Afraid of missing important security news during the week? We're here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- What’s wrong with Telegram?
- That groan you hear is users’ reaction to Recall going back into Windows
- Pegasus spyware targeted over 1,200 WhatsApp users, court documents show
- Meta to start training its AI models on public content in the EU
- Wiki Wars: Editors and propagandists are fighting for influence over the online encyclopedia’s most controversial entries
- Former cybersecurity agency chief Chris Krebs leaves SentinelOne after Trump targets him in executive order
- China accuses NSA of launching cyberattacks on Asian Winter Games
- Suspected 4chan hack could expose longtime, anonymous admins
- Alleged SmokeLoader malware operator facing federal charges in Vermont
For the more technical
- Hackers retain access to patched FortiGate VPNs using symlinks
- Over 16,000 Fortinet devices compromised with symlink backdoor
- Exploitation of CLFS zero-day leads to ransomware activity
- ActiveX controls are disabled by default in Microsoft 365 and Office 2024
- About the security content of iOS 18.4.1 and iPadOS 18.4.1
- Subdomain takeovers as supply chain attacks
- The rise of precision-validated credential theft: A new challenge for defenders
- Tycoon2FA new evasion technique for 2025
- Pixel-perfect trap: The surge of SVG-borne phishing attacks
- The rise of slopsquatting: How AI hallucinations are fueling a new class of supply chain attacks
- Threat actors misuse Node.js to deliver malware and other malicious payloads
- From shadow to spotlight: The evolution of LummaStealer and its hidden secrets
- Newly registered domains distributing SpyNote malware
- Interlock ransomware evolving under the radar
- New malware variant identified: ResolverRAT enters the maze
- BPFDoor’s hidden controller used against Asia, Middle East targets
- PasivRobber: Chinese spyware or security tool?
- Latest Mustang Panda arsenal: ToneShell and StarProxy | P1
- Latest Mustang Panda arsenal: PAKLOG, CorKLOG, and SplatCloak | P2
- Cascading shadows: An attack chain approach to avoid detection and complicate analysis
- Scattered Spider: Still hunting for victims in 2025
- Renewed APT29 phishing campaign against European diplomats
- Slow Pisces targets developers with coding challenges and introduces new customized Python malware
- CrazyHunter campaign targets Taiwanese critical sectors
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.
Comments