Infosecurity News

  1. Moxa Urges Immediate Updates for Security Vulnerabilities

    Moxa has reported two critical vulnerabilities in its routers and network security appliances that could allow system compromise and arbitrary code execution

  2. Phishing Click Rates Triple in 2024

    Netskope observed a 190% growth in enterprise users clicking phishing links as attackers become more creative in delivering effective lures

  3. UK Government to Ban Creation of Explicit Deepfakes

    The UK government is cracking down on the generation of sexually explicit deepfakes in a bid to protect women and girls

  4. CISA Claims Treasury Breach Did Not Impact Other Agencies

    The US Cybersecurity and Infrastructure Security Agency claims a recent China-linked breach was confined to the Treasury

  5. Supply Chain Attack Targets Key Ethereum Development Tools

    A new supply chain attack targets Ethereum tools, exploiting npm packages to steal sensitive data

  6. New PhishWP Plugin Enables Sophisticated Payment Page Scams

    The PhishWP plugin enables scammers to create fake payment pages, stealing sensitive data via Telegram

  7. Chinese Hackers Double Cyber-Attacks on Taiwan

    Taiwan’s security service said government networks faced 2.4 million attacks in 2024, most of which are attributed to Chinese state actors

  8. New Infostealer Campaign Uses Discord Videogame Lure

    Threat actors are tricking victims into downloading malware with the promise of testing a new videogame

  9. Scammers Drain $500m from Crypto Wallets in a Year

    Scam Sniffer claims that threat actors used wallet drainers to steal $494m from victims in 2024

  10. US Sanctions Chinese Cybersecurity Firm for Global Botnet Attacks

    The US government said that China based firm Integrity Technology Group provided infrastructure for Flax Typhoon to attack multiple US targets

  11. Atos Group Denies Space Bears' Ransomware Attack Claims

    Atos Group has denied the ransomware group Space Bears' claims of compromising its database, calling the allegations unfounded

  12. Crypto Boss Extradited to Face $40bn Fraud Charges

    Former Terraform CEO Do Hyeong Kwon is now in the US facing federal fraud charges

  13. DDoS Disrupts Japanese Mobile Giant Docomo

    Docomo has revealed a DDoS attack on Thursday took down key services

  14. Web3 Attacks Result in $2.3Bn in Cryptocurrency Losses

    The amount of crypto stolen in the Web3 ecosystem rose by 31.6% compared to 2023, with phishing the most costly attack vector

  15. Apple Agrees $95M Settlement Over Siri Privacy Violations

    Apple has agreed to a $95m settlement in a class action lawsuit alleging Siri privacy violations, with eligible users receiving up to $20 per Siri-enabled device

  16. US Confirms Russian GenAI Disinformation Op Targeted Election

    The US government has sanctioned Russian state-affiliated entity CGE, which used a vast GenAI infrastructure to spread disinformation during the US Presidential election

  17. Global Campaign Targets PlugX Malware with Innovative Portal

    Sekoia’s innovative PlugX malware disinfection campaign removed active threats across ten countries

  18. New DoubleClickjacking Attack Bypasses Protections

    DoubleClickjacking bypasses X-Frame-Options and SameSite cookies in double-click sequences, exposing UI authentication flaws

  19. HIPAA Rules Update Proposed to Combat Healthcare Data Breaches

    The US government has set out proposals to increase security obligations on healthcare providers to protect patient data amid surging cyber-attacks in the sector

  20. Hackers Leak Rhode Island Citizens' Data on Dark Web

    The State of Rhode Island has confirmed that cybercriminals have begun publishing data stolen from its social services portal, the RIBridges system

What’s hot on Infosecurity Magazine?