16 Sep

Microsoft blocks bait for ‘fastest-growing’ 365 phish kit, seizes 338 domains

Microsoft has seized 338 websites associated with RaccoonO365 and identified the leader of the phishing service – Joshua Ogundipe – as part of a larger

Author rabih
16 Sep

Criminals broke into the system Google uses to share info with cops

Google confirmed that miscreants created a fraudulent account in its Law Enforcement Request System (LERS) portal, which police and other government agencies use to ask

Author rabih
16 Sep

Apple 0-day likely used in spy attacks affected devices as old as iPhone 8

Apple backported a fix to older iPhones and iPads for a serious bug it patched last month – but only after it may have been

Author rabih
16 Sep

Self-propagating worm fuels latest npm supply chain compromise

The npm platform is the target of another supply chain attack, with crims already compromising 187 packages and counting. According to Charlie Eriksen, malware researcher

Author rabih
16 Sep

‘FileFix’ attacks use fake Facebook security alerts to trick victims into running infostealers

An attack called FileFix is masquerading as a Facebook security alert before ultimately dropping the widely used StealC infostealer and malware downloader. FileFix is a

Author rabih
16 Sep

HybridPetya: The Petya/NotPetya copycat comes with a twist

HybridPetya is the fourth publicly known real or proof-of-concept bootkit with UEFI Secure Boot bypass functionality 16 Sep 2025 ESET researchers have uncovered a new

Author rabih
16 Sep

JLR stuck in neutral as losses skyrocket amid cyberattack cleanup

Jaguar Land Rover (JLR) has announced a further extension to its multi-site global shutdown, bringing its cyber-related downtime to nearly four weeks. The carmaker said

Author rabih
16 Sep

China slaps 1-hour deadline on reporting serious cyber incidents

Beijing will soon expect Chinese network operators to ‘fess up to serious cyber incidents within an hour of spotting them – or risk penalties for

Author rabih
15 Sep

Careless engineer stored recovery codes in plaintext, got whole org pwned

Failing to encrypt sensitive data leaves you wide open to attack. During the recent SonicWall attack spree, intruders bypassed multi-factor authentication (MFA) in at least

Author rabih
15 Sep

Security begins with visibility: How IGA brings hidden access risks to light

Partner Content From the moment users log onto their machines, access rights shape their experience. Access rights determine which apps they can run, which directories

Author rabih
15 Sep

Former FinWise employee may have accessed nearly 700K customer records

A US fintech biz is writing to nearly 700,000 customers because a former employee may have accessed or acquired their data after leaving the company.

Author rabih
15 Sep

Nork snoops whip up fake South Korean military ID with help from ChatGPT

North Korean spies used ChatGPT to generate a fake military ID for use in an espionage campaign against a South Korean defense-related institution, according to

Author rabih
15 Sep

China turns the screws on Nvidia with antitrust probe

China has dealt Nvidia another blow, finding the chipmaker in violation of the country’s anti-monopoly Law and escalating a long-running regulatory headache into a full

Author rabih
15 Sep

Jaguar Land Rover supply chain workers must get Covid-style support, says union

The UK’s chief automotive workers’ union is calling on the government to establish a Covid-esque furlough scheme for the thousands of individuals who face losing

Author rabih
15 Sep

UK Lords take aim at Ofcom’s ‘child-protection’ upgrades to Online Safety Act

The House of Lords is about to put the latest child-protection plans of UK regulator the Office of Communications (Ofcom) under the microscope. On Tuesday,

Author rabih
15 Sep

Cyber-scam camp operators shift operations to vulnerable countries as sanctions strike

Criminals appear to be moving cyber-scam centers to vulnerable countries. The United Nations Office on Drugs and Crime (UNDOC) last week warned it had found

Author rabih
14 Sep

15 ransomware gangs ‘go dark’ to enjoy ‘golden parachutes’

Infosec In Brief 15 ransomware gangs, including Scattered Spider and Lapsus$, have announced that they are going dark, and say no more attacks will be

Author rabih
14 Sep

15 ransomware gangs ‘go dark’ to enjoy ‘golden parachutes’

Infosec In Brief 15 ransomware gangs, including Scattered Spider and Lapsus$, have announced that they are going dark, and say no more attacks will be

Author rabih
Load moreLoadingAll items loaded