Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Google will no longer back up the Internet: Cached webpages are dead
- How a mistakenly published password exposed Mercedes-Benz source code
- New ransomware reporting requirements kick in as victims increasingly avoid paying
- Energy giant Schneider Electric hit by Cactus ransomware attack
- Funds stolen from crypto platforms fall more than 50% in 2023, but hacking remains a significant threat as number of incidents rises
- Vastaamo hacker traced via ‘untraceable’ Monero transactions, police says
- China’s hackers have entire nation in their crosshairs, FBI director warns
- Authorities secure $2 billion in Bitcoin from pirate site operators
- NSA finally admits to spying on Americans by purchasing sensitive data
- Japan government accepts it’s no longer the ’90s, stops requiring floppy disks
For the more technical
- How memory forensics revealed exploitation of Ivanti Connect Secure VPN zero-day vulnerabilities
- Cutting edge, part 2: Investigating Ivanti Connect Secure VPN zero-day exploitation
- Zyxel VPN series pre-auth remote command execution
- Excessive expansion: Uncovering critical security vulnerabilities in Jenkins
- Thanksgiving 2023 security incident
- Code audit for the Tor Project completed by Radically Open Security
- Mastodon vulnerability allows attackers to take over accounts
- Rook to XSS: How I hacked chess.com with a rookie exploit
- Unveiling the intricacies of DiceLoader
- ESET takes part in global operation to disrupt the Grandoreiro banking trojan
- VajraSpy: A Patchwork of espionage apps
- Between a hack and a hard place: How Pegasus spyware crushes civic space in Jordan
- Backdoor activator malware running rife through torrents of macOS apps
- PurpleFox malware infects thousands of computers in Ukraine
- ApateWeb: An evasive large-scale scareware and PUP delivery campaign
- Ars Technica used in malware campaign with never-before-seen obfuscation
- Pawn Storm uses brute force and stealth against high-value targets
- Evolution of UNC4990: Uncovering USB malware’s hidden depths
- Buzzing on Christmas Eve: Trigona ransomware in 3 hours
- Python’s byte: The rise of scripted ransomware
- Info stealing packages hidden in PyPI
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.