government healthcare social media service provider fine education law enforcement finance dark web retail web phama telecoms charity insurance travel manufacturing app operating system legal tech gaming publishing transport utilities
story hacked malware unauthorised access ransomware vulnerability accidental disclosure phishing unsecured database poor security insider threat unsecured server hacked email lost device identity theft website hacked ddos stolen documents Trojans financial RDP inside job spear phishing breached skimming
cyber attack breach notification privacy security flaw legislation poor operations user credentials physical security customer data third party Cryptocurrency enforcement email hacked insecure storage court action encryption fraud VPN passwords zero day spyware 3rd parties state hacking employee data remote working

White House warns of 'active threat' following Microsoft Outlook breach | VentureBeat
Fake Google reCAPTCHA Phishing Attack Swipes Office 365 Passwords | Threatpost
6 security risks in software development and how to address them | InfoWorld
Supernova malware clues link Chinese threat group Spiral to SolarWinds server hacks | ZDNet
Antivirus pioneer John McAfee charge with $13M cryptocurrency fraud | The Independent
Advanced hunting: updates to threat and vulnerability management tables - Microsoft Tech Community
The key to stopping cyberattacks? Understanding your own systems before the hackers strike | ZDNet
Other companies can use HarmonyOS in their smartphones: Huawei Software Chief - Huawei Central
21 million free VPN users’ data exposed - Malwarebytes Labs | Malwarebytes Labs
Microsoft: We've found three more pieces of malware used by the SolarWinds attackers | ZDNet
Cyberattack shuts down online learning at 15 UK schools | ZDNet
BA customer data at risk after airline cyber hack
Elite Russian Cybercrime Forums Ironically Hacked, Critical User Data Leaked | HotHardware
How To Stop Being Overwhelmed by Security Audits – CloudSavvy IT
Oh SITA: Airline IT provider confirms passenger data leaked after major 'cyber-attack' • The Register
New ransomware only decrypts victims who join their Discord server
Move over, SolarWinds: 30,000 orgs’ email hacked via Microsoft Exchange Server flaws - The Verge
Troy Hunt: Gab Has Been Breached
Maza Russian cybercriminal forum suffers data breach | ZDNet
#COVID19 Vaccine Phishing Scams Surge 26% in Three Months - Infosecurity Magazine
The Long Hack: How China Exploited a U.S. Tech Supplier
Ripe for extortion? Navajo Nation hospital targeted by large-scale ransomware hack
Electricity Authority of Cyprus fined 40,000 Euros for breaching Art. 6 (1) GDPR, Art. 9 (2) GDPR - Insufficient legal basis for data processing
KEPIDES fined 6,000 Euros for breaching Art. 32 (4) - Insufficient technical and organisational measures to ensure information security
Cypriot Real Estate Registration Authority fined 10,000 Euros for breaching Art. 12 GDPR, Art. 15 GDPR, Art. 31 GDPR, Art. 58 (1) e) GDPR - Insufficient fulfilment of information obligations
Hellenic Bank fined 25,000 Euros for breaching Art. 5 (1) e), f) GDPR, Art. 32 (1) b), c) GDPR, Art. 33 (1) GDPR - Insufficient technical and organisational measures to ensure information security
Private Individual fined 200 Euros for breaching Art. 5 GDPR, Art. 32 GDPR - Non-compliance with general data processing principles
Ursnif Trojan has targeted over 100 Italian banks | ZDNet
Microsoft accuses China over email cyber-attacks - BBC News
Brave buys a search engine, promises no tracking, no profiling – and may even offer a paid-for, no-ad version • The Register
Unpatched Bug in WiFi Mouse App Opens PCs to Attack | Threatpost
Researcher finds 5 privilege escalation vulnerabilities in Linux kernel
Bournemouth residents advised to look out for Bluetooth malware | Bournemouth Echo
Hackers share methods to bypass 3D Secure for payment cards
Proof of concept code published for latest Saltstack CVE: Don't be an update laggard • The Register
Microsoft promises end-to-end encrypted Teams calls for some, invites you to go passwordless with Azure AD • The Register
How Gootkit trojan distributes ransomware via Google SERPs
Cybersecurity Trends and Emerging Threats in 2021
Vulnerabilities in Smarty PHP template engine renders popular CMS platforms open to abuse | The Daily Swig
Gootkit malware crew using SEO to get pwned websites in front of unwitting marks • The Register