Average Cyber Insurance Losses Increase Despite Fewer Claims Information Security Magazine 3 weeks 4 days ago Chubb reported that growing privacy litigation has contributed to surging cyber claim costs in the US
Linux Foundation Introduces TRACE Standard for AI Runtime Evidence Information Security Magazine 3 weeks 4 days ago This new open standard offers hardware-attested runtime and compliance evidence for AI agents
DDoS Attack Hits Norwegian Government Services Information Security Magazine 3 weeks 4 days ago A coordinated DDoS campaign has caused disruption among Norwegian government services
ZeroTokens Phishing Platform Steers Attacks in Real Time Information Security Magazine 3 weeks 5 days ago ZeroTokens gives phishing operators live control of victim sessions targeting 53 financial brands
Fake Recruiter Scams Target Corporate Credentials on Mobile Information Security Magazine 3 weeks 5 days ago RecruitTrap campaigns use mobile-optimized phishing pages to target enterprise credentials
Australia Warns of Active Exploitation of Critical TeamCity Server Flaw Information Security Magazine 3 weeks 5 days ago Australian officials are urging TeamCity customers to patch an actively exploited critical flaw, which follows a similar warning from the US government
Fake Minecraft Clients Deliver WeedHack Malware Despite Infrastructure Takedown Information Security Magazine 3 weeks 5 days ago A threat actor keeps spreading the WeedHack malware to Minecraft players despite its original infrastructure taken down in July
ReliaQuest Rejects Compromise Claims After ShinyHunters Incident Information Security Magazine 3 weeks 5 days ago ReliaQuest has detailed a social engineering attack linked to ShinyHunters, denying reports that the threat actor successfully compromised its systems
US Sanctions Mabna Institute Hackers for Iranian Cyber-Attacks Information Security Magazine 3 weeks 5 days ago The US has sanctioned individuals connected to hacking-for-hire group the Mabna Institute
New Guidance Helps Businesses Verify Quantum-Safe Hardware Claims Information Security Magazine 3 weeks 6 days ago TCG has released new guidance to help proving that trusted platform modules genuinely meet essential quantum-safe requirements
NIST Warns of Unique Security Risks in Multi-Cloud Environments Information Security Magazine 3 weeks 6 days ago NIST has set out 23 novel challenges that arise in multi-cloud environments and has encouraged the cyber community to find solutions
Fake Codex Download Uses Google Sites to Deliver macOS Malware Information Security Magazine 3 weeks 6 days ago Fake Codex pages used Google Sites, sponsored search and ClickFix to target Mac users
Doubloon Dredger Abuses Notion to Harvest Authentication Tokens Information Security Magazine 3 weeks 6 days ago Doubloon Dredger abused Notion and malicious PDFs to harvest Microsoft authentication tokens
Wake-Up Call for CNI After Iranian Attack Shuts Down UK Power Plant Information Security Magazine 3 weeks 6 days ago Experts argue Iranian cyber-attack on UK power plant lays bare frailty of critical national infrastructure
Researchers Uncover Thousands of Leaked AWS Keys Information Security Magazine 3 weeks 6 days ago Truffle Security says it found over 9000 publicly accessible and active AWS key pairs
North Korean Hackers Tied to Rust Supply Chain Attack Information Security Magazine 4 weeks 2 days ago Cybersecurity researchers have linked a malicious backdoor in compromised Rust packages to previous North Korean supply chain attacks
New Agent Tesla Malware Variant Boosts Evasion Capabilities Information Security Magazine 4 weeks 2 days ago An Agent Tesla v4 malware campaign used novel emoji-based code obfuscation to evade detection, KnowBe4 has revealed
Cybersecurity Job Ads Requiring AI Skills Double Information Security Magazine 4 weeks 2 days ago An analysis by the AI Workforce Consortium found that technical cybersecurity jobs are becoming more strategic due to the influence of AI
JFrog Artifactory Flaws Enable Software Supply Chain Attacks Information Security Magazine 1 month ago Two Artifactory flaws allowed attackers to poison package metadata across software repositories
NCSC Urges Stronger Controls for Agentic AI Systems Information Security Magazine 1 month ago NCSC urged sandboxing, oversight and tight access controls for autonomous AI agents