Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Criminals posting counterfeit Microsoft products to get access to victims’ computers
- Hackers attack UK water supplier but extort wrong company
- CS:GO trading site hacked to steal $6 million worth of skins
- How a third-party SMS service was used to take over Signal accounts + more information
- 5.7bn data entries found exposed on Chinese VPN
- Browser password managers – flawed security, by design
- Old laptop hard drives will allegedly crash when exposed to Janet Jackson music
For the more technical
- Starlink user terminal modchip
- Researching Xiaomi’s TEE to get to Chinese money
- Attacking Titan M with only one byte
- A new jailbreak for John Deere tractors rides the right-to-repair wave
- The new USB Rubber Ducky is more dangerous than ever
- One bootloader to load them all
- Process injection: breaking all macOS security layers with a single vulnerability
- Typosquatting campaign targeting Python’s top packages, dropping GitHub hosted malware with DGA capabilities
- Monero coinminer being distributed via Webhards
- Compromised YouTube accounts spreading malware
- Investigation report about the abuse of the Mac Appstore
- Real-time behavior-based detection on Android reveals dozens of malicious apps on Google Play Store
- BugDrop: the first malware trying to circumvent Google’s security Controls
- Threat in your browser: what dangers innocent-looking extensions hold for users
- IT threat evolution Q2 2022 + Non-mobile & mobile statistics
- SOVA malware is back and is evolving rapidly
- DarkTortilla malware analysis
- Disrupting SEABORGIUM’s ongoing phishing operations
- APT41 world tour 2021 on a tight schedule
- RedAlpha conducts multi-year credential theft campaign targeting global humanitarian, think tank, and government organizations
- APT-C-35 gets a new upgrade
- Overview of the 9 distinct data wipers used in the Ukraine war (PDF)
- How Google Cloud blocked the largest Layer 7 DDoS attack at 46 million rps
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.