Infosecurity News

  1. Android OS-Level Attack Bypasses Mobile Payment Security

    Android’s LSPosed-based attack hijacks payment apps via runtime manipulation and SIM-binding bypass

  2. 'CursorJack’ Attack Path Exposes Code Execution Risk in AI Development Environment

    CursorJack shows how malicious MCP deeplinks in Cursor IDE can trigger user-approved code execution

  3. Surge in Nation State Attacks on UK Firms Amid Cyber Warfare Fears

    Armis reveals that “mutually assured disruption” is no longer preventing state-backed attacks

  4. Average Number of Daily API Attacks Up 113% Annually

    Akamai says 87% of organizations suffered an API-related security incident last year

  5. UK Cyber Monitoring Centre Sets Its Sights on US Expansion One Year After Launch

    The US Cyber Monitoring Center should be operational in 2027, said the UK CMC leadership

  6. Researchers Warn of Global Surge in Fake Shipment Tracking Scams

    Some of these campaigns are linked to Darcula, a Chinese-language phishing-as-a-service platform

  7. CrackArmor Flaws Expose Linux Systems to Privilege Escalation

    CrackArmor AppArmor flaws let local Linux users gain root, break containers and enable DoS attacks

  8. Security Flaw in AWS Bedrock Code Interpreter Raises Alarms

    DNS-based attack in AWS Bedrock AgentCore lets AI sandboxes exfiltrate cloud data

  9. FBI Calls for Help to Track Steam Malware Campaign

    The FBI wants to hear from gamers who have downloaded Steam titles containing malware

  10. UK: Companies House Web Glitch Exposes Corporate Details to Fraudsters

    An issue with the Companies House website has put the personal and corporate information of millions at risk

  11. Interpol's 'Operation Synergia III' Nets 94 Arrests in Major Cybercrime Sweep

    A new law enforcement operation against phishing and ransomware operators led to the takedown of 45,000 malicious IP addresses

  12. Law Enforcement Dismantles SocksEscort Proxy Network in Operation Lightning

    Operation Lightning sees international law enforcement partners shut down ‘SocksEscort,’ a major malicious proxy service used by cybercriminals worldwide

  13. PixRevolution Malware Hijacks Brazil's PIX Transfers in Real Time

    PixRevolution Android trojan hijacks Brazil’s PIX payments in real time using accessibility abuse

  14. Critical Zero-Click Flaw in n8n Allows Full Server Compromise

    The critical vulnerability affecting both cloud and self-hosted n8n instances requires no authentication or even n8n account to be exploited

  15. CISA Issues Emergency Directive Over Exploited Cisco SD-WAN Flaws

    CISA issued urgent directive as attackers exploit Cisco SD-WAN flaw granting admin access to networks

  16. Police Scotland Fined After Sharing Victim’s Phone Data

    The ICO has fined Police Scotland after it shared the entire contents of a victim’s phone with her alleged attacker

  17. Iran Claims Massive Cyber-Attack on MedTech Firm Stryker

    The pro-Iran Handala group claims to have wiped 200,000 systems in destructive wiper malware attack on US firm Stryker

  18. France: National Cybersecurity Agency Reports Ransomware Attack Drop in 2025

    French small and medium businesses remained the organizations most targeted by ransomware in 2025

  19. Infosecurity Europe Announces 2026 Keynote Line Up

    Infosecurity Europe 2026 reveals its keynote line-up, featuring Jason Fox, Shlomo Kramer, Cynthia Kaiser and more, with sessions on AI, cloud security and post quantum threats

  20. Researchers Uncover ‘LeakyLooker’ Vulnerabilities in Google Looker Studio

    LeakyLooker flaws in Google Looker Studio let attackers run cross-tenant SQL attacks on cloud data

Why Not Watch?

What’s Hot on Infosecurity Magazine?