Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- [AUDIO] Algorithms of Trauma 2. How Facebook feeds on your fears
- Anxious about your health? Facebook won’t let you forget
- Reuters takes down blockbuster hacker-for-hire investigation after Indian court order
- Leader of Russian hacktivist group Killnet ‘retires,’ appoints new head
- Founder and majority owner of cryptocurrency exchange pleads guilty to unlicensed money transmitting
- Tipalti investigates claims of data stolen in ransomware attack
- 23andMe confirms hackers stole ancestry data on 6.9 million users
- Apple admits to secretly giving governments push notification data
- Meta’s new AI image generator was trained on 1.1 billion Instagram and Facebook photos
- Meta Facebook Messenger is now rolling out end-to-end encryption by default
For the more technical
- Dieselgate, but for trains – some heavyweight hardware hacking
- Detecting malicious activity against Microsoft Exchange servers
- Guidance for investigating attacks using CVE-2023-23397
- Android Security Bulletin – December 2023
- Unauthenticated Bluetooth keystroke-injection in Android, Linux, macOS and iOS
- AutoSpill attack steals credentials from Android password managers
- Atlassian patches critical RCE flaws across multiple products
- Threat actors exploit Adobe ColdFusion CVE-2023-26360 for initial access to government servers
- Researchers discover dozens of new bugs affecting Sierra Wireless routers
- SLAM: Spectre based on linear address masking
- Leaky address masking: Exploiting unmasked Spectre gadgets with noncanonical address translation (PDF)
- New 5Ghoul attack impacts 5G phones with Qualcomm, MediaTek chips (PDF)
- Critical POP chain allowing remote code execution patched in WordPress 6.4.2
- By the same token: How adversaries infiltrate AWS cloud accounts
- Kali Linux 2023.4 released with GNOME 45 and 15 new tools
- Beware of predatory fin(tech): Loan sharks use Android apps to reach new depths
- BlueNoroff: new Trojan attacking macOS users
- Unmasking the enigma: A historical dive into the world of PlugX malware
- P2Pinfect – new variant targets MIPS devices
- MrAnon stealer spreads via email with fake hotel booking PDF
- Linux version of Qilin ransomware focuses on VMware ESXi
- Cisco Talos 2023 Year in Review
- Scanning danger: Unmasking the threats of quishing
- AeroBlade on the hunt targeting the U.S. aerospace industry
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.