Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- A robot was scheduled to argue in court, then came the jail threats
- Latvia says Russian hackers tried to phish its Ministry of Defence
- Russian ‘hacktivists’ briefly knock German websites offline
- Former employee of technology company pleads guilty to stealing confidential data and extorting company for ransom
For the more technical
- When pwning Cisco, persistence is key – when pwning supply chain, Cisco is key
- Update vRealize now! VMware patches critical RCE vulnerabilities
- Massive ESXiArgs ransomware attack targets VMware ESXi servers worldwide
- KeePass disputes vulnerability allowing stealthy password theft
- No macro? No worries. VSTO being weaponized by threat actors
- ImageMagick: The hidden vulnerability behind your online images
- PHP Development Server <= 7.4.21 – Remote Source Disclosure
- New Sh1mmer ChromeBook exploit unenrolls managed devices
- Two factor authentication bypass on Facebook
- Action needed for GitHub Desktop and Atom users
- Google Fi data breach let hackers carry out SIM swap attacks
- HeadCrab: A novel state-of-the-art Redis malware in a global campaign
- 6-year-old packer used to deploy the most wanted malware
- Prilex modification now targeting contactless credit card transactions
- CryptBot infostealer: Malware analysis
- ESET APT Activity Report T3 2022
- Black Basta backend operations
- Passion: A Russian botnet
- The dangerous consequences of threat actors abusing Microsoft’s “Verified Publisher” status
- No Pineapple! –DPRK targeting of medical research and technology sector
- SwiftSlicer: New destructive wiper malware strikes Ukraine
- Seaborgium and TA453 continue their respective spear-phishing campaigns against targets of interest
- Operation Ice Breaker targets the gam(bl)ing industry right before it’s biggest gathering
- New APT34 malware targets the Middle East
- InTheBox web injects targeting Android banking applications worldwide
- Crypto money laundering: Four exchange deposit addresses received over $1 billion in illicit funds in 2022
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.