Infosecurity News

  1. Android Enterprise Rolls Out Security and Productivity Updates

    Android Enterprise has introduced features for mobile security, device management and user productivity in its latest update

  2. Mastery Schools Notifies 37,031 of Major Data Breach

    A ransomware attack on Mastery Schools, Philadelphia, has compromised personal information of 37,031 individuals, exposing sensitive data

  3. DDoS Attacks on Financial Sector Surge in Scale and Sophistication

    The financial sector was the industry most targeted by distributed denial-of-service (DDoS) attacks in 2024, with a peak in October

  4. SentinelOne Warns Cybersecurity Vendors of Chinese Attacks

    SentinelOne revealed details of two new intrusion attempts by China-nexus actors

  5. Wholesale Food Giant UNFI Admits Security Breach

    UNFI says it is investigating unauthorized network activity, and that some operations are affected

  6. PayU Plugin Flaw Allows Account Takeover on 5000 WordPress Sites

    Vulnerability in PayU CommercePro plugin allows account hijacking on thousands of WordPress sites

  7. New Wiper Malware Targets Ukrainian Infrastructure

    New PathWiper malware targeted Ukrainian critical infrastructure, using legitimate tools for cyber-attacks

  8. Trump Administration Revises Cybersecurity Rules, Replaces Biden and Obama Orders

    A new Trump Executive Order limits the use of cybersecurity-related sanctions only against foreign malicious actors

  9. US Tries to Claw Back $7m Taken by North Korean IT Workers

    The Justice Department has filed a civil forfeiture complaint alleging North Korean IT workers amassed $7m+

  10. FBI Warns Smart Home Users of Badbox 2.0 Botnet Threat

    The FBI says mainly Chinese-made IoT devices pose a threat from Badbox 2.0 malware

  11. Scattered Spider Uses Tech Vendor Impersonation and Phishing Kits to Target Helpdesks

    The ransomware group combines IT vendor impersonation and phishing frameworks like Evilginx to breach its targets

  12. #Infosec2025: Top Six Cyber Trends CISOs Need to Know

    Experts at Infosecurity Europe 2025 highlighted a range of major industry trends, from advanced social engineering techniques to vulnerability exploits

  13. #Infosec2025: Cybersecurity Lessons From Maersk’s Former CISO

    2017 ransomware attack on shipping company A P Moller Maersk marked a turning point for the cybersecurity industry, according to its former CISO Adam Banks

  14. #Infosec2025: DNS Hijacking, A Major Cyber Threat for the UK Government

    During Infosecurity Europe 2025, Nick Woodcraft, from the UK Government, shared his experience in implementing measures to protect domains within the .gov.uk DNS namespace

  15. #Infosec2025: Ransomware Victims Urged to Engage to Take Back Control

    Engagement with ransomware actors doesn’t necessarily mean payment; it’s about getting the best outcomes, a leading negotiator had argued

  16. #Infosec2025: Know Your Audience to Make an Impact, CISOs Tell Their Peers

    A panel of CISOs at Infosecurity Europe urged their peers to use risk management and clear communication to tame a chaotic cyber landscape

  17. #Infosec2025: Threat Actors Weaponizing Hardware Devices to Exploit Fortified Environments

    Sophisticated nation-state and cybercriminal groups are using insiders to infect targets via hardware devices, despite a lack of reporting of this threat

  18. #Infosec2025: Defenders and Attackers are Locked in an AI Arms Race

    Malicious actors are making more use of AI in attacks, even as governments look to boost AI investments

  19. #Infosec2025: Seven Steps to Building a Mature Vulnerability Management Program

    At Infosecurity Europe 2025, Axonius’ Jon Ridyard proposed seven best practices to build mature vulnerability management processes

  20. #Infosec2025: Securing Endpoints is Still Vital Amid Changing Threats

    Endpoint and network security is still essential, even as malicious actors turn to supply chains, identities and AI

What’s hot on Infosecurity Magazine?