Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- US State Department investigates alleged theft of government data
- OWASP Foundation warns members of data breach after discovering 1,000 resumes on Wiki server
- AT&T confirms data for 73 million customers leaked on hacker forum
- US cancer center data breach exposes info of 827,000 patients
- New Chrome feature aims to stop hackers from using stolen cookies
- Google agrees to delete Incognito data despite prior claim that’s “impossible”
- Kinahan Cartel: Wanted narco boss exposes whereabouts by posting Google reviews
- Iowa sysadmin pleads guilty to 33-year identity theft of former coworker
For the more technical
- xz/liblzma: Bash-stage obfuscation explained
- Google patches critical vulnerability for Androids with Qualcomm chips
- $5,500 bounty awarded for unauthenticated SQL injection vulnerability patched in LayerSlider WordPress plugin
- Kobold letters: Why HTML emails are a risk to your organization
- How to prevent web API attacks with data validation – web API security guide
- HTTP/2 CONTINUATION Flood: Technical details
- DinodasRAT Linux implant targeting entities worldwide
- Bing ad for NordVPN leads to SecTopRAT
- Threat actors deliver malware via YouTube video game cracks
- AI meets next-gen info stealers in social media malvertising campaigns
- Breaking boundaries: Mispadu’s infiltration beyond LATAM
- Visa warns of new JSOutProx malware variant targeting financial orgs
- Latrodectus: This spider bytes like ice
- Android malware Vultur expands its wingspan
- Hosting firm’s VMware ESXi servers hit by new SEXi ransomware
- Agent Tesla targeting United States and Australia: Revealing the attackers’ identities
- Earth Freybug uses Unapimon for unhooking critical APIs
- Cutting edge, part 4: Ivanti Connect Secure VPN post-exploitation lateral movement case studies
- Cyber Safety Review Board releases report on Microsoft Online Exchange incident from summer 2023
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.