Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Scroll more, sleep less. A Black Mirror-inspired truck in Warsaw advertises a disturbing social network… that doesn’t exist
- 68k phishing victims are now searchable in Have I Been Pwned, courtesy of CERT Poland
- FBI, partners dismantle Qakbot infrastructure in multinational cyber takedown
- Unmasking Trickbot, one of the world’s top cybercrime gangs
- A Brazilian phone spyware was hacked and victims’ devices ‘deleted’ from server
- Kroll employee SIM-swapped for crypto investor data
- Paramount discloses data breach following security incident
- UN warns that hundreds of thousands in Southeast Asia have been roped into online scams
- All the latest cyberbullying statistics for 2023
- Google Meet’s new AI will be able to go to meetings for you
- ChatGPT-maker OpenAI accused of string of data protection breaches in GDPR complaint filed by privacy researcher
- Impending French law threatens the free internet, Mozilla warns
For the more technical
- Hackers can silently grab your IP through Skype. Microsoft is in no rush to fix it
- Multiple Notepad++ flaws let attackers execute arbitrary code
- Methods to backdoor an AWS account
- Introducing proof-of-work defense for onion services
- Law enforcement takes down Qakbot
- Updated Kmsdx binary shows KmsdBot is targeting the IoT landscape
- DreamBus botnet resurfaces, targets RocketMQ vulnerability
- From Hidden Bee to Rhadamanthys – The evolution of custom executable formats
- IT threat evolution in Q2 2023. Mobile & non-mobile statistics
- Stealthy Android malware MMRat carries out bank fraud via fake app stores
- BadBazaar espionage tool targets Android users via trojanized Signal and Telegram apps
- New hierarchy, heightened threat: Classiscam’s sustained global campaign
- Attacks on Citrix NetScaler systems linked to ransomware actor
- Technical summary of observed Citrix CVE-2023-3519 incidents
- MalDoc in PDF – Detection bypass by embedding a malicious Word file into a PDF file
- SapphireStealer: Open-source information stealer enables credential and data theft
- HTML smuggling leads to domain wide ransomware
- Decrypting Key Group ransomware: emerging financially motivated cyber crime gang
- Threat actors target MSSQL servers in DB#JAMMER to deliver FreeWorld ransomware
- Shining some light on the DarkGate loader
- Lazarus group exploits ManageEngine vulnerability to deploy QuiteRAT
- GRU hackers attack Ukrainian military with new Android malware (PDF)
- Earth Estries targets government, tech for cyberespionage
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.