Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- FBI: Hackers stole source code from US government agencies and private companies
- More than $1bn in Bitcoin seized from Silk Road account by US government
- United States files a civil action to forfeit cryptocurrency valued at over one billion U.S. dollars (PDF)
- Russian cybercriminal sentenced to prison for role in $100 million botnet conspiracy
- GrapheneOS in a lawsuit for the survival of the project, this is really bad
- How police can crack locked phones – and extract information
- Google location data turned innocent cyclist into robbery suspect
- Government revive push to make apps like WhatsApp and iMessage weaken protections so they can read messages
- 23,600 hacked databases have leaked from a defunct ‘data breach index’ site
- Security blueprints of many companies leaked in hack of Swedish firm Gunnebo
- Italian beverage vendor Campari knocked offline after ransomware attack
- Capcom hit by Ragnar Locker ransomware, 1TB allegedly stolen
- Hacker is selling 34 million user records stolen from 17 companies
- Vulnonym: Stop the naming madness!
- Paid editing with political connections
For the more technical
- Abusing Teams client protocol to bypass Teams security policies
- How I found a Tor vulnerability in Brave Browser
- Remote Code Execution (RCE) via git-lfs
- How Facebook was used as a proxy by web scraping bots
- NAT Slipstreaming
- Attackers exploiting WebLogic Servers via CVE-2020-14882 to install Cobalt Strike
- Oracle rushes emergency fix for critical WebLogic Server flaw
- Trick or treat: that twilio-npm package is brandjacking malware in disguise
- Attacking the face recognition authentication – how easy is it to fool it?
- Ransomware gangs don’t always delete stolen data when paid
- Anatomy of attack: Inside BazarBackdoor to Ryuk ransomware “one” group via Cobalt Strike
- REvil ransomware gang ‘acquires’ KPOT malware
- RansomEXX Trojan attacks Linux systems
- Malware analysis report: ComRAT & Zebrocy
- Gaza and West-Bank hackers exploit and monetize corporate VoIP phone system vulnerability internationally
- Live off the land? How about bringing your own island? An overview of UNC1945
- Back to the future: Inside the Kimsuky KGH spyware suite
- A new APT uses DLL side-loads to “KilllSomeOne”
- Attacks on industrial enterprises using RMS and TeamViewer: new data
- Cannabis growing community site exposes 3.4 million user records and passwords
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.