Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Sold to gangs, forced to run online scams: inside Cambodia’s cybercrime crisis
- Israeli officer reveals intricate details of IDF’s first ever cyberattack
- International crackdown on West-African financial crime rings
- Prison inmate accused of orchestrating $11M fraud using cell cellphone
- 31 arrested for stealing cars by hacking keyless tech
- Brazilian police announce arrest of alleged Lapsus$ member
- Two men sentenced for nationwide scheme to steal social media accounts and cryptocurrency
- Police tricks DeadBolt ransomware out of 155 decryption keys
- Wi-Fine. It is fine to use public Wi-Fi, even without a VPN
- The hunt for Wikipedia’s disinformation moles
For the more technical
- Almost 900 servers hacked using Zimbra zero-day flaw
- Experts downplay reach of Apache bug ‘Text4Shell’
- CVE-2022-42889: Keep calm and stop saying “4Shell”
- Microsoft Office 365 Message Encryption insecure mode of operation
- Microsoft Office Online Server remote code execution
- Sensitive data of 65,000+ entities in 111 countries leaked due to a single misconfigured data bucket
- Pwning a DrayTek Router before getting it out of the box (PDF)
- Hackers exploit critical VMware flaw to drop ransomware, miners
- Analysis of a remote code execution (RCE) vulnerability in Cobalt Strike 4.7.1
- TOTP for 2FA is incredibly easy to implement. So what’s your excuse?
- Private npm packages disclosed via timing attacks
- Online file converter phishing page spreads RedLine stealer
- AI-driven ‘thermal attack’ system reveals passwords in seconds
- Writing an independent malware
- RedEye: Red Team C2 log visualization
- New fully undetectable PowerShell backdoor
- New malicious clicker found in apps installed by 20M+ users
- A detailed analysis of the Gafgyt malware targeting IoT devices
- From RM3 to LDR4: URSNIF leaves banking fraud behind
- Ransom Cartel ransomware: A possible connection with REvil
- Domestic Kitten campaign spying on Iranian citizens with new FurBall malware
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.