Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Internet Explorer 11 has retired and is officially out of support—what you need to know
- Firefox rolls out Total Cookie Protection by default to all users worldwide
- New Vytal Chrome extension hides location info that your VPN can’t
- UK approves WikiLeaks chief Julian Assange’s extradition to the US
- California man known as “icloudripper4you” sentenced to nine years in federal prison
- Illinois man sentenced to 2 years in federal prison for operating subscription-based computer attack platforms
- Hundreds arrested and millions seized in global INTERPOL operation against social engineering scams
- Russian botnet disrupted in international cyber operation
- Binance: The crypto money laundering myth and the machine working overtime to sell a false narrative
For the more technical
- PACMAN – attacking ARM pointer authentication with speculative execution
- New Hertzbleed side-channel attack affects Intel, AMD CPUs
- Microsoft June 2022 Patch Tuesday
- Microsoft Azure Synapse pwnalytics
- CVE-2022-25845 – Analyzing the Fastjson “Auto Type Bypass” RCE vulnerability
- Probing for passwords – privacy implications of SSIDs in probe requests (PDF)
- Zimbra email – stealing clear-text credentials via memcache injection
- DriftingCloud: Zero-day Sophos Firewall exploitation and an insidious breach
- Potentially dangerous Microsoft Office 365 functionality that can ransom files stored on SharePoint and OneDrive
- 730K WordPress sites force-updated to patch critical plugin bug
- Russian hackers start targeting Ukraine with Follina exploits
- 15 vulnerabilities discovered in Siemens industrial control management system
- Emulating Phineas Phisher attacks in modern EDR environments
- New MaliBot Android malware found stealing personal, banking data
- How Emotet is changing tactics in response to Microsoft’s tightening of Office macro security makr pakietu Office
- Confluence servers hacked to deploy AvosLocker, Cerber2021 ransomware
- The many lives of BlackCat ransomware
- Technical analysis of PureCrypter: A fully-functional loader distributing remote access trojans and information stealers
- How much does access to corporate infrastructure cost?
- Panchan’s mining rig: New Golang peer-to-peer botnet says “Hi!”
- Cloudflare mitigates 26 million request per second DDoS attack
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.