Infosecurity News

  1. RSA Conference: UK NCSC Head Urges Industry to Develop Vibe Coding Safeguards

    The head of the UK’s NCSC is calling the cybersecurity industry to “seize the disruptive vibe coding opportunity” to make software more secure

  2. Silver Fox Cyber Campaigns Show Shift Toward Dual Espionage

    Silver Fox pivots from ValleyRAT tax lures to WhatsApp‑style stealers, blending espionage & phishing

  3. Citrix Urges Immediate Patching for Critical NetScaler Vulnerabilities

    A critical vulnerability in Citrix’s NetScaler products allows unauthenticated remote attackers to leak information from the appliance's memory

  4. New Npm 'Ghost Campaign' Uses Fake Install Logs to Hide Malware

    Ghost npm campaign fakes install logs to steal sudo passwords and drop RATs that loot crypto and data

  5. Former Ukrainian Foreign Minister Dmytro Kuleba to Address the New Cyber Frontline at Infosecurity Europe

    Geopolitics and cyber warfare take center stage at Infosecurity Europe as Dmytro Kuleba discusses Ukraine’s hybrid war experience

  6. Enterprise Cybersecurity Software Fails 20% of the Time, Warns Absolute Security

    Poor patch management, increasingly complex IT environments and continued use of obsolete software puts organizations at risk from cyber threats, says the Absolute Security 2026 Resilience Risk Index

  7. Russian Initial Access Broker Handed 81-Month Sentence

    Russian cybercriminal Aleksei Volkov has received close to seven years behind bars for role in Yanluowang ransomware

  8. Handala Group Tied to Iranian Hack‑and‑Leak Operations, FBI Reveals

    The FBI has warned that Iranian hacking group Handala has been targeting opponents of the regime since 2023

  9. Most Cybersecurity Staff Don’t Know How Fast They Could Stop a Cyber-Attack on AI Systems

    ISACA survey found that confusion over responsibility and lack of understanding around AI cyber-attacks makes containing them difficult

  10. Tycoon2FA Phishing Service Resumes Activity Post-Takedown

    Tycoon2FA phishing platform resumes activity post-takedown, leveraging AITM techniques to bypass MFA

  11. High-Tech Sector Overtakes Finance as Top Target for Cyber-Attacks, Mandiant Reports

    High tech was the most frequently targeted industry in Mandiant investigations in 2025, overtaking financial services which led in 2023 and 2024

  12. Trivy Supply Chain Attack Expands With New Compromised Docker Images

    New Trivy Docker images 0.69.5 and 0.69.6 compromised with TeamPCP infostealer, impacting CI/CD scans

  13. CISA Orders US Government to Patch Maximum Severity Cisco Flaw

    CISA added CVE-2026-20131 to its KEV catalog as it is being used in ransomware campaigns

  14. Operation Alice Takes Down 370,000+ Dark Web Sites

    German-led policing effort against fraud operation disrupts countless CSAM and cybercrime sites

  15. Hackers Exploit Critical Langflow Bug in Just 20 Hours

    Sysdig details how threat actors exploited a critical CVE in Langflow in less than a day

  16. NCA Boss Warns That Teens Are Being “Radicalized” Into Cybercrime Online

    The National Crime Agency’s director general warns that technology is rapidly reshaping crime

  17. Ransomware Affiliate Exposes Details of 'The Gentlemen' Operation

    Hastalamuerte leaks The Gentlemen RaaS ops: FortiGate exploits, BYOVD evasion, Qilin split tactics

  18. Financial Brands Targeted in Global Mobile Banking Malware Surge

    Mobile banking malware targets over 1200 financial apps globally, shifting fraud to user devices

  19. FCA Updates Cyber Incident and Third-Party Reporting Rules

    The UK’s financial regulator has issued new rules to make incident and third-party reporting clearer

  20. AWS Warns Hackers Have Abused Cisco Firewall Zero-Day Since January

    Notorious ransomware group Interlock has been exploiting a Cisco zero-day bug since January, AWS says

What’s Hot on Infosecurity Magazine?