Afraid of missing important security news during the week? We're here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- What is FIMI? And how EU fights disinformation?
- Leaked data exposes a Chinese AI censorship machine
- Anthropic can now track the bizarre inner workings of a large language model
- Serbia: BIRN journalists targeted with Pegasus spyware
- SignalGate isn’t about Signal
- Oracle customers confirm data stolen in alleged cloud breach is valid
- 23andMe files for bankruptcy, putting customers’ genetic data at risk
- OpenAI now pays researchers $100,000 for critical vulnerabilities
- Troy Hunt: A sneaky phish just grabbed my Mailchimp mailing list
- When getting phished puts you in mortal danger
- Russia arrests three for allegedly creating Mamont malware, tied to over 300 cybercrimes
- How threat actors get their names
For the more technical
- Paged Out! #6 is out!
- Security assessment of SAP GUI controls using Windows API in Python
- Invoker – automating pentesting tools in Burp Suite (example with dosfiner)
- HTTPS-only for Cloudflare APIs: shutting the door on cleartext traffic
- New Windows zero-day leaks NTLM hashes, gets unofficial patch
- Doing the due diligence: Analyzing the Next.js middleware bypass (CVE-2025-29927)
- Next.js and the corrupt middleware: the authorizing artifact
- Malware found on npm infecting local package with reverse shell
- Operation ForumTroll: APT attack with Google Chrome zero-day exploit chain
- Firefox fixes flaw similar to Chrome zero-day used against Russian organizations
- GitHub Actions supply chain attack: A targeted attack on Coinbase expanded to the widespread tj-actions/changed-files incident
- Blast radius of the tj-actions/changed-files supply chain attack
- Blacklock ransomware: A late Holiday gift with intrusion into the threat actor's infrastructure
- RedCurl's ransomware debut: A technical deep dive
- VanHelsing ransomware - analysis I, analysis II
- Dragon RaaS: Pro-Russian hacktivist group aims to build on “The Five Families” cybercrime reputation
- Unboxing Anubis: Exploring the stealthy tactics of FIN7's latest backdoor
- Weaver Ant, the web shell whisperer: Tracking a live China-nexus operation
- You will always remember this as the day you finally caught FamousSparrow
- CVE-2025-26633: How Water Gamayun weaponizes MUIPath using MSC EvilTwin
- A deep dive into Water Gamayun’s arsenal and infrastructure
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.
Comments