Afraid of missing important security news during the week? We're here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- What's up with the Russian spies?
- Polarisation is not about filter bubbles or echo chambers, here's why
- Amazon blocked 1,800 suspected North Korean scammers seeking jobs
- The Day China Hacked Google: Operation Aurora
- Received a message from Signal? Here’s how to recognize Signal’s official and only chat
- How safe is online banking? We explain how to stay safe when banking online or by smartphone app
- Analytics provider: We didn't expose smut site data to crims
- SoundCloud confirms breach after member data stolen, VPN access disrupted
- North Korea drives record $2 billion crypto theft year, pushing all-time total to $6.75 billion
- FBI disrupts virtual money laundering service used to facilitate criminal activity
For the more technical
- CWE Top 25 most dangerous software weaknesses
- Free micropatches for Windows Remote Access Connection Manager DoS (0day)
- Kali Linux 2025.4 release (desktop environments, Wayland & Halloween mode)
- Inside GhostPoster: How a PNG icon infected 50,000 Firefox users
- Kimwolf exposed: The massive Android botnet with 1.8 million infected devices
- Meet Cellik - a new Android RAT with Play Store integration
- 8 million users' AI conversations sold for profit by "privacy" extensions
- Should you trust your VPN location?
- GachiLoader: Defeating Node.js malware with API tracing
- CyberVolk returns: Flawed VolkLocker brings new features with growing pains
- SantaStealer is coming to town: A new, ambitious infostealer advertised on underground forums
- New PyStoreRAT malware targets OSINT researchers through GitHub
- Multiple threat actors exploit React2Shell (CVE-2025-55182)
- ResidentBat: Operational report & advisory on KGB spyware in Belarus in 2025
- ResidentBat: A new spyware family used by Belarusian KGB
- BlueDelta’s persistent campaign against UKR.NET
- Handbook on the role of non-state actors in Russian hybrid threats
- LongNosedGoblin tries to sniff out governmental affairs in Southeast Asia and Japan
- UAT-9686 actively targets Cisco Secure Email Gateway and Secure Email and Web Manager
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.
Comments