Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Kaspersky: Law enforcement and government requests report (PDF)
- The new warrant: how US police mine Google for your location and search history
- Apple and Google go further than ever to appease Russia
- This US company sold iPhone hacking tools to UAE spies
- Ex-U.S. intel operatives admit hacking American networks for UAE
- Fake Walmart press release causes cryptocurrency price surge
- Hackers stole Puma source code, no customer data, company says
- Technology giant Olympus hit by BlackMatter ransomware
- Ransomware gang threatens to wipe decryption key if negotiator hired
- Anonymous hacks and leaks data from domain registrar Epik
- Dark web child pornography facilitator sentenced to 27 years in federal prison for conspiracy to advertise child pornography
- Amid vaccine mandates, fake vaccine certificates become a full blown industry
- TikTok is removing educational hacking videos
For the more technical
- Microsoft September 2021 Patch Tuesday
- Exploitation of the CVE-2021-40444 vulnerability in MSHTML
- Windows MSHTML zero-day exploits shared on hacking forums
- “Secret” agent exposes Azure customers to unauthorized code execution
- OMIGOD: Critical vulnerabilities in OMI affecting countless Azure customers
- SpookJS: Attacking Google Chrome’s Strict Site Isolation via speculative execution and type confusion
- HP OMEN gaming hub privilege escalation bug hits millions of gaming devices
- ForcedEntry: NSO Group iMessage zero-click exploit captured in the wild
- Analyzing the ForcedEntry zero-click iPhone exploit used by Pegasus
- Pegasus malware
- Vermilion Strike: Linux and Windows re-implementation of Cobalt Strike
- Black Lotus Labs uncovers Linux executables deployed as stealth Windows loaders
- Bitdefender offers free universal decryptor for REvil/Sodinokibi ransomware
- Researchers compile list of vulnerabilities abused by ransomware gangs
- Numando: Count once, code twice
- New Zloader infection chain comes with improved stealth and evasion mechanisms
- Flubot’s smishing campaigns under the microscope
- S.O.V.A. – A new Android Banking trojan with fowl intentions
- Operation Layover: How we tracked an attack on the aviation industry to five years of compromise
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.