News

Short summaries of the cyber-crime stories moving in India and globally. We link back to the original source — always.

Decline in Cyberattacks in Africa as Attention Shifts to Latin America
Malware

Decline in Cyberattacks in Africa as Attention Shifts to Latin America

Recent data indicates that the number of cyberattacks targeting Africa has decreased by 22% over the past year, suggesting that cybercriminals may be focusing their efforts on other regions, particularly Latin America. This shift in the cyber threat landscape could be a response to various factors, including enhanced cybersecurity measures in Africa or the emergence of new opportunities for attackers elsewhere. As a result, while Africa has experienced a reduction in cyber incidents, vigilance is still necessary as threats can evolve and migrate quickly. Both individuals and organizations should remain aware of potential cyber risks regardless of geographical shifts. Source: [publication name].

via Dark ReadingRead source
South Korea Assures No Discrimination Against US Tech Firms
Data Breaches

South Korea Assures No Discrimination Against US Tech Firms

The South Korean government has assured U.S. tech companies, including Coupang, that they will not face discriminatory practices. This promise follows concerns raised by American lawmakers regarding ongoing investigations into a data breach at Coupang. South Korea emphasized that its legal processes apply uniformly, regardless of the company's nationality. These commitments are part of a broader trade agreement between the United States and South Korea aimed at promoting fair practices in the tech industry. The assurance highlights the importance both nations place on maintaining a cooperative trade relationship and fostering an equitable environment for technology firms operating across borders. Source: [publication name].

via Economic Times TechRead source
Meta Faces Lawsuit for Alleged Profits from Scam Advertisements
Cyber Law (India)

Meta Faces Lawsuit for Alleged Profits from Scam Advertisements

The Consumer Federation of America has filed a lawsuit against Meta, claiming that the company has profited from advertisements promoting scams while misleading users about its commitment to safety. Internal documents indicate that Meta generates significant revenue from these scam ads, which raises concerns about its efforts to combat fraudulent activities. In response to these allegations, Meta has asserted that it plans to challenge the lawsuit, maintaining its stance on fighting fraud. This case highlights growing scrutiny over how social media platforms manage advertisements and user safety. Source: Consumer Federation of America.

via Economic Times TechRead source
Apple Addresses Security Flaw in iOS Related to Notification Data
Data Breaches

Apple Addresses Security Flaw in iOS Related to Notification Data

Apple has issued important security updates for its iPhone and iPad devices to resolve a vulnerability in its Notification Services. This flaw could potentially allow deleted notifications to continue existing on the device rather than being completely removed. Users are encouraged to update their devices promptly to ensure they benefit from these fixes and maintain their data security. This update demonstrates Apple's ongoing commitment to addressing security issues and protecting user privacy. Keeping devices updated is vital for safeguarding against potential threats and vulnerabilities. Source: [publication name].

via BleepingComputerRead source
New Ransomware Group 'The Gentlemen' Gains Attention for Speed and Skill
Ransomware

New Ransomware Group 'The Gentlemen' Gains Attention for Speed and Skill

A ransomware group called 'The Gentlemen' has quickly attracted attention in the cybersecurity community due to its rapid growth and high level of sophistication. Researchers have noted that the gang operates with notable efficiency, leading to concerns about the potential threats it poses to organizations and individuals alike. Despite its seemingly polite name, the group's actions indicate a serious intent to exploit vulnerabilities for financial gain. As ransomware attacks continue to evolve, staying informed and vigilant against such threats is crucial for everyone, especially in today's digital landscape. Source: [publication name].

via Dark ReadingRead source
Mirai Malware Targets Vulnerable D-Link Routers
Malware

Mirai Malware Targets Vulnerable D-Link Routers

A new campaign utilizing the Mirai malware is targeting D-Link DIR-823X routers by exploiting a critical command-injection vulnerability identified as CVE-2025-29635. This high-severity flaw allows attackers to remotely control the routers, potentially adding them to a botnet for malicious purposes. Users of these routers are advised to update their firmware and implement security measures to mitigate risks. The campaign highlights the ongoing challenges of securing Internet of Things (IoT) devices, particularly those that may not receive regular security updates. Staying informed about such vulnerabilities is crucial for maintaining network security. Source: [publication name].

via BleepingComputerRead source
Google's CEO Announces $185 Billion Investment in AI by 2026
Investment Fraud

Google's CEO Announces $185 Billion Investment in AI by 2026

Google has announced plans for a substantial investment of $185 billion in artificial intelligence (AI) infrastructure by 2026. CEO Sundar Pichai emphasized AI's expanding importance in software development and security enhancements. The company will also introduce new platforms, including Gemini Enterprise Agent, along with advanced chips such as TPU 8t and TPU 8i. This significant financial commitment highlights Google’s strategy to enhance its enterprise AI capabilities and to drive future growth in this critical sector. The investment reflects the company’s priorities in fostering innovative solutions using AI technology.

via Economic Times TechRead source
Kyber Ransomware Uses Advanced Post-Quantum Encryption in Attacks
Ransomware

Kyber Ransomware Uses Advanced Post-Quantum Encryption in Attacks

The Kyber ransomware group has been actively targeting Windows systems and VMware ESXi servers. In its latest attacks, one variant of the ransomware has incorporated Kyber1024, a type of post-quantum encryption that is designed to be secure against future quantum computer threats. This development highlights the evolving sophistication of ransomware operations, posing significant challenges for cybersecurity. Users are advised to enhance their security measures to protect against such advanced cyber threats. Organizations should regularly update their systems and backup data to mitigate the impact of ransomware attacks. Source: [publication name].

via BleepingComputerRead source
Malicious Docker Images Target Checkmarx Supply Chain
Malware

Malicious Docker Images Target Checkmarx Supply Chain

Cybersecurity experts have identified that harmful Docker images were uploaded to the official 'checkmarx/kics' repository on Docker Hub. A report from Socket, a software supply chain security company, indicates that attackers modified existing image tags, including the legitimate v2.1.20 and 'alpine' tags, while also adding a misleading v2.1.21 tag that is not a valid release. This action could pose serious risks to developers and users relying on these images for their projects. It is crucial for organizations to be vigilant and verify the authenticity of the software components they use. Source: Socket.

via The Hacker NewsRead source
New Worm Targets npm Packages to Steal Developer Tokens
Malware

New Worm Targets npm Packages to Steal Developer Tokens

Cybersecurity experts have identified a new threat involving compromised npm packages that deliver a self-replicating worm. This worm steals developer tokens and has been named 'CanisterSprawl' by researchers from Socket and StepSecurity. The worm utilizes an ICP canister for data exfiltration, highlighting vulnerabilities in the software supply chain. Developers using npm should be cautious and ensure their environments are secure to prevent unauthorized access and token theft, which could compromise their projects. Maintaining updated security practices is essential to mitigate these risks.

via The Hacker NewsRead source
Google Focuses on AI for Business Growth with New Strategy
Data Breaches

Google Focuses on AI for Business Growth with New Strategy

Google is prioritizing AI agents in its strategy for enterprise software. CEO Sundar Pichai announced this shift at the company’s cloud conference, revealing that AI products will be rebranded as 'Gemini Enterprise'. This initiative is designed to deliver ready-to-use AI solutions that cater to business needs. In addition, Google aims to strengthen the security and governance aspects of its AI assistants, ensuring that they are trustworthy for enterprises. This move reflects a broader trend of integrating AI into business operations, potentially enhancing efficiency and productivity across various sectors.

via Economic Times TechRead source
Linux GoGra Backdoor Targeting South Asia via Microsoft Graph API
Malware

Linux GoGra Backdoor Targeting South Asia via Microsoft Graph API

A new version of the GoGra backdoor malware has been discovered, which is now targeting individuals and organizations in South Asia. The threat actor known as Harvester is employing this Linux variant to exploit Microsoft Graph API and Outlook mailboxes. This approach enables the malware to maintain a covert channel for command-and-control operations, effectively evading standard cybersecurity defenses. Experts from Symantec and Carbon Black have raised concerns about this tactic, emphasizing the potential risks for both personal and organizational data security. Awareness of such threats is crucial for safe online practices. Source: [publication name].

via The Hacker NewsRead source