Infosecurity News

  1. New ConfusedPilot Attack Targets AI Systems with Data Poisoning

    Researchers have discovered a new cyber-attack method called ConfusedPilot that can manipulate AI-generated responses by injecting malicious content into documents referenced by AI systems

  2. Darknet Activity Increases Ahead of 2024 Presidential Vote

    Cyber threats surge ahead of the 2024 election, including phishing, ransomware and Darknet activity

  3. UK: NCSC Offers Education Organizations Free Cyber Services

    The service, developed in collaboration with Cloudflare and Accenture, is available for UK schools and most education service providers

  4. Most Organizations Unprepared for Post-Quantum Threat

    Most organizations are not prepared for the post-quantum threat, despite the recent publication of NIST's first three finalized post-quantum encryption standards

  5. Microsoft: Nation-States Team Up with Cybercriminals for Attacks

    Microsoft has observed nation states ramping up cooperation with cybercriminals to conduct operations in the past year

  6. Cerberus Android Banking Trojan Deployed in New Multi-Stage Malicious Campaign

    The sophisticate campaign, ErrorFather, employs keylogging, virtual networks and a domain generation algorithm to target Android users

  7. Insurer Aims to “Clawback” BEC Losses After £1.4m Success

    Coalition’s new service aims to mitigate the impact of growing UK corporate fraud losses

  8. Eight Million Users Install 200+ Malicious Apps from Google Play

    Zscaler has found more than 200 malicious apps on Google Play with over eight million installs

  9. Telekopye Scammers Target Booking.com and Airbnb Users

    Online scammers are targeting Booking.com and Airbnb users with Telekopye, a Telegram-based toolkit

  10. CISA Urges Encryption of Cookies in F5 BIG-IP Systems

    CISA urged organizations to tackle security risks from unencrypted cookies in F5 BIG-IP LTM systems

  11. US DoD Tightens Cybersecurity Standards for Defense Contractors

    The US DoD has finalized the Cybersecurity Maturity Model Certification (CMMC) Program, which defense contractors must pass to bid for government contracts

  12. Pokémon Developer Game Freak Suffers Data Breach

    Personal data of over 2600 employees has been exposed and insider information about the Switch 2 and future Pokémon games leaked

  13. Casio Confirms Ransomware Outage and Data Breach

    Japanese electronics firm Casio has reported a ransomware attack and data breach

  14. Skills Shortages Now a Top-Two Security Risk for SMBs

    Sophos claims that a lack of cybersecurity talent is considered a major risk by SMBs

  15. NHS England Warns of Critical Veeam Vulnerability Under Active Exploitation

    NHS England has issued an alert regarding a critical Veeam Backup & Replication vulnerability that is being actively exploited, potentially leading to remote code execution

  16. US Border Agency Under Fire for App's Handling of Personal Data

    Access Now announced that the US Customs and Border Protection agency released records on its app following the NGO’s lawsuit

  17. Sonatype Reports 156% Increase in OSS Malicious Packages

    A new Sonatype report reveals a 156% surge in open source malware, with over 704,102 malicious packages identified since 2019, as OSS adoption continues to skyrocket

  18. Russia's SVR Targets Zimbra, TeamCity Servers for Cyber Espionage

    Russian-backed APT29 has been spying on US and European organizations since at least 2021, a US-UK joint advisory said

  19. Disinformation Campaign Targets Moldova Ahead of EU Referendum

    Operation MiddleFloor targets Moldova’s October elections, spreading EU disinformation via email

  20. Over 10m Conversations Exposed in AI Call Center Hack

    The data breach exposed more than 10m customer conversations from an AI call center platform in the Middle East

What’s hot on Infosecurity Magazine?