Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Meet the first Spanish AI model earning up to €10,000 per month
- Recognizing fake news now a required subject in California schools
- Anti-censorship tools are quietly disappearing into thin air in China
- Hacker leaks 800,000 scraped Chess.com user records
- The blender.org website was affected by a DDoS attack
- Rhysida ransomware gang claims British Library cyberattack
For the more technical
- CVE-2023–36025: An in-depth analysis of circumventing Windows SmartScreen security
- Analysis of CVE-2023-46214 in Splunk Enterprise + PoC
- CVE-2023-46604 (Apache ActiveMQ) exploited to infect systems with cryptominers and rootkits
- CrushFTP critical vulnerability CVE-2023-43177 unauthenticated remote code execution
- [VIDEO] Everything about full-time bug bounty
- Celebrating ten years of the Microsoft Bug Bounty program and more than $60M awarded
- HrServ – Previously unknown web shell used in APT attack
- Attacker – hidden in plain sight for nearly six months – targeting Python developers
- How to fortify your Docker containers: A guide to advanced security practices
- A touch of pwn
- PlayCrypt Ransomware-as-a-Service expands threat from script kiddies and sophisticated attackers
- The platform matters: A comparative study on Linux and Windows ransomware attacks
- Are DarkGate and PikaBot the new QakBot?
- Unveiling LummaC2 stealer’s novel Anti-Sandbox technique: Leveraging trigonometry for human behavior detection
- Atomic Stealer distributed to Mac users via fake browser updates
- Into the trash: Analyzing LitterDrifter
- Diamond Sleet supply chain compromise distributes a modified CyberLink installer
- Israel-Hamas war spotlight: Shaking the Rust off SysJoker
- ParaSiteSnatcher: How malicious Chrome extensions target Brazil
- Social engineering attacks lure Indian users to install Android banking trojans
- InfectedSlurs botnet spreads Mirai via zero-days
- Breaking (bad) bots: Bot abuse analysis and other fraud benchmarks (PDF)
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.