Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- EU wants to build its own DNS infrastructure with built-in filtering capabilities
- UK gov’t plans publicity blitz to undermine privacy of your chats
- Austrian DSB: Use of Google Analytics violates “Schrems II” decision by CJEU
- It’s time for a new EU-US data transfer framework
- Cybercriminals fear more law enforcement action in the wake of the REvil takedown
- Unhappy New Year for cybercriminals as VPNLab.net goes offline
- Nigerian cybercrime fraud: 11 suspects arrested, syndicate busted
- Hackers can access trove of stolen credentials on VirusTotal
- Sophisticated cyber-attack targets Red Cross Red Crescent data on 500,000 people
- Crypto.com finally admits it lost $30 million in hack
For the more technical
- Exploiting IndexedDB API information leaks in Safari 15
- About the security content of iOS 15 and iPadOS 15
- Microsoft releases emergency fixes for Windows Server, VPN bugs
- Why you shouldn’t set these 25 Windows policies
- Cryptography dispatches: The most backdoor-looking bug I’ve ever seen
- Chrome patches critical RCE vulnerability in Safe Browsing
- 84,000 WordPress sites affected by three plugins with the same vulnerability
- WordPress vulnerabilities more than doubled in 2021 and 77% of them are exploitable
- Busting Box’s MFA methods
- CVE-2021-45467: CWP CentOS Web Panel – preauth RCE
- The state of healthcare IoT device security 2022 (PDF)
- Spray365 – a password spraying tool that identifies valid credentials for Microsoft accounts
- Telegram: A cybercriminal hotspot – compromised financial accounts
- Cross-country exposure. Analysis of the MY2022 Olympics app
- Campaigns abusing corporate trusted infrastructure hunt for corporate credentials on ICS networks
- Cybersecurity for industrial control systems – part 1 & part 2
- Spamhaus botnet threat update: Q4-2021
- MoonBounce: the dark side of UEFI firmware
- New ransomware spotted: White Rabbit and its evasion tactics
- FBI links Diavol ransomware to the TrickBot cybercrime group (PDF)
- Linux-targeted malware increases by 35% in 2021: XorDDoS, Mirai and Mozi most prevalent
- DoNot Go! Do not respawn!
- Earth Lusca employs sophisticated infrastructure, varied tools and techniques
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.