Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- [VIDEO] How Ukraine and Russia are rewriting the rules of cyber war – BBC News
- He’s from a patriotic family — and allegedly leaked U.S. secrets
- Discord member details how documents leaked from closed chat group
- Apparent leaked U.S. docs suggest pro-Russian hackers accessed Canada’s gas network
- Kodi discloses data breach after forum database for sale online
- On the hunt for the businessmen behind a billion-dollar scam
- Inside the international sting operation to catch North Korean crypto hackers
- EVE Online player uses obscure rule to pull off the biggest heist in the game’s history
- How to beat roulette: One gambler figured it out and won big
- Richmond homeowner says ‘Find My iPhone’ app mistake causing angry residents to come to his house
- [VIDEO] Hands on with a smart gun that actually works
For the more technical
- The April 2023 security update review
- ELF hash function may overflow
- On self-healing code and the obvious issue
- HP to patch critical bug in LaserJet printers within 90 days
- [VIDEO] JDD 2022: Philipp Krenn – Learnings from Log4Shell
- Man-in-the-middle attacks without rogue AP: When WPAs meet ICMP redirects (PDF)
- Nokoyawa ransomware attacks with Windows zero-day
- Read The Manual Locker: A private RaaS provider
- Vice Society ransomware uses new PowerShell data theft tool in attacks
- Guidance for investigating attacks using CVE-2022-21894: The BlackLotus campaign
- Legion: an AWS credential harvester and SMTP hijacker
- High severity vulnerability in WordPress Elementor Pro patched
- Who broke NPM?: Malicious packages flood leading to Denial of Service
- DDoS threat report for 2023 Q1
- ARES Leaks – emerging cyber crime cartel
- Overview of Google Play threats sold on the dark web
- Espionage campaign linked to Russian intelligence services
- Sweet QuaDreams. A first look at spyware vendor QuaDream’s exploits, victims, and customers
- DEV-0196: QuaDream’s “KingsPawn” malware used to target civil society in Europe, North America, the Middle East, and Southeast Asia
- North Korean hackers linked to 3CX supply-chain attack, investigation finds
- Following the Lazarus group by tracking DeathNote campaign
- MERCURY and DEV-1084: Destructive attack on hybrid environment
- Transparent Tribe (APT36): Pakistan-aligned threat actor expands interest in Indian education sector
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.