Lucid PhaaS Hits 169 Targets in 88 Countries Using iMessage and RCS Smishing

A new sophisticated phishing-as-a-service (PhaaS) platform called Lucid has targeted 169 entities in 88 countries using smishing messages propagated via Apple iMessage and Rich Communication Services (RCS) for Android.
Lucid’s unique selling point lies in its weaponizing of legitimate communication platforms to sidestep traditional SMS-based detection mechanisms.
“Its scalable,

The Hacker News – ​Read More

UK sets out new cyber reporting requirements for critical infrastructure

The belated reworking of the country’s cybersecurity regulations comes three years after the previous government had prematurely described those laws as “updated” while failing to actually introduce the legislation.

The Record from Recorded Future News – ​Read More

Windows 11 PC won’t boot? Microsoft’s new tool tries to fix it before you even panic – here’s how

Now available to Windows Insiders, Windows 11 is getting a secret weapon for boot failures called Quick Machine Recovery – and it works automatically.

Latest stories for ZDNET in Security – ​Read More

Google ‘ImageRunner’ Bug Enabled Privilege Escalation

Tenable released details of a Google Cloud Run flaw that prior to remediation allowed a threat actor to escalate privileges.

darkreading – ​Read More

FDA’s Critical Role in Keeping Medical Devices Secure

The FDA’s regulations and guidance aim to strike a balance between ensuring rigorous oversight and enabling manufacturers to act swiftly when vulnerabilities are discovered.

darkreading – ​Read More

Security Operations Firm ReliaQuest Raises $500M at $3.4B Valuation

ReliaQuest has announced a new growth funding round that brings the total raised by the firm to over $830 million.

The post Security Operations Firm ReliaQuest Raises $500M at $3.4B Valuation appeared first on SecurityWeek.

SecurityWeek – ​Read More

Ransomware Group Takes Credit for National Presto Industries Attack

A ransomware group has claimed responsibility for a March cyberattack on National Presto Industries subsidiary National Defense Corporation.

The post Ransomware Group Takes Credit for National Presto Industries Attack appeared first on SecurityWeek.

SecurityWeek – ​Read More

Google says easy email encryption is on the way – for some users

Sending encrypted emails today involves a nightmare of certificates and administrative headaches. Google says it’s ready to make things easier.

Latest stories for ZDNET in Security – ​Read More

Critical Vulnerability Found in Canon Printer Drivers

Microsoft’s offensive security team warned Canon about a critical code execution vulnerability in printer drivers. 

The post Critical Vulnerability Found in Canon Printer Drivers appeared first on SecurityWeek.

SecurityWeek – ​Read More

Microsoft Teams Vishing Used to Deploy Malware via TeamViewer

A vishing scam via Microsoft Teams led to attackers misusing TeamViewer to drop malware and stay hidden using simple but effective techniques.

Hackread – Latest Cybersecurity, Tech, AI, Crypto & Hacking News – ​Read More