Infosecurity News

  1. Dutch Warn of “Whole of Society” Russian Cyber-Threat

    Dutch intelligence report warns of growing Russian aggression with hybrid warfare

  2. UK Romance Scams Spike 20% as Online Dating Grows

    Barclays found that romance scam victims lost £8000 on average in 2024, a significant increase from the previous year

  3. Microsoft Reports 92% Adoption Rate for Phishing-Resistant MFA Among Corporate Users

    The tech giant has released its second Secure Future Initiative (SFI) progress report, showcasing its ongoing efforts to improve cybersecurity

  4. SuperCard X Enables Contactless ATM Fraud in Real-Time

    A new malware campaign utilizing NFC-relay techniques has been identified carrying out unauthorized transactions through POS systems and ATMs

  5. Billbug Espionage Group Deploys New Tools in Southeast Asia

    Billbug, a China-linked espionage group, has been observed targeting critical sectors in Southeast Asia with new tools

  6. New Cryptojacking Malware Targets Docker with Novel Mining Technique

    Darktrace and Cado said the new campaign highlights a shift towards alternative methods of mining cryptocurrencies

  7. Scalllywag Ad Fraud Network Generates 1.4 Billion Bid Requests Daily

    Security firm Human lifts the lid on prolific new ad fraud scheme dubbed “scallywag”

  8. $40bn Southeast Asian Scam Sector Growing “Like a Cancer”

    The UN has warned that Southeast Asian fraud groups are expanding their operations

  9. Midnight Blizzard Targets European Diplomats with Wine Tasting Phishing Lure

    Russian state actor Midnight Blizzard is using fake wine tasting events as a lure to spread malware for espionage purposes, according to Check Point

  10. NTLM Hash Exploit Targets Poland and Romania Days After Patch

    An NTLM hash disclosure spoofing vulnerability that leaks hashes with minimal user interaction has been observed being exploited in the wild

  11. Senators Urge Cyber-Threat Sharing Law Extension Before Deadline

    Bipartisan support grows in Congress to extend Cybersecurity Information Sharing Act for 10 years

  12. Identity Attacks Now Comprise a Third of Intrusions

    IBM warns of infostealer surge as attackers automate credential theft and adopt AI to generate highly convincing phishing emails en masse

  13. Microsoft Thwarts $4bn in Fraud Attempts

    Microsoft has blocked fraud worth $4bn as threat actors ramp up AI use

  14. CISA Throws Lifeline to CVE Program with Last-Minute Contract Extension

    MITRE will be able to keep running the CVE program for at least the next 11 months

  15. Network Edge Devices the Biggest Entry Point for Attacks on SMBs

    Sophos found that compromise of network edge devices, such as VPN appliances, accounted for 30% of incidents impacted SMBs in 2024

  16. ICO Issues Merseyside-Based Law Firm £60,000 Fine After Cyber-Attack

    A UK Law firm has been fined £60,000 after data stolen during a 2022 cyber-attack was published on the dark web

  17. Hertz Data Breach Exposes Customer Information in Cleo Zero-Day Attack

    Hertz has confirmed a data breach exposing customer data after a zero-day attack targeting file transfer software from Cleo Communications

  18. China-Backed Hackers Exploit BRICKSTORM Backdoor to Spy on European Businesses

    NVISO discovered new variants of the BRICKSTORM backdoor, initially designed for Linux, on Windows systems

  19. 92% of Mobile Apps Found to Use Insecure Cryptographic Methods

    Study reveals 92% of mobile apps use insecure cryptographic methods, exposing millions to data risks

  20. Scalper Bots Fueling DVSA Driving Test Black Market

    DataDome warns that DYI bots are snapping up driving test places en masse

What’s hot on Infosecurity Magazine?