Infosecurity News

Diplomats Attacked with Firmware Bootkit
Custom version of leaked 2015 bootkit is being used to attack diplomats and NGOs

Ransomware Disrupts COVID-19 Medical Trials
Medical trials slowed down after ransomware attack on American company holds data hostage

Video Game Pirates in Custody
US arrests two leaders of notorious video game piracy group, Team Xecuter

KnowBe4 Launches New Resource Center as Part of #NCSAM
Resources in the center include a training plan and awareness posters

HMRC Hit by Multiple Phishing and Spam Emails
More than 15,000 emails with malware were sent to HMRC this year

Most Healthcare Apps Are Riddled with Bugs
Intertrust warns patient data and sensitive IP are at risk

Critical Grindr Account Takeover Bug Rings Alarm Bells
Flaw could have enabled attackers to reset user passwords

UN Shipping Agency Forced Offline After Cyber-Attack
International Maritime Organization appears to have recovered swiftly

Spawn of Demonbot Attacks IoT Devices
Novel attacker uses Demonbot variant of Mirai malware to attack port 60001

Two Charged in ATO Attack on US Athletes
Charges brought after illegal takeover of NFL and NBA players’ social media accounts

US Treasury: Paying Ransomware Gangs Could Violate Regulations
US Treasury issues advisory on potential sanctions risks for facilitating ransomware payments

Former Australian PM Talks Importance of Cyber Awareness
Former Australian Prime Minister Talks ICS, Huawei and awareness

New APT Group XDSpy Targets Belarus and Russian-Speakers
ESET claims group has remained undetected since 2011

Union Warns of Surge in Employee Monitoring at Home
Calls for government regulation and “right to disconnect”

UK Spies Slam Huawei Security
Report claims little progress has been made as vulnerabilities mount

#DTXNOW: Communication is the Foundation of a Strong Cybersecurity Culture
Regular conversations are needed for a company-wide approach to security

H&M Fined €35.2m for GDPR Violations
German arm of Swedish fashion giant given massive fine as company announces closure of 250 stores

Online Journals Flagged as Election Threat
FBI warns online journals may be used to spread disinformation about the US election

LinkedIn Password Thief Jailed
US imprisons cyber-thief who stole millions of user records from Dropbox and LinkedIn

Technical and Cost Concerns of Passwordless Authentication Bother Security Leaders
Cost, storage, user behavior and migration time cited as reasons to not do passwordless authentication



