Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Archives for Kirsten Doyle - Page 31

Kirsten Doyle

Kirsten Doyle

Information Security Buzz News Editor

Kirsten Doyle has been in the technology journalism and editing space for nearly 24 years, during which time she has developed a great love for all aspects of technology, as well as words themselves. Her experience spans B2B tech, with a lot of focus on cybersecurity, cloud, enterprise, digital transformation, and data centre. Her specialties are in news, thought leadership, features, white papers, and PR writing, and she is an experienced editor for both print and online publications.

Security’s Blind Spot: Shadow AI Creeps Into the SOC

Kirsten DoyleJune 19, 20254 Mins Read

Even the guardians are breaking the rules. A new survey by Mindgard has revealed a troubling shift in cybersecurity: security professionals themselves are turning to generative AI tools without approval. More than half admit to it. Others suspect it’s happening. This isn’t happening in the marketing department. It’s happening in the security operations center. Over 500 cybersecurity professionals were surveyed at RSA Conference and Infosecurity Europe 2025. The results show a profession at odds with itself, embracing AI while sidestepping its own safeguards.  The Watchers Are Watching Less They call it Shadow AI. Like Shadow IT before it, it’s the…

Read More

Phishing with a Badge: EU Survey Platform Abused in Credential Theft Campaign

Kirsten DoyleJune 19, 20253 Mins Read

Between May 5 and 7, 2025, bad actors launched a subtle but smart phishing campaign using the European Commission’s own survey platform. The attack wasn’t broad, but it was sharp, leveraging the credibility of an EU-linked domain to slip past defenses and harvest credentials. KnowBe4 Threat Lab spotted it early. The phishing emails came from a legitimate sender: [email protected]. That’s not a spoof, but a real domain tied to EUSurvey, a platform used for public consultation and research. This is what made it so dangerous. The Setup: Real Sender, Fake Intent By creating an account on EUSurvey, attackers sent phishing…

Read More

A New Breed of Mobile Threat: GodFather Malware Goes Virtual

Kirsten DoyleJune 19, 20254 Mins Read

Zimperium’s zLabs team has exposed a troubling evolution in mobile banking malware. The latest variant of GodFather doesn’t just spoof screens or steal passwords. It builds a world of its own, inside your phone. This version uses on-device virtualization to hijack real banking and crypto apps. It’s not overlay, it’s not mimicry, it’s full control. At the heart of the attack is a malicious host app. Once installed, it spins up a virtual environment, downloading a copy of the actual targeted app. When the user opens their banking or crypto app, they’re redirected to this sandbox. Everything appears normal, but…

Read More

Taiwan Targeted in Sophisticated Malware Campaign Disguised as Tax Emails

Kirsten DoyleJune 18, 20254 Mins Read

A persistent malware campaign is targeting Microsoft Windows users in Taiwan. Disguised as correspondence from Taiwan’s National Taxation Bureau, the threat actors are deploying a phishing campaign laced with winos 4.0 malware. Fortinet’s FortiGuard Labs traced the operation back to January 2025. Over the months that followed, the campaign evolved, adopting more sophisticated tools and techniques, most notably a variant of the HoldingHands remote access trojan (RAT).  Its objective is simple: establish stealthy, long-term access for further attacks. The method, however, is anything but. The Hook: Official-Looking Emails Initial infection starts with phishing emails purporting to come from government entities.…

Read More

New WormGPT Variants Powered by Grok and Mixtral Discovered

Kirsten DoyleJune 18, 20259 Mins Read

When OpenAI released ChatGPT to the public in November 2022, the world marvelled at the dawn of a new era in human-machine interaction. But as the broader public experimented with poetry and code snippets, another crowd watched quietly. They saw the potential for something darker. Threat actors quickly realized large language models could be weaponized. The problem, is that ChatGPT, and others like it, came with guardrails. They wouldn’t write ransomware, wouldn’t craft phishing lures, wouldn’t help you breach a firewall. Then came WormGPT. First spotted in June 2023 on Hack Forums, WormGPT was a defanged version of ChatGPT, censorship…

Read More

Anubis Ransomware Ups the Ante with File-Wiping Feature, Double Extortion Tactics

Kirsten DoyleJune 17, 20254 Mins Read

A new ransomware-as-a-service threat called Anubis has emerged. It combines file encryption, ruthless monetization tactics, and a rare wiper feature that can permanently delete data to prevent its recovery.  Once active, Anubis renames encrypted files with the extension .anubis. It alters their system icons, standard fare for ransomware families trying to sow panic and confusion. Victims find a ransom note titled RESTORE FILES.html, attributed to the “ANUBIS team,” which outlines a double extortion scheme: pay up, or your stolen data goes public. This pressure tactic is fast becoming the norm in ransomware operations, but researchers at Trend Micro say Anubis…

Read More

Scattered Spider Turns to Insurance Sector After Retail Rampage

Kirsten DoyleJune 17, 20254 Mins Read

Google threat analysts have warned that the malefactors behind the recent spate of attacks against the UK retail sector have turned their attention to the insurance sector. The cybercriminal group known as Scattered Spider, infamous for its fast-talking social engineering schemes and high-impact ransomware, appears to be expanding its hunting ground. This time, it’s targeting insurance firms. According to Mandiant’s Chief Analyst John Hultquist, attackers “bearing the hallmarks of Scattered Spider” are now probing the insurance industry. “They have a habit of working their way through a sector,” Hultquist posted. “Insurance companies should be on the lookout for social engineering…

Read More

EU Pumps €145.5 Million into Cybersecurity for SMEs and Healthcare

Kirsten DoyleJune 13, 20253 Mins Read

The European Commission is rolling out €145.5 million to strengthen cybersecurity across Europe, targeting small and medium-sized enterprises (SMEs), public administrations, and healthcare providers.  Two funding calls have been launched by the European Cybersecurity Competence Centre. The first, under the Digital Europe Programme, offers €55 million, €30 million of which is earmarked specifically for hospitals and healthcare providers. This investment aims to improve their ability to detect, monitor, and respond to cyber threats, with a focus on ransomware resilience. This move supports the EU’s broader cybersecurity action plan for healthcare, a critical priority amid today’s geopolitical tensions. The second call,…

Read More

Fog Ransomware Attack in Asia Raises Espionage Fears with Unusual Toolset

Kirsten DoyleJune 13, 20255 Mins Read

A recent ransomware attack against a financial institution in Asia is raising eyebrows across the cybersecurity community, not just because of the ransomware, but because of how it was delivered. According to the Threat Hunter Team at Symantec and Carbon Black, Fog ransomware was first seen in May 2024. It saw the deployment of Fog, a ransomware strain first observed in 2024. But what makes this incident different is the eclectic toolset the attackers used, using legitimate employee monitoring software, rarely seen open-source tools, and persistence mechanisms that are usually associated with espionage campaigns. Ransomware Plus Surveillance? Among the most…

Read More

Watch Out for Worms in Your Cookies: HP Warns of Fake Booking.com Sites

Kirsten DoyleJune 13, 20253 Mins Read

A new cybercrime campaign is preying on holidaymakers in a hurry, using fake Booking.com websites to trick users into downloading malware under the guise of a cookie consent banner. HP Wolf Security’s latest Threat Insights Report highlights a sharp rise in spoofed travel booking domains designed to deliver XWorm, a powerful remote access trojan that gives attackers full control of the victim’s device, including files, webcam, microphone, and security settings.  Taking Advantage of Click Fatigue Disguised to mimic the familiar look of Booking.com, these malicious websites display a blurred-out interface with a standard-looking cookie prompt. But the moment a user…

Read More
Previous 1 … 29 30 31 32 33 … 61 Next
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}