Infosecurity News

  1. SEO Poisoning Targets Chinese Users with Fake Software Sites

    SEO poisoning attack has been observed targeting Chinese Windows users via lookalike domains, installing Hiddengh0st and Winos

  2. AI-Forged Military IDs Used in North Korean Phishing Attack

    Genians observed the Kimsuky group impersonate a defense institution in a spear-phishing attack, leveraging ChatGPT to create fake military ID cards

  3. CISA at Risk After OIG Accuses it of Wasting Federal Funds

    US Department of Homeland Security OIG claims CISA mismanaged a key cyber retention incentive program

  4. Phishing Campaigns Drop RMM Tools for Remote Access

    Threat actors are using multiple lures to trick users into installing RMM tools

  5. Attackers Adopt Novel LOTL Techniques to Evade Detection

    HP Wolf has reported the use of multiple, uncommon binaries and novel uses of legitimate image files in recent malicious campaigns

  6. France Warns Apple Users of New Spyware Campaign

    Apple has sent at least four notifications in 2025, according to the French national cybersecurity agency

  7. ICO Warns of Student-Led Data Breaches in UK Schools

    ICO warned that growing hacks by children into school computer systems is setting them up for “a life of cybercrime”

  8. CISA Launches Roadmap for the CVE Program

    The US cybersecurity agency called for the CVE program to remain publicly maintained and vendor-neutral while emphasizing the need for broader engagement

  9. Fileless Malware Deploys Advanced RAT via Legitimate Tools

    A sophisticated fileless malware campaign has been observed using legitimate tools to deliver AsyncRAT executed in memory

  10. Wyden Urges FTC Investigation Over Ascension Ransomware Hack

    Senator Ron Wyden of Oregon has urged the FTC to investigate Microsoft for cybersecurity lapses linked to ransomware attacks on US critical infrastructure

  11. Chinese APT Actor Compromises Military Firm with Novel Fileless Malware Toolset

    Bitdefender said the sophisticated multi-stage operation allowed attackers to maintain persistent access and steal sensitive data from a Philippines military company

  12. France: Three Regional Healthcare Agencies Targeted by Cyber-Attacks

    Compromised data includes personal data such as patients’ full names, ages, phone numbers and email addresses

  13. Ukrainian Ransomware Fugitive Added to Europe’s Most Wanted

    US offers $11m as LockerGoga ransomware suspect becomes one of Europe’s most wanted men

  14. LNER Reveals Supply Chain Attack Compromised Customer Information

    Government-run train operator LNER has revealed details of a supplier data breach

  15. KillSec Ransomware Hits Brazilian Healthcare IT Vendor

    A ransomware attack by KillSec on Brazil software provider MedicSolution threatens healthcare, impacting providers and patients

  16. Cursor Autorun Flaw Lets Repositories Execute Code Without Consent

    A flaw in the Cursor extension allows unauthorized code execution when opening repositories in Visual Studio

  17. Adobe Releases Emergency Patch for Critical Flaw in Commerce and Magento

    The vulnerability, dubbed SessionReaper, allows customer account takeover and unauthenticated remote code execution

  18. Ransomware Payments Plummet in Education Amid Enhanced Resiliency

    Sophos found that average ransom demands and payments fell substantially in the education sector in 2025, as recovery time and costs fell

  19. Two Zero-Days Among Patch Tuesday CVEs This Month

    Microsoft has fixed over 80 vulnerabilities including two publicly disclosed zero-days in its latest Patch Tuesday release

  20. Malicious npm Code Reached 10% of Cloud Environments

    Wiz Security warns that a recently discovered supply chain attack campaign targeting npm is far from over

What’s hot on Infosecurity Magazine?