IT Security Weekend Catch Up – February 28, 2025

Comments

28.02.2025 | 23:39

IT Security Weekend Catch Up – February 28, 2025
avatar

badcyber

comments

IT Security Weekend Catch Up – February 28, 2025

Afraid of missing important security news during the week? We're here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!

For the less technical

  1. Google facilitated Russia and China’s censorship requests
  2. France is about to pass the worst surveillance law in the EU
  3. Google plans to stop using insecure SMS verification in Gmail
  4. Microsoft is finally shutting down Skype in May
  5. Meta sues alleged violent extortionist for holding Instagram accounts hostage
  6. Stalkerware apps Cocospy and Spyic are exposing phone data of millions of people
  7. BlackBasta Leaks: Lessons from the Ascension Health attack
  8. North Korea responsible for $1.5 billion Bybit hack
  9. Inside the Telegram groups doxing women for their Facebook posts
  10. Faster than pizza delivery: Poland's online drug market is out of control

For the more technical

  1. CrowdStrike has published its 2025 Global Threat Report
  2. Dropping a 0 day: Parallels Desktop repack root privilege escalation
  3. Qualys TRU discovers two vulnerabilities in OpenSSH: CVE-2025-26465 & CVE-2025-26466
  4. Arctic Wolf observes authentication bypass exploitation attempts targeting SonicWall firewalls (CVE-2024-53704)
  5. Hackers reveal security flaws in smart solar systems, exposing risks to national power grids as global reliance on solar energy grows
  6. A wolf in dark mode: The malicious VSCode theme that fooled millions
  7. Auto-Color: An emerging and evasive Linux backdoor
  8. Malicious PyPI package exploits Deezer API for coordinated music piracy
  9. SpyLend: The Android app available on Google Play Store: Enabling financial cyber crime & extortion
  10. Zhong Stealer analysis: New malware targeting fintech and cryptocurrency
  11. Anubis: A new ransomware threat
  12. DeepSeek lure using CAPTCHAs to spread malware
  13. SecTopRAT bundled in Chrome installer distributed via Google Ads
  14. Long live the Vo1d botnet: New variant hits 1.6 million TV globally
  15. PolarEdge: Unveiling an uncovered ORB
  16. An inside look at NSA (Equation Group) TTPs from China’s lense
  17. Lotus Blossom espionage group targets multiple industries with different versions of Sagerunex and hacking tools
  18. Squidoor: Suspected Chinese threat actor’s backdoor targets global organizations
  19. RustDoor and Koi Stealer for macOS used by North Korea-linked threat actor to target the cryptocurrency sector

Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.


Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy! For the less technical Google facilitated Russia and China’s censorship requests France is about to pass the worst surve 2025-02-28T23:39:10+01:00

Comments