Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Russian money laundering networks uncovered linking narco traffickers, ransomware gangs and Kremlin spies
- Russia delivers historic life sentence to suspected founder of darknet marketplace
- Germany arrests suspected admin of country’s largest criminal marketplace
- International operation takes down another encrypted messaging service used by criminals
- U.S. offered $10M for hacker just arrested by Russia
- Leak: what law enforcement can unlock with the ‘Graykey’ iPhone hacking tool
- A new phone scanner that detects spyware has already found 7 Pegasus infections
- Uganda confirms hack of central bank accounts, official downplays extent of loss
- 760,000 employee records from several major firms leaked online
- Pakistan tests secret China-like ‘firewall’ to tighten online surveillance
For the more technical
- Supply chain attack detected in Solana’s web3.js library
- The far-reaching consequences of LogoFAIL
- LogoFAIL exploited to deploy Bootkitty, the first UEFI bootkit for Linux
- Progress WhatsUp Gold NmAPI.exe registry overwrite unauthenticated RCE
- Over-the-air vulnerabilities discovered in Advantech EKI access points
- ProjectSend CVE-2024-11680 exploited in the wild
- Cloudflare’s pages.dev and workers.dev domains increasingly abused for phishing
- Novel phishing campaign uses corrupted Word documents to evade security
- Who ordered the Smokedham? Backdoor delicacies in the wild
- DroidBot: Insights from a new Turkish MaaS fraud operation
- Device confiscated by Russian authorities returned with Monokle-type spyware installed
- Unveiling RevC2 and Venom loader
- SmokeLoader attack targets companies in Taiwan
- Gafgyt malware broadens its scope in recent attacks
- Inside Akira ransomwareis Rust experiment
- The curious case of an egg-cellent resume
- Stellar discovery of a new cluster of Andromeda/Gamarue C2
- Frequent freeloader part I: Secret Blizzard compromising Storm-0156 infrastructure for espionage
- Snowblind: The invisible hand of Secret Blizzard
- Moonshine exploit kit and DarkNimbus backdoor enabling Earth Minotaur’s multi-platform attacks
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.