Infosecurity News

  1. Dragonfly 2.0 Attackers Probe Energy Sector

    Determined group may already have access to operational systems, warns Symantec

  2. Lenovo Slapped with $3.5M Fine over Superfish

    32 states have won a multimillion dollar settlement to resolve violations of state consumer protection laws.

  3. Apache Struts Vulns Threatens Fortune 500 Data

    A critical remote code execution vulnerability has been found in the popular open-source framework, threatening corporate data.

  4. Enterprises Struggle to Contain “Information Security Debt”

    451 Research claims consolidation must focus on data and risk-centric approaches

  5. MongoDB Customers Held to Ransom Again

    Over 75,000 victims and counting

  6. 28 Million Users Breached at Taringa, Latin America's Reddit

    The records included usernames, email addresses and passwords hashed with the easily cracked MD5 algorithm.

  7. Latvia Warns of Growing Russian Fake News Challenge

    West is failing to halt Kremlin propaganda, says foreign minister

  8. Non-Profit Calls for UK-Ireland Cyber Task Force

    Countries facing increased threat levels post-Brexit, warns ICCTF

  9. Instagram Hackers May Have Details on Six Million Users

    Celeb victims include Taylor Swift and Leonardo Di Caprio

  10. GitLab Vulns Could Lead to Session Hijacking

    The vulnerability stems from the type of session tokens used by GitLab.

  11. MacEwan University Defrauded Out of $11.8mn in Phishing Attack

    Staff fell for a business email compromise gambit after receiving a request to change banking info for a vendor.

  12. Juniper to Acquire Cyphort

    Juniper will use the buy to shore up its own cyber-portfolio—including its virtualized security offerings.

  13. Foreign Firms Should Fear New Chinese Cyber-Law: Report

    Source code reviews could generate exploits for Chinese spies

  14. Nottinghamshire County Council Exposes Elderly, Disabled PII for 5 Years

    The council has been fined £70,000 by the Information Commissioner’s Office.

  15. Cyber-squatters Target Luxury Brands from Fendi to Prada

    These domains are often used in phishing and scams, including pay-per-click ads, for-profit survey sites and social media scams.

  16. Ransomware Infections on Course to Top 2016 Figures

    Symantec claims organizations are increasingly under threat

  17. Half of Global Firms Failing on PCI Compliance

    Verizon says key in-house skills are often missing

  18. Locky Ransomware Rears its Head in Big August Campaigns

    It's back with a second wave of new but related attacks that build on a variant uncovered in early August.

  19. Jimmy Nukebot Explodes on the Scene, Transforming NeutrinoPOS

    It’s no longer in the banking business. Rather, it’s designed to help bad actors do so much more.

  20. Office 365 Campaign Attacks Companies from Within

    Attackers target Microsoft Office 365 to harvest login credentials and attack from within an organization.

What’s hot on Infosecurity Magazine?