Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Russia creates its own TLS certificate authority to bypass sanctions
- Piracy OK: Russia to ease software licensing rules after sanctions
- DuckDuckGo to down-rank sites associated with Russian disinformation
- Hackers leak 190 GB of alleged Samsung data, source code
- Rompetrol gas station network hit by Hive ransomware
- Sodinokibi/REvil ransomware defendant extradited to United States and arraigned in Texas
- How TrueCaller built a billion-dollar caller ID data empire in India
- Offensive OSINT: Drugs, firearms, exotic pets, fake documents and other scams
For the more technical
- The Dirty Pipe vulnerability
- Microsoft March 2022 Patch Tuesday
- AutoWarp: Critical cross-account vulnerability in Microsoft Azure Automation service
- Windows Defender is enough, if you harden it
- TLStorm: Critical vulnerabilities in a TLS library lead to complete pwnage of a popular Cloud-connected UPS (PDF)
- Repeatable firmware security failures: 16 high impact vulnerabilities discovered in HP devices
- On the effectiveness of hardware mitigations against cross-privilege Spectre-v2 attacks
- The state of WordPress security in 2021
- Imperva mitigates ransom DDoS attack measuring 2.5 million requests per second
- CVE-2022-26143: TP240PhoneHome reflection/amplification DDoS attack vector
- Bitdefender Labs sees increased malicious and scam activity exploiting the war in Ukraine
- SharkBot: a “new” generation Android banking Trojan being distributed on Google Play Store
- Emotet redux
- New Nokoyawa ransomware possibly related to Hive
- New RURansom wiper rargets Russia
- Cybercriminals compromise users with malware disguised as pro-Ukraine cyber tools
- Google’s TAG: An update on the threat landscape
- The Russia-Ukraine cyber war in the deep and dark web
- GhostWriter / UNC1151 adopts MicroBackdoor variants in cyber operations against Ukraine
- Does this look infected? A summary of APT41 targeting U.S. state governments
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.