Infosecurity News
Over 100,000 Users of Hacking Forums Infected With Malware
Results come from analysis of 100 leading cybercrime sites
FBI: Mobile Beta-Testing Apps Are Major Security Risk
Device takeover, account hijacking and info theft could occur
Alberta Dental Services Security Breach Exposes 1.47M Records
The breach was discovered on July 9 after an unauthorized third party accessed ADSC’s IT infrastructure
Several Flaws Found in CyberPower and Dataprobe Products
Trellix cybersecurity researchers discussed the implications of these flaws in a new blog post published on Sunday
Security Researchers Publish Gigabud Banking Malware Analysis
Group-IB said Gigabud doesn’t execute malicious actions immediately but waits for user authorization
Microsoft: Critical CODESYS Flaws Could Shut Down Power Plants
The vulnerabilities put critical infrastructure organizations at risk of attacks such as remote code execution (RCE) and denial of service (DoS)
Authorities Take Down Lolek Bulletproof Hosting Provider
A Polish national arrested in the US could face up to 45 years in prison if convicted on all counts
Multiple Flaws Found in the Avada WordPress Theme and Plugin
The security flaws were uncovered by Patchstack security researcher Rafie Muhammad
DroxiDat-Cobalt Strike Duo Targets Power Generator Network
Kaspersky said the attackers deployed the payload to collect valuable system information
Lapsus$ Hacker Group Exposed in Latest CSRB Report
The CSRB proposed ten concrete recommendations for both governmental bodies and industries
DHS to Review Microsoft’s Security in Chinese Email Hack
The review will also conduct a broader review of issues relating to cloud-based identity and authentication infrastructure
#BHUSA: Security Risks to Boom in the Era of Widespread Generative AI Adoption
Enterprise usages of generative AI are what is going to turn the threat model of many organizations upside down, Maria Markstedter argued during her speech at Black Hat USA
UK Government Slammed For Encryption Mistruths
Technology secretary branded “delusion”
CISA: New Whirlpool Backdoor Used in Barracuda ESG Campaign
China-linked APT group has been blamed for the attacks
Researchers Suggest Ways to Tackle Thermal Attacks
Device manufacturers and users have a role to play in mitigating the threat
#BHUSA: White House, DARPA and CISA Ask for Help in Securing Open Source Software
Kemba Walden announced at Black Hat USA that five US government agencies were launching a request for information on open source software security
#BHUSA: US National Security Agency Announces Codebreaker Challenge Theme
Contestants of the 10-year-old NSA competition will have to decipher an unknown signal in overseas US territory
New York Introduces First-Ever Statewide Cybersecurity Strategy
Governor Kathy Hochul reinforced the strategy with a $600m commitment
APT31 Linked to Recent Industrial Attacks in Eastern Europe
Kaspersky published the third installment of their investigation on this campaign earlier today
#BHUSA: Only 22% of Firms Have Mature Threat Intelligence Programs
OPSWAT presented the findings is its latest Threat Intelligence Survey