Infosecurity News

  1. New Scattered Spider Tactics Target VMware vSphere Environments

    Scattered Spider has targeted VMware vSphere environments, exploiting retail, airline and insurance sectors

  2. Third-Party Breach Impacts Majority of Allianz Life US Customers

    Insurance firm Allianz Life said that a threat actor accessed personally identifiable information of the majority of its 1.4 million US customers

  3. Naval Group Denies Hack Claims, Alleges "Reputational Attack"

    Despite claims by a hacker, French defense company Naval Group has detected no intrusions into its IT environments at the time of writing

  4. US Woman Gets Eight Years for Part in $17m North Korean Scheme

    Arizonan woman sentenced to 102 months for operating laptop farm for North Korean IT workers

  5. Dating App Breach Exposes Images of 13,000 Women

    Dating app Tea has been compromised by a hacker, resulting in the exposure of 13,000 selfies

  6. BlackSuit Ransomware Group’s Dark Web Sites Seized in Operation Checkmate

    The US and partners from nine countries have taken down part of the ransomware group’s infrastructure

  7. Prolonged Chinese Cyber Espionage Campaign Targets VMware Appliances

    Sygnia observed Chinese cyber campaign dubbed Fire Ant deploying sophisticated techniques to gain full compromise of victim environments, discovering isolated assets

  8. New Chaos Ransomware Emerges, Launches Wave of Attacks

    Cisco Talos warned that the Chaos group, thought to be formed of former BlackSuit members, has launched a wave of attacks targeted a variety of sectors

  9. Malware Campaign Masquerades as Dating Apps to Steal Data

    A large-scale malware campaign known as SarangTrap has been observed using fake dating apps to steal personal data, targeting South Korean users

  10. FBI Exposes The Com’s Criminal Activities and Involvement of Minors

    The US FBI has issued public announcements warning families of The Com, an online criminal network involving minors in various illicit activities

  11. Ransomware Deployed in Compromised SharePoint Servers

    Microsoft said Chinese actor Storm-2603 is deploying Warlock ransomware following the exploitation of vulnerabilities in on-prem SharePoint systems

  12. UK and Romania Crack Down on ATM Fraudster Network

    Investigators assessed that the criminal group’s stolen funds amount to €580,000

  13. Active Campaign Exploits Cloud Flaws for Cryptomining

    Wiz believes the active campaign is part of a broader crypto-scam infrastructure, which uses a wide range of exploitation techniques

  14. New York Proposes Cybersecurity Regulations for Water Systems

    A series of new cybersecurity regulations related to the water industry have been set out by New York state agencies

  15. Suspected XSS Forum Admin Arrested in Ukraine

    The individual is accused of numerous illicit cybercrime and ransomware activities that have generated at least $7m in profit

  16. France: New Data Breach Could Affect 340,000 Jobseekers

    The French employment agency’s partner web portal has been accessed by a malicious actor

  17. Clorox Sues IT Service Provider Cognizant for Causing 2023 Cyber-Attack

    Cognizant handed over a password to the cybercriminal without asking any authentication questions

  18. US Government Warns of Wide-Ranging Interlock Attacks

    A joint US government advisory highlighted novel initial access techniques deployed by Interlock, and urged businesses and critical infrastructure to stay vigilant

  19. Global Ransomware Attacks Plummet 43% in Q2 2025

    NCC Group observed a 43% drop in ransomware attacks in Q2 2025, driven by law enforcement actions and internal conflicts in groups

  20. Russian Threat Actors Target NGOs with New OAuth Phishing Tactics

    A new wave of phishing attacks exploiting Microsoft 365 OAuth tools has been observed impersonating diplomats to steal access codes

What’s Hot on Infosecurity Magazine?