Infosecurity News
#InfosecurityEurope: Breaches Down as Security Culture Improves
Telstra Purple research has some rare good news for CISOs
LockBit Makes $91m From US Victims in Two Years
Allied security agencies reveal figure in new advisory
Malicious Actors Exploit GitHub to Distribute Fake Exploits
The perpetrators went to great lengths to make their profiles appear genuine
PII Exposed: Unauthenticated IDOR in WooCommerce Stripe Plugin
The vulnerability affects versions 7.4.0 and below of the WordPress plugin
EU Passes Landmark Artificial Intelligence Act
The European Parliament adopted the latest draft of the legislation with an overwhelming majority
Researchers Uncover XSS Vulnerabilities in Azure Services
They could allow unauthorized access to sessions within the compromised Azure service iframe
#InfosecurityEurope: (ISC)² and CIISec Release Guide to Inclusive Language in Cybersecurity
The guide to inclusive language in cybersecurity aims to make the industry more welcoming to people from all backgrounds
#InfosecurityEurope: Cyber Leaders’ Plea to Tackle the Industry’s Mental Health Crisis
A new report looks at the scale of mental health challenges in cybersecurity, and urges action from stakeholders to try and mitigate the problem
Europol Warns of Metaverse and AI Terror Threat
Emerging technologies could help propaganda and recruitment efforts
MFA Bypass Kits Account For One Million Monthly Messages
Threat actors evolve to multi-factor authentication
No Zero-Days but PGM Flaws Cause Patch Tuesday Concern
Microsoft issues nearly 80 CVEs this month
Fortinet Addresses Critical FortiGate SSL-VPN Vulnerability
The release notes did not initially mention the critical SSL-VPN RCE vulnerability being addressed
Crypto Wallets Under Attack By DoubleFinger Malware
The malware discovered by Kaspersky employs a multistage attack method
#InfosecurityEurope: Armis Highlights Riskiest Devices in Critical Infrastructure
Engineering workstations, SCADA and automation servers, historians and PLCs identified as highest risk
#InfosecurityEurope: What TechUK's New Plan Means for Cybersecurity
The British tech trade association called for more collaboration between government and industry actors to improve the security of critical sectors
#InfosecurityEurope: Leading Cybersecurity Providers to Share Insights on Breach Containment
As cybersecurity breaches continue to steal the headlines, exhibitors at Infosecurity Europe are lining up to provide insight and advice
#InfosecurityEurope: Top Five Things to Check Out at This Year’s Event
With Infosecurity Europe just around the corner, here are four of the must-see activities happening at this year’s event
Microsoft Pays $20m to Settle Another FTC COPPA Case
Regulator alleged Microsoft knowingly collected personal information from children
Ofcom Latest MOVEit Victim as Exploit Code Released
UK regulator admits hundreds of employees are impacted
Historic Zacks Breach Impacts Nearly Nine Million
Stock research firm revealed more recent incident in January