This report selects and summarizes 3 topics that are considered to be especially important from among various information security incidents and events that occurred during November 2023 and the changes in the surrounding environment.
Ransomware group files complaint against victim organization with the US Securities and Exchange Commission,
A shortened URL created by an online service directs customers to a malicious site and Microsoft's VS Code tool could reveal passwords
The intent of the complaint made by ALPHV is likely an attempt at harassment and intimidation due to unsuccessful ransom negotiations with their victim.
On November 9, Inageya Co., Ltd., a supermarket operator, announced that when QR codes on posters and leaflets were scanned, redirection to a malicious site caused the theft of credit card information.
If an SFTP plug-in that transfers files is incorrectly configured in Microsoft's VS Code development tool, a file containing the password used for SFTP connections is uploaded and published on the Internet.