Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- [VIDEO] How Quad9 got started, DNS encryption, and how Quad9 protects your privacy and security
- Signal adds a payments feature – with a privacy-focused cryptocurrency
- Leaked phone number of Mark Zuckerberg reveals he is on Signal
- Adult content from hundreds of OnlyFans creators leaked online
- Data leak: 500 million LinkedIn user data for sale in underground forum
- LinkedIn spear-phishing campaign targets job hunters
- Dutch man gets two years in prison for hijacking 13,762 online store accounts
- Leading cosmetics group Pierre Fabre hit with $25 million ransomware attack
- Google’s top security teams unilaterally shut down a counterterrorism operation
For the more technical
- Breaking RAR5 and 7Zip passwords
- BleedingTooth: Linux Bluetooth zero-click remote code execution
- Pwn2Own 2021 – schedule and live results
- [VIDEO] Pwn2Own 2021 – day one, day two, day three
- PHP language source code compromise attempt
- Zero click vulnerability in Apple’s macOS Mail
- Distributing unnotarized Mac apps in a text file
- RCE on Starbucks Singapore and more for $5600
- Attacker use of the Windows Background Intelligent Transfer Service
- Mobile handset privacy: Measuring the data iOS and Android send to Apple and Google (PDF)
- Cloudflare says new hCaptcha bypass doesn’t impact its implementation
- The rise and fall of illicit cardshop breached twice in two years
- Online gift card shop breached: 330k payment cards and $38m in gift cards exposed
- Finding malicious cryptojacking images in Docker Hub
- Fake jQuery files infect WordPress sites with malware
- Ziggy ransomware shuts down and releases victims’ decryption keys
- Vulnerability in FortiGate VPN servers is exploited in Cring ransomware attacks
- REvil ransomware now changes password to auto-login in Safe Mode
- New advanced Android malware posing as “System Update”
- New wormable Android malware spreads by creating auto-replies to messages in WhatsApp
- Gigaset smartphones infected with malware due to compromised update server
- A deep dive into Saint Bot, a new downloader
- BadBlood: TA453 targets US and Israeli medical research personnel in credential phishing campaigns
- What is Astro Locker Team?
- The leap of a Cycldek-related threat actor
- Threat group uses voice changing software in espionage attempt
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.