Threat actors abused lack of MFA, OAuth in spam campaign

The Microsoft 365 Defender Research Team has warned users to be on their guard against a growing number of cyber attacks that abuse OAuth applications as part of the attack chain, after... Read more »

Nordic private equity firms pursue cyber security acquisitions

Nordic private equity groups are investing in cyber security companies amid growing demand for specialist services to protect critical IT infrastructure. Increasing interest in digital security is also driving the establishment of... Read more »

ALPHV/BlackCat ransomware family becoming more dangerous

The developer or developers behind the ransomware-as-a-service (RaaS) family known variously as ALPHV, BlackCat and Noberus, have been hard at work refining their tactics, techniques and procedures (TTPs) and today are probably... Read more »

Privacy Pledge signatories dream of alternative internet

A group of 12 organisations have come together to lay the groundwork for what they describe as an “alternative internet” to that controlled by large technology corporations, outlining a set of principles... Read more »

Dr Martens goes feetfirst into cloud-to-cloud backup

Footwear and clothing brand Dr Martens has moved large chunks of its operations to the cloud, and uses third-party backup to extend standard cloud data protection and gain ransomware protection. The move... Read more »

NCSC publishes cyber guidance for retailers

The UK’s National Cyber Security Centre (NCSC) has published tailored guidance designed to support retailers, hospitality providers and utility services in protecting both themselves and their customers from the impact of cyber... Read more »

15-year-old Python bug present in 350,000 open source projects

A 15-year-old vulnerability in the open source Python programming language is still finding its way into live code, with the result that over 350,000 projects are at risk of potential supply chain... Read more »

Thousands of customers affected in Revolut data breach

The personal details of thousands of customers were exposed after digital challenger bank Revolut was hit by a “highly targeted cyber attack”. The app-based bank, launched in the UK in 2015, admitted that... Read more »

IHG attackers phished employee to deploy destructive wiper

The attackers who broke into the systems of multinational hospitality operator IHG Hotels & Resorts at the beginning of September 2022 have claimed they attempted to stage a ransomware attack but instead used... Read more »

Reports Uber and Rockstar incidents work of same attacker

Two highly impactful cyber attacks on ride-sharing service Uber and video game developer Rockstar Games that unfolded over the space of three days are being tentatively linked after a threat actor going... Read more »