Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Win against Facebook. Giant not allowed to censor content at will
- Over 15,000 hacked Roku accounts sold for 50¢ each to buy hardware
- Incognito darknet market mass-extorts buyers, sellers
- Russian-Canadian cybercriminal sentenced for global ransomware scheme to be extradited
- How the Belarusian Cyber Partisans are fighting a digital war against two dictators
- Russia claims US and ‘Western countries’ are trying to hack its presidential election
- Update on Microsoft actions following attack by nation state actor Midnight Blizzard
- Hacker attack on Xplain: National Cyber Security Centre publishes data analysis report
- Nissan confirms ransomware attack exposed data of 100,000 people
- After LockBit’s takedown, its purported leader vows to hack on
For the more technical
- Microsoft Patch Tuesday – March 2024
- GhostRace: Exploiting and mitigating speculative race conditions
- NextChat: An AI chatbot that lets you talk to anyone you want to
- What a cluster: Local volumes vulnerability in Kubernetes
- Top 10 web application vulnerabilities in 2021–2023
- New malware campaign found exploiting stored XSS in Popup Builder
- Hiding in plain sight: Introducing WebTunnel
- The State of Stalkerware in 2023–2024
- Introducing CloudGrappler: A powerful open-source threat detection tool for cloud environments
- BIPClip: Malicious PyPI packages target crypto wallet recovery passwords
- Infostealer disguised as Adobe Reader installer
- PixPirate: The Brazilian financial malware you can’t see
- Fake Leather wallet app on Apple App Store is a crypto drainer
- Magnet Goblin targets publicly facing servers using 1-day vulnerabilities
- Spinning YARN – A new Linux malware campaign targets Docker, Apache Hadoop, Redis and Confluence
- CVE-2024-21412: DarkGate operators exploit Microsoft Windows SmartScreen bypass in zero-day campaign
- Vcurms: A simple and functional weapon
- New multi-stage StopCrypt ransomware
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.