Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Chrome will redact credit cards, passwords when you share Android screen
- NSA tracks Google ads to find Tor users
- Bypass Paywalls Clean shut down for DMCA anti-circumvention violations
- Microchip Technology says operations disrupted by cyberattack
- Toyota confirms third-party data breach impacting customers
- Russian arrested in Argentina for laundering money for hackers
- Pulaski county man sentenced for cyber intrusion and aggravated identity theft
For the more technical
- Design flaw has Microsoft Authenticator overwriting MFA accounts, locking users out
- $4,998 bounty awarded and 100,000 WordPress sites protected against unauthenticated remote code execution vulnerability patched in GiveWP WordPress plugin
- Critical privilege escalation in LiteSpeed Cache plugin affecting 5+ million sites
- Data exfiltration from Slack AI via indirect prompt injection
- Leaked environment variables allow large-scale extortion operation of cloud environments
- How multiple vulnerabilities in Microsoft apps for macOS pave the way to stealing permissions
- [VIDEO] CVE-2024-38063: The End of IPv6 as we know it or not a big deal?
- 60 hurts per second – How we got access to enough solar power to run the United States
- MIFARE Classic: exposing the static encrypted nonce variant… and a few hardware backdoors
- Exploits and vulnerabilities in Q2 2024
- Xeon Sender – SMS spam shipping multi-tool targeting SaaS credentials
- Be careful what you pwish for – Phishing in PWA applications
- Unmasking the SMS stealer: Targeting several countries with deceptive apps
- NGate Android malware relays NFC traffic to steal cash
- Don’t get Mad, get wise
- CryptoCore: Unmasking the sophisticated cryptocurrency scam operations
- Hundreds of online stores hacked in new campaign\
- Unmasking Styx Stealer: How a hacker’s slip led to an intelligence treasure trove
- Beyond the wail: Deconstructing the Banshee infostealer
- Qilin ransomware caught stealing credentials stored in Google Chrome
- CISA warns of Jenkins RCE bug exploited in ransomware attacks
- New backdoor targeting Taiwan employs stealthy communications
- BlindEagle flying high in Latin America
- MoonPeak malware from North Korean actors unveils new details on attacker infrastructure
- Analysis of puNK-003’s Lilith RAT ported to AutoIt Script
- Windows driver zero-day exploited by Lazarus hackers to install rootkit
- GreenCharlie infrastructure targeting US political entities with advanced phishing and malware
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.