Infosecurity News

  1. Coinbase Breach Affected Almost 70,000 Customers

    The US cryptocurrency exchange claimed that the breach occurred in December 2024

  2. Critical Zero-Days Found in Versa Networks SD-WAN/SASE Platform

    The unpatched vulnerabilities, with a CVSS score of 8.6 to 10.0, can lead to remote code execution via authentication bypass

  3. Sensitive Personal Data Stolen in West Lothian Ransomware Attack

    West Lothian Council confirmed that ransomware attackers have stolen personal and sensitive information held on its education network

  4. Global Law Enforcers and Microsoft Seize 2300+ Lumma Stealer Domains

    Law enforcers worldwide have teamed up with Microsoft to disrupt the infrastructure behind Lumma Stealer

  5. Western Logistics and Tech Firms Targeted by Russia’s APT28

    NSA, NCSC and allies warn Western tech and logistics firms of Russian APT28 cyber-espionage threat

  6. #Infosec2025: NCC Group Expert Warns UK Firms to Prepare for Cyber Security and Resilience Bill

    UK businesses should start to plan for required changes to their cybersecurity programs ahead of the Cyber Security and Resilience Bill

  7. Cybercriminals Mimic Kling AI to Distribute Infostealer Malware

    A new malware campaign disguised as Kling AI used fake Facebook ads and counterfeit websites to distribute an infostealer

  8. Flaw in Google Cloud Functions Sparks Broader Security Concerns

    Patched privilege escalation flaw in Google Cloud Platform linked to wider cloud security concerns

  9. US Teen to Plead Guilty in PowerSchool Extortion Campaign

    The 19-year-old and his accomplices obtained key data for the extortion scheme in a 2022 breach of a US telco

  10. Two-Fifths of Americans Want to Ban Biometric Use

    ITRC report finds that 39% of American consumers believe biometric use should be banned

  11. M&S Braces for £300 Million Cyber-Attack Costs

    An M&S trading update estimates the ongoing cyber-incident will cost £300m, largely from lost sales due to the suspension of online orders

  12. NCSC Helps Firms Securely Dispose of Old IT Assets

    A new NCSC guide offers useful information on how to safely and securely dispose of end-of-life assets

  13. Uncensored AI Tool Raises Cybersecurity Alarms

    The Venice.ai chatbot gained traction in hacking forums for its uncensored access to advanced models

  14. Debt Collector Data Breach Affects 200,000 Harbin Clinic Patients

    A data breach at Nationwide Recovery Services compromised data of 200,000 Harbin Clinic patients

  15. Russian APT Groups Intensify Attacks in Europe with Zero-Day Exploits and Wipers

    Researchers at ESET observed strengthened cyber-offensive activity from Russian groups, especially against Ukrainian and European entities

  16. Mounting GenAI Cyber Risks Spur Investment in AI Security

    Thales found that 73% of organizations are investing in AI-specific security tools, amid surging takeup of GenAI tools in enterprises

  17. Half of Consumers Targeted by Social Media Fraud Ads

    Around half of US and UK consumers have seen fraud ads and content on ‘refund hacks’ on social media

  18. New 23andMe Buyer Regeneron Promises to Prioritize Security

    Regeneron, which intends to acquire 23andMe for $256m, says data security and privacy will be a priority

  19. New Malware on PyPI Poses Threat to Open-Source Developers

    Malicious dbgpkg package on PyPI poses as a debugging utility but acts as a delivery mechanism for a stealthy backdoor

  20. RCE Vulnerability Found in RomethemeKit For Elementor Plugin

    RomethemeKit for Elementor has released a patch addressing an RCE vulnerability exposing 30,000 sites

What’s hot on Infosecurity Magazine?