IT Security Weekend Catch Up – February 18, 2023

Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!

For the less technical

  1. The FBI’s most controversial surveillance tool is under threat
  2. Revealed: the hacking and disinformation team meddling in elections
  3. Elon Musk’s Twitter fails first EU disinformation test
  4. Russian businessman guilty in hacking, insider trade scheme
  5. Crypto buyers beware: 1 in 4 new tokens of any value is a scam
  6. Eurostar forces ‘password resets’ — then fails and locks users out
  7. Scandinavian Airlines website hit by cyber attack, customer details exposed
  8. GoDaddy: Hackers stole source code, installed malware in multi-year breach
  9. Video game voice actors doxed and harassed in targeted AI voice attack
  10. Alleged SIM swapper ransomed Instagram influencer for dates, striptease video
  11. For a former ‘Yahoo Boy,’ romance is a cut-and-paste proposition

For the more technical

  1. Apple fixes new WebKit zero-day exploited to hack iPhones, Macs
  2. Microsoft February 2023 Patch Tuesday
  3. ClamAV 0.103.8, 0.105.2 and 1.0.1 patch versions published + more information
  4. Fortinet fixes critical RCE flaws in FortiNAC and FortiWeb
  5. OpenSSH pre-auth double free CVE-2023-25136 – writeup and proof-of-concept
  6. TikTok challenge spurs rise in thefts of Kia, Hyundai cars
  7. The essential techniques to bypass anti-virus and EDR
  8. The return of ICEFALL: Two critical bugs revealed in Schneider Electric tech (PDF)
  9. cURL audit: How a joke led to significant findings
  10. Threat actors are using fake Emsisoft code-signing certificates to disguise their attacks
  11. Havoc across the cyberspace
  12. Phylum discovers revived crypto wallet address replacement attack
  13. Spam and phishing in 2022
  14. Cloudflare mitigates record-breaking 71 million request-per-second DDoS attack
  15. These aren’t the apps you’re looking for: fake installers targeting Southeast and East Asia
  16. Mirai variant V3G4 targets IoT devices
  17. Dragos’s annual ICS/OT cybersecurity year in review (PDF)
  18. Ransomware and commodity loader topic summary report: Cisco Talos year in review 2022
  19. Screentime: Sometimes it feels like somebody’s watching me
  20. 2023 report by Estonia’s Foreign Intelligence Agency (PDF)
  21. Fog of war: How the Ukraine conflict transformed the cyber threat landscape
  22. Decoding how the People’s Republic of China uses cyberattacks (PDF)
  23. Fake Hogwarts Legacy cracks lead to adware, scams
  24. Frebniis: New malware abuses Microsoft IIS feature to establish backdoor
  25. Don’t sleep on the new ProxyShellMiner campaign
  26. Writing a decryptor for Jaff ransomware
  27. Uncle Sow: Dark Caracal in Latin America
  28. Nice try Tonto Team
  29. Sustained activity by specific threat actors (PDF)

Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.

Leave a Reply

Your email address will not be published. Required fields are marked *