Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- [VIDEO] The secret to finding many Criticals – Alex Chapman
- TeamViewer links corporate cyberattack to Russian state hackers
- Pentagon ran secret anti-vax campaign to undermine China during pandemic
- Nearly 4,000 arrested in global police crackdown on online scam networks
For the more technical
- Polyfill supply chain attack hits 100K+ sites
- MOVEit Transfer: Auth bypass and a look at exposure
- SolarWinds Serv-U (CVE-2024-28995) exploitation: We see you!
- SnailLoad: Remote network latency measurements leak user activity
- GrimResource – Microsoft Management Console for initial access and evasion
- MerkSpy: Exploiting CVE-2021-40444 to infiltrate systems
- Probllama: Ollama remote code execution vulnerability (CVE-2024-37032) – overview and mitigations
- The world’s first spatial computing hack
- Supply chain attack on WordPress.org plugins leads to 5 maliciously compromised WordPress plugins
- Introducing ExtensionTotal: How to assess risk in VS Code extensions
- Breaking the Internet: The aftermath of our research
- ESET Threat Report H1 2024
- ICO scams leverage 2024 Olympics to lure victims, use AI for fake sites
- ‘Poseidon’ Mac stealer distributed via Google ads
- SpyMax – an Android RAT targets Telegram users
- Beware of Snowblind: A new Android malware
- I am Goot (Loader)
- SquidLoader – new loader in the threat landscape
- Medusa reborn: A new compact variant discovered
- From dormant to dangerous: P2Pinfect evolves to deploy new ransomware and cryptominer
- Kimsuky deploys Translatext to target South Korean academia
- StrelaStealer Resurgence: Tracking a JavaScript-driven credential stealer targeting Europe
- ChamelGang & friends: Cyberespionage groups attacking critical infrastructure with ransomware
- Chinese state-sponsored RedJuliett intensifies Taiwanese cyber espionage via network perimeter exploitation
- SneakyChef espionage group targets government agencies with SugarGh0st and more infection techniques
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.