Infosecurity News

New Malware Campaign Exploits 9hits in Docker Assault
Discovered by Cado Security, the campaign deploys two containers to vulnerable Docker instances

Iranian Phishing Campaign Targets Israel-Hamas War Experts
Microsoft said the social engineering campaign aims to steal sensitive data from experts deemed to be able to influence intelligence and policies relating to the Israel-Hamas War

Illicit Cryptocurrency Flows Drop 39% in 2023
Chainalysis data shows major drop in value of funds received into underground crypto addresses in 2023, to $24.2bn

NCSC Builds New “Cyber League” Threat Tracking Community
The UK’s National Cyber Security Centre has launched a Cyber League to monitor emerging cyber-threats

AI, Gaming, FinTech Named Major Cybersecurity Threats For Kids
Kaspersky also noted smart home device popularity and malicious apps as threats to children in 2024

Vendor Email Attacks Surged by 137% in Financial Sector in 2023
Abnormal Security also noted a 71% surge in BEC attacks against the same sector

OpenAI Announces Plans to Combat Misinformation Amid 2024 Elections
OpenAI will implement a provenance standard into DALL-E 3 and link ChatGPT to an authoritative election website in the US

75% of Organizations Hit by Ransomware in 2023
Veeam found that 75% of organizations suffered at least one ransomware attack last year, with 26% hit four or more times

US Government Urges Action to Mitigate Androxgh0st Malware Threat
An advisory from the FBI and CISA says threat actors are deploying the Androxgh0st malware for victim identification and exploitation in target networks

Majorca Tourist Hotspot Hit With $11m Ransom Demand
Municipality of Calvià on the Spanish island of Majorca was hit by a ransomware attack last weekend

GitHub Rotates Credentials and Patches New Bug
GitHub urges customers to apply a new patch and take action if impacted by credential rotation

Phemedrone Stealer Targets Windows Defender Flaw Despite Patch
The malware targets browsers, steals crypto wallet and messaging app data, and collects system information

New Tool Identifies Pegasus and Other iOS Spyware
Kaspersky experts developed the tool after analyzing Shutdown.log, a file retaining reboot information

Email Nightmare: 94% of Firms Hit by Phishing Attacks in 2023
In its latest Email Security Risk Report, Egress found that businesses were 10% more negatively affected by phishing attacks in 2023 than in 2022

Crypto Heists Surge in 2023, $16.93m Already Stolen in 2024
Comparitech revealed crypto heists increased in volume by 42% last year

Ivanti Zero-Days Exploited By Multiple Actors Globally
Volexity detects 1700 compromised Ivanti VPN devices following publication of two zero-days last week

Inferno Drainer Spoofs Over 100 Crypto Brands to Steal $80m+
Group-IB report lifts the lid on infamous crypto-drainer malware Inferno Drainer

Researchers Uncover Major Surge in Global Botnet Activity
Netscout found a spike from 10,000 to 143,957 devices in scans between December 2023 and early January 2024

Senators Demand Probe into SEC Hack After Bitcoin Price Spike
US senators have accused the SEC of failing to properly secure its social media accounts after hackers comprised its X account and posted a fake Bitcoin announcement

Python-Based Tool FBot Disrupts Cloud Security
Discovered by the SentinelLabs team, FBot targets web servers, cloud services and SaaS platforms



