Afraid of missing important security news during the week? We're here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- The GDPR proposal unveiled officially
- Lawmakers want to ban VPNs—and they have no idea what they're doing
- Dutch police seizes 250 servers used by “bulletproof hosting” service
- Defending the cloud: Azure neutralized a record-breaking 15 Tbps DDoS attack
- Logitech confirms data breach after Clop extortion attack
- Surveillance tech provider Protei was hacked, its data stolen, and its website defaced
For the more technical
- Google fixes new Chrome zero-day flaw exploited in attacks
- Native Sysmon functionality coming to Windows
- XWiki under increased attack
- Operation WrtHug, the global espionage campaign hiding in your home router
- When the impersonation function gets used to impersonate users (Fortinet FortiWeb auth. bypass CVE-2025-64446)
- Cloudflare outage on November 18, 2025 post mortem
- Cloud abuse at scale. TruffleNet, AWS SES, and Business Email Compromise
- Breaking down S3 ransomware: Variants and attack paths
- Cat’s got your files: Lynx ransomware
- License to encrypt: “The Gentlemen” make their move
- Hide me again: The updated multi-payload .NET steganography loader that includes Lokibot
- DarkComet RAT malware hidden inside fake Bitcoin tool
- RoningLoader: DragonBreath’s new path to PPL abuse
- Maverick and Coyote: Analyzing the link between two evolving Brazilian banking trojans
- SpiderLabs IDs new banking trojan distributed through WhatsApp
- Sturnus: Mobile banking malware bypassing WhatsApp, Telegram and Signal encryption
- Cooking up trouble: How TamperedChef uses signed apps to deliver stealthy payloads
- Digital doppelgangers: Anatomy of evolving impersonation campaigns distributing Gh0st RAT
- DigitStealer: a JXA-based infostealer that leaves little footprint
- ClickFix: Tricking users into installing infostealers
- Evalusion campaign delivers Amatera stealer and NetSupport RAT
- Distribution of malware abusing LogMeIn and PDQ Connect
- PlushDaemon compromises network devices for adversary-in-the-middle attacks
- Analysis of UNC1549 TTPs, custom tools, and malware targeting the aerospace and defense ecosystem
- How North Korea hacked South Korea: Dark Seoul
- New DPRK remote IT worker insights
- A pain in the mist: Navigating operation DreamJob’s arsenal
- Lazarus group targets Aerospace and Defense with new Comebacker variant
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.
Comments