Infosecurity News
Ivanti Patches Zero-Day Bug Used in Norway Attacks
CVSS 10.0 score means patch should be urgently deployed by customers
Data Breach Costs Hit Record High but Fall For Some
IBM’s annual study finds over half of breached firms pass costs on
Tampa General Hospital Data Breach Impacts 1.2 Million Patients
TGH said it first detected unusual activity on its computer systems on May 31 2023
Biden-Harris Administration Secures AI Commitments For Safety
Amazon, Anthropic, Google, Inflection, Meta, Microsoft and OpenAI all joined the initiative
Cyber-Attack Strikes Norwegian Government Ministries
Erik Hope revealed the attack was traced back to a vulnerability in a government supplier
Novel Open Source Supply Chain Attacks Target Banking Sector
Checkmarx has identified two distinct open-source software supply chain attacks targeting the financial sector for the first time
Booz Allen Pays $377m to Settle Government Fraud Case
Contractor was accused of violating False Claims Act
Thousands of Citrix Servers Exposed to Zero-Day Bug
Remote code execution attacks are ongoing
Clop Could Make $100m from MOVEit Campaign
Coveware claims small number of victims paid very high ransoms
US DoJ Announces Plan to Shakeup Cybercrime Investigations
In a speech, the DoJ’s Nicole M. Argentieri announced the merger of the NCET into the CCIPS
Plurilock Launches Generative AI 'Guardrails' Product for Workforces
PromptGuard is a new cloud access security broker (CASB) that supports employee AI use while ensuring that sensitive data is not released to AI systems
Russian Prosecutor Asks for 18 Years in Jail for Group-IB Founder
Ilya Sachkov, the founder of cybersecurity provider Group-IB, is accused of state treason
Chinese Hackers Breached Ambassador’s Email
Storm-0558 attack was revealed last week
Clop Drives Record Ransomware Activity in June
Scores of victims hit by MOVEit campaign
GitHub Warns Devs of North Korean Attacks
Social engineering campaign designed to deliver malicious npm packages
New Study Highlights Critical Infrastructure's Resilience
They exhibited a 20% higher threat detection behavior than the industry average
Zyxel Vulnerability Exploited by DDoS Botnets on Linux Systems
Fortinet discovered Multiple DDoS botnets, including Dark.IoT, a variant based on Mirai
Microsoft Strengthens Cloud Logging Against Nation-State Threats
The company said they collaborated closely with CISA to expand cloud logging
Old Roblox Data Leak Resurfaces, 4000 Users' Personal Information Exposed
Malicious actors have recently used an allegedly old data leak affecting Roblox developers
Half of AI Open Source Projects Reference Buggy Packages
Study also finds LLMs are poor at detecting malicious code