Infosecurity News

Chipmaker Giant Nexperia Confirms Cyber-Attack Amid Ransomware Group Claims
Nexperia confirmed its IT servers were accessed by attackers, with the Dunghill ransomware group claiming to have stolen chip designs and other sensitive documents

FBI Warns of Massive Toll Services Smishing Scam
The Feds have received thousands of complaints about phishing texts from fake road toll collection services

Police Swoop on €645m Cannabis Investment Fraud Gang
Nine arrests and millions of euros seized in bid to bust JuicyFields investment scammers

CISA Urges Immediate Credential Reset After Sisense Breach
The breach affecting business analytics provider Sisense could lead to a wide-scale supply chain attack

Palo Alto Networks Warns About Critical Zero-Day in PAN-OS
A fix for CVE-2024-3400 is scheduled on April 4, Palo Alto Networks announced

Apple Boosts Spyware Alerts For Mercenary Attacks
The revision points out companies like NSO Group, known for surveillance tools like Pegasus

Data Breach Exposes 300k Taxi Passengers’ Information
These records belonged to Dublin-based iCabbi, a dispatch and fleet management technology provider

New Android Espionage Campaign Spotted in India and Pakistan
A new cyber espionage campaign, called ‘eXotic Visit,’ targeted Android users in South Asia via seemingly legitimate messaging apps

Raspberry Robin Distributed Through Windows Script Files
Distribution vectors of the Raspberry Robin worm now include Windows Script Files (WSF) alongside other methods like USB drives

Threat Actors Game GitHub Search to Spread Malware
Checkmarx warns of GitHub search result manipulation designed to promote malicious repositories

US Data Breach Reports Surge 90% Annually in Q1
The number of publicly reported data breaches and leaks grew 90% in the first three months of the year

Rhadamanthys Malware Deployed By TA547 Against German Targets
Proofpoint said this is the first time the threat actor has been seen using LLM-generated PowerShell scripts

LG TV Vulnerabilities Expose 91,000 Devices
The issues identified permit unauthorized access to the TV’s root system by bypassing authorization mechanisms

Women Experience Exclusion Twice as Often as Men in Cybersecurity
A WiCyS report detailed the causes of disparities in the experiences of women working in cybersecurity compared to men, including respect and exclusion

Windows: New 'BatBadBut' Rust Vulnerability Given Highest Severity Score
A flaw in the Rust standard library exposes Windows systems to command injection attacks

US Claims to Have Recovered $1.4bn in COVID Fraud
The DoJ says it has seized $1.4bn and charged 3500 defendants in COVID fraud cases since 2021

Microsoft Patches 150 Flaws Including Two Zero-Days
April’s Patch Tuesday saw fixes for 150 CVEs, including two being actively exploited in the wild

Half of UK Businesses Hit by Cyber-Incident in Past Year, UK Government Finds
The UK Government’s latest Cyber Security Breaches Survey found a large increase in the proportion of businesses impacted by a cyber-attack or breach in the past 12 months

Hackers Use Malware to Hunt Software Vulnerabilities
Palo Alto Networks observed growing malware-initiated vulnerability scanning activity

Change Healthcare Hit By Cyber Extortion Again
RansomHub has surfaced threatening to expose stolen data unless another ransom is paid



