Afraid of missing important security news during the week? We're here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Google facilitated Russia and China’s censorship requests
- France is about to pass the worst surveillance law in the EU
- Google plans to stop using insecure SMS verification in Gmail
- Microsoft is finally shutting down Skype in May
- Meta sues alleged violent extortionist for holding Instagram accounts hostage
- Stalkerware apps Cocospy and Spyic are exposing phone data of millions of people
- BlackBasta Leaks: Lessons from the Ascension Health attack
- North Korea responsible for $1.5 billion Bybit hack
- Inside the Telegram groups doxing women for their Facebook posts
- Faster than pizza delivery: Poland's online drug market is out of control
For the more technical
- CrowdStrike has published its 2025 Global Threat Report
- Dropping a 0 day: Parallels Desktop repack root privilege escalation
- Qualys TRU discovers two vulnerabilities in OpenSSH: CVE-2025-26465 & CVE-2025-26466
- Arctic Wolf observes authentication bypass exploitation attempts targeting SonicWall firewalls (CVE-2024-53704)
- Hackers reveal security flaws in smart solar systems, exposing risks to national power grids as global reliance on solar energy grows
- A wolf in dark mode: The malicious VSCode theme that fooled millions
- Auto-Color: An emerging and evasive Linux backdoor
- Malicious PyPI package exploits Deezer API for coordinated music piracy
- SpyLend: The Android app available on Google Play Store: Enabling financial cyber crime & extortion
- Zhong Stealer analysis: New malware targeting fintech and cryptocurrency
- Anubis: A new ransomware threat
- DeepSeek lure using CAPTCHAs to spread malware
- SecTopRAT bundled in Chrome installer distributed via Google Ads
- Long live the Vo1d botnet: New variant hits 1.6 million TV globally
- PolarEdge: Unveiling an uncovered ORB
- An inside look at NSA (Equation Group) TTPs from China’s lense
- Lotus Blossom espionage group targets multiple industries with different versions of Sagerunex and hacking tools
- Squidoor: Suspected Chinese threat actor’s backdoor targets global organizations
- RustDoor and Koi Stealer for macOS used by North Korea-linked threat actor to target the cryptocurrency sector
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.
Comments