Afraid of missing important security news during the week? We're here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Europe just launched DNS4EU, a public DNS resolver with privacy and security options
- Public DNS malware filters to be tested in 2025
- 20,000 malicious IPs and domains taken down in INTERPOL infostealer crackdown
- All Eyes on my Period? Period tracking apps and the future of privacy in a post-Roe world
- An experimental new dating site matches singles based on their browser histories
- “Yuck”: Wikipedia pauses AI summaries after editor revolt
For the more technical
- Unmasking the security labyrinth: Navigating the perils of SAP GuiXT scripting
- Microsoft Patch Tuesday June 2025
- Another crack in the chain of trust: Uncovering (yet another) Secure Boot bypass
- CVE-2025-33053, Stealth Falcon and Horus: A saga of Middle Eastern cyber espionage
- Changes in HTML specifications protect against mutation XSS (mXSS) attacks
- JSFireTruck: Exploring malicious JavaScript using JSF*ck as an obfuscation technique
- Anatomy of a Linux SSH honeypot attack: Detailed analysis of captured malware
- An introduction to Wirego, a tool for Wireshark plugin development
- Global analysis of Adversary-in-the-Middle phishing threats
- From trust to threat: Hijacked Discord invites used for multi-stage malware delivery
- The TokenBreak attack: Manipulating tokens to get past the security guard
- Exploiting Heroes of Might and Magic V
- Demystifying Myth stealer: A Rust based infostealer
- Fog ransomware: Unusual toolset used in recent attack
- Active NPM attack escalates: 16 React Native packages for GlueStack backdoored overnight
- Blitz malware: A tale of game cheats and code repositories
- Attackers unleash TeamFiltration: Account takeover campaign (UNK_SneakyStrike) leverages popular pentesting tool
- Two botnets, one flaw: Mirai spreads through Wazuh vulnerability
- Say Hi to HelloTDS: The infrastructure behind FakeCaptcha
- Inside a dark adtech empire fed by fake CAPTCHAs
- Predator still active, with new client and corporate links identified
- Graphite caught: First forensic confirmation of Paragon’s iOS mercenary spyware finds journalists targeted
- Analysis of the triple combo threat of the Kimsuky group
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.
Comments