Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Okta says two customers breached during January security incident
- T-Mobile confirms Lapsus$ breach, says no customer or government info accessed
- I’m a security engineer and I still almost got scammed
- A $3 billion Silk Road seizure will erase Ross Ulbricht’s debt
- New Industrial Spy stolen data market promoted through cracks, adware
For the more technical
- A year in review of 0-days used in-the-wild in 2021
- CISA warns of attackers now exploiting Windows Print Spooler bug
- When “secure” isn’t secure at all: High‑impact UEFI vulnerabilities discovered in Lenovo consumer laptops
- AWS’s Log4Shell hot patch vulnerable to container escape and privilege escalation
- Blinding Snort: Breaking the Modbus OT preprocessor
- Vulnerability in Atlassian Jira Core
- CVE-2022-21449: Psychic signatures in Java
- Oracle critical patch update advisory – April 2022
- CatalanGate: Extensive mercenary spyware operation against Catalans using Pegasus and Candiru
- Largest mobile chipset manufacturers used vulnerable audio decoder, 2/3 of Android users’ privacy around the world were at risk
- Hackers earn $400K for zero-day ICS exploits demoed at Pwn2Own
- Attack campaign involving stolen OAuth user tokens issued to two third-party integrators
- Trivy – scanner for vulnerabilities in container images, file systems, and Git repositories
- Are you really muted?: A privacy analysis of mute buttons in video conferencing apps (PDF)
- New stealthy BotenaGo malware variant targets DVR devices
- Warez users fell for Certishell
- Hackers spearphish corporate hiring managers with poisoned resumes, infecting them with the more_eggs malware
- How to recover files encrypted by Yanlouwang
- Current trends in ransomware with special notes on Monero usage (PDF)
- Hive ransomware analysis
- PYSA (Mespinoza) in-depth analysis (PDF)
- Conti ransomware group behind the Karakurt hacking team
- FBI shares information on BlackCat ransomware attacks (PDF)
- REvil’s TOR sites come alive to redirect to new ransomware operation
- “Haskers Gang” introduces new ZingoStealer
- TraderTraitor: North Korean state-sponsored APT targets blockchain companies
- Shuckworm: Espionage group continues intense campaign against Ukraine
- A deeper look at the malware being used on Ukrainian targets
- Russian state-sponsored and criminal cyber threats to critical infrastructure
- LemonDuck targets Docker for cryptomining operations
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.