Infosecurity News
Security Flaws Cost Fifth of Execs Business
Business leaders still underestimate importance of security to growth
China-Aligned "Operation Tainted Love" Targets Middle East Telecom Providers
The deployment of custom credential theft malware is the main novelty of the new campaign
SharePoint Phishing Scam Targets 1600 Across US, Europe
Cyber-criminals used the scam to steal the credentials for various email accounts
New Post-Exploitation Attack Method Found Affecting Okta Passwords
The flaw derives from the way the Okta system records failed login attempts to instances
UK Government Sets Out Vision for NHS Cybersecurity
Plans to boost cyber-resilience in the health service by 2030
Malicious ChatGPT Chrome Extension Hijacks Facebook Accounts
Software was unwittingly downloaded thousands of times
Irish Food Giant Dole Admits Employee Data Breach
Incident was linked to previously disclosed ransomware attack
BreachForums Shuts Down After Admin's Arrest
The forum's admin said the move might be temporary and that they will set up a new Telegram group
New Android Banking Trojan 'Nexus' Promoted As MaaS
Nexus offers overlay attacks and keylogging activities designed to steal victims' credentials
CISA and NSA Enhance Security Framework With New IAM Guide
Guidance includes best practices for identity governance, environmental hardening, SSO, MFA and IAM auditing
Security Researchers Spot $36m BEC Attack
Threat actors impersonated target company's vendor
Just 1% of Dot-Org Domains Are Fully DMARC Protected
Organizations are failing with their anti-phishing measures
Ransomware Attacks Double in Europe's Transport Sector
ENISA claims most threats are opportunistic
Over 2400 Fake Pages Found Targeting Job Seekers in Middle East, Africa
The scam targeted more than 40 well-known brands from 13 countries in the MEA region
CommonMagic Targets Entities in Russo-Ukrainian Conflict Zone
Administrative, agriculture and transportation firms targeted in Donetsk, Luhansk and Crimea
Hackers Use NuGet Packages to Target .NET Developers
JFrog said this is the first instance of packages with malicious code in NuGet
NCSC Launches Two New Tools for Small Businesses
Offerings are designed to improve security for millions of firms
General Bytes Bitcoin ATMs Hacked to Steal Funds
Company urges operators to patch now
Ferrari Reveals Data Breach Ransom Attack
Carmaker says it didn't pay its extorters
Mispadu Trojan Steals 90,000+ Banking Credentials From Latin American Victims
These included a number of government websites: 105 in Chile, 431 in Mexico and 265 in Peru