Infosecurity News
LastPass Hackers Stole Source Code
Password management firm reveals incident in early August
Microsoft Attributes New Post-Compromise Capability to Nobelium
MagicWeb improves on FoggyWeb by facilitating covert access directly via a malicious DLL
Talos Renews Cybersecurity Support For Ukraine on Independence Day
Cisco and Talos both have resources available to organizations in Ukraine in need of assistance
CISA Releases Guidelines to Aid Companies Transition to Post-quantum Cryptography
The guide provides overview of potential impacts of quantum computing on National Critical Functions
US Firm Pays $16m to Settle Healthcare Fraud Claims
Essilor International resolves False Claims Act allegations
Workplace Stress Worse than Cyber-Attack Fears for Security Pros
CIISec study finds few have adopted industry best practices
Scammers Create "AI Hologram" of C-Suite Crypto Exec
Online fraudsters appear to be upping their game
Plex Suffers Data Breach, Warns Users to Reset Passwords
The company said it discovered suspicious activity on one of its databases on Tuesday
War in Ukraine Has Pushed Two-Thirds of Businesses to Change Cyber Strategy
The use of machine identity tools is growing in state-sponsored cyber-attacks
VMware Fixes Privilege Escalation Vulnerabilities in VMware Tools
The flaw reportedly impacted the software on both Windows and Linux systems
IoT Vulnerability Disclosures Up 57% in Six Months, Claroty Reveals
The research also found that vendor self-disclosures increased by 69%
Facebook Bug Causes Users’ Feeds to Be Spammed
Users’ feeds were spammed with posts from strangers on the pages of celebrities
Ransomware Surges to 1.2 Million Attacks Per Month
French hospital is the latest to be hit
EU Outlines Critical Cyber Response to Ukraine War
Agencies team up to police borders and mitigate Russian cyber-threats
US Healthcare Sector Breaches 342m+ Records Since 2009
Biggest year so far was 2020
NCSC Shares Guidance to Help Secure Large Construction Projects
The guide includes input from firms with experience in joint ventures, including major infrastructure contracts such as HS2 and Crossrail
Ex-Security Chief Accuses Twitter of Cybersecurity Negligence
Peiter Zatko admitted that he “reasonably feared Twitter could suffer an Equifax-level hack”
CISA Adds Palo Alto Networks' PAN-OS Vulnerability to Catalog
The flaw would allow a network-based unauthenticated threat actor to perform DoS attacks
Air-Gap Attack Exploits Gyroscope Ultrasonic Covert Channel to Leak Data
Gairoscope is a covert ultrasonic channel that does not require a microphone on the receiving side
Counterfeit Android Devices Revealed to Contain Backdoor Designed to Hack WhatsApp
At least four different smartphones affected: ‘P48pro’, ‘radmi note 8’, ‘Note30u’ and ‘Mate40’