Infosecurity News

  1. Former Defense Contractor Boss Gets 7+ Years for Selling Zero Days

    A former general manager of a US defense contractor has been sentenced after selling zero days to Russia

  2. ICO’s £14m Reddit Fine Highlights Age Check Privacy Concerns

    The UK’s ICO has fined Reddit over £14m for failing to use children’s personal information lawfully

  3. Cost of Insider Incidents Surges 20% to Nearly $20m

    DTEX claims insider incidents cost $19.5m in 2025, with employee negligence most expensive

  4. Multifaceted Phishing Scheme Deceives Bitpanda Customers

    Phishing attack mimicking Bitpanda targets users, harvesting credentials and personal information

  5. North Korean Lazarus Group Expands Ransomware Activity With Medusa

    Ransomware Medusa linked to North Korean hackers targets US healthcare amid ongoing attacks

  6. AI Accelerates Attacker Breakout Time to Just Four Minutes

    ReliaQuest claims AI has reduced breakout and exfiltration time to under 10 minutes

  7. Chinese AI Firms Hit Claude with Distillation Attacks, Anthropic Warns

    Anthropic accused DeepSeek, Moonshot and MiniMax of illicitly using Claude to steal some of the AI model’s capabilities

  8. AI-powered Cyber-Attacks Up Significantly in the Last Year, Warns CrowdStrike

    CrowdStrike Global Threat Report warns how adversaries are leveraging AI to make campaigns more efficient and more effective

  9. Shai-Hulud-Like Worm Targets Developers via npm and AI Tools

    Supply chain worm mimicking Shai-Hulud malware spread via malicious npm packages, targeting AI tools has been identified by security researchers

  10. Fraud Investigation Reveals Sophisticated Python Malware

    Sophisticated Python malware uncovered in fraud probe shows obfuscation, disposable infrastructure

  11. Russian Cyber Threat Actor Uses GenAI to Compromise Fortinet Firewalls

    A low-skilled Russian-speaking attacker has used GenAI tools to help deploy a successful attack workflow targeting FortiGate instances

  12. Leading Semiconductor Supplier Advantest Hit by Ransomware Attack

    Advantest, a Japanese specialist in testing computer chips for major semiconductor manufacturers, has deployed incident response protocols following a cybersecurity incident

  13. Jackpotting Surge Costs Banks Over $20m, Warns FBI

    A new FBI Flash alert claims $20m was lost to ATM jackpotting attacks in 2025 alone

  14. University of Mississippi Medical Center Still Offline After Ransomware Attack

    University of Mississippi Medical Center is still scrambling to respond to a ransomware attack last Thursday

  15. Dramatic Escalation in Frequency and Power of DDoS Attacks

    DDoS attack frequency has risen to ‘alarming levels,’ warns Radware report

  16. Android Malware Hijacks Google Gemini to Stay Hidden

    A new Android malware implant using Google Gemini to perform persistence tasks was discovered on VirusTotal and analyzed by ESET

  17. Remcos RAT Expands Real-Time Surveillance Capabilities

    New Remcos RAT variant enhances real-time surveillance and evasion techniques to compromise Windows

  18. Industrial-Scale Fake Coretax Apps Drive $2m Fraud in Indonesia

    Fraud campaign exploiting Indonesia’s Coretax resulted in $1.5m to $2m in losses via malicious apps

  19. Industrial Control System Vulnerabilities Hit Record Highs

    Forescout paper reveals ICS advisories hit a record 508 in 2025

  20. Starkiller: New ‘Commercial-Grade’ Phishing Kit Bypasses MFA

    A new cybercriminal toolkit uses proxies to mimic popular online services and represents a “significant escalation in phishing infrastructure,” warn researchers at Abnormal

What’s Hot on Infosecurity Magazine?