Infosecurity News

New Botnet Campaign Exploits Ruckus Wireless Flaw
Tracked CVE-2023-25717, the flaw was recently exploited by the AndoryuBot botnet, says Fortinet

Only 39% of IT Security Decision-Makers See it As Business Enabler
The Delinea report also suggests 36% of them believe cybersecurity is only important for compliance

NextGen Healthcare Data Breach: One Million Patient Records Affected
The breach reportedly affected a database accessed via stolen client credentials

EU's Client-Side Scanning Plans Could be Unlawful
Lawyers for the bloc issue warning

CISOs Worried About Personal Liability For Breaches
Many want insurance to cover any financial impact

Operation Power Off: 13 More Booter Sites Seized
Four pleaded guilty to running DDoS-for-hire operations

Five Takeaways From the Russian Cyber-Attack on Viasat's Satellites
The 2022 AcidRain wiper attack, which shut down satellite services for thousands of people in Ukraine and Western Europe, was extensively discussed during the CYSAT conference in Paris

Dallas Police Department Compromised in Ransomware Attack
The attack took down essential services, including some 911 dispatch systems

North Korean APT Kimsuky Launches Global Spear-Phishing Campaign
ReconShark is sent via emails containing OneDrive links leading to documents with malicious macros

"Kekw" Malware in Python Packages Could Steal Data and Hijack Crypto
Cyble said the Python security team has now removed the malicious package from PyPI

Cyber Patrols Lead to Seizure of Stolen Artefacts
Items dating back thousands of years recovered in new crackdown

Ransomware Actors Extort University Via Alert System
Innovative tactics turn up the heat on Bluefield University

Subscription Trojan Downloaded 600K Times From Google Play
Kaspersky says Fleckpe was hidden in 11 apps

Brightline Hack Exposes Data of Over 780,000 Child Mental Health Patients
Brightline said the breach was due to a zero-day flaw in Fortra GoAnywhere MFT

Meta Tackles Malware Posing as ChatGPT in Persistent Campaigns
Malware families detected and disrupted include Ducktail and the newly identified NodeStealer

Android Spyware BouldSpy Linked to Iranian Government
The mobile malware has been used by threat actors to target minority groups

Consumer Group Slams Bank App Fraud Failings
Which? wants banks to improve customer outreach and security

Malicious HTML Attachment Volumes Surge
File type remains the most dangerous in email-borne threats

US Authorities Dismantle Dark Web "Card Checking" Platform
Try2Check helped cyber-criminals test stolen card details

CISA Advises FCC Covered List For Risk Management
Some of the companies included in the list are Huawei, ZTE, Dahua and China Unicom



