Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- From Kyiv to Riga: Russian sabotage operations in the Baltics
- It’s never been easier for the cops to break into your phone
- Declare your AIndependence: block AI bots, scrapers and crawlers with a single click
- Rabbit r1’s AI assistant has secretly been storing user chats that can’t be deleted
- Apple, Nvidia, Anthropic used thousands of swiped YouTube videos to train AI
- Kaspersky Lab closing U.S. division; laying off workers
- Disney “breached”, data dumped online
- Interpol operation nabs 300 with links to West African cyber fraud
For the more technical
- [VIDEO] Solving Hackceler8 Teaser Task 2 by Gynvael Coldwind – Part 2 & Part 3
- CrowdStrike oopsie crashes Windows workstations across the world
- Cyber threat actors continue to leverage the outage to conduct malicious activity – Part 1 & Part 2
- The potential impact of the OpenSSH vulnerabilities CVE-2024–6387 and CVE-2024-6409
- Cisco Smart Software Manager on-prem password change vulnerability
- CVE-2024-38112: Void Banshee targets Windows users through zombie Internet Explorer in zero-day attacks
- SAPwned: SAP AI vulnerabilities expose customers’ cloud environments and private AI artifacts
- WARPscan – Cloudflare WARP abused to hijack cloud services
- Data-only attacks are easier than you think (PDF)
- Application Security report: 2024 update
- Attacking connection tracking frameworks as used by virtual private networks
- Play ransomware group’s new Linux variant targets ESXi, shows ties with Prolific Puma
- Hardening of HardBit
- RDGAs: The next chapter in domain generation algorithms
- HotPage: Story of a signed, vulnerable, ad-injecting driver
- Konfety spreads ‘Evil Twin’ apps for multiple fraud schemes
- FIN7 reboot: Cybercrime gang enhances ops with new EDR bypasses and automated attacks
- The return of Ghost Emperor’s Demodex
- New BugSleep backdoor deployed in recent MuddyWater campaigns
- TAG-100 uses open-source tools in suspected global espionage campaign, compromising two Asia-Pacific intergovernmental bodies
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.