Infosecurity News
Financial Services Targeted in 28% of UK Cyber-Attacks Last Year
API attacks, bad bots and DDoS attacks were the industry's main security challenges
Killnet Attackers DDoS US and Dutch Hospitals
Retaliatory Russian attacks latest response to geopolitical moves
Two US Doctors Convicted of $30m Medicare Fraud
Claims submitted for medical equipment not needed by patients
QNAP: Patch Critical Remote Code Injection Bug
Vulnerability affects QTS and QuTS Hero firmware
JD Sports Confirms Breach Affected 10 Million Customers
The cyber-attack hit the company between November 2018 and October 2020
Hackers Use TrickGate Software to Deploy Emotet, REvil, Other Malware
Threat actors used TrickGate to conduct between 40 and 650 attacks per week in the last two years
Devs on Dark Web Forums Paid Up to $20,000 For Illicit Activities
The data comes from 155 dark web forums analyzed between January 2020 and June 2022
Fake Money Apps Garner Millions of Android Downloads
Over 20 million users install apps from Google Play
New Yorker Gets Four Years for $9m COVID Fraud Scheme
Woman recruited multiple co-conspirators to help her
Five Data Wipers Attack Ukrainian News Agency
Russia's Sandworm group suspected of destructive attack
Multiple Vulnerabilities Found In Healthcare Software OpenEMR
Two of these vulnerabilities combined could lead to unauthenticated remote code execution
Black Basta Deploys PlugX Malware in USB Devices With New Technique
The variant is “wormable” and can infect USB devices to hide itself from the Windows OS
New 'Pig Butchering' Scam in West Africa Impersonates US Financial Advisors
DomainTools said most of these attacks exploited professional network services such as LinkedIn
Security is Key to Business Transformation, Say IT Chiefs
Two-fifths see it as a critical innovation driver
Global Action "Dismantles" Hive Ransomware Group
FBI distributes hundreds of decryption keys to victims
Microsoft: Update On-Premises Exchange Server Now
Attacks are not going away, tech giant warns
Iranian Group Cobalt Sapling Targets Saudi Arabia With New Persona
The findings come from cybersecurity experts at Secureworks' Counter Threat Unit
Zacks Investment Research Confirms Breach Affecting 820,000 Customers
The firm believes the unauthorized access occurred between November 2021 and August 2022
CISA Warns Against Malicious Use of Legitimate RMM Software
The document mentions an October 2022 cyber campaign involving the malicious use of RMM solutions
NCSC: Iranian and Russian Groups Targeting Government, Activists and Journalists With Spearphishing
The NCSC advisory details tactics used by Russia-based threat actor SEABORGIUM and Iran-based group TA453