Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Humanity wastes about 500 years per day on CAPTCHAs. It’s time to end this madness
- The Internet Explorer 11 desktop application will be retired on June 15, 2022
- How the UK’s Online Safety Bill threatens Matrix
- Threema messenger wins against law enforcement authorities in federal court
- Amazon gave the FBI the shopping list of an anti-fascist activist
- Air India data breach impacts 4.5 million customers
- When hackers launched a cyberattack against Navalny supporters in April, they failed to cover their tracks
- An APT with no name
- Operator of WeLeakInfo database marketplace sentenced to two years in prison
For the more technical
- TsuNAME vulnerability and DDoS against DNS (PDF)
- Android Security Bulletin—May 2021
- CVE-2021-31166: HTTP protocol stack remote code execution vulnerability
- Report on University of Minnesota breach-of-trust incident
- undeSErVed trust – How to bypass AMD’s SEV(-ES) attestation
- Arbitrary code execution in the universal Turing machine (PDF)
- App Store stopped more than $1.5 billion in potentially fraudulent transactions in 2020
- Let’s set ice on fire: Hunting and detecting IcedID infections
- Mapping a vast and currently active BokBot network
- How Flubot targets Android phone users and their money
- Bizarro banking Trojan expands its attacks to Europe
- Ares malware: The grandson of the Kronos banking trojan
- The UNC2529 triple double: A trifecta phishing campaign
- CERT ESEC releases a paper on Babuk ransomware groups (PDF)
- PSA: Threat actors now double encrypting data with multiple ransomware strains
- Ransomware attack on health sector (PDF)
- Conti ransomware gives HSE Ireland free decryptor, still selling data
- Qlocker ransomware shuts down after extorting hundreds of QNAP users
- DarkSide ransomware has netted over $90 million in Bitcoin
- Massive malware campaign delivers fake ransomware
- Operation TunnelSnake
- Crypto-mining gangs are running amok on free cloud computing platforms
- When intrusions don’t align: A new water watering hole and Oldsmar
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.