Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- China’s new cybersecurity program: No place to hide
- ‘Disproportionate’ sentence for Israeli-American after Russian request to release hacker denied
- M6, one of France’s biggest TV channels, hit by ransomware
- Feds bust one of the dark web’s biggest child porn sites thanks to tremendously bad opsec
- Inside the shutdown of the ‘world’s largest’ child sex abuse website
- Chainalysis in action: DOJ announces shutdown of largest child pornography website
- How a massive Facebook scam siphoned millions of dollars from unsuspecting boomers
For the more technical
- Oracle Critical Patch Update Advisory – October 2019
- Multiple remote code execution bugs in NitroPDF
- Checkrain fake iOS jailbreak leads to click fraud
- Vulnerability root cause analysis with time travel debugging
- Adobe patches over 80 vulnerabilities in three products
- Bypass McAfee with McAfee
- CVE-2019-17059: Preauth-RCE in Sophos’ Cyberoam explained
- “BriansClub” hack rescues 26m stolen cards
- When card shops play dirty, consumers win
- China’s Study the Great Nation app ‘enables spying via back door’ (PDF)
- Building China’s Comac C919 airplane involved a lot of hacking, report says (PDF)
- The untold story of the 2018 Olympics cyberattack, the most deceptive hack in history
- Connecting the dots: Exposing the arsenal and methods of the Winnti Group (PDF)
- APT trends report Q3 2019
- Operation Ghost: The Dukes aren’t back – they never left (PDF)
- LOWKEY: Hunting for the missing volume serial ID
- TA505 distributes new SDBbot remote access trojan with Get2 downloader
- IoT: a malware story
- Malicious payloads – hiding beneath the WAV
- Fake photo beautification apps on Google Play can read SMS verification code
- NanoCore under the microscope
- Digital “Pharmacusa”: Complexity of underground syndicates behind 2019 rise of targeted ransomware
- Emsisoft releases new decryptor for STOP Djvu ransomware
- Phishing e-mail spoofing SPF-enabled domain
- Darknet shoppers swindled out of bitcoins via trojanized Tor Browser
- Hardening Firefox against injection attacks
- Germany’s cyber-security agency recommends Firefox as most secure browser
- Improving site isolation for stronger browser security
- New version of OnionShare makes it easy for anyone to publish anonymous, uncensorable websites
- A beginner’s guide to flight tracking
- Guarding against supply chain attacks: The big picture
- How our security team handle secrets
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.