---
title: "Cyber Security News Update, Week 50 of 2021 | DuoCircle"
description: "The cyber realm has progressed much over the last week; here is the compilation of the top cybersecurity headlines from the past seven days."
image: "https://www.duocircle.com/images/og-default.png"
canonical: "https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-50-of-2021/"
---

Quick Answer

Week 50, 2021 cyber news: UK passes the Product Security and Telecommunications Infrastructure (PSTI) Bill mandating IoT security with fines up to 10M; ENISA finds only 20% of cybersecurity students are women and recommends a unified European Cybersecurity Skills Framework; North Koreas Lazarus/Zinc poses as Samsung recruiters, delivering a backdoored PDFTron build to South Korean security staff; FluBot Android malware spreads via SMS in Finland (70,000+ messages in 24 hours); CISA publishes a mobile EMM hardening guide; an Australian MSP left an over-permissive SPF record exposing 200+ clients to spoofing for two years.

Share 

[ ](https://www.linkedin.com/sharing/share-offsite/?url=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-50-of-2021%2F "Share on LinkedIn") [ ](https://twitter.com/intent/tweet?text=Cyber%20Security%20News%20Update%2C%20Week%2050%20of%202021&url=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-50-of-2021%2F "Share on X/Twitter") [ ](https://www.facebook.com/sharer/sharer.php?u=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-50-of-2021%2F "Share on Facebook") [ ](https://reddit.com/submit?url=undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-50-of-2021%2F&title=Cyber%20Security%20News%20Update%2C%20Week%2050%20of%202021 "Share on Reddit") [ ](mailto:?subject=Cyber%20Security%20News%20Update%2C%20Week%2050%20of%202021&body=Check out this article: undefined%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-50-of-2021%2F "Share via Email") 

![Cyber Security](https://media.mailhop.org/duocircle/images/2021/12/spf-record-tester-6437.jpg) 

The cyber realm has progressed much over the last week; here is the compilation of the [top cybersecurity headlines](/announcements) from the past seven days.

## UK Government Passes New Cybersecurity Bill

The general notion among consumers of electronic goods today is that a seller or manufacturer does a good job of ensuring their **security from cyberattacks**. More often than not, this isn’t true. Of late, _cyber adversaries have been intruding into netizens’ private and public spaces, right from attacks on their organizational networks to home systems_ such as smart TVs, CCTVs, baby monitors, etc. The United Kingdom government has implemented the Product Security and Telecommunications Infrastructure (PSTI) [Bill as a corrective measure](https://www.bitdefender.com/blog/hotforsecurity/new-uk-iot-law-means-huge-fines-and-a-ban-on-default-passwords/). The PSTI bill mandates all manufacturers and sellers of IoT devices to abide by **cybersecurity protocols** and protect the privacy of Britons.

[![email security](https://media.mailhop.org/duocircle/images/2021/12/spf-validator-4258.jpg)](https://media.mailhop.org/duocircle/images/2021/12/spf-validator-4258.jpg)

Apart from imposing fines of **up to £10 million** (about $13.25 million), _the government has demanded that firms be transparent with customers about their [email security](/) measures and establish an efficient public vulnerability reporting system_. In extreme cases, disregarding the PSTI bill norms may withhold an organization’s license to sell particular products. Some of the devices that fall under these new **[security requirements](/security)** are IoT-connected cameras, phones, speakers, TVs, baby monitors, children’s toys, door locks, smoke detectors, etc. Other devices include fitness trackers, base stations, GPS devices, alarm systems, fridges, washing machines, smart home assistants, etc.

Devices exempted from this list include smart meters, cars, medical devices, laptops, desktop computers, etc. While this step by the UK government may not **ensure total protection**, _it is a good start and shall reduce cyber incidents considerably if implemented well._

## Recommendations to Increase Cybersecurity Experts

It is a known fact that the diverse cybersecurity roles out there are underexploited, as a result of which there is an uneven ratio of cyberattacks and **cybersecurity experts**. _The cybersecurity workforce is evidently inadequate across nations as there are not enough qualified and skilled employees_. A recent report by ENISA highlights the research done by the Cybersecurity Higher Education Database, CyberHEAD to predict the future of the cyber landscape.

The findings of this study highlight that there has been a growth in the number of students and programs oriented towards [cybersecurity higher education](https://www.helpnetsecurity.com/2021/11/29/cybersecurity-skills-higher-education/). Thus, we can expect an increase in cybersecurity graduates within the next 2-3 years. But on the flip side, _the gender ratio remains uneven, with **only 20% of women** students enrolled in such cybersecurity programs_.

The [report](https://www.enisa.europa.eu/publications/addressing-skills-shortage-and-gap-through-higher-education) further highlights the measures taken by the European government to increase the number of cyber experts and enhance their expertise. The report lists the many recommendations for European Institutions, member states, industries, and the academic community. These include increasing enrolments in **cybersecurity programs**, providing scholarships in Higher Education Institutions (HEIs), having a unified approach or common framework like European Cybersecurity Skills Framework, cooperation among member states, analyzing the cybersecurity market needs, etc.

## Lazarus Group Actors Pose as Samsung Recruiters

_Threat actors from the notorious North Korean adversary group Lazarus (or Zinc) are [posing as Samsung recruiters](https://web.archive.org/web/20211206033255/https://cyware.com/news/cybercriminals-pose-as-samsung-recruiters-to-target-south-korea-e7b98d44) to offer innocent South Korean job seekers fake jobs_. The adversaries are sending out fake job offer emails to lure victims from security organizations that sell **anti-malware software**. Like all [phishing emails](/phishing-protection/how-to-stop-phishing-emails-and-protect-your-organization-from-cyber-criminals/), these fake Samsung emails come with an attached PDF called the so-called job description document.

Victims cannot access this document, and when they report the same to the fake recruiters, they receive the link to a Secure PDF Reader app, the modified version of **PDFTron**. This trojan installs a backdoor on the victims’ systems. This instance is clear evidence of the ever-evolving **cyber-attack strategies** of threat actors and serves as a lesson for organizations to increase [cybersecurity awareness](/phishing-awareness-training) among employees.

## Beware of Texts From FluBot

_After distressing Android users in Australia and New Zealand earlier this year, the Android malware FluBot is now affecting Finnish users_. Authorities in Finland are warning users against the **malware being spread** via SMS messaging. The National Cyber Security Center (NCSC-FI) warns that the [FluBot messages](https://www.theregister.com/2021/11/30/android%5Fphones%5Fkeep%5Fcatching%5Fflubot/) contain a combination of letters that are difficult to filter for telecommunications operators and are often disguised as voicemail messages from mobile operators.

The NCSC-FI has **detected over 70,000** such messages in just 24 hours, and it urges users not to install the malicious Android app that these FluBot texts lead them to. Affected Android users should perform a **factory reset** on their devices to ensure [ransomware protection](/email-security/5-ways-you-protect-your-business-from-ransomware/). The iOS users receiving this message are directed to **phishing sites** instead of the prompt to install the malicious app. After being installed, FluBot allows adversaries to access and regulate everything on a user’s phone, right from viewing contact lists to sending unauthorized messages to contacts. The malware also steals credit card details and passwords types while using various apps.

[![cybersecurity practices](https://media.mailhop.org/duocircle/images/2021/12/spf-record-generator-3568.jpg)](https://media.mailhop.org/duocircle/images/2021/12/spf-record-generator-3568.jpg)

## CISA Releases a Capacity Enhancement Guide for Organizations

_The Cybersecurity and Infrastructure Security Agency (CISA) has recently released a Capacity Enhancement Guide (CEG) to enable organizations to better secure organization data_ by monitoring the use of employee [mobile devices to access](https://www.securityweek.com/cisa-releases-guidance-securing-enterprise-mobile-devices) enterprise resources. CISA presents an Enterprise Mobility Management (EMM) system checklist, which lists the major [cybersecurity practices](/content/protection-from-phishing) to ensure an increased number of enterprise-managed mobile devices.

The first step is denying access to untrusted devices, meaning the devices without an EMM configuration. CISA further advises enterprises to mandate the use of **strong authentication** on enterprise-managed mobile devices such as pins that are at least six digits long, implementing [2FA](/phishing-protection/how-the-latest-scam-shows-two-factor-authentication-doesnt-prevent-phishing/), etc. The CEG comes with a host of other recommendations for enterprises. Some of these include reducing the amount of PII in applications, disabling Bluetooth, NFC, Wi-Fi, etc., when not in use, using VPNs while working on enterprise applications, etc.

CISA also instructs enterprises to use **Mobile Threat Defense** (MTD) systems, meaning that only trusted chargers and cables be used for charging and that the lost device function remains active.

## MSP Leaves Vulnerability Unpatched For Two Years, 200 Affected

Designed to detect fake emails, [Sender Policy Framework](/resources/what-is-spf) (SPF) is a critical **email authentication check**. For over two years, a Managed Service Provider (MSP) called the Precedence Group operated with an [undiscovered vulnerability](https://portswigger.net/daily-swig/over-permissive-authentication-checks-left-190-australian-organizations-vulnerable-to-business-email-compromise-attacks). It had **exposed over 200** Australian enterprises to phishing emails. The Precedence Group managed these organizations’ DNS, email servers, and websites and had unfortunately added an over-permissive [SPF DNS record](/resources/email-tips-problems-solutions/common-spf-issues) to each organization’s domain.

Resultantly, any Amazon Web Services (AWS) user could send authenticated [emails impersonating](/phishing-protection/how-to-prevent-phishing-and-spoofing/) Precedence Group’s client organizations. However, the MSP has now fixed the bug and informed the Australian Cyber Security Center about the same.

## Topics

NewsSecurityUpdates 

![Brad Slavin](https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg) 

Brad Slavin 

General Manager

General Manager at DuoCircle. Product strategy and commercial lead across the email security portfolio.

## Secure your email infrastructure

Protect, authenticate, and deliver. Contact our team to find the right solution.

[Contact Sales](/contact/) [Explore Products](/products/) 

Share this article

[ ](https://www.linkedin.com/sharing/share-offsite/?url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-50-of-2021%2F) [ ](https://twitter.com/intent/tweet?text=Cyber%20Security%20News%20Update%2C%20Week%2050%20of%202021&url=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-50-of-2021%2F) [ ](https://www.facebook.com/sharer/sharer.php?u=https%3A%2F%2Fwww.duocircle.com%2Fblog%2Fannouncements%2Fcyber-security-news-update-week-50-of-2021%2F) Copy 

Related Articles

- [ ![spam](https://media.mailhop.org/duocircle/images/2021/07/sender-policy-framework-7535.jpg)  Alert: Fix SPF & DKIM Settings For Your Email Forwarding Set Up Through Microsoft o365 SMTP Server Or Your Emails May End Up In Spam News ](/blog/announcements/alert-fix-spf-dkim-settings-for-your-email-forwarding-set-up-through-microsoft-o365-smtp-server-or-your-emails-may-end-up-in-spam/)
- [ ![Cyber Security](https://media.mailhop.org/duocircle/images/2022/01/spf-flattening-7011.jpg)  Cyber Security News Update, Week 1 of 2022 News ](/blog/announcements/cyber-security-news-update-week-1-of-2022/)
- [ ![Cybersecurity](https://media.mailhop.org/duocircle/images/2023/01/spf-validator-6824.jpg)  Cybersecurity News Update, Week 1 of 2023 News ](/blog/announcements/cyber-security-news-update-week-1-of-2023/)
- [ ![cybersecurity](https://media.mailhop.org/duocircle/images/2024/01/phishing-protection.jpg)  EasyPark Data Breach, Ohio Lottery Cyberattack, GTA 5 Leak, Cybersecurity News \[December 25, 2023\] News ](/blog/announcements/cyber-security-news-update-week-1-of-2024/)

## Related Articles

[  News 3m  Alert: Fix SPF & DKIM Settings For Your Email Forwarding Set Up Through Microsoft o365 SMTP Server Or Your Emails May End Up In Spam  Jul 20, 2021 ](/blog/announcements/alert-fix-spf-dkim-settings-for-your-email-forwarding-set-up-through-microsoft-o365-smtp-server-or-your-emails-may-end-up-in-spam/)[  News 6m  Cyber Security News Update, Week 1 of 2022  Jan 7, 2022 ](/blog/announcements/cyber-security-news-update-week-1-of-2022/)[  News 7m  Cybersecurity News Update, Week 1 of 2023  Jan 1, 2023 ](/blog/announcements/cyber-security-news-update-week-1-of-2023/)[  News 5m  EasyPark Data Breach, Ohio Lottery Cyberattack, GTA 5 Leak, Cybersecurity News \[December 25, 2023\]  Jan 4, 2024 ](/blog/announcements/cyber-security-news-update-week-1-of-2024/)

```json
{"@context":"https://schema.org","@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}],"sameAs":["https://www.linkedin.com/company/duocircle","https://x.com/duocirclellc","https://www.facebook.com/duocirclellc","https://www.g2.com/products/phish-protection-by-duocircle/reviews","https://github.com/duocircle","https://www.crunchbase.com/organization/duocircle-llc"],"contactPoint":{"@type":"ContactPoint","contactType":"customer support","url":"https://support.duocircle.com"},"knowsAbout":["Email Security","Email Authentication","SPF","DKIM","DMARC","Phishing Protection","Spam Filtering","SMTP Relay","Email Deliverability","Email Forwarding"]}
```

```json
{"@context":"https://schema.org","@type":"WebSite","name":"DuoCircle LLC","url":"https://www.duocircle.com","description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]}}
```

```json
[{"@context":"https://schema.org","@type":"BlogPosting","headline":"Cyber Security News Update, Week 50 of 2021","description":"The cyber realm has progressed much over the last week; here is the compilation of the top cybersecurity headlines from the past seven days.","url":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-50-of-2021/","datePublished":"2021-12-09T15:19:04.000Z","dateModified":"2025-05-26T17:49:31.000Z","dateCreated":"2021-12-09T15:19:04.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-50-of-2021/"},"articleSection":"announcements","keywords":"News, Security, Updates","wordCount":1085,"image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/images/2021/12/spf-record-tester-6437.jpg","caption":"Cyber Security","width":900,"height":600},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}},{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":2,"name":"News"},{"@type":"ListItem","position":3,"name":"Cyber Security News Update, Week 50 of 2021","item":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-50-of-2021/"}]}]
```

```json
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://www.duocircle.com/"},{"@type":"ListItem","position":2,"name":"Blog","item":"https://www.duocircle.com/blog/"},{"@type":"ListItem","position":3,"name":"News","item":"https://www.duocircle.comundefined"},{"@type":"ListItem","position":4,"name":"Cyber Security News Update, Week 50 of 2021","item":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-50-of-2021/"}]}
```

```json
{"@context":"https://schema.org","@type":"BlogPosting","headline":"Cyber Security News Update, Week 50 of 2021","description":"The cyber realm has progressed much over the last week; here is the compilation of the top cybersecurity headlines from the past seven days.","url":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-50-of-2021/","datePublished":"2021-12-09T15:19:04.000Z","dateModified":"2025-05-26T17:49:31.000Z","dateCreated":"2021-12-09T15:19:04.000Z","author":{"@type":"Person","@id":"https://www.duocircle.com/authors/brad-slavin/#person","name":"Brad Slavin","url":"https://www.duocircle.com/authors/brad-slavin/","jobTitle":"General Manager","description":"Brad Slavin runs DuoCircle, the company behind DMARC Report, AutoSPF, Phish Protection, and Mailhop. His focus is product strategy, customer relationships, and the commercial and compliance side of email authentication (DPAs, SLAs, enterprise procurement).","image":"https://media.mailhop.org/dmarcreport/images/team/brad-slavin.jpg","knowsAbout":["Email Security Strategy","SaaS Product Management","Enterprise Compliance","Customer Success","Email Deliverability Business"],"worksFor":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com"},"sameAs":["https://www.linkedin.com/in/bradslavin"]},"publisher":{"@type":"Organization","name":"DuoCircle LLC","url":"https://www.duocircle.com","logo":{"@type":"ImageObject","url":"https://www.duocircle.com/images/duocircle-logo.png"},"description":"DuoCircle is a portfolio of specialized email products covering protection, authentication, delivery, and routing. We deliver about 90% of category-leader capability at roughly half the price, backed by experts who own the outcome. Trusted by 50,000+ organizations since 2014.","subOrganization":[{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138898167","name":"DMARC Report","url":"https://dmarcreport.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897474","name":"AutoSPF","url":"https://autospf.com"},{"@type":"Organization","@id":"https://www.wikidata.org/wiki/Q138897912","name":"Phish Protection","url":"https://www.phishprotection.com"}]},"mainEntityOfPage":{"@type":"WebPage","@id":"https://www.duocircle.com/blog/announcements/cyber-security-news-update-week-50-of-2021/"},"articleSection":"announcements","keywords":"News, Security, Updates","wordCount":1085,"image":{"@type":"ImageObject","url":"https://media.mailhop.org/duocircle/images/2021/12/spf-record-tester-6437.jpg","caption":"Cyber Security","width":900,"height":600},"speakable":{"@type":"SpeakableSpecification","cssSelector":[".answer-block","h1"]}}
```
