> TODAY'S SUMMARY (126 articles)
Today's cyber news highlights several significant threats and trends in the cybersecurity landscape:
1. Zohar Pinhasi, CEO of MonsterCloud, has been indicted for allegedly defrauding ransomware victims by secretly paying attackers while significantly overcharging clients for recovery services.
2. A malware campaign named 'Midnight Mimosa' has been uncovered, involving low-cost Android phones pre-installed with residential proxy malware, enabling covert installations of malicious apps.
3. The FBI reported that China-linked hackers compromised email systems of various Southeast Asian government and healthcare organizations, creating a portal for third-party access to stolen data.
4. A critical vulnerability in multiple Atlassian products is currently being exploited, allowing unauthorized access to sensitive files.
5. Cybercriminals have hijacked country-code domains to obtain certificates for impersonating trusted services, while a new phishing campaign targets YouTube creators through fake sponsorship offers.
These incidents reflect ongoing challenges in ransomware, malware distribution, and sophisticated phishing tactics, underscoring the need for heightened cybersecurity measures.
|
// AI-powered summary generated at 20:01
Do loose prompts* sink ships? Exploring the cyber security issues of ChatGPT and LLMs.
Updated NCSC guidance on enabling your staff to use their own devices for work.
Microsoft has fixed seven zero-days this Patch Tuesday, including one not currently being actively exploited
How to disrupt targeted phishing attacks aimed at senior executives or budget holders.
The NCSC has published new cryptographic research on robust cryptography – we explain its significance and how the ideas could support research to inform future global standards.
The UK’s cybersecurity sector added thousands of workers and over £1bn in revenue in 2024
The NCSC is inviting UK organisations to contribute evidence of cyber deception use cases and efficacy to support our long-term research goals.
Risk appetites; what are they, what’s their purpose, how do organisations go about defining them?
Using the Cloud Security Principles to evaluate the suitability of a cloud service.
Both CIR Delivery Partners are now accepting enquiries and applications.
The NCSC has published a new RFC on Indicators of Compromise to support cyber security in protocol design - and hopes to encourage more cyber defenders to engage with international standards.
SMS and telephone guidance updated to address the rise in Artificial Inflation of Traffic (AIT).
Businesses, academia and international partners invited to respond to the UK government's ‘call for views’ on the security of AI.
Chris P explains how AMS will enable high-threat organisations to stay connected ‘on the go'.
New ACD services developed to help protect SMEs from the harms caused by cyber attacks.
We publish the results of our ACD 2.0 external attack surface management (EASM) trials
We thank participants and look forward to sharing what we've learned
Want security that works better for people? Make it accessible.
Introducing the new NCSC research problem book and find out how you can get involved.
The 10-year anniversary of Cyber Essentials is not just a celebration of past achievements but a call to action for the future.