Infosecurity News
France Bans TikTok, Other 'Fun' Apps From Government Devices
The move is expected to affect roughly 2.5 million government officials
Four Years Behind Bars for Prolific BEC Scammer
Solomon Ekunke Okpe and others made over $1m from online fraud
Call for Submissions to UK's New Computer Misuse Act
Bugcrowd is concerned about a lack of protection for ethical hackers
US Moves to Ban "Anti-Democratic" Spyware
White House says use of tools must be aligned with human rights
Microsoft Fixes Security Flaw in Windows Screenshot Tools
Information disclosure vulnerability aCropalypse could enable malicious actors to recover sections of screenshots
Three Variants of IcedID Malware Discovered
The new variants hint that considerable effort is going into the future of IcedID and its codebase
New MacStealer Targets Catalina, Newer MacOS Versions
The malware can extract information from documents, browser cookies and login information
NCA Harvests Info on DDoS-For-Hire With Fake Booter Sites
Agency attempts to disrupt the cybercrime underground
New BEC Tactics Enable Fake Asset Purchases
FBI warns of scammers using Net-30 and Net-60 terms
Latitude Financial Admits Breach Impacted Millions
Over 14 million records stolen from consumer lender
CISA Unveils Ransomware Notification Initiative
Provides businesses with early warnings to evict threat actors before they can encrypt data
WooCommerce Patches Critical Plugin Flaw Affecting Half a Million Sites
The vulnerability could allow an unauthenticated attacker to gain admin privileges and take over a website
GitHub Updates Security Protocol For Operations Over SSH
The move reportedly did not stem from a compromise of GitHub systems or customer information
IRS Phishing Emails Used to Distribute Emotet
Monster 500MB attachment hides a nasty surprise
UK Parliament Bans TikTok from its Network and Devices
Further blow for Chinese social media app
Security Flaws Cost Fifth of Execs Business
Business leaders still underestimate importance of security to growth
China-Aligned "Operation Tainted Love" Targets Middle East Telecom Providers
The deployment of custom credential theft malware is the main novelty of the new campaign
SharePoint Phishing Scam Targets 1600 Across US, Europe
Cyber-criminals used the scam to steal the credentials for various email accounts
New Post-Exploitation Attack Method Found Affecting Okta Passwords
The flaw derives from the way the Okta system records failed login attempts to instances
UK Government Sets Out Vision for NHS Cybersecurity
Plans to boost cyber-resilience in the health service by 2030