Infosecurity News

  1. Europol Warns of Home Routing Challenges For Lawful Interception

    Law Enforcement Agencies can’t intercept communications without an agreement disabling PET in home routing

  2. Meta Faces Suspension of AI Data Training in Brazil

    The action comes in response to concerns over the company’s updated privacy policy

  3. Over $1bn in Cryptocurrency Lost to Web3 Cyber Incidents in 2024

    Certik observed the loss of $1.1bn worth of cryptocurrency across Web3 platforms in the first half of 2024, with phishing the most common vector

  4. Gamers' Data Exposed in RPG Platform Roll20 Breach

    Roll20 confirmed its administrative website account was accessed by a “bad actor,” leaving its users’ personal information exposed

  5. New Ransomware Group Phones Execs to Extort Payment

    Researchers claim the Volcano Demon ransomware group personally phone victims to pressure them into paying

  6. UK’s NCA Leads Major Cobalt Strike Takedown

    Global law enforcers have share intelligence leading to the takedown of hundreds of IP addresses hosting Cobalt Strike

  7. WordPress Plugins at Risk From Polyfill Library Compromise

    The attack exploits the polyfill.io domain, which was recently acquired by Funnull, a China-based entity

  8. Microsoft Uncovers Major Flaws in Rockwell PanelView Plus

    The vulnerabilities stem from manipulable custom classes in PanelView Plus

  9. Cyber Extortion Soars: SMBs Hit Four Times Harder

    Orange Cyberdefense’s latest Cy-Xplorer report shows a 77% rise in cyber extortion, with SMBs impacted 4.2 times more often than large enterprises

  10. Half of Employees Fear Punishment for Reporting Security Mistakes

    A ThinkCyber survey conducted at Infosecurity Europe 2024 found that half of employees are afraid of reporting security mistakes

  11. New RUSI Report Exposes Psychological Toll of Ransomware, Urges Action

    A new report reveals the hidden mental health toll of ransomware attacks on victims, urging a focus on well-being alongside data and system recovery

  12. APP Fraud Singled Out as Biggest Financial Crime Threat

    Payments professionals have highlighted authorized push payment (APP) fraud as the top threat facing businesses and consumers

  13. Dozens of Arrests Disrupt €2.5m Vishing Gang

    Police have arrested 54 suspected members of a vishing group who stole the life savings of scores of victims

  14. Mobile Political Spam Surges Threefold For 2024 Election

    Proofpoint highlighted how smishing, impersonation and spam are eroding trust in mobile messaging

  15. Chrome Update Will Block Entrust Certificates by November 2024

    The move follows a series of reported compliance failures and lack of progress in addressing publicly disclosed incidents

  16. Ransomware Attack Demands Reach a Staggering $5.2m in 2024

    Comparitech calculated that the average ransom demand was over $5.2m in the first six months of 2024, with 421 confirmed incidents during this period

  17. Health Tech Execs Get Jail Time For $1bn Fraud Scheme

    The former CEO and COO of a health startup will spend years in jail after conducting a large-scale fraud scheme

  18. Cisco Patches Zero-Day Bug Used by Chinese Velvet Ant Group

    Cisco has patched a zero-day vulnerability exploited by a Chinese APT group to compromise Nexus switches

  19. Meta’s ‘Pay or Consent’ Data Model Breaches EU Law

    The EU Commission said Meta’s pay or consent model means users cannot freely consent to their personal data being collected for advertising purposes

  20. Critical OpenSSH Flaw Enables Full System Compromise

    A newly discovered RCE vulnerability, which can lead to full system compromise, has put over 14 million OpenSSH server instances are potentially at risk, according to Qualys

What’s hot on Infosecurity Magazine?