Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Seven ‘no log’ VPN providers accused of leaking – yup, you guessed it – 1.2TB of user logs onto the internet
- New ‘Meow’ attack has wiped over 1,800 unsecured databases
- CouchSurfing investigates data breach after 17m user records appear on hacking forum
- Twilio: Someone waltzed into our unsecured AWS S3 silo, added dodgy code to our JavaScript SDK for customers
- Ransomware gang demands $7.5 million from Argentinian ISP
- Blackbaud Hack: Universities lose data to ransomware attack
- Twitter hackers could have stolen a whole lot more Bitcoin
- ‘We’re embarrassed’: This is what Twitter sent to accounts that were hacked
- After Twitter hack, Senator asks why DMs aren’t encrypted
- World’s most wanted man Jan Marsalek located in Belarus; data points to Russian Intel links
- World’s most wanted man involved in bizarre attempt to buy hacking tools
- Two Chinese hackers working with the Ministry of State Security charged with global computer intrusion campaign
- The FBI is secretly using a $2 billion travel company as a global surveillance tool
- The Microsoft police state: Mass surveillance, facial recognition, and the Azure cloud
- Apple being sued for refusing to help iTunes gift card scam victims
- Police in Germany have too much access to personal online data, top court says
- Anti-piracy groups mull “Know Your Customer” proposal to tackle pirate sites
- GitHub Archive Program: the journey of the world’s open source code to the Arctic
For the more technical
- Adobe issues emergency fixes for critical vulnerabilities in Photoshop, Bridge, Prelude
- Attacks bypassing the signature validation in PDF (PDF)
- MMS Exploit Part 2: Effective Fuzzing of the Qmage Codec
- Remote code execution against SharePoint Server abusing DataSet
- Arbitrary file delete via wsreset.exe // Bypass adaware antivirus
- Cisco patches actively exploited ASA/FTD firewall vulnerability
- Crooks have acquired proprietary Diebold software to “jackpot” ATMs
- Here’s why your Samsung Blu-ray player bricked itself: It downloaded an XML config file that broke the firmware
- D-Link blunder: Firmware encryption key exposed in unencrypted image
- Vulnerable cellular routers targeted in latest attacks on Israel water facilities
- The rise of OpenBullet: A deep dive in the attacker’s ATO toolkit
- MATA: Multi-platform targeted malware framework
- Updates on ThiefQuest, the quickly-evolving macOS malware
- Emotet botnet is now heavily spreading QakBot malware
- Prometei botnet and its quest for Monero
- Chinese APT group targets India and Hong Kong using new variant of MgBot malware
- How scammers are hiding their phishing trips in public clouds
- Here we go again: with instability in English language Darknet Markets, is Hydra about to take over?
- Russian cyberattacks an ‘urgent threat’ to national security (PDF)
- Bitwarden: Security audit complete
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.