News
Entertainment
Science & Technology
Sport
Business & Money
Life
Culture & Art
Hobbies
8 | Follower
Infosecurity Magazine - Information Security & IT Security
09.07.2025
Researchers from Koi Security have detected 18 malicious Chrome and Edge extensions masquerading as benign productivity and entertainment tools
The company behind AV/EDR evasion tool Shellter has confirmed the product is being used by threat actors
Check Point discovered around 500 suspected Scattered Spider phishing domains, suggesting the group is preparing to expand its targeting
Sonatype’s latest Open Source Malware Index report has identified more than 16,000 malicious open source packages, representing a 188% annual increase
M&S chairman Archie Norman provided more insights into the April ransomware attack, but did not confirm whether a payment was made to the attackers
08.07.2025
Iran-aligned BladedFeline group has been observed targeting the government of Iraq and KRG with advanced malware
Cybersecurity researchers have observed a 156% increase in credential theft incidents between 2024 and Q1 2025
Vulnerability research company WatchTowr published a detection analysis for the Citrix Blled 2 flaw
Trend Micro has observed the Bert ransomware group in operation since April 2025, with confirmed victims in sectors including healthcare and technology
Qantas said it is currently validating the contact, and has informed law enforcement
Check Point has discovered over 1000 suspicious domains registered in the run-up to Amazon Prime Day
China’s Hikvision vows legal battle after Canada bans its operations, citing national security concerns
07.07.2025
Distributor Ingram Micro says it has found ransomware on its internal systems
05.07.2025
Taiwan warned that popular Chinese-owned apps, including TikTok and Weibo, are harvesting personal data and sending it back to servers in China
Some admins of Hunters International are now part of the encryption-less cyber extortion group World Leaks
04.07.2025
The CVE Board has launched a Consumer Working Group and a Researcher Working Group, allowing new stakeholders to shape the future of the CVE Program
The EU’s Quantum Strategy includes plans to develop secure quantum communication infrastructure across the region
A critical Azure Machine Learning flaw allows privilege escalation, risking subscription compromise
ReliaQuest warns that initial access vulnerability exploitation is driving successful ransomware attacks
SentinelLabs observed North Korea deploying novel TTPs to target crypto firms, including a mix of programming languages and signal-based persistencE
A severe flaw identified in the Forminator WordPress plugin allows arbitrary file deletion and potential site takeover
03.07.2025
Two elevation of privilege vulnerabilities have been discovered on the popular Sudo utility, affecting 30-50 million endpoints in the US alone
The Treasury said that Aeza Group has provided infrastructure services for notorious infostealer and ransomware operators
Benefits admin specialist Kelly Benefits has revealed a breach impacting over 500,000 individuals across 45 client organizations
New Android malware Qwizzserial has infected 100,000 devices, primarily in Uzbekistan, stealing SMS data via Telegram distribution
A third of AI-generated login URLs lead to incorrect or dangerous domains, according to Netcraft
The French cybersecurity agency identified Houken, a new Chinese intrusion campaign targeting various industries in France
02.07.2025
Interpol warns that scam centers are expanding beyond Southeast Asia
Proofpoint has identified similarities between the tactics of a pro-Russian cyber espionage group and a cybercriminal gang
The ICC said the new incident was the second “of its type” it has faced in recent years, relating to an espionage attack in 2023
CertiK found $2.47bn in crypto was stolen in H1 2025, largely due to two major security incidents – ByBit and Cetus
Cloudflare now blocks AI web crawlers by default, requiring permission from site owners for access
Qantas admits that a “significant” volume of customer data may have been stolen from a contact center
The threat actor Sarcoma has been held responsible for a ransomware attack on a Swiss health foundation
Google has patched a critical type confusion vulnerability in Chrome, the fourth zero-day fix in 2025
01.07.2025
Both the US authorities and Microsoft have taken action to disrupt North Korean IT worker schemes
A €460m cryptocurrency fraud scheme has been disrupted by authorities, leading to five arrests in Spain
An IT worker has been jailed for launching a cyber-attack after he was suspended at work
The ban on Hikvision products follows a national security review under the Investment Canada Act
The FBI alert comes amid several reported cyber incidents impacting North America-based airlines, including Hawaiian Airlines