Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- [VIDEO] How criminals use cryptocurrencies to hide their transactions and how the police and OSINTers are catching up with them
- New millionaires, new music: How cybercrime was codified into Afrobeats
- An introduction to threat modelling
- How generative AI is boosting the spread of disinformation and propaganda
- Norway wants Facebook behavioral advertising banned across Europe
- Undermining democracy: The European Commission’s controversial push for digital surveillance
- Hackers steal user database from European telecommunications standards body
- 23andMe says private user data is up for sale after being scraped
- Air Europa data breach: Customers warned to cancel credit cards
For the more technical
- October 2023 Microsoft Patch Tuesday summary
- Best practices for securing Node.js applications in production
- CVE-2023-22515: Zero-day privilege escalation in Confluence Server and Data Center
- Global NetScaler Gateway credential harvesting campaign
- The art of concealment: A new Magecart campaign that’s abusing 404 pages
- Balada Injector targets unpatched tagDiv plugin, newspaper theme & WordPress admins
- How it works: The novel HTTP/2 ‘Rapid Reset’ DDoS attack
- Google mitigated the largest DDoS attack to date, peaking above 398 million rps
- HTTP/2 Rapid Reset: deconstructing the record-breaking attack
- How AWS protects customers from DDoS events
- IZ1H9 campaign enhances its arsenal with scores of exploits
- ShellBot DDoS malware installed through hexadecimal notation addresses
- Trojans all the way down: Badbox and Peachpit (PDF)
- HelloKitty ransomware source code leaked on hacking forum
- SeroXen RAT in typosquatted NuGet package
- Predator Files: Technical deep-dive into Intellexa Alliance’s surveillance products
- Stayin’ Alive – targeted attacks against telecoms and government ministries in Asia
- ToddyCat: Keep calm and check logs
- Sticky Werewolf attacks public organizations in Russia and Belarus
- Webwyrm: A vast network of deception by impersonating thousands of brands (PDF)
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.