Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- How Hollywood got hacked
- How Ukraine energy network got hacked
- Proposed amendments to ePrivacy Regulation
- US Election hackers altered voter rolls
- China’s HUMINT operations against USA
- Long report on situation inside Russia
- Google Project Zero story
- [PDF] Remote attacks on cryptographic secrets
- Fake shops help pay for gambling
- Why so many top hackers hail from Russia
- WannaCry still alive, attacking traffic cameras in Australia and a Honda factory
- [PDF] Analysis of nuclear bomb material based on stock prices
- Crime stories from the porn industry
- Fired employee shut down smart water readers
- Drone-assisted jail contraband
- 198 million voter records exposed
- Mexico spying on activists
For the more technical
- SSL implementation review in Polish banks
- Windows Kernel Exploitation – stealing the Access Token
- Pwnie nominations are still open
- Stack Clash
- Practical waterholing through DNS typosquatting
- Partial leak of Windows 10 source code
- Spoilerwall to stop portscanning
- Weak passwords in Virgin Media routers
- BlackTech APT analysis
- AWS Yahoo key leak
- Authentication bypass on Airbnb via OAuth tokens theft
- Linksys advises how to protect routers against CIA hacks
- New SamSam ransomware variant
- 404 pages drop Ramnit
- Hacking NSA TOOLS – FUZZBUNCH
- macOS backdoor from OceanLotus
- JSON hijacking for the modern web
- Microsoft comments on Fireball infection numbers
- OSINT-based criminal infrastructure correlation
- Weak npm repos passwords
- Data collected on Microsoft devices plus second part
- CIA attacks on USB
- Rig EK activity analysis
- [PDF] Password reset MiTM attack
- [PDF] Creating a ZigBee chain reaction
- CVE-2016-0040 analysis (Windows)
- Detecting malware in encrypted traffic
- Ads injected into vulnerable WordPress theme
- AdGholas campaign and Astrum Exploit Kit
- RCE in OpenVPN
- SMS trojan on Android platform
- Security tests of Philips Hue lightbulbs
- [PDF] POS malware analysis
- [PDF] How malware evades detection
- UDP spoofing tests
- Long article on SMB2 and SMB3 security in Windows
- Collecting form data before the user hits “send”
- Russian DNS zone leak
- Erebus ransomware analysis
- Did Qualys build a new Project Zero?
- Locked Shields – largest security game
- CVE-2017-9466 analysis (TP Link)
- Horcrux – password manager for paranoids
- Story of the huge Ethereum heist
- Travel laptop security
- Malicious PHP module
- [PDF] PoC||GTFO 0x15
- [PDF] Bug hunting in IoT
- Private key leaked from Cisco
- Delphi malware attacking Palestine
- New Necurs + Locky campaign
- ModSecurity fuzzing
- Fake DDoS extortions continue
- You can run ransomware on Windows 10 S
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.
One thought on “IT Security Weekend Catch Up – June 25, 2017”