Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- A recent security incident involving Dropbox Sign
- Humans now share the web equally with bots, report warns amid fears of the ‘dead internet’
- Google Play: How we fought bad apps and bad actors in 2023
- Sodinokibi/REvil affiliate sentenced for role in $700M ransomware scheme
- More than 100 arrested in Spain in $900,000 WhatsApp scheme
- Operation PANDORA shuts down 12 phone fraud call centres
- Kaspersky Lab and neural networks for Russian military drones
- Looking at passwords in 2024
For the more technical
- Tor migrates from Gitolite/GitWeb to GitLab
- CISA says GitLab account takeover bug is actively exploited in attacks
- Nearly 20% of Docker Hub repositories spread malware and phishing scams
- “Dirty stream” attack: Discovering and mitigating a common vulnerability pattern in Android apps
- 20 security issues found in Xiaomi devices
- HPE Aruba Networking fixes four critical RCE flaws in ArubaOS
- A zero-day deserialization vulnerability in the popular programming language R
- April updates for Windows 10 and 11 break some VPN software, Microsoft says
- New “Goldoon” botnet targeting D-Link devices
- New Latrodectus malware attacks use Microsoft, Cloudflare themes
- Eight arms to hold you: The Cuttlefish malware
- Zloader learns old tricks
- Playing possum: What’s the Wpeeper backdoor up to?
- Analysis of native process CLR hosting used by AgentTesla
- Malware campaign attempts abuse of defender binaries
- Analysis of TargetCompany’s attacks against MS-SQL servers (Mallox, BlueSky ransomware)
- A cunning operator: Muddling Meerkat and China’s great firewall
- Uncorking old wine: Zero-day from 2017 + Cobalt Strike loader in unholy alliance
- Router roulette: Cybercriminals and nation-states sharing compromised networks
- How Lazarus Group laundered $200M from 25+ crypto hacks to fiat from 2020–2023
- A web of surveillance: Unravelling a murky network of spyware exports to Indonesia
- Uncharmed: Untangling Iran’s APT42 operations
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.