Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Play ransomware claims attack on Belgium city of Antwerp
- Hackers leak personal info allegedly stolen from 5.7M Gemini users
- Uber suffers new data breach after attack on vendor, info leaked online
- FBI’s vetted info sharing network ‘InfraGard’ hacked
- Federal prosecutors in Los Angeles and Alaska charge 6 defendants with operating websites that offered computer attack services
- SEC charges Samuel Bankman-Fried with defrauding investors in crypto asset trading platform FTX
- TikTok is a national security risk, not a privacy one
For the more technical
- FortiOS – heap-based buffer overflow in sslvpnd
- Microsoft December 2022 Patch Tuesday
- Critical remote code execution vulnerability in SPNEGO Extended Negotiation Security Mechanism
- About the security content of iOS 16.2 and iPadOS 16.2
- Hell’s Keychain: Supply-chain vulnerability in IBM Cloud Databases for PostgreSQL allows potential unauthorized database access
- Cool vulns don’t live long – Netgear and Pwn2Own
- APT5: Citrix ADC threat hunting guidance (PDF)
- Abusing JSON-based SQL to bypass WAF
- NIST retires SHA-1 cryptographic algorithm
- ESF potential threats to 5G network slicing (PDF)
- Announcing OSV-Scanner: Vulnerability scanner for open source
- How 140k NuGet, NPM, and PyPi packages were used to spreadphishing links
- Multiple zero-day vulnerabilities in leading Endpoint Detection and Response (EDR) and antivirus (AV) solutions
- Signed driver malware moves up the software trust chain
- Pulling the curtains on Azov Ransomware: Not a skidsware but polymorphic wiper
- Breaking the silence – Recent Truebot activity
- MoneyMonger: Predatory loan scam campaigns move to flutter
- MCCrash: Cross-platform DDoS botnet targets private Minecraft servers
- GoTrim: Go-based botnet actively brute forces WordPress websites
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.