Infosecurity News

  1. CISA Urges Critical Infrastructure Providers to Make Plans to Remain Operational if hit by Cyber-Attack

    CISA’s CI Fortify initiative aim for critical infrastructure operators to build isolation & recovery

  2. Iran-Linked APT Posed as Chaos Ransomware Member in Espionage Campaign

    Rapid7 reveals an Iranian false flag operation masquerading as a Chaos ransomware attack

  3. One in Eight Workers Has Sold Their Corporate Logins

    Cifas says that 13% of employees admit selling company credentials to a former colleague

  4. Microsoft Flags Mass Phishing Campaign Using Fake Compliance Emails

    Microsoft researchers warn of a large-scale phishing campaign using fake compliance emails to steal credentials, targeting 35,000 users across 13,000 organizations worldwide

  5. North Korean APT Targets Yanbian Gamers via Trojanized Platform

    ESET warns that North Korean hackers compromised a Yanbian gaming site in a supply‑chain attack, trojanizing Windows and Android software to spy on users

  6. Fake SSA Emails Drive Venomous#Helper Phishing Campaign

    Venomous#Helper attackers impersonate the US Social Security Administration to deploy signed RMM software and maintain persistent access across US networks

  7. AI Adoption Outpaces Safety Policies, Leaving Organizations Exposed to Cyber Risk

    ISACA report warns that while AI has become the norm, many organizations are yet to formally apply safety or security policies around its use

  8. NCSC Warns of an AI-Fuelled “Vulnerability Patch Wave”

    The UK's National Cyber Security Centre is urging organizations to prepare for glut of new software updates

  9. Trellix Reveals Unauthorized Access to Source Code

    Security vendor Trellix has suffered a breach involving unauthorized access

  10. Small Defense Firms Lack Network Data to Stop Nation-State Hackers, Analyst Says

    Team Cymru’s Stephen Campbell warned that small US defense contractors are not well prepared to face cyber intrusions through edge devices

  11. OpenAI To Extend Cyber Program to Government Agencies

    OpenAI announced its intention to expand the Trusted Access for Cyber program for cyber defenders at the federal, state and local government levels

  12. Anthropic Rolls Out Claude Security for AI Vulnerability Scanning

    Claude Security enters public beta, giving enterprises AI driven code scanning with no API integration or custom agents required

  13. Two American Cybersecurity Workers Jailed for BlackCat Ransomware Attacks

    The cybersecurity workers used their knowledge and skills to conduct ransomware attacks for notorious gang, rather than protect victims against them

  14. Nine-Year-Old Zero-Day Flaw in Linux Kernel Discovered by AI-Equipped Security Researcher

    A researcher from offensive security firm Theori has found a nine-year-old flaw in the Linux kernel with the help of AI

  15. Three Arrested for Hacking Over 610,000 Roblox Accounts

    Suspects accused of distributing malware and selling access to stolen Roblox accounts on Russian marketplaces

  16. Deep#Door Python Backdoor Evades Detection On Windows

    Deep#Door Python RAT uses tunneling and obfuscation to evade detection and steal credentials

  17. CISA and Partners Publish Zero Trust Guidance For OT Security

    A new CISA‑led guide explains how zero‑trust security can be applied to operational technology, balancing cyber defence with safety and system availability

  18. UK: Education Sector Faces Surge in Cyber Breaches Despite Stable National Threat Levels

    The British public education sector has faced the nation’s most dramatic increase in cyber breach prevalence over the past year

  19. Europol Busts Albanian Scam Call Centers in Major Online Fraud Case

    European police arrested 10 suspects after dismantling Albanian scam call centers linked to a €50m ($58m) online investment fraud operation

  20. Cyber is the Number One Global “People Risk,” Says Marsh

    Marsh’s 2026 People Risks survey finds cyber‑related challenges dominate, as cyber‑threat literacy tops risks and cyber and AI skills shortages rise

What’s Hot on Infosecurity Magazine?