Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Russians dodging mobilization behind flourishing scam market
- Big data trove dumped after LA Unified School District says no to ransomware crooks
- Ferrari denies data breach and ransomware attack following gang’s online claims
- Man arrested for alleged data breach SMS scam
- Two former eBay executives sentenced to prison for cyberstalking
- Romance and BEC scammer sentenced to 25 years over $9.5 million fraud
- [AUDIO] What can we learn from firefighters?
- Mexican journalists targeted by zero-click spyware infections
- More details on the transition to Manifest V3
For the more technical
- Analyzing attacks using the Exchange vulnerabilities CVE-2022-41040 and CVE-2022-41082
- Fake Microsoft Exchange ProxyNotShell exploits for sale on GitHub
- Thousands of Hikvision cameras are still vulnerable and can be potentially exploited (PDF)
- Fortinet warns admins to patch critical auth bypass bug immediately
- Top CVEs actively exploited by people’s Republic of China state-sponsored cyber actors
- ESET Threat Report T2 2022 (PDF)
- A look at the 2020–2022 ATM/PoS malware landscape
- Uncommon infection and malware propagation methods
- Some notes on VIRTUALGATE
- Securing developer tools: A new supply chain attack on PHP
- CrowdStrike Falcon platform identifies supply chain attack via a trojanized Comm100 Chat installer
- Worldwide server-side cache poisoning on all Akamai edge nodes ($50K+ bounty earned)
- Impacket and exfiltration tool used to steal sensitive information from defense industrial base organization
- MSSQL, meet Maggie
- Fargo (Mallox) ransomware being distributed to unsecured MS-SQL servers
- Exmatter: Clues to the future of data extortion
- Avast releases free decryptor for MafiaWare666 ransomware variants
- Analysis of LilithBot malware and Eternity threat group
- Remove all the callbacks – BlackByte ransomware disables EDR via RTCore64.sys abuse
- Revealing Emperor Dragonfly: Night sky and Cheerscrypt – a single ransomware group
- Phishing campaigns targeting KFC and McDonald’s
- Exposing a polyglot file that delivers IcedID
- OnionPoison: infected Tor Browser installer distributed through popular YouTube channel
- Water Labbu abuses malicious dApps to steal cryptocurrency
- We smell a RatMilad Android spyware
- DeftTorero: tactics, techniques and procedures of intrusions revealed
- Seychelles, Seychelles, on the C(2) Shore
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.