News
Entertainment
Science & Technology
Sport
Business & Money
Life
Culture & Art
Hobbies
8 | Follower
Infosecurity Magazine - Information Security & IT Security
14.06.2025
Researchers have found a flaw in Microsoft 365 Copilot that allows the exfiltration of sensitive corporate data with a simple email
This is the first forensic evidence that journalists’ devices have been infected with Paragon’s Graphite spyware
Jen Easterly and Ciaran Martin called for a universal, vendor-neutral cyber threat actor naming system
A CISA advisory urged all software vendors and downstream customers to check if they are impacted by unpatched versions of the SimpleHelp RMM tool
13.06.2025
The cybersecurity provider also implemented recent fixes in Chromium that affected its Prisma Access Browser
Europol warns of “vicious circle” of data breaches and cybercrime
The new NIST guidance sets out 19 example implementations of zero trust using commercial, off-the-shelf technologies
12.06.2025
Interpol-coordinated Operation Secure led to 32 arrests, including the suspected ringleader of a cybercriminal organization
An ISC2 study found that 90% of security hiring managers would consider entry-level candidates with only previous IT work experience
Erie Insurance reveals suspected network breach and ongoing outage
Malwarebytes claims 44% of mobile users are exposed to scams every day
The products affected by the issues are part of the Salesforce OmniStudio suite, including FlexCards and Data Mappers
The legislation aims to expand the federal government’s role in helping healthcare providers protect and respond to cyber-attacks
11.06.2025
A ransomware attack on Mastery Schools, Philadelphia, has compromised personal information of 37,031 individuals, exposing sensitive data
The financial sector was the industry most targeted by distributed denial-of-service (DDoS) attacks in 2024, with a peak in October
SentinelOne revealed details of two new intrusion attempts by China-nexus actors
Microsoft has patched two zero days this month, one of which is being exploited in the wild
Android Enterprise has introduced features for mobile security, device management and user productivity in its latest update
10.06.2025
The Justice Department has filed a civil forfeiture complaint alleging North Korean IT workers amassed $7m+
UNFI says it is investigating unauthorized network activity, and that some operations are affected
New PathWiper malware targeted Ukrainian critical infrastructure, using legitimate tools for cyber-attacks
A new Trump Executive Order limits the use of cybersecurity-related sanctions only against foreign malicious actors
Vulnerability in PayU CommercePro plugin allows account hijacking on thousands of WordPress sites
09.06.2025
The FBI says mainly Chinese-made IoT devices pose a threat from Badbox 2.0 malware
07.06.2025
Experts at Infosecurity Europe 2025 highlighted a range of major industry trends, from advanced social engineering techniques to vulnerability exploits
The ransomware group combines IT vendor impersonation and phishing frameworks like Evilginx to breach its targets
06.06.2025
Malicious actors are making more use of AI in attacks, even as governments look to boost AI investments
Engagement with ransomware actors doesn’t necessarily mean payment; it’s about getting the best outcomes, a leading negotiator had argued
2017 ransomware attack on shipping company A P Moller Maersk marked a turning point for the cybersecurity industry, according to its former CISO Adam Banks
A panel of CISOs at Infosecurity Europe urged their peers to use risk management and clear communication to tame a chaotic cyber landscape
Axonius’ Jon Ridyard proposed seven best practices to build mature vulnerability management processes
Nick Woodcraft, from the UK Government, shared his experience in implementing measures to protect domains within the .gov.uk DNS namespace
Sophisticated nation-state and cybercriminal groups are using insiders to infect targets via hardware devices, despite a lack of reporting of this threat
05.06.2025
Agentic AI systems could threaten security and data privacy, unless organizations test each model and component
Endpoint and network security is still essential, even as malicious actors turn to supply chains, identities and AI
The attacks on UK retailers are “a wake-up call” for the industry, said River Island’s Information Security Officer
Moving to cloud-native architecture and modern platforms is allowing enterprises to automate operations and improve security
Stolen devices are a bigger cause of data loss than stolen credentials or ransomware, according to a new Blancco study
Experts argue the case for “communities of support” to boost SMB cyber-resilience
A phishing campaign spoofing Booking.com has been observed targeting hospitality sector, using ClickFix to install malware