Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Rights group verifies Polish senator was hacked with spyware
- Swiss army bans all chat apps but locally-developed Threema
- Cyber attack on UK’s Defence Academy had ‘significant’ impact, officer in charge at the time reveals
- The biggest data breaches, hacks of 2021
- New York OAG monitors hacking forums, notifies 17 companies of security breaches
- Top 200 most common passwords
- Kazakhstan leaders shut down internet amid gas price protests
- Portugal’s Impresa media outlets hit by hackers
- FinalSite discloses ransomware attack that crippled websites for 8,000 schools
- FBI: FIN7 hackers target US companies with BadUSB devices to install ransomware
- Italian mafia fugitive arrested in Spain after Google Street View sighting
For the more technical
- The JNDI strikes back – unauthenticated RCE in H2 database console
- UK NHS: Threat actor targets VMware Horizon servers using Log4Shell exploits
- Persistence without “persistence”: Meet the ultimate persistence bug – “NoReboot”
- Hacking a VW Golf Power Steering ECU [1] [2] [3] [4]
- Business in the crosshairs: analyzing attack scenarios
- Don’t copy-paste commands from webpages — you can get hacked
- Google Docs comment exploit allows for distribution of phishing and malware
- Evolving attack techniques of Autom cryptomining campaign
- A new web skimmer campaign targets real estate websites through attacking cloud video distribution supply chain
- Elephant Beetle: Uncovering an organized financial-theft operation
- New Zloader campaign exploits Microsoft’s signature verification putting users at risk
- FluBot malware now targets Europe posing as Flash Player app
- Malicious Telegram installer drops Purple Fox rootkit
- Patchwork APT caught in its own web
- North Korean group “KONNI” targets the Russian diplomatic sector with new versions of malware implants
- Cloud security breaches and vulnerabilities: 2021 in review
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.