Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Archives for Kirsten Doyle - Page 35

Kirsten Doyle

Kirsten Doyle

Information Security Buzz News Editor

Kirsten Doyle has been in the technology journalism and editing space for nearly 24 years, during which time she has developed a great love for all aspects of technology, as well as words themselves. Her experience spans B2B tech, with a lot of focus on cybersecurity, cloud, enterprise, digital transformation, and data centre. Her specialties are in news, thought leadership, features, white papers, and PR writing, and she is an experienced editor for both print and online publications.

“Colossal Mistake” Allowed M&S Attackers to Remain Undetected for 52 Hours

Kirsten DoyleMay 20, 20253 Mins Read

The recent breach at Marks & Spencer (M&S) went undetected for up to 52 hours, a lapse insiders have called a “colossal mistake” caused by human error.   The attackers infiltrated M&S’s IT systems through a contractor and were then able to lurk undetected in the systems for more than two days before the alarm was sounded. Once discovered, emergency teams worked relentlessly over a five-day period to contain the attack and protect the retailer, which serves around 9.4 million active customers. Despite these efforts, the online shop remains offline weeks after the incident, and staff have been working around the…

Read More

PowerShell Meets Remcos: The Rise of Fileless RAT Attacks

Kirsten DoyleMay 16, 20255 Mins Read

The Qualys TRU has discovered a new PowerShell-based shellcode loader, designed to load and execute a variant of Remcos RAT.   The attack begins with malicious .LNK files embedded in ZIP archives, often disguised as Office documents. When opened, these shortcuts trigger mshta.exe to execute an obfuscated HTA file. This file contains VBScript that bypasses Windows Defender, downloads additional payloads (including a PowerShell script), and configures the system for persistence by modifying registry keys and setting PowerShell execution policies to bypass mode. Payloads are saved in the C:/Users/Public/ directory and are designed to run silently at system startup. Stealth, Evasion Capabilities …

Read More

Coinbase Flips the Script on Ransom Demand, Offers $20M Bounty Instead

Kirsten DoyleMay 16, 20256 Mins Read

Coinbase has uncovered a targeted insider attack involving rogue overseas support agents bribed by malicious actors to steal customer data to extort the company. While a small subset of users was impacted, no passwords, private keys, or funds were compromised. Coinbase Prime accounts were also unaffected. The malefactors demanded a $20 million ransom, which Coinbase refused to pay. Instead, the company has created a $20 million reward fund for information leading to the arrest and conviction of those responsible. What Happened A group of attackers bribed a small number of third-party support agents outside the U.S. to access internal tools…

Read More

Scattered Spider Hackers Shift Focus to U.S. Retailers After M&S Breach

Kirsten DoyleMay 16, 20255 Mins Read

Google has warned that the bad actors linked to the recent cyberattack on British retailer Marks & Spencer (M&S) is now setting its sights on U.S. retail companies. The group, known as “Scattered Spider,” is described by cybersecurity analysts as a loosely connected network of hackers with varying levels of sophistication. Despite their decentralized structure, the group has proven highly effective at executing disruptive cyberattacks against major corporations. John Hultquist, Chief Analyst at Google Threat Intelligence Group, told BleepingComputer, that the US retail sector is currently in the crosshairs of ransomware and extortion operations that Google suspects are linked to…

Read More

32 Million Records Allegedly Linked to The Epoch Times Surface on Clear Web Forum

Kirsten DoyleMay 15, 20253 Mins Read

SafetyDetectives’ cybersecurity team has discovered a forum post on the clear web where a threat actor claimed to be selling a database connected to The Epoch Times. The dataset reportedly includes 32 million records. The Epoch Times is a multilingual media company founded in 2000. It was launched to provide uncensored news, particularly for readers in China, where access to independent media has long been restricted. Its first English-language edition appeared in 2003. Today, the publication is accessible in 35 countries, though it remains blocked in mainland China. The data was advertised on a well-known, clear web forum that hosts…

Read More

Critical Flaws in WordPress Theme Leave 82,000+ Sites Open to Full Takeover

Kirsten DoyleMay 15, 20255 Mins Read

Two serious security vulnerabilities have been discovered in TheGem, a premium WordPress theme used by more than 82,000 websites worldwide. Researchers warn that when exploited together, these flaws can lead to remote code execution (RCE), potentially giving attackers full control over affected websites.  Security researchers at Wordfence identified the vulnerabilities in versions 5.10.3 and earlier of the TheGem theme. While each flaw poses a risk on its own, their combined use creates a dangerous attack chain. According to Wordfence, the downloaded file is copied to the WordPress uploads folder, which is publicly accessible by default. Bad actors could combine the…

Read More

The Devil Wears Data: Dior Admits to Customer Data Leak in China

Kirsten DoyleMay 15, 20255 Mins Read

Luxury fashion brand Dior has alerted customers to a data breach involving its Chinese customer database. The company revealed that an unauthorised external party had gained access to sensitive customer information, though financial data was not affected.  The breach came to light after Dior sent an internal memo to affected consumers on 13 May. According to multiple Chinese media outlets, including Global Times, the memo stated that the company discovered the breach on 7 May. The compromised data includes customer names, gender, phone numbers, email addresses, mailing addresses, purchase histories, shopping preferences, and other user-related information collected by Dior. In…

Read More

Zoom Discloses Security Issues in Workplace Apps

Kirsten DoyleMay 14, 20253 Mins Read

Zoom Video Communications has disclosed several security vulnerabilities in its Workplace Apps for Windows, macOS, Linux, iOS, and Android platforms. These flaws, which range from medium to high severity, could lead to issues like unauthorized access, denial-of-service (DoS), or remote code execution if exploited. One of the more serious vulnerabilities (CVE-2025-30663) is a time-of-check to time-of-use (TOCTOU) issue caused by a race condition in the app. With a CVSS 4.0 score of 5.9, this flaw could let a local attacker exploit timing gaps to access sensitive data or increase their system privileges. Although it requires access to the affected device…

Read More

M&S Admits Personal Data Was Stolen in Recent Attack

Kirsten DoyleMay 14, 20255 Mins Read

Marks & Spencer (M&S) has fessed up that personal customer data was stolen in the recent cyber-attack, and that it could include contact details and dates of birth. The company’s chief executive Stuart Machin said: “As we continue to manage the current cyber incident, we have written to customers to let them know that unfortunately some personal information has been taken.” He stressed that there is no reason to believe that the information has been shared and it does not include any useable card or payment details, or account passwords. “There is no need for customers to take any action.” …

Read More

ENISA Debuts Centralized Cybersecurity Vulnerability Database 

Kirsten DoyleMay 14, 20256 Mins Read

The European Union Agency for Cybersecurity (ENISA) has officially launched the European Vulnerability Database (EUVD) to enhance cyber resilience. Developed in accordance with the NIS2 Directive, the platform is now live and will be maintained by ENISA. The EUVD is designed to provide aggregated, reliable, and actionable information about cybersecurity vulnerabilities affecting ICT (Information and Communication Technology) products and services. It includes details such as mitigation measures, exploitation status, and affected versions of ICT products. “The EU Vulnerability Database is a major step towards reinforcing Europe’s security and resilience,” said Henna Virkkunen, European Commission Executive Vice-President for Tech Sovereignty, Security…

Read More
Previous 1 … 33 34 35 36 37 … 60 Next
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}