leader Rod Goldsmith about securing the world’s largest zipper manufacturer and protecting a global apparel supply chain</description>
      <pubDate>Thu, 30 Apr 2026 11:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/interviews/interview-ykk-securing-largest/</guid>
    </item>
    <item>
      <title>The Rising Risk Landscape for Critical National Infrastructure
</title>
      <link>https://www.infosecurity-magazine.com/opinions/rising-risk-landscape-for-critical/</link>
      <description>Cyber resilience in critical infrastructure is essential to  critical services running. A stronger mindset is needed to protect against attacks</description>
      <pubDate>Thu, 23 Apr 2026 10:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/opinions/rising-risk-landscape-for-critical/</guid>
    </item>
    <item>
      <title>NCSC Backs Passkeys, Hailing a New Era of Sign-in </title>
      <link>https://www.infosecurity-magazine.com/news/ncsc-backs-passkeys-new-era-of/</link>
      <description>The UK’s NCSC has fully backed passkeys as consumers’ first choice for login, citing progress with FIDO and successful use across the NHS</description>
      <pubDate>Thu, 23 Apr 2026 08:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ncsc-backs-passkeys-new-era-of/</guid>
    </item>
    <item>
      <title>MacOS Native Tools Enable Stealthy Enterprise Attacks</title>
      <link>https://www.infosecurity-magazine.com/news/macos-lotl-techniques-enterprise/</link>
      <description>macOS LOTL techniques bypass detection using native tools and metadata abuse</description>
      <pubDate>Wed, 22 Apr 2026 16:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/macos-lotl-techniques-enterprise/</guid>
    </item>
    <item>
      <title>NCSC Unveils SilentGlass, a Plug-In Device to Protect Monitors from Cyber-Attacks</title>
      <link>https://www.infosecurity-magazine.com/news/ncsc-silentglass-a-plugin-stop/</link>
      <description>The UK’s cybersecurity agency said the devices will be available for purchase by organizations around the world</description>
      <pubDate>Wed, 22 Apr 2026 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ncsc-silentglass-a-plugin-stop/</guid>
    </item>
    <item>
      <title>UK Commits £90m for Cybersecurity and Pushes for ‘Resilience Pledge’</title>
      <link>https://www.infosecurity-magazine.com/news/uk-pledges-90m-for-cybersecurity/</link>
      <description>UK unveils £90m cybersecurity funding at CYBERUK to boost SME resilience, promote Cyber Essentials and a new Cyber Resilience Pledge, sparking industry debate</description>
      <pubDate>Wed, 22 Apr 2026 14:10:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/uk-pledges-90m-for-cybersecurity/</guid>
    </item>
    <item>
      <title>ZionSiphon Malware Targets Water Infrastructure Systems</title>
      <link>https://www.infosecurity-magazine.com/news/zionsiphon-malware-water/</link>
      <description>ZionSiphon malware targets OT water systems with sabotage and ICS scanning capabilities</description>
      <pubDate>Mon, 20 Apr 2026 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/zionsiphon-malware-water/</guid>
    </item>
    <item>
      <title>OpenClaw Exposes the Real Cybersecurity Risks of Agentic AI</title>
      <link>https://www.infosecurity-magazine.com/opinions/openclaw-exposes-real-security/</link>
      <description>As recent incidents have showed, without effective governance, visibility and control, risks around Agentic AI can escalate rapidly</description>
      <pubDate>Fri, 17 Apr 2026 14:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/opinions/openclaw-exposes-real-security/</guid>
    </item>
    <item>
      <title>Cookeville Medical Center Notifies Patients After July 2025 Ransomware Attack</title>
      <link>https://www.infosecurity-magazine.com/news/cookeville-medical-center-data/</link>
      <description>Tennessee's CRMC notifies over 337,000 patients of Rhysida ransomware breach exposing sensitive data</description>
      <pubDate>Thu, 16 Apr 2026 15:01:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cookeville-medical-center-data/</guid>
    </item>
    <item>
      <title>Researchers Spot Surge in Brute-Force Attacks from Middle East</title>
      <link>https://www.infosecurity-magazine.com/news/researchers-surge-bruteforce/</link>
      <description>Barracuda says 88% of brute-force attempts in Q1 were from the region</description>
      <pubDate>Wed, 15 Apr 2026 09:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/researchers-surge-bruteforce/</guid>
    </item>
    <item>
      <title>US Thwarts DNS Hijacking Network Controlled by Russian APT28 Hackers</title>
      <link>https://www.infosecurity-magazine.com/news/us-thwarts-dns-hijacking-network/</link>
      <description>The FBI deployed a method to unplug US-based routers compromised by APT28 from the threat actor’s malicious network</description>
      <pubDate>Wed, 08 Apr 2026 10:03:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/us-thwarts-dns-hijacking-network/</guid>
    </item>
    <item>
      <title>When the World Splits: Are Businesses Really Ready?</title>
      <link>https://www.infosecurity-magazine.com/opinions/when-world-splits-are-businesses/</link>
      <description>Geopolitical rifts are becoming more frequent, more complex and more interconnected. Businesses cannot control global politics, but they can control their preparedness</description>
      <pubDate>Mon, 06 Apr 2026 14:01:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/opinions/when-world-splits-are-businesses/</guid>
    </item>
    <item>
      <title>The UK Cyber Security and Resilience Bill: What OT Asset Owners Need to Know Now</title>
      <link>https://www.infosecurity-magazine.com/opinions/uk-cyber-bill-what-ot-it-needs-now/</link>
      <description>While the bill’s fine points may still evolve, its overall direction is clear. OT operators should act now.</description>
      <pubDate>Fri, 03 Apr 2026 10:01:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/opinions/uk-cyber-bill-what-ot-it-needs-now/</guid>
    </item>
    <item>
      <title>Most CNI Firms Face Up to £5m in Downtime from OT Attacks</title>
      <link>https://www.infosecurity-magazine.com/news/most-cni-firms-5m-downtime-ot/</link>
      <description>E2e-assure says 80% of critical infrastructure providers could face millions in downtime from cyber-attacks</description>
      <pubDate>Thu, 02 Apr 2026 08:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/most-cni-firms-5m-downtime-ot/</guid>
    </item>
    <item>
      <title>DeepLoad Malware Combines ClickFix With AI-Generated Code to Avoid Detection</title>
      <link>https://www.infosecurity-magazine.com/news/deepload-malware-clickfix-ai-code/</link>
      <description>Researchers at ReliaQuest warn of persistent malware campaign targeting enterprise credentials</description>
      <pubDate>Mon, 30 Mar 2026 12:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/deepload-malware-clickfix-ai-code/</guid>
    </item>
    <item>
      <title>Critical Citrix NetScaler Vulnerability Exploited in the Wild</title>
      <link>https://www.infosecurity-magazine.com/news/critical-citrix-netscaler/</link>
      <description>Researchers from watchTowr and Defused have found evidence that attackers are actively exploiting CVE-2026-3055, a critical NetScaler vulnerability</description>
      <pubDate>Mon, 30 Mar 2026 10:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/critical-citrix-netscaler/</guid>
    </item>
    <item>
      <title>Attackers Rapidly Weaponize Critical Oracle WebLogic RCE, Honeypot Study Finds</title>
      <link>https://www.infosecurity-magazine.com/news/critical-oracle-weblogic-rce/</link>
      <description>Attackers rapidly exploited a critical Oracle WebLogic RCE flaw the same day exploit code was released, according to a CloudSEK honeypot study</description>
      <pubDate>Thu, 26 Mar 2026 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/critical-oracle-weblogic-rce/</guid>
    </item>
    <item>
      <title>Hackers Exploit Compromised Enterprise Identities at Industrial Scale, Warns SentinelOne</title>
      <link>https://www.infosecurity-magazine.com/news/hackers-exploit-id-industrial-scale/</link>
      <description>Cybersecurity company’s annual report issues warning over a “mass-marketed impersonation crisis” over attackers abusing legitimate credentials </description>
      <pubDate>Wed, 25 Mar 2026 15:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/hackers-exploit-id-industrial-scale/</guid>
    </item>
    <item>
      <title>Strengthening Supply Chain Cyber Resilience: A Leadership Imperative</title>
      <link>https://www.infosecurity-magazine.com/opinions/supply-chain-cyber-leadership/</link>
      <description>In an increasingly interconnected business environment, third-party resilience is no longer optional.</description>
      <pubDate>Wed, 25 Mar 2026 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/opinions/supply-chain-cyber-leadership/</guid>
    </item>
    <item>
      <title>US: FCC Bans Foreign-Made Routers Over National Security Concerns</title>
      <link>https://www.infosecurity-magazine.com/news/us-fcc-bans-foreign-made-routers/</link>
      <description>The US Federal Communications Commission has placed all “consumer-grade” internet routers produced outside the US on its “covered list”</description>
      <pubDate>Wed, 25 Mar 2026 12:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/us-fcc-bans-foreign-made-routers/</guid>
    </item>
    <item>
      <title>Citrix Urges Immediate Patching for Critical NetScaler Vulnerabilities</title>
      <link>https://www.infosecurity-magazine.com/news/citrix-patch-netscaler/</link>
      <description>A critical vulnerability in Citrix’s NetScaler products allows unauthenticated remote attackers to leak information from the appliance's memory</description>
      <pubDate>Tue, 24 Mar 2026 15:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/citrix-patch-netscaler/</guid>
    </item>
    <item>
      <title>Enterprise Cybersecurity Software Fails 20% of the Time, Warns Absolute Security</title>
      <link>https://www.infosecurity-magazine.com/news/cybersecurity-software-failure-20/</link>
      <description>Poor patch management, increasingly complex IT environments and continued use of obsolete software puts organizations at risk from cyber threats, says the Absolute Security 2026 Resilience Risk Index</description>
      <pubDate>Tue, 24 Mar 2026 13:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cybersecurity-software-failure-20/</guid>
    </item>
    <item>
      <title>Most Cybersecurity Staff Don’t Know How Fast They Could Stop a Cyber-Attack on AI Systems</title>
      <link>https://www.infosecurity-magazine.com/news/cyber-staff-unsure-on-preventing/</link>
      <description>ISACA survey found that confusion over responsibility and lack of understanding around AI cyber-attacks makes containing them difficult</description>
      <pubDate>Mon, 23 Mar 2026 16:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cyber-staff-unsure-on-preventing/</guid>
    </item>
    <item>
      <title>CISA Orders US Government to Patch Maximum Severity Cisco Flaw</title>
      <link>https://www.infosecurity-magazine.com/news/cisa-orders-us-government-patch/</link>
      <description>CISA added CVE-2026-20131 to its KEV catalog as it is being used in ransomware campaigns</description>
      <pubDate>Mon, 23 Mar 2026 10:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cisa-orders-us-government-patch/</guid>
    </item>
    <item>
      <title>Strategic Leadership in Digital Transformation</title>
      <link>https://www.infosecurity-magazine.com/opinions/strategic-leadership-in-digital/</link>
      <description>Executives who treat transformation as a technology upgrade often see limited returns. Those who treat it as a strategic reinvention unlock new business models, security by design and adaptive operating models.</description>
      <pubDate>Fri, 20 Mar 2026 10:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/opinions/strategic-leadership-in-digital/</guid>
    </item>
    <item>
      <title>Ransomware Affiliate Exposes Details of 'The Gentlemen' Operation</title>
      <link>https://www.infosecurity-magazine.com/news/ransomware-affiliate-gentlemen/</link>
      <description>Hastalamuerte leaks The Gentlemen RaaS ops: FortiGate exploits, BYOVD evasion, Qilin split tactics</description>
      <pubDate>Thu, 19 Mar 2026 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ransomware-affiliate-gentlemen/</guid>
    </item>
    <item>
      <title>What CISOs Should Know (And Do) About OpenClaw</title>
      <link>https://www.infosecurity-magazine.com/news-features/what-cisos-should-know-and-do/</link>
      <description>Infosecurity spoke to several experts, including OpenClaw’s own security advisor, to explore what CISOs should do to contain the viral AI agent tool’s security vulnerabilities</description>
      <pubDate>Fri, 13 Mar 2026 14:05:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news-features/what-cisos-should-know-and-do/</guid>
    </item>
    <item>
      <title>Decentralized Cybersecurity: Why the EU Vulnerability Database Is a Blueprint For the Future</title>
      <link>https://www.infosecurity-magazine.com/opinions/eu-vulnerability-database/</link>
      <description>In a world where attackers innovate without central permission, defenders must learn to do the same</description>
      <pubDate>Fri, 13 Mar 2026 11:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/opinions/eu-vulnerability-database/</guid>
    </item>
    <item>
      <title>CISA Issues Emergency Directive Over Exploited Cisco SD-WAN Flaws</title>
      <link>https://www.infosecurity-magazine.com/news/cisa-cisco-sd-wan-flaws-directive/</link>
      <description>CISA issued urgent directive as attackers exploit Cisco SD-WAN flaw granting admin access to networks</description>
      <pubDate>Thu, 12 Mar 2026 12:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cisa-cisco-sd-wan-flaws-directive/</guid>
    </item>
    <item>
      <title>Compromised WordPress Sites Deliver ClickFix Attacks in Global Infostealer Campaign</title>
      <link>https://www.infosecurity-magazine.com/news/wordpress-clickfix-infostealer/</link>
      <description>Over 250 legitimate websites, including news outlets and  a US Senate candidate’s official webpage, been compromised to infect visitors with infostealers, warn Rapid7 researchers</description>
      <pubDate>Wed, 11 Mar 2026 14:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/wordpress-clickfix-infostealer/</guid>
    </item>
    <item>
      <title>Expanded Identity Attack Vectors: From Document Fraud to Signal Manipulation</title>
      <link>https://www.infosecurity-magazine.com/blogs/expanded-identity-attack-vectors/</link>
      <description>Modern identity fraud has shifted from forging documents to manipulating the digital signals automated systems rely on to determine trust</description>
      <pubDate>Wed, 11 Mar 2026 10:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/blogs/expanded-identity-attack-vectors/</guid>
    </item>
    <item>
      <title>AI Security Startups Dominate New Cyber Innovation Awards</title>
      <link>https://www.infosecurity-magazine.com/news/ai-security-startups-cyber/</link>
      <description>Over one in five winners of IT-Harvest’s 2026 Cyber 150 are AI security companies</description>
      <pubDate>Mon, 09 Mar 2026 13:25:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ai-security-startups-cyber/</guid>
    </item>
    <item>
      <title>Zero‑Day Attacks on Enterprise Software Reach Record High, Google Warns</title>
      <link>https://www.infosecurity-magazine.com/news/zero-day-enterprise-record-high/</link>
      <description>Almost a quarter of the zero days detected by Google in 2025 targeted security and networking appliances</description>
      <pubDate>Fri, 06 Mar 2026 12:29:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/zero-day-enterprise-record-high/</guid>
    </item>
    <item>
      <title>Cisco Issues Patches for 48 Vulnerabilities in Enterprise Networking Products</title>
      <link>https://www.infosecurity-magazine.com/news/cisco-issues-patches-48/</link>
      <description>Two of the 48 Cisco vulnerabilities, affecting Secure Firewall Management Center, are maximum-severity flaws</description>
      <pubDate>Thu, 05 Mar 2026 10:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cisco-issues-patches-48/</guid>
    </item>
    <item>
      <title>Coalition of Western Countries Launches 6G Cybersecurity Guidelines</title>
      <link>https://www.infosecurity-magazine.com/news/gcot-6g-cybersecurity-guidelines/</link>
      <description>A coalition of seven Western nations has launched guidelines to help integrate security-by-design principles into future 6G standards</description>
      <pubDate>Wed, 04 Mar 2026 16:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/gcot-6g-cybersecurity-guidelines/</guid>
    </item>
    <item>
      <title>Surge in Attacks on Surveillance Cameras Linked to Iranian Hackers</title>
      <link>https://www.infosecurity-magazine.com/news/iran-attacks-surveillance-cameras/</link>
      <description>Increased attempts to compromise surveillance cameras linked to Iran during Middle East conflict</description>
      <pubDate>Wed, 04 Mar 2026 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/iran-attacks-surveillance-cameras/</guid>
    </item>
    <item>
      <title>Expect Iran to Launch Cyber-Attacks Globally, Warns Google Head of Threat Intel</title>
      <link>https://www.infosecurity-magazine.com/news/iran-cyber-attacks-global-google/</link>
      <description>John Hultquist suggests “aggressive” Iranian cyber attackers will target the US and its Gulf allies with plausibly deniable ransomware attacks, hacktivist campaigns and more</description>
      <pubDate>Mon, 02 Mar 2026 15:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/iran-cyber-attacks-global-google/</guid>
    </item>
    <item>
      <title>‘Project Compass’ Cracks Down on ‘The Com’: 30 Members of Notorious Cybercrime Gang Arrested </title>
      <link>https://www.infosecurity-magazine.com/news/project-compass-com-arrests/</link>
      <description>International law enforcement operation led by Europol targets network of teenagers and young adults involved in ransomware attacks, extortion and other crimes</description>
      <pubDate>Fri, 27 Feb 2026 11:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/project-compass-com-arrests/</guid>
    </item>
    <item>
      <title>Google Disrupts ‘Prolific’ and ‘Elusive’ China-Linked Global Hacking Campaign</title>
      <link>https://www.infosecurity-magazine.com/news/google-prolific-china-hacking/</link>
      <description>UNC2814 hit 53 victims in 42 countries with novel backdoor in decade long cyber espionage operation</description>
      <pubDate>Thu, 26 Feb 2026 12:09:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/google-prolific-china-hacking/</guid>
    </item>
    <item>
      <title>AI Accelerates Attacker Breakout Time to Just Four Minutes</title>
      <link>https://www.infosecurity-magazine.com/news/ai-accelerates-attack-breakout/</link>
      <description>ReliaQuest claims AI has reduced breakout and exfiltration time to under 10 minutes</description>
      <pubDate>Tue, 24 Feb 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ai-accelerates-attack-breakout/</guid>
    </item>
    <item>
      <title>AI-powered Cyber-Attacks Up Significantly in the Last Year, Warns CrowdStrike</title>
      <link>https://www.infosecurity-magazine.com/news/ai-powered-cyberattacks-up/</link>
      <description>CrowdStrike Global Threat Report warns how adversaries are leveraging AI to make campaigns more efficient and more effective</description>
      <pubDate>Tue, 24 Feb 2026 10:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ai-powered-cyberattacks-up/</guid>
    </item>
    <item>
      <title>Why Your Organization Should Start Quantum Preparedness Today (Even If Quantum Computers Are Years Away)</title>
      <link>https://www.infosecurity-magazine.com/opinions/why-your-organization-should-start/</link>
      <description>Quantum preparedness manageable, using skills and resources security teams already have and embedding the activities in ongoing security remediation work</description>
      <pubDate>Wed, 18 Feb 2026 14:01:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/opinions/why-your-organization-should-start/</guid>
    </item>
    <item>
      <title>Future-Proofing Critical Infrastructure: National Gas CTO Darren Curley on IT/OT Security Integration</title>
      <link>https://www.infosecurity-magazine.com/interviews/national-gas-cto-darren-curley-it/</link>
      <description>In conversation with Infosecurity, National Gas CTO Darren Curley explains why more security solutions don’t always mean better protection</description>
      <pubDate>Wed, 18 Feb 2026 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/interviews/national-gas-cto-darren-curley-it/</guid>
    </item>
    <item>
      <title>Significant Rise in Ransomware Attacks Targeting Industrial Operations</title>
      <link>https://www.infosecurity-magazine.com/news/rise-in-ransomware-targeting/</link>
      <description>Dragos annual report warns of a surge in ransomware attacks causing increased operational disruption in industrial environments </description>
      <pubDate>Tue, 17 Feb 2026 12:50:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/rise-in-ransomware-targeting/</guid>
    </item>
    <item>
      <title>Why Ransomware Remains One of Cybersecurity’s Most Persistent and Costly Threats</title>
      <link>https://www.infosecurity-magazine.com/news-features/why-ransomware-remains/</link>
      <description>Ten years ago, ransom demands cost under $1000. Now ransomware attacks cost millions and are more disruptive than ever. Infosecurity explores how we got here and what needs to change</description>
      <pubDate>Tue, 17 Feb 2026 10:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news-features/why-ransomware-remains/</guid>
    </item>
    <item>
      <title>SMEs Wrong to Assume They Won’t Be Hit by Cyber-Attacks, NCSC Boss Warns 
</title>
      <link>https://www.infosecurity-magazine.com/news/sme-cyber-attack-threat-ncsc/</link>
      <description>NCSC’s Richard Horne has warned that cybercriminals do not care about business size and called for SMEs to act now to secure their organizations  </description>
      <pubDate>Mon, 16 Feb 2026 16:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/sme-cyber-attack-threat-ncsc/</guid>
    </item>
    <item>
      <title>World Leaks Ransomware Group Adds Stealthy, Custom Malware ‘RustyRocket’ to Attacks</title>
      <link>https://www.infosecurity-magazine.com/news/world-leaks-ransomware-rustyrocket/</link>
      <description>Accenture Cybersecurity warns over difficult to detect, “sophisticated toolset” being deployed as part of extortion campaigns</description>
      <pubDate>Thu, 12 Feb 2026 13:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/world-leaks-ransomware-rustyrocket/</guid>
    </item>
    <item>
      <title>NCSC Issues Warning Over “Severe” Cyber-Attacks Targeting Critical National Infrastructure </title>
      <link>https://www.infosecurity-magazine.com/news/ncsc-warning-severe-cyberattacks/</link>
      <description>NCSC call firms to ‘act now’ following disruptive malware attacks targeting Polish energy providers</description>
      <pubDate>Tue, 10 Feb 2026 11:50:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ncsc-warning-severe-cyberattacks/</guid>
    </item>
    <item>
      <title>US Agencies Told to Scrap End of Support Edge Devices</title>
      <link>https://www.infosecurity-magazine.com/news/us-agencies-scrap-end-of-support/</link>
      <description>CISA has issued a new directive requiring federal agencies to decommission all end of support edge devices within 12 months to reduce ongoing exploitation risks</description>
      <pubDate>Mon, 09 Feb 2026 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/us-agencies-scrap-end-of-support/</guid>
    </item>
    <item>
      <title>Global SystemBC Botnet Found Active Across 10,000 Infected Systems</title>
      <link>https://www.infosecurity-magazine.com/news/global-systembc-botnet-10000/</link>
      <description>SystemBC malware linked to 10,000 infected IPs, posing risks to sensitive government infrastructure</description>
      <pubDate>Wed, 04 Feb 2026 16:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/global-systembc-botnet-10000/</guid>
    </item>
    <item>
      <title>Sophos CISO on Software Flaws, Vendor Risk and Secure by Design (video)
</title>
      <link>https://www.infosecurity-magazine.com/interviews/sophos-ciso-software-flaws-vendor/</link>
      <description>In this Infosecurity interview, we speak with Sophos CISO Ross McKerchar about one of the biggest topics dominating cybersecurity headlines today, software vulnerabilities</description>
      <pubDate>Tue, 03 Feb 2026 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/interviews/sophos-ciso-software-flaws-vendor/</guid>
    </item>
    <item>
      <title>NSA Publishes New Zero Trust Implementation Guidelines</title>
      <link>https://www.infosecurity-magazine.com/news/nsa-zero-trust-implementation/</link>
      <description>NSA released new guidelines to help organizations achieve target-level Zero Trust maturity</description>
      <pubDate>Mon, 02 Feb 2026 16:05:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/nsa-zero-trust-implementation/</guid>
    </item>
    <item>
      <title>Cybersecurity M&amp;A Roundup: CrowdStrike and Palo Alto Networks Lead Investment in AI Security </title>
      <link>https://www.infosecurity-magazine.com/news-features/cybersecurity-ma-roundup-jan-26/</link>
      <description>2026 has started with a string of cybersecurity industry mergers &amp; acquisitions as vendors position themselves around agentic AI</description>
      <pubDate>Mon, 02 Feb 2026 12:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news-features/cybersecurity-ma-roundup-jan-26/</guid>
    </item>
    <item>
      <title>Google Disrupts Extensive Residential Proxy Networks</title>
      <link>https://www.infosecurity-magazine.com/news/google-disrupts-proxy-networks/</link>
      <description>Google has taken coordinated action against the massive IPIDEA residential proxy network, enhancing customer protections and disrupting cybercrime operations</description>
      <pubDate>Thu, 29 Jan 2026 17:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/google-disrupts-proxy-networks/</guid>
    </item>
    <item>
      <title>Operation Winter SHIELD: FBI Issues Call to Arms for Organizations to Improve Cybersecurity</title>
      <link>https://www.infosecurity-magazine.com/news/fbi-operation-winter-shield-cyber/</link>
      <description>The FBI outlines ten actions which organizations can take to defend networks against cybercriminal and nation-state threats</description>
      <pubDate>Thu, 29 Jan 2026 16:50:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/fbi-operation-winter-shield-cyber/</guid>
    </item>
    <item>
      <title>Data Privacy Day: Why AI’s Rise Makes Protecting Personal Data More Critical Than Ever</title>
      <link>https://www.infosecurity-magazine.com/news-features/data-privacy-day-ai-rise-protect/</link>
      <description>As AI tools like ChatGPT and Microsoft 365 Copilot surge in the workplace, Data Privacy Day 2026 highlights urgent data protection risks. Discover how employee AI use could leak sensitive information</description>
      <pubDate>Wed, 28 Jan 2026 08:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news-features/data-privacy-day-ai-rise-protect/</guid>
    </item>
    <item>
      <title>Pyodide Sandbox Escape Enables Remote Code Execution in Grist-Core</title>
      <link>https://www.infosecurity-magazine.com/news/pyodide-sandbox-escape-rce-grist/</link>
      <description>Critical sandbox escape vulnerability in Grist-Core enables remote code execution via a malicious formula</description>
      <pubDate>Tue, 27 Jan 2026 16:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/pyodide-sandbox-escape-rce-grist/</guid>
    </item>
    <item>
      <title>CISA Releases List of Post-Quantum Cryptography Product Categories</title>
      <link>https://www.infosecurity-magazine.com/news/cisa-post-quantum-cryptography/</link>
      <description>CISA released initial list of PQC-capable hardware and software to guide companies amid quantum threats</description>
      <pubDate>Mon, 26 Jan 2026 16:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cisa-post-quantum-cryptography/</guid>
    </item>
    <item>
      <title>NHS Issues Open Letter Demanding Improved Cybersecurity Standards from Suppliers</title>
      <link>https://www.infosecurity-magazine.com/news/nhs-open-letter-demands-improved/</link>
      <description>Open letter by NHS technology leaders outlines plans to identify risks to software supply chain security across health and social care system</description>
      <pubDate>Fri, 23 Jan 2026 14:38:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/nhs-open-letter-demands-improved/</guid>
    </item>
    <item>
      <title>TamperedChef Malvertising Campaign Drops Malware via Fake PDF Manuals</title>
      <link>https://www.infosecurity-magazine.com/news/tamperedchef-malvertising-fake-pdf/</link>
      <description>TamperedChef creates backdoors and steals user credentials – particularly in organizations reliant on technical equipment</description>
      <pubDate>Fri, 16 Jan 2026 12:05:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/tamperedchef-malvertising-fake-pdf/</guid>
    </item>
    <item>
      <title>RondoDox Botnet Targets HPE OneView Vulnerability in Exploitation Wave</title>
      <link>https://www.infosecurity-magazine.com/news/rondodox-botnet-targets-hpe/</link>
      <description>Check Point Research has reported a surge in attacks on a vulnerability in HPE OneView, driven by the Linux-based RondoDox botnet </description>
      <pubDate>Fri, 16 Jan 2026 09:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/rondodox-botnet-targets-hpe/</guid>
    </item>
    <item>
      <title>Global Agencies Release New Guidance to Secure Industrial Networks</title>
      <link>https://www.infosecurity-magazine.com/news/global-agencies-secure-industrial/</link>
      <description>CISA, NCSC and the FBI have released a new security guide to enhance protection for OT environments</description>
      <pubDate>Thu, 15 Jan 2026 16:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/global-agencies-secure-industrial/</guid>
    </item>
    <item>
      <title>Hackers Use Fake PayPal Notices to Steal Credentials, Deploy RMMs</title>
      <link>https://www.infosecurity-magazine.com/news/hackers-fake-paypal-notices-deploy/</link>
      <description>Phishing attacks have been identified using fake PayPal alerts to exploit remote monitoring and management tools</description>
      <pubDate>Wed, 14 Jan 2026 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/hackers-fake-paypal-notices-deploy/</guid>
    </item>
    <item>
      <title>Microsoft Fixes Three Zero-Days on Busy Patch Tuesday</title>
      <link>https://www.infosecurity-magazine.com/news/microsoft-three-zerodays-busy/</link>
      <description>Microsoft has patched three zero-day vulnerabilities in the first patch Tuesday of 2026, including one under active exploitation</description>
      <pubDate>Wed, 14 Jan 2026 10:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/microsoft-three-zerodays-busy/</guid>
    </item>
    <item>
      <title>CISA Closes Ten Emergency Directives After Federal Cyber Reviews</title>
      <link>https://www.infosecurity-magazine.com/news/cisa-closes-ten-emergency/</link>
      <description>US agency CISA has retired ten Emergency Directives issued between 2019 and 2024, marking a new step in managing federal cyber-risk</description>
      <pubDate>Mon, 12 Jan 2026 16:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cisa-closes-ten-emergency/</guid>
    </item>
    <item>
      <title>GoBruteforcer Botnet Targets Linux Servers</title>
      <link>https://www.infosecurity-magazine.com/news/gobruteforcer-botnet-linux-servers/</link>
      <description>The GoBruteforcer botnet has been observed targeting exposed Linux servers on services like FTP and MySQL</description>
      <pubDate>Thu, 08 Jan 2026 17:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/gobruteforcer-botnet-linux-servers/</guid>
    </item>
    <item>
      <title>Versatile Malware Loader pkr_mtsi Delivers Diverse Payloads</title>
      <link>https://www.infosecurity-magazine.com/news/malware-loader-pkrmtsi-payloads/</link>
      <description>Malicious Windows packer named pkr_mtsi used as a flexible malware loader in malvertising campaigns</description>
      <pubDate>Wed, 07 Jan 2026 16:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/malware-loader-pkrmtsi-payloads/</guid>
    </item>
    <item>
      <title>Inside the Chip: Rethinking Cybersecurity from the Ground Up</title>
      <link>https://www.infosecurity-magazine.com/blogs/inside-the-chip-cybersecurity/</link>
      <description>Traditional defenses are no longer enough. As cyber threats burrow deeper into firmware and hardware, true protection must start at the source. This article explores a shift toward Hardware Root of Trust — embedding proactive, autonomous security inside the chip to redefine digital trust and resilience at the foundation</description>
      <pubDate>Wed, 07 Jan 2026 09:40:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/blogs/inside-the-chip-cybersecurity/</guid>
    </item>
    <item>
      <title>The Evolving Cybersecurity Challenge for Critical Infrastructure</title>
      <link>https://www.infosecurity-magazine.com/news-features/cybersecurity-for-critical/</link>
      <description>Critical infrastructure faces growing cybersecurity risks as legacy systems converge with IT and cloud technologies. Explore the challenges, threats and strategies for securing CNI in a rapidly evolving digital landscape</description>
      <pubDate>Thu, 01 Jan 2026 11:11:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news-features/cybersecurity-for-critical/</guid>
    </item>
    <item>
      <title>La Poste Still Offline After Major DDoS Attack </title>
      <link>https://www.infosecurity-magazine.com/news/la-poste-still-offline-after-major/</link>
      <description>French postal service warns of “major network incident” just before Christmas</description>
      <pubDate>Wed, 24 Dec 2025 09:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/la-poste-still-offline-after-major/</guid>
    </item>
    <item>
      <title>Reworked MacSync Stealer Adopts Quieter Installation Process</title>
      <link>https://www.infosecurity-magazine.com/news/signed-variant-macsync-stealer/</link>
      <description>A newly discovered macOS malware mimics legitimate apps code-signed and notarized by Apple</description>
      <pubDate>Tue, 23 Dec 2025 16:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/signed-variant-macsync-stealer/</guid>
    </item>
    <item>
      <title>Monitoring Tool Nezha Abused For Stealthy Post-Exploitation Access</title>
      <link>https://www.infosecurity-magazine.com/news/nezha-abused-post-exploitation/</link>
      <description>Open-source server monitoring tool, Nezha, is being exploited by attackers for remote system control</description>
      <pubDate>Mon, 22 Dec 2025 14:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/nezha-abused-post-exploitation/</guid>
    </item>
    <item>
      <title>Chinese Ink Dragon Group Hides in European Government Networks </title>
      <link>https://www.infosecurity-magazine.com/news/chinese-ink-dragon-hides-european/</link>
      <description>China’s Ink Dragon is using European government networks to hide its espionage activity</description>
      <pubDate>Wed, 17 Dec 2025 09:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/chinese-ink-dragon-hides-european/</guid>
    </item>
    <item>
      <title>Amazon Warns Russian GRU Hackers Target Western Firms via Edge Devices</title>
      <link>https://www.infosecurity-magazine.com/news/amazon-russian-gru-hackers-target/</link>
      <description>Amazon researchers believe this campaign is part of a bigger operation spearheaded by Russia’s military intelligence service, the GRU</description>
      <pubDate>Tue, 16 Dec 2025 12:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/amazon-russian-gru-hackers-target/</guid>
    </item>
    <item>
      <title>Russian Phishing Campaign Delivers Phantom Stealer Via ISO Files</title>
      <link>https://www.infosecurity-magazine.com/news/russian-phishing-phantom-stealer/</link>
      <description>A new phishing campaign has been identified, delivering the Phantom information-stealing malware via an ISO attachment</description>
      <pubDate>Mon, 15 Dec 2025 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/russian-phishing-phantom-stealer/</guid>
    </item>
    <item>
      <title>Top 25 Most Dangerous Software Weaknesses of 2025 Revealed</title>
      <link>https://www.infosecurity-magazine.com/news/top-25-dangerous-software/</link>
      <description>MITRE has released its Top 25 CWE list for 2025, compiled from software and hardware flaws behind almost 40,000 CVEs</description>
      <pubDate>Mon, 15 Dec 2025 10:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/top-25-dangerous-software/</guid>
    </item>
    <item>
      <title>Pro-Russia Hackers Target US Critical Infrastructure in New Wave</title>
      <link>https://www.infosecurity-magazine.com/news/russia-hackers-target-us-critical/</link>
      <description>Pro-Russia hacktivist groups have been observed exploiting exposed virtual network computing connections to breach OT systems</description>
      <pubDate>Wed, 10 Dec 2025 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/russia-hackers-target-us-critical/</guid>
    </item>
    <item>
      <title>Microsoft Fixes Three Zero-Days in Final Patch Tuesday of 2025</title>
      <link>https://www.infosecurity-magazine.com/news/microsoft-three-zerodays-patch/</link>
      <description>December’s Patch Tuesday sees the release of patches for over 50 CVEs including three zero-days</description>
      <pubDate>Wed, 10 Dec 2025 09:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/microsoft-three-zerodays-patch/</guid>
    </item>
    <item>
      <title>Marquis Software Breach Affects Over 780,000 Nationwide</title>
      <link>https://www.infosecurity-magazine.com/news/marquis-software-breach/</link>
      <description>A data breach at Marquis Software Solutions due to a firewall flaw has affected over 780,000 people across the US</description>
      <pubDate>Mon, 08 Dec 2025 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/marquis-software-breach/</guid>
    </item>
    <item>
      <title>React.js Hit by Maximum-Severity 'React2Shell' Vulnerability
 </title>
      <link>https://www.infosecurity-magazine.com/news/reactjs-hit-by-react2shell/</link>
      <description>A critical RCE flaw in React.js, dubbed React2Shell (CVE-2025-55182), has been disclosed with a maximum CVSS score of 10.0, posing severe risks for server-side implementations</description>
      <pubDate>Fri, 05 Dec 2025 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/reactjs-hit-by-react2shell/</guid>
    </item>
    <item>
      <title>Louvre to Bolster Its Security, Issues €57m Public Tender</title>
      <link>https://www.infosecurity-magazine.com/news/louvre-bolster-security-57m-public/</link>
      <description>The French museum is planning to revamp its safety and security systems following a high-profile burglary in October</description>
      <pubDate>Fri, 05 Dec 2025 12:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/louvre-bolster-security-57m-public/</guid>
    </item>
    <item>
      <title>UK's Cyber Service for Telcos Blocks One Billion Malicious Site Attempts</title>
      <link>https://www.infosecurity-magazine.com/news/uk-cyber-service-blocks-billion/</link>
      <description>A new cyber defense service has prevented almost one billion early-stage cyber-attacks in the past year, British Security Minister claims</description>
      <pubDate>Wed, 03 Dec 2025 16:08:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/uk-cyber-service-blocks-billion/</guid>
    </item>
    <item>
      <title>Australian Man Gets Seven Years for Running “Evil Twin” Wi-Fi</title>
      <link>https://www.infosecurity-magazine.com/news/australian-man-seven-years-evil/</link>
      <description>A Western Australia man will spend seven years behind bars after stealing intimate data via Wi-Fi</description>
      <pubDate>Mon, 01 Dec 2025 10:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/australian-man-seven-years-evil/</guid>
    </item>
    <item>
      <title>FCC Warns of Hackers Hijacking Radio Equipment For False Alerts</title>
      <link>https://www.infosecurity-magazine.com/news/fcc-hackers-hijacking-radio/</link>
      <description>Hackers have been hijacking US radio equipment to broadcast false emergency alerts, prompting FCC warnings</description>
      <pubDate>Thu, 27 Nov 2025 16:50:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/fcc-hackers-hijacking-radio/</guid>
    </item>
    <item>
      <title>New FlexibleFerret Malware Chain Targets macOS With Go Backdoor</title>
      <link>https://www.infosecurity-magazine.com/news/flexibleferret-malware-macos-go/</link>
      <description>A new macOS malware chain using staged scripts and a Go-based backdoor has been attributed to FlexibleFerret, designed to steal credentials and maintain system access</description>
      <pubDate>Tue, 25 Nov 2025 13:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/flexibleferret-malware-macos-go/</guid>
    </item>
    <item>
      <title>China-Linked Operation “WrtHug” Hijacks Thousands of ASUS Routers</title>
      <link>https://www.infosecurity-magazine.com/news/chinal-operation-wrthug-thousands/</link>
      <description>SecurityScorecard has revealed a new Chinese campaign targeting thousands of ASUS routers globally</description>
      <pubDate>Wed, 19 Nov 2025 10:20:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/chinal-operation-wrthug-thousands/</guid>
    </item>
    <item>
      <title>Half of Ransomware Access Due to Hijacked VPN Credentials </title>
      <link>https://www.infosecurity-magazine.com/news/half-ransomware-access-hijacked/</link>
      <description>Beazley Security data finds the top cause of initial access for ransomware in Q3 was compromised VPN credentials</description>
      <pubDate>Wed, 19 Nov 2025 09:40:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/half-ransomware-access-hijacked/</guid>
    </item>
    <item>
      <title>Half a Million Stolen FTSE 100 Credentials Found on Criminal Sites</title>
      <link>https://www.infosecurity-magazine.com/news/half-million-stolen-ftse-100/</link>
      <description>Socura finds 460,000 compromised credentials belonging to FTSE 100 company employees</description>
      <pubDate>Tue, 18 Nov 2025 09:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/half-million-stolen-ftse-100/</guid>
    </item>
    <item>
      <title>Kraken Uses Benchmarking to Enhance Ransomware Attacks</title>
      <link>https://www.infosecurity-magazine.com/news/kraken-benchmarking-enhance/</link>
      <description>Cisco Talos has observed overlaps between Kraken and the earlier HelloKitty cartel through attack tactics using SMB flaws for big-game hunting and double extortion</description>
      <pubDate>Mon, 17 Nov 2025 16:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/kraken-benchmarking-enhance/</guid>
    </item>
    <item>
      <title>Cyber Readiness Stalls Despite Confidence in Incident Response</title>
      <link>https://www.infosecurity-magazine.com/news/cyber-readiness-stalls-incident/</link>
      <description>New Immersive report finds cyber resilience and decision making are flatlining </description>
      <pubDate>Mon, 17 Nov 2025 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cyber-readiness-stalls-incident/</guid>
    </item>
    <item>
      <title>Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday</title>
      <link>https://www.infosecurity-magazine.com/news/microsoft-windows-kernel-zero-day/</link>
      <description>Microsoft has patched a zero-day vulnerability in the Windows Kernel under active exploitation by threat actors</description>
      <pubDate>Wed, 12 Nov 2025 10:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/microsoft-windows-kernel-zero-day/</guid>
    </item>
    <item>
      <title>UK Government Finally Introduces Cyber Security and Resilience Bill</title>
      <link>https://www.infosecurity-magazine.com/news/government-cyber-security/</link>
      <description>The UK government is overhauling cybersecurity laws for the first time since 2018 with the Cyber Security and Resilience Bill</description>
      <pubDate>Wed, 12 Nov 2025 09:40:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/government-cyber-security/</guid>
    </item>
    <item>
      <title>Qilin Ransomware Activity Surges as Attacks Target Small Businesses</title>
      <link>https://www.infosecurity-magazine.com/news/qilin-ransomware-activity-surges/</link>
      <description>Qilin group ransomware incidents have surged in SMBs, exploiting security gaps and collaborating with Scattered Spider threat group</description>
      <pubDate>Tue, 11 Nov 2025 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/qilin-ransomware-activity-surges/</guid>
    </item>
    <item>
      <title>NCSC Set to Retire Web Check and Mail Check Tools</title>
      <link>https://www.infosecurity-magazine.com/news/ncsc-retire-web-check-mail-check/</link>
      <description>The UK’s National Cyber Security Centre has urged users of its Web Check and Mail Check services to find alternatives</description>
      <pubDate>Mon, 10 Nov 2025 09:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ncsc-retire-web-check-mail-check/</guid>
    </item>
    <item>
      <title>Bridging the Divide: Actionable Strategies to Secure Your SaaS Environments</title>
      <link>https://www.infosecurity-magazine.com/blogs/strategies-secure-saas-environments/</link>
      <description>Misalignment between InfoSec and SaaS teams creates an "InfoSec↔SaaS Divide," leading to delays and risk exposure. Bridging this operational gap is vital for securing SaaS data and unlocking the future benefits of agentic AI</description>
      <pubDate>Fri, 07 Nov 2025 08:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/blogs/strategies-secure-saas-environments/</guid>
    </item>
    <item>
      <title>Hacktivist-Driven DDoS Dominates Attacks on Public Sector</title>
      <link>https://www.infosecurity-magazine.com/news/hacktivistdriven-ddos-attacks/</link>
      <description>ENISA report reveals DDoS accounted for 60% of public sector security incidents last year</description>
      <pubDate>Thu, 06 Nov 2025 12:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/hacktivistdriven-ddos-attacks/</guid>
    </item>
    <item>
      <title>Identity Is Now the Top Source of Cloud Risk</title>
      <link>https://www.infosecurity-magazine.com/news/identity-is-now-the-top-cloud-risk/</link>
      <description>ReliaQuest data reveals identity issues were responsible for 44% of cloud security alerts in Q3</description>
      <pubDate>Tue, 04 Nov 2025 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/identity-is-now-the-top-cloud-risk/</guid>
    </item>
    <item>
      <title>CISA and NSA Outline Best Practices to Secure Exchange Servers</title>
      <link>https://www.infosecurity-magazine.com/news/cisa-nsa-secure-exchange-servers/</link>
      <description>CISA and NSA have released a blueprint to enhance Microsoft Exchange Server security against cyber-attacks</description>
      <pubDate>Mon, 03 Nov 2025 16:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cisa-nsa-secure-exchange-servers/</guid>
    </item>
    <item>
      <title>New GDI Flaws Could Enable Remote Code Execution in Windows</title>
      <link>https://www.infosecurity-magazine.com/news/gdi-flaws-enable-rce-windows/</link>
      <description>Flaws in Windows Graphics Device Interface (GDI) have been identified that allow remote code execution and information disclosure</description>
      <pubDate>Mon, 03 Nov 2025 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/gdi-flaws-enable-rce-windows/</guid>
    </item>
    <item>
      <title>PHP Servers and IoT Devices Face Growing Cyber-Attack Risks</title>
      <link>https://www.infosecurity-magazine.com/news/php-servers-and-iot-devices-cyber/</link>
      <description>A rise in attacks on PHP servers, IoT devices and cloud gateways is linked to botnets exploiting flaws, according to new research published by Qualys</description>
      <pubDate>Wed, 29 Oct 2025 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/php-servers-and-iot-devices-cyber/</guid>
    </item>
    <item>
      <title>Chrome Zero-Day Actively Exploited in Attacks by Mem3nt0 mori</title>
      <link>https://www.infosecurity-magazine.com/news/chrome-zero-day-flaw-exploited/</link>
      <description>A zero-day flaw in Chrome has been exploited by Mem3nt0 mori in Operation ForumTroll as part of a targeted espionage campaign</description>
      <pubDate>Tue, 28 Oct 2025 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/chrome-zero-day-flaw-exploited/</guid>
    </item>
    <item>
      <title>Actively Exploited WSUS Bug Added to CISA KEV List</title>
      <link>https://www.infosecurity-magazine.com/news/actively-exploited-wsus-bug-cisa/</link>
      <description>Sysadmins are urged to patch WSUS vulnerability CVE-2025-59287 as soon as possible, with federal agencies required to update by November 14</description>
      <pubDate>Tue, 28 Oct 2025 09:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/actively-exploited-wsus-bug-cisa/</guid>
    </item>
    <item>
      <title>Qilin Ransomware Group Publishes Over 40 Cases Monthly</title>
      <link>https://www.infosecurity-magazine.com/news/qilin-ransomware-40-cases-monthly/</link>
      <description>Qilin ransomware activity has surged in late 2025, threatening data leaks via double extortion tactics</description>
      <pubDate>Mon, 27 Oct 2025 16:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/qilin-ransomware-40-cases-monthly/</guid>
    </item>
    <item>
      <title>Chrome Enterprise: How to Protect the Enterprise Browser Frontier
</title>
      <link>https://www.infosecurity-magazine.com/interviews/chrome-enterprise-how-to-protect/</link>
      <description>Chrome Enterprise’s Dean Paterek tells Infosecurity about the cybersecurity challenges in the browser, and how Chrome Enterprise customers can ramp up their defenses</description>
      <pubDate>Fri, 24 Oct 2025 15:10:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/interviews/chrome-enterprise-how-to-protect/</guid>
    </item>
    <item>
      <title>Major Vulnerabilities Found in TP-Link VPN Routers</title>
      <link>https://www.infosecurity-magazine.com/news/vulnerabilities-tplink-vpn-routers/</link>
      <description>Forescout researchers discovered critical and high-severity vulnerabilities in several TP-Link VPN routers</description>
      <pubDate>Thu, 23 Oct 2025 12:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/vulnerabilities-tplink-vpn-routers/</guid>
    </item>
    <item>
      <title>Escaping the Detection Trap: Is EDR Giving You a False Sense of Security? </title>
      <link>https://www.infosecurity-magazine.com/opinions/is-edr-giving-you-a-false-sense-of/</link>
      <description>Traditional EDR tools are falling short as modern threats evolve. This article explores how fast-moving adversaries are exploiting defender tools, creating a false sense of security and overwhelming security teams</description>
      <pubDate>Wed, 22 Oct 2025 15:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/opinions/is-edr-giving-you-a-false-sense-of/</guid>
    </item>
    <item>
      <title>Ransomware Payouts Surge to $3.6m Amid Evolving Tactics</title>
      <link>https://www.infosecurity-magazine.com/news/ransomware-payouts-surge-dollar36m/</link>
      <description>According to ExtraHop’s latest threat landscape report, average ransomware payments surged 44% to $3.6m in 2025 despite fewer incidents</description>
      <pubDate>Tue, 21 Oct 2025 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ransomware-payouts-surge-dollar36m/</guid>
    </item>
    <item>
      <title>Critical WatchGuard Fireware OS Flaw Enables Remote Code Execution</title>
      <link>https://www.infosecurity-magazine.com/news/watchguard-fireware-os-flaw/</link>
      <description>A critical out-of-bounds write flaw (CVE-2025-9242) in WatchGuard Fireware OS could allow remote code execution</description>
      <pubDate>Tue, 21 Oct 2025 11:42:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/watchguard-fireware-os-flaw/</guid>
    </item>
    <item>
      <title>Salt Typhoon Uses Citrix Flaw in Global Cyber-Attack</title>
      <link>https://www.infosecurity-magazine.com/news/salt-typhoon-citrix-flaw-cyber/</link>
      <description>A cyber intrusion by China-linked group Salt Typhoon has been observed targeting global infrastructure via DLL sideloading</description>
      <pubDate>Mon, 20 Oct 2025 13:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/salt-typhoon-citrix-flaw-cyber/</guid>
    </item>
    <item>
      <title>The CISO's Crucible – Finding Strength in Control</title>
      <link>https://www.infosecurity-magazine.com/opinions/ciso-crucible-strength-control/</link>
      <description>Deloitte's Peter Gooch discusses how CISOs can overcome the immense strains and challenges of their roles</description>
      <pubDate>Fri, 17 Oct 2025 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/opinions/ciso-crucible-strength-control/</guid>
    </item>
    <item>
      <title>New Rootkit Campaign Exploits Cisco SNMP Flaw to Gain Persistence</title>
      <link>https://www.infosecurity-magazine.com/news/rootkit-campaign-exploits-cisco/</link>
      <description>Trend Micro have reported a campaign exploiting a flaw in Cisco SNMP to install Linux rootkits on devices</description>
      <pubDate>Thu, 16 Oct 2025 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/rootkit-campaign-exploits-cisco/</guid>
    </item>
    <item>
      <title>AI Attacks Surge as Microsoft Process 100 Trillion Signals Daily</title>
      <link>https://www.infosecurity-magazine.com/news/microsoft-process-100-trillion/</link>
      <description>Microsoft systems analyze over 100 trillion daily signals, suggesting dramatically increasing AI-driven cyber-threats</description>
      <pubDate>Thu, 16 Oct 2025 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/microsoft-process-100-trillion/</guid>
    </item>
    <item>
      <title>F5 Reveals Nation State Breach and Urges Immediate Patching  </title>
      <link>https://www.infosecurity-magazine.com/news/f5-nation-state-breach-immediate/</link>
      <description>F5 has admitted a nation state actor has stolen source code and information on undisclosed vulnerabilities </description>
      <pubDate>Thu, 16 Oct 2025 09:39:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/f5-nation-state-breach-immediate/</guid>
    </item>
    <item>
      <title>Last Windows 10 Patch Tuesday Features Six Zero-Days</title>
      <link>https://www.infosecurity-magazine.com/news/last-windows-10-patch-tuesday-six/</link>
      <description>Microsoft has fixed over 170 CVEs in October’s Patch Tuesday, including six zero-day vulnerabilities</description>
      <pubDate>Wed, 15 Oct 2025 10:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/last-windows-10-patch-tuesday-six/</guid>
    </item>
    <item>
      <title>Legacy Windows Protocols Still Expose Networks to Credential Theft</title>
      <link>https://www.infosecurity-magazine.com/news/legacy-windows-protocols-expose/</link>
      <description>Legacy Windows protocols are still exposing organizations to credential theft, Resecurity found</description>
      <pubDate>Tue, 14 Oct 2025 16:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/legacy-windows-protocols-expose/</guid>
    </item>
    <item>
      <title>Hackers Target ScreenConnect Features For Network Intrusions</title>
      <link>https://www.infosecurity-magazine.com/news/hackers-target-screenconnects/</link>
      <description>A rise in attacks exploiting RMM tools like ScreenConnect enables system control via phishing tactics</description>
      <pubDate>Mon, 13 Oct 2025 16:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/hackers-target-screenconnects/</guid>
    </item>
    <item>
      <title>Apple Bug Bounty Payouts Can Now Top $5m</title>
      <link>https://www.infosecurity-magazine.com/news/apple-bug-bounty-payouts-can-now/</link>
      <description>Apple has doubled its top bug bounty reward to $2m but with bonuses it could reach $5m</description>
      <pubDate>Mon, 13 Oct 2025 10:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/apple-bug-bounty-payouts-can-now/</guid>
    </item>
    <item>
      <title>Pro-Russia Hacktivists “Claim” Attack on Water Utility Honeypot</title>
      <link>https://www.infosecurity-magazine.com/news/russia-hacktivistsattack-water/</link>
      <description>Forescout said that the TwoNet actor was lured into attacking a honeypot disguised as a water treatment utility, providing insights into the group’s tactics </description>
      <pubDate>Fri, 10 Oct 2025 09:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/russia-hacktivistsattack-water/</guid>
    </item>
    <item>
      <title>All SonicWall Cloud Backup Users Have Firewall Configuration Files Stolen</title>
      <link>https://www.infosecurity-magazine.com/news/sonicwall-cloud-firewall/</link>
      <description>SonicWall said that a threat actor has accessed files containing encrypted credentials and configuration data for all customers who have used its cloud backup service</description>
      <pubDate>Thu, 09 Oct 2025 12:10:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/sonicwall-cloud-firewall/</guid>
    </item>
    <item>
      <title>NCSC: Observability and Threat Hunting Must Improve</title>
      <link>https://www.infosecurity-magazine.com/news/ncsc-observability-threat-hunting/</link>
      <description>The UK’s National Cyber Security Centre has released new guidance to help firms improve observability and threat hunting</description>
      <pubDate>Thu, 09 Oct 2025 09:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ncsc-observability-threat-hunting/</guid>
    </item>
    <item>
      <title>Critical Flaw Exposes 60,000 Redis Servers to Remote Exploitation</title>
      <link>https://www.infosecurity-magazine.com/news/redis-servers-remote-exploitation/</link>
      <description>A critical Redis flaw, dubbed “RediShell,” has exposed 60,000 unprotected servers to exploitation</description>
      <pubDate>Tue, 07 Oct 2025 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/redis-servers-remote-exploitation/</guid>
    </item>
    <item>
      <title>ING's CISO on How Emerging Tech and Regulations are Reshaping Cybersecurity in Finance </title>
      <link>https://www.infosecurity-magazine.com/interviews/ing-ciso-tech-regulations/</link>
      <description>ING CISO, Debbie Janecek, spoke to Infosecurity about how new regulations and technologies are impacting security strategies in the finance sector</description>
      <pubDate>Mon, 06 Oct 2025 12:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/interviews/ing-ciso-tech-regulations/</guid>
    </item>
    <item>
      <title>Scanning of Palo Alto Portals Surges 500%</title>
      <link>https://www.infosecurity-magazine.com/news/scanning-of-palo-alto-portals/</link>
      <description>Experts warn that threat actors may be gearing up for compromise after large uptick in scans of Palo Alto Network portals</description>
      <pubDate>Mon, 06 Oct 2025 11:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/scanning-of-palo-alto-portals/</guid>
    </item>
    <item>
      <title>Free VPN Apps Found Riddled With Security Flaws</title>
      <link>https://www.infosecurity-magazine.com/news/free-vpn-apps-security-flaws/</link>
      <description>A new study by Zimperium has revealed serious risks in free VPN apps, exposing users to privacy threats and security flaws</description>
      <pubDate>Thu, 02 Oct 2025 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/free-vpn-apps-security-flaws/</guid>
    </item>
    <item>
      <title>Phishing Dominates EU-Wide Intrusions, says ENISA</title>
      <link>https://www.infosecurity-magazine.com/news/phishing-dominates-euwide/</link>
      <description>ENISA reveals phishing and vulnerability exploitation accounted for majority of intrusions in past year</description>
      <pubDate>Thu, 02 Oct 2025 09:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/phishing-dominates-euwide/</guid>
    </item>
    <item>
      <title>Smishing Campaigns Exploit Cellular Routers to Target Belgium</title>
      <link>https://www.infosecurity-magazine.com/news/smishing-exploit-cellular-routers/</link>
      <description>New smishing attacks exploit Milesight routers to send phishing texts targeting Belgian users</description>
      <pubDate>Tue, 30 Sep 2025 16:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/smishing-exploit-cellular-routers/</guid>
    </item>
    <item>
      <title>Asahi Suspends Operations in Japan After Cyber-Attack</title>
      <link>https://www.infosecurity-magazine.com/news/asahi-operations-japan-attack/</link>
      <description>Japanese brewery giant Asahi revealed that a cyber-attack had caused a “system failure”, with order and shipment operations suspended in Japan</description>
      <pubDate>Tue, 30 Sep 2025 11:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/asahi-operations-japan-attack/</guid>
    </item>
    <item>
      <title>Dutch Authorities Arrest Teens in Foreign Interference Case</title>
      <link>https://www.infosecurity-magazine.com/news/dutch-teens-arrested/</link>
      <description>While the exact suspicion was yet to be revealed it is linked to "foreign interference" </description>
      <pubDate>Mon, 29 Sep 2025 17:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/dutch-teens-arrested/</guid>
    </item>
    <item>
      <title>Cell Tower Hacking Gear Seized Ahead of UN General Assembly</title>
      <link>https://www.infosecurity-magazine.com/news/cell-tower-hacking-gear-seized-nyc/</link>
      <description>The equipment could be used to disable cell phone towers and conduct denial-of-services attacks across New York City</description>
      <pubDate>Wed, 24 Sep 2025 11:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cell-tower-hacking-gear-seized-nyc/</guid>
    </item>
    <item>
      <title>Major Cyber Threat Detection Vendors Pull Out of MITRE Evaluations Test</title>
      <link>https://www.infosecurity-magazine.com/news/cyber-vendors-pull-out-mitre/</link>
      <description>MITRE said it understands why Microsoft, SentinelOne and Palo Alto pulled out of its 2025 of ATT&amp;CK Evaluations test – and promises to do better next year</description>
      <pubDate>Mon, 22 Sep 2025 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cyber-vendors-pull-out-mitre/</guid>
    </item>
    <item>
      <title>Why Shadow AI Is the Next Big Governance Challenge for CISOs</title>
      <link>https://www.infosecurity-magazine.com/news-features/shadow-ai-governance-cisos/</link>
      <description>Shadow AI is on the rise and security leaders must develop strategies to mitigate this risk while ensuring employees can enjoy the innovative benefits these tools have to offer</description>
      <pubDate>Thu, 18 Sep 2025 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news-features/shadow-ai-governance-cisos/</guid>
    </item>
    <item>
      <title>FinWise Bank Warns of Insider Data Breach</title>
      <link>https://www.infosecurity-magazine.com/news/finwise-bank-warns-of-insider-data/</link>
      <description>An insider data breach at FinWise may have impacted 689,000 customers</description>
      <pubDate>Tue, 16 Sep 2025 09:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/finwise-bank-warns-of-insider-data/</guid>
    </item>
    <item>
      <title>Fileless Malware Deploys Advanced RAT via Legitimate Tools</title>
      <link>https://www.infosecurity-magazine.com/news/fileless-malware-deploys-advanced/</link>
      <description>A sophisticated fileless malware campaign has been observed using legitimate tools to deliver AsyncRAT executed in memory</description>
      <pubDate>Thu, 11 Sep 2025 16:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/fileless-malware-deploys-advanced/</guid>
    </item>
    <item>
      <title>Wyden Urges FTC Investigation Over Ascension Ransomware Hack</title>
      <link>https://www.infosecurity-magazine.com/news/wyden-urges-ascension-hack-ftc/</link>
      <description>Senator Ron Wyden of Oregon has urged the FTC to investigate Microsoft for cybersecurity lapses linked to ransomware attacks on US critical infrastructure</description>
      <pubDate>Thu, 11 Sep 2025 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/wyden-urges-ascension-hack-ftc/</guid>
    </item>
    <item>
      <title>Two Zero-Days Among Patch Tuesday CVEs This Month</title>
      <link>https://www.infosecurity-magazine.com/news/two-zero-days-patch-tuesday-cves/</link>
      <description>Microsoft has fixed over 80 vulnerabilities including two publicly disclosed zero-days in its latest Patch Tuesday release</description>
      <pubDate>Wed, 10 Sep 2025 10:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/two-zero-days-patch-tuesday-cves/</guid>
    </item>
    <item>
      <title>Salty2FA Phishing Kit Unveils New Level of Sophistication</title>
      <link>https://www.infosecurity-magazine.com/news/salty2fa-phishing-kit/</link>
      <description>Salty2FA phishing campaign showcases advanced techniques and professionalism of cybercrime operations</description>
      <pubDate>Tue, 09 Sep 2025 14:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/salty2fa-phishing-kit/</guid>
    </item>
    <item>
      <title>Open Source Community Thwarts Massive npm Supply Chain Attack</title>
      <link>https://www.infosecurity-magazine.com/news/npm-supply-chain-attack-averted/</link>
      <description>What could have been a historic supply chain attack seems to have been averted due to the rapid response of the open source community</description>
      <pubDate>Tue, 09 Sep 2025 13:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/npm-supply-chain-attack-averted/</guid>
    </item>
    <item>
      <title>Cloudflare and Palo Alto Networks Victimized in Salesloft Drift Breach</title>
      <link>https://www.infosecurity-magazine.com/news/cloudflare-victimized-in-salesloft/</link>
      <description>Cloudflare has notified customers that hackers may have accessed their data as part of the Salesloft Drift campaign</description>
      <pubDate>Wed, 03 Sep 2025 11:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cloudflare-victimized-in-salesloft/</guid>
    </item>
    <item>
      <title>Azure AD Credentials Exposed in Public App Settings File</title>
      <link>https://www.infosecurity-magazine.com/news/azure-ad-credentials-exposed/</link>
      <description>Experts have revealed an Azure AD vulnerability exposing ClientId and ClientSecret in a publicly accessible appsettings.json file</description>
      <pubDate>Tue, 02 Sep 2025 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/azure-ad-credentials-exposed/</guid>
    </item>
    <item>
      <title>Salesloft Attacks Target Google Workspace</title>
      <link>https://www.infosecurity-magazine.com/news/salesloft-attacks-target-google/</link>
      <description>Adversaries targeting the Salesloft Drift application integration with Salesforce have also compromised Google Workspace accounts</description>
      <pubDate>Mon, 01 Sep 2025 10:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/salesloft-attacks-target-google/</guid>
    </item>
    <item>
      <title>WhatsApp Patches Zero-Day, Zero-Click Flaw</title>
      <link>https://www.infosecurity-magazine.com/news/whatsapp-patches-zeroday-zeroclick/</link>
      <description>WhatsApp has fixed a zero-day vulnerability linked to a sophisticated cyber-attack</description>
      <pubDate>Mon, 01 Sep 2025 09:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/whatsapp-patches-zeroday-zeroclick/</guid>
    </item>
    <item>
      <title>State-Sponsored Hackers Behind Majority of Vulnerability Exploits</title>
      <link>https://www.infosecurity-magazine.com/news/state-hackers-majority/</link>
      <description>Recorded Future highlighted the vast capabilities of state actors to rapidly weaponize newly disclosed vulnerabilities for geopolitical purposes</description>
      <pubDate>Fri, 29 Aug 2025 11:35:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/state-hackers-majority/</guid>
    </item>
    <item>
      <title>Fake IT Support Attacks Hit Microsoft Teams</title>
      <link>https://www.infosecurity-magazine.com/news/fake-support-attacks-hit-microsoft/</link>
      <description>Fake IT support lures are being used to trick employees into installing remote‑access tools via Microsoft Teams</description>
      <pubDate>Thu, 28 Aug 2025 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/fake-support-attacks-hit-microsoft/</guid>
    </item>
    <item>
      <title>Netherlands Confirms China's Salt Typhoon Targeted Small Dutch Telcos</title>
      <link>https://www.infosecurity-magazine.com/news/china-salt-typhoon-dutch-telcos/</link>
      <description>Salt Typhoon’s primary Dutch targets were small internet service providers and hosting providers</description>
      <pubDate>Thu, 28 Aug 2025 14:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/china-salt-typhoon-dutch-telcos/</guid>
    </item>
    <item>
      <title>Ransomware Actor Deletes Data and Backups Post-Exfiltration on Azure</title>
      <link>https://www.infosecurity-magazine.com/news/ransomware-deletes-data-backups/</link>
      <description>Microsoft observed Storm-0501 pivot to the victim’s cloud environment to exfiltrate data rapidly and prevent the victim’s recovery</description>
      <pubDate>Thu, 28 Aug 2025 09:05:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ransomware-deletes-data-backups/</guid>
    </item>
    <item>
      <title>Nevada “Network Security Incident” Shuts Down State Offices and Services</title>
      <link>https://www.infosecurity-magazine.com/news/nevada-security-incident-shuts-down/</link>
      <description>The Office of the Governor of Nevada revealed that the incident has shut down in-person State services, while government phone lines and websites are offline </description>
      <pubDate>Wed, 27 Aug 2025 16:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/nevada-security-incident-shuts-down/</guid>
    </item>
    <item>
      <title>Why Addressing Legacy IT is an Urgent Strategic Priority for CISOs</title>
      <link>https://www.infosecurity-magazine.com/news-features/legacy-it-strategic-priority-cisos/</link>
      <description>Warnings about Windows 10's end-of-life date in October highlight the significant cyber risks posed by growing reliance on legacy IT</description>
      <pubDate>Wed, 27 Aug 2025 11:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news-features/legacy-it-strategic-priority-cisos/</guid>
    </item>
    <item>
      <title>Russian Espionage Group Static Tundra Targets Legacy Cisco Flaw </title>
      <link>https://www.infosecurity-magazine.com/news/russian-espionage-group-targets/</link>
      <description>Russian state-backed hackers are exploiting a seven-year-old Cisco Smart Install vulnerability (CVE-2018-0171) in end-of-life devices, prompting warnings from the FBI and Cisco Talos</description>
      <pubDate>Thu, 21 Aug 2025 15:20:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/russian-espionage-group-targets/</guid>
    </item>
    <item>
      <title>NIST Unveils Guidelines to Help Spot Face Morphing Attempts</title>
      <link>https://www.infosecurity-magazine.com/news/nist-unveils-guidelines-spot-face/</link>
      <description>NIST has released new guidelines examining the pros and cons of detection methods for face morphing software</description>
      <pubDate>Thu, 21 Aug 2025 09:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/nist-unveils-guidelines-spot-face/</guid>
    </item>
    <item>
      <title>Warlock Ransomware Hitting Victims Globally Through SharePoint ToolShell Exploit</title>
      <link>https://www.infosecurity-magazine.com/news/warlock-ransomware-sharepoint/</link>
      <description>Trend Micro highlighted a sophisticated post-compromise attack chain to deploy the Warlock ransomware in unpatched SharePoint on-prem environments</description>
      <pubDate>Wed, 20 Aug 2025 12:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/warlock-ransomware-sharepoint/</guid>
    </item>
    <item>
      <title>Microsoft Issues Out-of-Band Update to Fix Recovery Issues</title>
      <link>https://www.infosecurity-magazine.com/news/microsoft-outofband-update/</link>
      <description>Microsoft has issued an emergency patch to fix Windows recovery problems for some users</description>
      <pubDate>Wed, 20 Aug 2025 10:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/microsoft-outofband-update/</guid>
    </item>
    <item>
      <title>Public Exploit Released for Critical SAP NetWeaver Flaw</title>
      <link>https://www.infosecurity-magazine.com/news/sap-netweaver-flaw-exploit-released/</link>
      <description>A critical flaw in SAP NetWeaver AS Java is being widely exploited, allowing unauthenticated remote code execution</description>
      <pubDate>Tue, 19 Aug 2025 16:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/sap-netweaver-flaw-exploit-released/</guid>
    </item>
    <item>
      <title>Canadian Financial Regulator Hacked, Exposing Personal Data from Member Organizations</title>
      <link>https://www.infosecurity-magazine.com/news/canadian-financial-regulator-hacked/</link>
      <description>The Canadian Investment Regulatory Organization (CIRO) said it will work to identify the personal information breached and notify those affected</description>
      <pubDate>Tue, 19 Aug 2025 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/canadian-financial-regulator-hacked/</guid>
    </item>
    <item>
      <title>Attacker “Patches” Vulnerability Post Exploitation to Lock Out Competition </title>
      <link>https://www.infosecurity-magazine.com/news/attacker-patches-vulnerability/</link>
      <description>Red Canary observed the novel tactic in a cluster of activity targeting a legacy vulnerability to access cloud-based Linux systems</description>
      <pubDate>Tue, 19 Aug 2025 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/attacker-patches-vulnerability/</guid>
    </item>
    <item>
      <title>USB Malware Campaign Spreads Cryptominer Worldwide</title>
      <link>https://www.infosecurity-magazine.com/news/usb-malware-spreads-cryptominer/</link>
      <description>A multi-stage attack delivered via USB devices has been observed installing cryptomining malware using DLL hijacking and PowerShell</description>
      <pubDate>Mon, 18 Aug 2025 15:40:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/usb-malware-spreads-cryptominer/</guid>
    </item>
    <item>
      <title>Chinese APT Group Targets Web Hosting Services in Taiwan</title>
      <link>https://www.infosecurity-magazine.com/news/chinese-apt-web-hosting-taiwan/</link>
      <description>Cisco Talos observed the newly identified group compromise a Taiwanese web hosting provider to conduct a range of malicious activities</description>
      <pubDate>Mon, 18 Aug 2025 13:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/chinese-apt-web-hosting-taiwan/</guid>
    </item>
    <item>
      <title>Cisco Discloses Critical RCE Flaw in Firewall Management Software</title>
      <link>https://www.infosecurity-magazine.com/news/cisco-critical-rce-flaw-firewall/</link>
      <description>Cisco has issued a software update to address the vulnerability, which can allow an unauthenticated, remote attacker to inject arbitrary shell commands</description>
      <pubDate>Fri, 15 Aug 2025 11:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cisco-critical-rce-flaw-firewall/</guid>
    </item>
    <item>
      <title>Fortinet Warns Exploit Code Available for Critical Vulnerability</title>
      <link>https://www.infosecurity-magazine.com/news/fortinet-exploit-code-available/</link>
      <description>Fortinet reveals details of a new critical-rated vulnerability in FortiSIEM circulating in the wild</description>
      <pubDate>Thu, 14 Aug 2025 10:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/fortinet-exploit-code-available/</guid>
    </item>
    <item>
      <title>St. Paul’s Mayor Confirms Interlock Data Leak </title>
      <link>https://www.infosecurity-magazine.com/news/st-paul-mayor-interlock-data-leak/</link>
      <description>Mayor of St. Paul, Minnesota, Melvin Carter, confirmed that employee data was published online by the Interlock ransomware gang</description>
      <pubDate>Wed, 13 Aug 2025 12:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/st-paul-mayor-interlock-data-leak/</guid>
    </item>
    <item>
      <title>Microsoft Fixes Over 100 CVEs on August Patch Tuesday</title>
      <link>https://www.infosecurity-magazine.com/news/microsoft-fixes-100-cves-august/</link>
      <description>Microsoft announced updates for 107 vulnerabilities on Patch Tuesday, including one zero-day</description>
      <pubDate>Wed, 13 Aug 2025 09:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/microsoft-fixes-100-cves-august/</guid>
    </item>
    <item>
      <title>29,000 Servers Remain Unpatched Against Microsoft Exchange Flaw</title>
      <link>https://www.infosecurity-magazine.com/news/servers-unpatched-microsoft/</link>
      <description>Over 29,000 Microsoft Exchange servers remain unpatched against a vulnerability that could allow attackers to seize control of entire domains in hybrid cloud environments</description>
      <pubDate>Tue, 12 Aug 2025 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/servers-unpatched-microsoft/</guid>
    </item>
    <item>
      <title>Cybercriminals Exploit Low-Cost Initial Access Broker Market </title>
      <link>https://www.infosecurity-magazine.com/news/cybercriminals-low-cost-initial/</link>
      <description>Rapid7 found that threat actors are able to purchase low-cost initial access broker services, with many packages offering a variety of options</description>
      <pubDate>Tue, 12 Aug 2025 14:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cybercriminals-low-cost-initial/</guid>
    </item>
    <item>
      <title>The Corporate Deepfake Invasion: Safeguarding Enterprises in the AI Era</title>
      <link>https://www.infosecurity-magazine.com/opinions/corporate-deepfake-safeguarding-ai/</link>
      <description>Daryl Huff says businesses must fight fire with fire when it comes to defending against the rising corporate deepfake threat</description>
      <pubDate>Fri, 08 Aug 2025 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/opinions/corporate-deepfake-safeguarding-ai/</guid>
    </item>
    <item>
      <title>New Microsoft Exchange Vulnerability Puts Hybrid Cloud Environments at Risk</title>
      <link>https://www.infosecurity-magazine.com/news/microsoft-exchange-vulnerability/</link>
      <description>Microsoft Exchange customers have been urged to apply fixes set out in a hybrid deployment security update published in April</description>
      <pubDate>Thu, 07 Aug 2025 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/microsoft-exchange-vulnerability/</guid>
    </item>
    <item>
      <title>SonicWall: Attacks Linked to Legacy Bug and Password Use</title>
      <link>https://www.infosecurity-magazine.com/news/sonicwall-attacks-legacy-bug/</link>
      <description>SonicWall has claimed an uptick in Akira ransomware intrusions is due to legacy password use</description>
      <pubDate>Thu, 07 Aug 2025 09:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/sonicwall-attacks-legacy-bug/</guid>
    </item>
    <item>
      <title>Attackers Are Targeting Critical Apex One Vulnerabilities, Trend Micro Warns</title>
      <link>https://www.infosecurity-magazine.com/news/attackers-critical-apex-one/</link>
      <description>Trend Micro has released a temporary fix for the flaws, which enable remote code execution on on-prem Apex One machines </description>
      <pubDate>Wed, 06 Aug 2025 14:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/attackers-critical-apex-one/</guid>
    </item>
    <item>
      <title>NCSC Updates Cyber Assessment Framework to Build UK CNI Resilience</title>
      <link>https://www.infosecurity-magazine.com/news/ncsc-updates-cyber-assessment/</link>
      <description>The UK’s National Cyber Security Centre has released the Cyber Assessment Framework 4.0</description>
      <pubDate>Wed, 06 Aug 2025 10:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ncsc-updates-cyber-assessment/</guid>
    </item>
    <item>
      <title>Pro-Iran Hackers Aligned Cyber with Kinetic War Aims</title>
      <link>https://www.infosecurity-magazine.com/news/proiran-hackers-aligned-cyber/</link>
      <description>SecurityScorecard analysis highlights wide variety of Iranian threat actors and coordination with military activity</description>
      <pubDate>Tue, 05 Aug 2025 11:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/proiran-hackers-aligned-cyber/</guid>
    </item>
    <item>
      <title>#BHUSA: Microsoft and Google Among Most Affected as Zero Day Exploits Jump 46% </title>
      <link>https://www.infosecurity-magazine.com/news/microsoft-google-zero-day-exploits/</link>
      <description>Forescout also observed a big rise in CVEs added to CISA’s KEV catalog, some of which impacted end-of-life products</description>
      <pubDate>Mon, 04 Aug 2025 15:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/microsoft-google-zero-day-exploits/</guid>
    </item>
    <item>
      <title>Uptick in Akira Ransomware Actors Targeting SonicWall VPNs</title>
      <link>https://www.infosecurity-magazine.com/news/uptick-akira-ransomware-actors/</link>
      <description>Arctic Wolf has spotted an increase in Akira ransomware attacks targeting SonicWall SSL VPNs</description>
      <pubDate>Mon, 04 Aug 2025 10:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/uptick-akira-ransomware-actors/</guid>
    </item>
    <item>
      <title>Secret Blizzard Targets Moscow-Based Embassies in New Espionage Campaign</title>
      <link>https://www.infosecurity-magazine.com/news/secret-blizzard-moscow-embassies/</link>
      <description>Microsoft has observed Russian state actor Secret Blizzard using an AiTM position to gain initial access, assisted by official domestic intercept systems</description>
      <pubDate>Fri, 01 Aug 2025 12:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/secret-blizzard-moscow-embassies/</guid>
    </item>
    <item>
      <title>Hackers Regularly Exploit Vulnerabilities Before Public Disclosure, Study Finds</title>
      <link>https://www.infosecurity-magazine.com/news/hackers-exploit-vulnerabilities/</link>
      <description>Spikes in attacker activity precede the disclosure of vulnerabilities 80% of the time, according to a new GreyNoise report</description>
      <pubDate>Fri, 01 Aug 2025 11:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/hackers-exploit-vulnerabilities/</guid>
    </item>
    <item>
      <title>Staggering 800% Rise in Infostealer Credential Theft</title>
      <link>https://www.infosecurity-magazine.com/news/staggering-800-rise-infostealer/</link>
      <description>Flashpoint data reveals an 800% increase in credentials stolen via infostealers in just six months</description>
      <pubDate>Fri, 01 Aug 2025 10:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/staggering-800-rise-infostealer/</guid>
    </item>
    <item>
      <title>Hafnium Tied to Advanced Chinese Surveillance Tools</title>
      <link>https://www.infosecurity-magazine.com/news/hafnium-chinese-surveillance-tools/</link>
      <description>A SentinelLabs report has revealed patents linked to firms aiding China's cyber-espionage operations, exposing new capabilities</description>
      <pubDate>Wed, 30 Jul 2025 16:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/hafnium-chinese-surveillance-tools/</guid>
    </item>
    <item>
      <title>Hidden Backdoor Found in ATM Network via Raspberry Pi</title>
      <link>https://www.infosecurity-magazine.com/news/backdoor-atm-network-raspberry-pi/</link>
      <description>A covert ATM attack used a Raspberry Pi to breach bank systems, employing stealthy malware and anti-forensics techniques</description>
      <pubDate>Wed, 30 Jul 2025 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/backdoor-atm-network-raspberry-pi/</guid>
    </item>
    <item>
      <title>OWASP Launches Agentic AI Security Guidance</title>
      <link>https://www.infosecurity-magazine.com/news/owasp-agentic-ai-security-guidance/</link>
      <description>The comprehensive guidance focuses on technical recommendations for securing agentic AI applications, from development to deployment</description>
      <pubDate>Wed, 30 Jul 2025 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/owasp-agentic-ai-security-guidance/</guid>
    </item>
    <item>
      <title>Prolonged Chinese Cyber Espionage Campaign Targets VMware Appliances</title>
      <link>https://www.infosecurity-magazine.com/news/chinese-espionage-targets-vmware/</link>
      <description>Sygnia observed Chinese cyber campaign dubbed Fire Ant deploying sophisticated techniques to gain full compromise of victim environments, discovering isolated assets</description>
      <pubDate>Fri, 25 Jul 2025 12:20:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/chinese-espionage-targets-vmware/</guid>
    </item>
    <item>
      <title>Ransomware Deployed in Compromised SharePoint Servers</title>
      <link>https://www.infosecurity-magazine.com/news/ransomware-compromised-sharepoint/</link>
      <description>Microsoft said Chinese actor Storm-2603 is deploying Warlock ransomware following the exploitation of vulnerabilities in on-prem SharePoint systems</description>
      <pubDate>Thu, 24 Jul 2025 14:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ransomware-compromised-sharepoint/</guid>
    </item>
    <item>
      <title>New York Proposes Cybersecurity Regulations for Water Systems</title>
      <link>https://www.infosecurity-magazine.com/news/new-york-cybersecurity-regulations/</link>
      <description>A series of new cybersecurity regulations related to the water industry have been set out by New York state agencies</description>
      <pubDate>Wed, 23 Jul 2025 15:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/new-york-cybersecurity-regulations/</guid>
    </item>
    <item>
      <title>US Government Warns of Wide-Ranging Interlock Attacks</title>
      <link>https://www.infosecurity-magazine.com/news/us-government-interlockattacks/</link>
      <description>A joint US government advisory highlighted novel initial access techniques deployed by Interlock, and urged businesses and critical infrastructure to stay vigilant</description>
      <pubDate>Wed, 23 Jul 2025 10:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/us-government-interlockattacks/</guid>
    </item>
    <item>
      <title>Microsoft: Attackers Actively Compromising On-Prem SharePoint Customers</title>
      <link>https://www.infosecurity-magazine.com/news/microsoft-compromising-sharepoint/</link>
      <description>On-prem SharePoint customers have been told to assume compromise, with attackers observed to be exfiltrating data from victim servers across critical sectors </description>
      <pubDate>Mon, 21 Jul 2025 11:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/microsoft-compromising-sharepoint/</guid>
    </item>
    <item>
      <title>CISA Issues Advisories on Critical ICS Vulnerabilities Across Multiple Sectors</title>
      <link>https://www.infosecurity-magazine.com/news/cisa-issues-advisories-ics-vulns/</link>
      <description>The US CISA has issued advisories for Industrial Control Systems vulnerabilities affecting multiple vendors including Johnson Controls, ABB, Hitachi Energy, and Schneider Electric</description>
      <pubDate>Fri, 18 Jul 2025 16:27:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cisa-issues-advisories-ics-vulns/</guid>
    </item>
    <item>
      <title>Microsoft Exposes Scattered Spider’s Latest Tactics</title>
      <link>https://www.infosecurity-magazine.com/news/microsoft-exposes-scattered/</link>
      <description>Microsoft has reported Scattered Spider continues to evolve tactics to compromise both on-premises infrastructure and cloud environments</description>
      <pubDate>Thu, 17 Jul 2025 11:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/microsoft-exposes-scattered/</guid>
    </item>
    <item>
      <title>Most European Financial Firms Still Lagging on DORA Compliance</title>
      <link>https://www.infosecurity-magazine.com/news/european-financial-dora-compliance/</link>
      <description>A Veeam survey found that 96% of financial services organizations believe their current levels of data resilience falls short of DORA compliance, citing major challenges</description>
      <pubDate>Thu, 17 Jul 2025 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/european-financial-dora-compliance/</guid>
    </item>
    <item>
      <title>Over 5.4 Million Affected in Healthcare Data Breach at Episource</title>
      <link>https://www.infosecurity-magazine.com/news/54-million-affected-episource/</link>
      <description>A data breach at Episource has exposed the personal information of 5.4 million individuals after attackers accessed systems for 10 days</description>
      <pubDate>Wed, 16 Jul 2025 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/54-million-affected-episource/</guid>
    </item>
    <item>
      <title>Education Sector is Most Exposed to Remote Attacks</title>
      <link>https://www.infosecurity-magazine.com/news/education-sector-most-exposed-to/</link>
      <description>CyCognito research finds that a third of education sector APIs, web apps and cloud assets are exposed to attack</description>
      <pubDate>Wed, 16 Jul 2025 10:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/education-sector-most-exposed-to/</guid>
    </item>
    <item>
      <title>SaaS Security Adoption Grows Amid Rising Breach Rates</title>
      <link>https://www.infosecurity-magazine.com/news/saas-security-adoption-grows/</link>
      <description>The latest report from AppOmni has revealed 91% confidence in SaaS security while 75% of organizations have faced incidents</description>
      <pubDate>Tue, 15 Jul 2025 14:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/saas-security-adoption-grows/</guid>
    </item>
    <item>
      <title>Interlock Ransomware Unleashes New RAT in Widespread Campaign</title>
      <link>https://www.infosecurity-magazine.com/news/interlock-ransomware-new-rat/</link>
      <description>Interlock ransomware continues to develop custom tooling and a new RAT has been detected by researchers </description>
      <pubDate>Mon, 14 Jul 2025 11:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/interlock-ransomware-new-rat/</guid>
    </item>
    <item>
      <title>British Man Sentenced for Network Rail Wi-Fi Hack</title>
      <link>https://www.infosecurity-magazine.com/news/british-man-sentenced-rail-wifi/</link>
      <description>The man was handed a suspended prison sentence for offenses relating to the hack of Network Rail public Wi-Fi, exposing customers to offensive messaging</description>
      <pubDate>Fri, 11 Jul 2025 12:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/british-man-sentenced-rail-wifi/</guid>
    </item>
    <item>
      <title>Nippon Steel IT Subsidiary Hit by "Zero-Day Attack," Causing Data Breach</title>
      <link>https://www.infosecurity-magazine.com/news/nippon-steel-it-subsidiary-0day/</link>
      <description>Personal data of Nippon Steel Solutions’ customers, partners and employees may be compromised</description>
      <pubDate>Thu, 10 Jul 2025 12:35:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/nippon-steel-it-subsidiary-0day/</guid>
    </item>
    <item>
      <title>New Bert Ransomware Group Strikes Globally with Multiple Variants </title>
      <link>https://www.infosecurity-magazine.com/news/bert-ransomware-globally-multiple/</link>
      <description>Trend Micro has observed the Bert ransomware group in operation since April 2025, with confirmed victims in sectors including healthcare, technology and event services</description>
      <pubDate>Tue, 08 Jul 2025 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/bert-ransomware-globally-multiple/</guid>
    </item>
    <item>
      <title>Qantas Contacted by Potential Cybercriminal Following Data Breach</title>
      <link>https://www.infosecurity-magazine.com/news/qantas-contacted-cybercriminal/</link>
      <description>Qantas said it is currently validating the contact, and has informed law enforcement</description>
      <pubDate>Mon, 07 Jul 2025 10:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/qantas-contacted-cybercriminal/</guid>
    </item>
    <item>
      <title>Privilege Escalation Flaw Found in Azure Machine Learning Service</title>
      <link>https://www.infosecurity-magazine.com/news/privilege-escalation-flaw-azure-ml/</link>
      <description>A critical Azure Machine Learning flaw allows privilege escalation, risking subscription compromise</description>
      <pubDate>Thu, 03 Jul 2025 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/privilege-escalation-flaw-azure-ml/</guid>
    </item>
    <item>
      <title>Automation and Vulnerability Exploitation Drive Mass Ransomware Breaches</title>
      <link>https://www.infosecurity-magazine.com/news/automation-vulnerability/</link>
      <description>ReliaQuest warns that initial access vulnerability exploitation is driving successful ransomware attacks</description>
      <pubDate>Thu, 03 Jul 2025 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/automation-vulnerability/</guid>
    </item>
    <item>
      <title>Linux Users Urged to Patch Critical Sudo CVE</title>
      <link>https://www.infosecurity-magazine.com/news/linux-users-urged-to-patch/</link>
      <description>Two elevation of privilege vulnerabilities have been discovered on the popular Sudo utility, affecting 30-50 million endpoints in the US alone</description>
      <pubDate>Thu, 03 Jul 2025 10:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/linux-users-urged-to-patch/</guid>
    </item>
    <item>
      <title>How the NFL Manages Complex Cyber Risks in Live Sports Environments</title>
      <link>https://www.infosecurity-magazine.com/interviews/nfl-cyber-risks-live-sport/</link>
      <description>NFL’s director of cybersecurity and risk management Kam Karaji discusses how to deliver effective cybersecurity across multiple jurisdictions and locations</description>
      <pubDate>Wed, 02 Jul 2025 13:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/interviews/nfl-cyber-risks-live-sport/</guid>
    </item>
    <item>
      <title>IT Worker Jailed After Revenge Attack on Employer</title>
      <link>https://www.infosecurity-magazine.com/news/it-worker-jailed-revenge-attack/</link>
      <description>An IT worker has been jailed for launching a cyber-attack after he was suspended at work</description>
      <pubDate>Mon, 30 Jun 2025 10:15:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/it-worker-jailed-revenge-attack/</guid>
    </item>
    <item>
      <title>Hawaiian Airlines Hit by Cybersecurity Incident</title>
      <link>https://www.infosecurity-magazine.com/news/hawaiian-airlines-cybersecurity/</link>
      <description>The US airline said that incident was affecting some of its IT systems, but flights are continuing to operate safely and as scheduled</description>
      <pubDate>Fri, 27 Jun 2025 13:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/hawaiian-airlines-cybersecurity/</guid>
    </item>
    <item>
      <title>MOVEit Transfer Systems Face Fresh Attack Risk Following Scanning Activity Surge  </title>
      <link>https://www.infosecurity-magazine.com/news/moveit-attack-risk-scanning-surge/</link>
      <description>GreyNoise observed a surge in scanning activity targeting MOVEit Transfer systems since May 27, indicating the software could face renewed attacks</description>
      <pubDate>Fri, 27 Jun 2025 09:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/moveit-attack-risk-scanning-surge/</guid>
    </item>
    <item>
      <title>Patient Death Linked to NHS Cyber-Attack</title>
      <link>https://www.infosecurity-magazine.com/news/patient-death-linked-nhs-cyber/</link>
      <description>A patient’s death was linked to the 2024 ransomware attack on Synnovis, which disrupted NHS facilities</description>
      <pubDate>Thu, 26 Jun 2025 16:00:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/patient-death-linked-nhs-cyber/</guid>
    </item>
    <item>
      <title>Half of Customer Signups Are Now Fraudulent</title>
      <link>https://www.infosecurity-magazine.com/news/half-customer-signups-now/</link>
      <description>Okta says over 46% of new customer registrations are bot-driven fraud attempts</description>
      <pubDate>Wed, 25 Jun 2025 09:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/half-customer-signups-now/</guid>
    </item>
    <item>
      <title>NCSC Urges Experts to Join Cyber Advisor Program</title>
      <link>https://www.infosecurity-magazine.com/news/ncsc-urges-experts-join-cyber/</link>
      <description>The NCSC says its Cyber Advisor program is not growing fast enough</description>
      <pubDate>Tue, 24 Jun 2025 09:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/ncsc-urges-experts-join-cyber/</guid>
    </item>
    <item>
      <title>Cyber Essentials Breaks Quarterly Record for Certifications</title>
      <link>https://www.infosecurity-magazine.com/news/cyber-essentials-breaks-quarterly/</link>
      <description>The UK government’s Cyber Essentials scheme hits 10,000 certifications for the first time in a quarter but challenges persist</description>
      <pubDate>Mon, 23 Jun 2025 10:30:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/cyber-essentials-breaks-quarterly/</guid>
    </item>
    <item>
      <title>Personal Data of Oxford City Council Officers Exposed </title>
      <link>https://www.infosecurity-magazine.com/news/personal-data-oxford-council/</link>
      <description>Oxford City Council revealed that attackers accessed data of individuals who worked on Council-administered elections between 2001 and 2022</description>
      <pubDate>Fri, 20 Jun 2025 13:45:00 GMT</pubDate>
      <guid isPermaLink="true">https://www.infosecurity-magazine.com/news/personal-data-oxford-council/</guid>
    </item>
  </channel>
</rss>