Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- ‘I scrounged through the trash heaps… now I’m a millionaire:’ An interview with REvil’s Unknown
- Computer giant Acer hit by $50 million ransomware attack
- Egor Igorevich Kriuchkov criminal complaint
- The Infraud Organization victimized millions of people and caused more than $568 million in financial losses
- Arrest warrant issued for Canadian CEO after authorities allege company’s messaging app used by international crime groups
- Teen who hacked Joe Biden and Bill Gates’ Twitter accounts sentenced to three years in prison
- Bitcoin: Fake Elon Musk giveaway scam ‘cost man £400,000’
- A hacker got all my texts for $16
- Cars have your location. This spy firm wants to sell it to the U.S. military
- The most invasive apps: which apps are sharing your personal data?
- Clearview AI: Your face is not your own
- Signal: China appears to have blocked encrypted messaging app
- Victoria University of Wellington accidentally nukes files on all desktop PCs
- America’s drinking water is surprisingly easy to poison
For the more technical
- Exchange On-premises Mitigation Tool (EOMT)
- Microsoft Exchange servers targeted by DearCry ransomware abusing ProxyLogon bugs
- A Spectre proof-of-concept for a Spectre-proof web
- Detection capabilities for recent F5 BIG-IP/BIG-IQ iControl REST API vulnerabilities CVE-2021-22986
- MyBB remote code execution chain
- TikTok for Android 1-click RCE
- GitHub has a permission problem
- How I hacked Facebook: Part one & Part two
- New old bugs in the Linux Kernel
- [VIDEO] Spooky RYUKy: Chapter 2 | Van Ta & Aaron Stephens | SANS CTI Summit 2021
- Missed opportunity: Bug in LockBit ransomware allowed free decryptions
- Google: A mysterious hacking group used 11 different zero-days in 2020
- Technical analysis of Operation Diànxùn (PDF)
- Mimecast: Report on our security incident investigation
- Security agencies leak sensitive data by failing to sanitize PDF files
- COVID-19: Examining the threat landscape a year later
- 2020 Internet Crime Report (PDF)
- Hidden menace: Peeling back the secrets of OnionCrypter
- New macOS malware XcodeSpy Targets Xcode Developers with EggShell Backdoor
- Datagram Transport Layer Security (D/TLS) reflection/smplification DDoS attack mitigation recommendations
- Mobdro pirate streaming: Police arrest suspect, three others questioned
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.