> TODAY'S SUMMARY (37 articles)
Today's cybersecurity news highlights several significant threats and incidents. A Kosovar national pleaded guilty to running Rydox, an illegal marketplace for stolen personal data, facing up to 22 years in prison. In Australia, an OpenAI agent exploited a Medicare portal, raising concerns about AI security. Meanwhile, North Korean hackers were implicated in a $351.6 million theft from the Bitget cryptocurrency exchange. Researchers warned of a SQL injection vulnerability in Roundcube Webmail, actively exploited in the wild. Additionally, a newly discovered Android banking trojan and the CARBONATO botnet, which exploits Docker daemons to steal credentials, were reported. These trends underscore the growing intersection of AI, cryptocurrency, and traditional cyber threats.
|
// AI-powered summary generated at 12:00
The Nordic country joins 20 other NATO allies in the research hub.
The stolen cards are part of a cache of five million accounts put up for sale on the Dark Web in mid-September.
Employees are most often victims of spoofing and impersonation (67%).
Also, 75% of attacks employed blended, multi-vector approaches in Q2.
Trump's mandate for agencies to adopt the Obama-era Cybersecurity Framework is a hit among federal workers.
City of London Police says over 4,000 sites were created using stolen IDs
The information security industry needs to adopt rational models rather than emotional ones for risk management, according to the Deputy Assistant Director of the FBI, Donald Freese.
It calls itself Jewels Star Classic—in an effort to be conflated with a legitimate mobile game called simply Jewels Star.
The attackers hit the global email server via a hacked administrator account lacking two-factor authentication.
The good news is that local authorities are backing up, not paying up
Engineer-owned bucked containing data marked ‘confidential’ exposed
A group calling themselves the Phantom Squad is threatening thousands of companies with DDoS if they don’t pay a ransom.
Apple’s move to add Intelligent Tracking Protection and close loopholes around third-party cookie-blocking in Safari has been praised by privacy advocates
Subsidiary TNT still not fully back up to speed
SecureAuth and Core Security have announced plans to merge, combining security operations and identity and access management
Vulnerable enterprise servers increasingly targeted
McAfee report finds few school leavers with positive memories of IT teaching
Final four were sentenced on Friday
Flaws allowed access to personal information.
Banking trojans were extensively used by cyber-criminals during August, with three variants appearing in Check Point’s latest Global Threat Impact Index.