> TODAY'S SUMMARY (126 articles)
Today's cyber news highlights several significant threats and trends in the cybersecurity landscape:
1. Zohar Pinhasi, CEO of MonsterCloud, has been indicted for allegedly defrauding ransomware victims by secretly paying attackers while significantly overcharging clients for recovery services.
2. A malware campaign named 'Midnight Mimosa' has been uncovered, involving low-cost Android phones pre-installed with residential proxy malware, enabling covert installations of malicious apps.
3. The FBI reported that China-linked hackers compromised email systems of various Southeast Asian government and healthcare organizations, creating a portal for third-party access to stolen data.
4. A critical vulnerability in multiple Atlassian products is currently being exploited, allowing unauthorized access to sensitive files.
5. Cybercriminals have hijacked country-code domains to obtain certificates for impersonating trusted services, while a new phishing campaign targets YouTube creators through fake sponsorship offers.
These incidents reflect ongoing challenges in ransomware, malware distribution, and sophisticated phishing tactics, underscoring the need for heightened cybersecurity measures.
|
// AI-powered summary generated at 20:01
ISACA London Chapter members demand e-voting system investigation over security and privacy concerns
iOS 18.3.2 patches actively exploited WebKit flaw, addressing critical security risks for users
Our updated multi-factor authentication (MFA) guidance recommends organisations use techniques that give better protection against phishing attacks.
In a new round of cuts since Donald Trump became president, 100 people working with the US Cybersecurity and Infrastructure Agency saw their contracts terminated
Surging machine identities, faster threat detection and fewer vulnerabilities are shaping cloud security according to a new report
Refreshed guidance published to help practitioners manage cyber risk.
The announcement of the Cyber Security and Resilience Bill is a landmark moment in tackling the growing threat to the UK's critical systems.
Lors de l’assemblée générale de Cybermalveillance.gouv.fr qui s’est tenue le 12 mars, Florence Puybareau, directrice du Clusif, a été désignée, pour le Clusif, membre titulaire du conseil d’administration. Elle y représente le collège des utilisateurs. Ce mandat, d’une durée de deux ans, est désorma...
NCSC publishes free e-learning to help organisations manage the cyber security risks across their supply chains.
Henry O discusses the pitfalls of performing a basic ‘lift and shift’ cloud migration.
Mandiant revealed that Chinese espionage actor UNC3886 has deployed modified versions of the TinyShell backdoor across multiple Juniper OS routers
A new visual guide to the cyber security principles that are essential when developing and managing ‘smart cities’.
Cyber Advisor scheme for small organisations welcomes its 100th advisor, but more still needed!
Why now? Artificial intelligence is rapidly transforming industries, and security testing is no exception. At PortSwigger, we’ve always been driven by innovation, but we don’t chase trends for the sak
The NCSC’s e-learning package 'Top Tips For Staff' can be completed online, or built into your own training platform.
Raising a cheer for SaaS vendors who respond to our cloud security principles.
Vicky Brock of Vistalworks describes how the 'NCSC For Startups' programme has helped her organisation develop solutions to tackle illicit online trade.
How startups can make the most of their time when pitching to cyber security experts.
Saj Huq of Plexal explains why collaboration with the NCSC brings opportunities to the cyber security sector.
Can your startup help counter the rise of malicious advertising?