Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- North Korea hacked him. So he took down its Internet
- FBI confirms it obtained NSO’s Pegasus spyware
- Billionaire Facebook investor Peter Thiel secretly funded a ‘cyber warfare’ startup that hacked WhatsApp
- iPhone flaw exploited by second Israeli spy firm-sources
- Cryptocurrency platform Wormhole hacked for an estimated $322 million
- German petrol supply firm Oiltanking paralyzed by cyber attack
- Inside Trickbot, Russia’s notorious ransomware gang
- Ransomware wants you to like and subscribe, or else
- Announcing the public launch of Cloudflare’s bug bounty program
- Top-100 npm package maintainers now require 2FA, and additional security-focused improvements to npm
- NordVPN and Surfshark announce merger
For the more technical
- ESET antivirus bug let attackers gain Windows SYSTEM privileges
- An in-depth look at the 23 high-impact vulnerabilities
- Operation EmailThief: Active exploitation of zero-day XSS vulnerability in Zimbra
- The Samba vulnerability: What is CVE-2021-44142 and how to fix it
- Unauthenticated remote code execution in Motorola baby monitors
- This NFT logs your IP address
- Crime and NFTs: Chainalysis detects significant wash trading and some money laundering in this emerging asset class
- Critical vulnerability fixed in Essential Addons for Elementor plugin
- Data Centers facing the risk of cyberattacks
- CVE-2022-23968: Xerox vulnerability allows unauthenticated users to remotely brick network printers
- Telehealth: A new frontier in medicine—and security
- Log4j exploit hits again: Vulnerable Unifi Network application (Ubiquiti) at risk
- UPnProxy: Eternal Silence (PDF)
- Expert analyst insight into North Korean ‘Internet outages’
- QNAP: DeadBolt ransomware exploits a bug patched in December
- ALPHV (BlackCat) ransomware + more information
- StrifeWater RAT: Iranian APT Moses Staff adds new trojan to ransomware operations
- PowerLess trojan: Iranian APT Phosphorus adds new PowerShell backdoor for espionage
- 1 in 7 ransomware extortion attacks leak critical operational technology information
- ACTINIUM targets Ukrainian organizations
- Shuckworm continues cyber-espionage attacks against Ukraine
- Russia’s Gamaredon aka Primitive Bear APT group actively targeting Ukraine
- Analysis of attack against National Games of China systems
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.