Infosecurity News

  1. Operation Endgame 3.0 Dismantles Three Major Malware Networks

    A global law enforcement operation has taken down the Rhadamanthys infostealer, VenomRAT trojan and the Elysium botnet

  2. Improve Collaboration to Hit Back At Rising Fraud, Says techUK

    Industry body techUK calls for real-time intelligence sharing across sectors to combat fraud

  3. Synnovis Finally Issues Breach Notification After 2024 Ransomware Attack

    NHS provider Synnovis is notifying clients about the extent of a data breach 17 months after it suffered a ransomware attack

  4. GlobalLogic Becomes Latest Cl0p Victim After Oracle EBS Attack

    GlobalLogic has notified 10,000 employees their data was stolen in the Oracle EBS campaign

  5. Cyber-Insurance Payouts Soar 230% in UK

    UK cyber-insurers paid 230% more to policyholders in 2024 than the year before

  6. Microsoft Fixes Windows Kernel Zero Day in November Patch Tuesday

    Microsoft has patched a zero-day vulnerability in the Windows Kernel under active exploitation by threat actors

  7. UK Government Finally Introduces Cyber Security and Resilience Bill

    The UK government is overhauling cybersecurity laws for the first time since 2018 with the Cyber Security and Resilience Bill

  8. Android Devices Targeted By KONNI APT in Find Hub Exploitation

    A new cyber-attack has been observed exploiting Google Find Hub to remotely wipe Android devices, linked to North Korean APTs

  9. Qilin Ransomware Activity Surges as Attacks Target Small Businesses

    Qilin group ransomware incidents have surged in SMBs, exploiting security gaps and collaborating with Scattered Spider threat group

  10. Hackers Exploit Critical Flaw in Gladinet's Triofox File Sharing Product

    Threat actors were exploiting vulnerable versions of Triofox after a patched version was released, said Google Cloud researchers

  11. CISA Adds Zero-Day Bug Used in Spyware Attacks to KEV

    CISA has demanded federal agencies patch a zero-day vulnerability affecting Samsung devices used in LandFall spyware attacks

  12. Quantum Route Redirect Phishing Kit Democratizes Cyber-Attacks

    KnowBe4 claims the new Quantum Route Redirect kit is supercharging phishing attacks on Microsoft365 users

  13. 65% of Leading AI Companies Found With Verified Secrets Leaks

    A new study has revealed 65% of top AI firms have leaked sensitive data on GitHub, risking $400bn in assets

  14. China-Aligned UTA0388 Uses AI Tools in Global Phishing Campaigns

    Volexity has linked spear phishing operations to China-aligned UTA0388 in new campaigns using advanced tactics and LLMs

  15. New NCA Campaign Warns Men Off Crypto Investment Scams

    The UK’s National Crime Agency is warning men under 45 that crypto dreams can soon become a scam nightmare

  16. NCSC Set to Retire Web Check and Mail Check Tools

    The UK’s National Cyber Security Centre has urged users of its Web Check and Mail Check services to find alternatives

  17. Russian Hacking Group Sandworm Deploys New Wiper Malware in Ukraine

    Sandworm deployed data wipers against Ukrainian governmental entities and companies in the energy, logistics and grain sectors

  18. “I Paid Twice” Phishing Campaign Targets Booking.com

    Experts have uncovered large-scale phishing exploiting Booking.com, Airbnb and Expedia accounts, targeting hotels and customers

  19. Multi-Turn Attacks Expose Weaknesses in Open-Weight LLM Models

    A new Cisco report exposed large language models to multi-turn adversarial attacks with 90% success rates

  20. Hacktivist-Driven DDoS Dominates Attacks on Public Sector

    ENISA report reveals DDoS accounted for 60% of public sector security incidents last year

What’s Hot on Infosecurity Magazine?