Infosecurity News
Researchers Find 250 Million Artifacts Exposed in Misconfigured Registries
More than 65,000 container images also at risk
#RSAC: Climate Change is Increasing Cyber-Risks
Chloe Messdaghi outlines the link between climate change and increased cyber-threats, and says this topic must be addressed
#RSAC: Cyber Intrusion Campaign Against Three US Federal Agencies Thwarted
The CISA and CNMF prevent a foreign-based cyber-criminal carrying out an attack on three US Federal Agencies
#RSAC: Understanding AI's Role in Cybersecurity Beyond the Hype
Diana Kelley explains why unrealistic expectations of AI can have serious consequences
#RSAC: Computer Science Courses Must Teach Cybersecurity to Meet US Government Goals
The US government has for security to become a standard component of computer science courses. Infosecurity investigates how this can be achieved
Scammers Impersonate Meta in Facebook Campaign With 3200 Profiles
Phishing websites and session hijacking attacks were used to access Facebook and other accounts.
US Navy Contractor Fincantieri Marine Group Hit by Cyber-Attack
Shipbuilder said the incident affected its email server and some network operations
Tomiris and Turla APT Groups Collaborate to Target Government Entities
Deployed malware aims to steal internal documents from CIS government and diplomatic entities
Cloud Complexity Means Bugs Are Missed in Testing
Most CISOs think vulnerability management is getting harder
American Bar Association Breach Hits 1.5 Million Members
Website usernames and passwords stolen in March raid
3CX Hackers Also Compromised Critical Infrastructure Firms
Symantec warns North Korean actors may return for further exploitation
CFPB Employee Sends 256,000 Consumers' Data to Personal Email
Congressman Bill Huizenga addressed the claims in a letter to CFPB director, Rohit Chopra
Evil Extractor Targets Windows Devices to Steal Sensitive Data
New malware operates through several modules that rely on a File Transfer Protocol service
Trojanized Installers Used to Distribute Bumblebee Malware
Secureworks’ Counter Threat Unit analyzed the findings in a report published on Thursday
#CYBERUK23: Five Takeaways From the NCSC Conference on the UK's Cyber Strategy
More collaboration, both with the private sector and international allies, is at the top of the list in the UK’s cyber playbook
Government Agencies Release Blueprint for Secure Smart Cities
NCSC and CISA want to balance connectivity with resilience
China Developing Anti-Satellite Weapons - Report
Pentagon leak reveals US concerns over technology push
Capita: Data Was Taken in March Cyber Incident
IT outsourcer claims customer, employee and supplier info may be at risk
Two Connected Software Supply Chain Attacks Lead to 3CX Compromise
Mandiant said this would be the first instance of a software supply chain attack leading to another
Daggerfly APT Targets African Telecoms Firm With New MgBot Malware
Symantec described the findings today, saying the ongoing campaign likely started in November 2022