Infosecurity News

  1. US Arrest Man for SEC X Account Hack

    US authorities have charged a man for involvement in the SEC X account hack in January 2024, which falsely announced the approval of Bitcoin Exchange Traded Funds

  2. Cicada3301 Ransomware Targets Critical Sectors in US and UK

    Cicada3301 ransomware has targeted critical sectors in US/UK, leaking data from 30 firms in three months

  3. US Charges Anonymous Sudan Members in DDoS Cybercrime Case

    US authorities have charged two Sudanese linked to DDoS cybercrime group, Anonymous Sudan, which caused $10m in damages

  4. Iranian Hackers Target Critical Infrastructure with Brute Force Attacks

    The ongoing campaign targets multiple critical infrastructure sectors, including healthcare, government, information technology, engineering, and energy

  5. North Korea Escalates Fake IT Worker Schemes to Extort Employers

    Secureworks said it had observed a case where a fake North Korean IT contractor exfiltrated proprietary data before issuing a ransom demand to their former employer

  6. RansomHub Overtakes LockBit as Most Prolific Ransomware Group

    Symantec data reveals RansomHub claimed more attacks than any other group in Q3 2024

  7. Two-thirds of Attributable Malware Linked to Nation States

    Netskope claims 66% of malware attacks last year were backed by nation states

  8. CISA Seeks Feedback on Upcoming Product Security Flaws Guidance

    CISA is asking for feedback on future guidance outlining bad security practices in product development as part of its Secure by Design initiative

  9. NIS2 Confusion: Concerns Over Readiness as Deadline Reached

    NIS2 will be enforced as of October 17, yet many organizations and even EU member states appear completely unprepared for implementation

  10. CISA Urges Improvements in US Software Supply Chain Transparency

    CISA released the third edition of SBOM guidelines to enhance software component transparency

  11. Ethical Hackers Embrace AI Tools Amid Rising Cyber Threats

    A new Bugcrowd study shows 71% of ethical hackers now see AI boosting hacking value, up from 21% in 2023

  12. Coffee Lovers Warned of New Starbucks Phishing Scam

    Phishing emails claiming to be from Starbucks are offering recipients a "free Coffee Lovers Box" in an attempt to steal personal or install malware on devices

  13. Cyber Threats Escalating Beyond Ability to Defend, New NCSC Head Warns

    New NCSC CEO Dr Richard Horne warned in a speech that there is a widening gap between escalating threats and society’s ability to defend against them

  14. FIDO Alliance Proposes New Passkey Exchange Standard

    The new set of specifications could enable users to securely move passkeys and all other credentials across providers

  15. Experts Play Down Significance of Chinese Quantum “Hack”

    DigiCert says imminent crypto threat from quantum computing has been over-hyped

  16. UK Government Launches AI Safety Scheme to Tackle Deepfakes

    New government grants for AI safety research are designed to fund work into deepfakes and other cyber risks

  17. New ConfusedPilot Attack Targets AI Systems with Data Poisoning

    Researchers have discovered a new cyber-attack method called ConfusedPilot that can manipulate AI-generated responses by injecting malicious content into documents referenced by AI systems

  18. Darknet Activity Increases Ahead of 2024 Presidential Vote

    Cyber threats surge ahead of the 2024 election, including phishing, ransomware and Darknet activity

  19. UK: NCSC Offers Education Organizations Free Cyber Services

    The service, developed in collaboration with Cloudflare and Accenture, is available for UK schools and most education service providers

  20. Most Organizations Unprepared for Post-Quantum Threat

    Most organizations are not prepared for the post-quantum threat, despite the recent publication of NIST's first three finalized post-quantum encryption standards

What’s hot on Infosecurity Magazine?