Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Man convicted of blackmail and other offences
- Rheinmetall attacked by BlackBasta ransomware
- Free VPN service SuperVPN exposes 360 million user records
- Suspicion stalks Genesis Market’s competitors following FBI takedown
- The hunt for Venom Spider – part 2
- Leaked government document shows Spain wants to ban end-to-end encryption
For the more technical
- Wordfence firewall blocks bizarre large-scale XSS campaign
- I have no mouth, and I must do crime (PDF)
- BrutePrint: Expose smartphone fingerprint authentication to brute-force attack (PDF)
- Android app breaking bad: From legitimate screen recording to file exfiltration within a year
- Mercenary mayhem: A technical analysis of Intellexa’s PREDATOR spyware
- Exposed Quadream spyware control web panel
- Hacking in a war zone: Pegasus spyware in the Azerbaijan-Armenia conflict
- Kimsuky: Ongoing campaign using tailored reconnaissance toolkit
- Volt Typhoon targets US critical infrastructure with living-off-the-land techniques
- People’s Republic of China state-sponsored cyber actor living off the land to evade detection (PDF)
- CosmicEnergy: New OT malware possibly related to Russian emergency response exercises
- Chinese businesses fueling the fentanyl epidemic receive tens of millions in crypto payments
- Crypto and the opioid crisis: What blockchain analysis reveals about global fentanyl sales
- The Dark Frost enigma: An unexpectedly prevalent botnet author profile
- Operation Magalenha: Long-running campaign pursues Portuguese credentials and PII
- Unmasking GUI-Vil: Financially motivated cloud threat actor
- #StopRansomware Guide (PDF)
- Buhti: New ransomware operation relies on repurposed payloads
- Agrius deploys Moneybird in targeted attacks against Israeli organizations
- Fata Morgana: Watering hole attack on shipping and logistics websites (PDF)
- Cloud-based malware delivery: The evolution of GuLoader
- Lazarus group targeting Windows IIS web servers
- Meet the GoldenJackal APT group. Don’t expect any howls
- SuperMailer abuse explodes, now responsible for 14% of all credential phish discovered in inboxes
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.