Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Joint statement by European Commission ahead of Data Protection Day
- How the U.S. federal government shutdown harms security
- Three charged for working with serial swatter
- The strange, terrifying tale of the mistress who flipped on El Chapo
- Russian hacker Alexander Zhukov extradited by Bulgaria to US
- How sloppy OPSEC gave researchers an inside look at the exploit industry
- The messy truth about infiltrating computer supply chains
- ‘Operation Pirate’ targets ‘iNCOMiNG’ release group
- Why CISA issued our first Emergency Directive
- Can you spot when you’re being phished?
- For $29, this company swears it will ‘brainwash’ someone on Facebook
- Hackers baselessly blame women and ‘SJWs’ for the end of DerbyCon security conference
- Microsoft fights fake news with NewsGuard integration in its mobile Edge browser
- Russia targeting British institute in disinformation campaign
- This time it’s Russia’s emails getting leaked
- The world’s largest youth-run organization had a data breach
- Undercover agents target cybersecurity watchdog
- Are Android updates getting faster? Let’s look at the data
- The mystery tracks being ‘forced’ on Spotify users
For the more technical
- ‘Chaos’ iPhone X attack alleges remote jailbreak
- Finding and exploiting vulnerabilities in mobile Point of Sale terminals
- Remote Code Execution in apt/apt-get
- Fuzzing HTTP server (PDF.js)
- Chained bugs to leak victim’s Uber’s FB Oauth token
- Security research: ThingsPro Suite – IIoT gateway and device manager by Moxa
- Finding and exploiting the Check Point ZoneAlarm Anti-Virus for local privilege escalation
- Mystery still surrounds hack of PHP PEAR website
- Detecting persistent cloud infrastructure/Hadoop/YARN attacks
- Bypassing network restrictions through RDP tunneling
- How I abused 2FA to maintain persistence after a password change
- Should I pentest my cloud infrastructure?
- Evilginx 2.3 – phisherman’s dream
- Bomb threat, sextortion spammers abused weakness at GoDaddy.com
- ThinkPHP vulnerability abused by botnets Hakai and Yowai
- Razy in search of cryptocurrency
- Cisco AMP tracks new campaign that delivers Ursnif
- Carbon Black TAU & ThreatSight analysis: GandCrab and Ursnif campaign
- Russian language malspam pushing Redaman banking malware
- Going in-depth with Emotet: Multilayer operating mechanisms
- Emotet: G DATA explains cybercrime’s all-purpose weapon
- New evidence might link Lazarus tool found in Chile RedBanc intrusion to attacks in Pakistan
- GreyEnergy’s overlap with Zebrocy
- Guide to WebAuthn
- 101 bash commands and tips for beginners to experts
- Apple iTunes: Standalone vs. Microsoft Store Edition
- How to hack an expensive camera and not get killed by your wife
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.
One thought on “IT Security Weekend Catch Up – January 27, 2019”