Afraid of missing important security news during the week? We’re here to help! Every week we put together a curated list of all important security news in one place, for your reading pleasure. Enjoy!
For the less technical
- Visiting the National Museum of Cryptology at the NSA
- Inside ShadowDragon, the tool that lets ICE monitor pregnancy tracking sites and Fortnite players
- Xi Jinping’s security obsession turns ordinary citizens into spy hunters
- Attorney General Bonta announces $93 million settlement regarding Google’s location-privacy practices
- International operation closes down Piilopuoti dark web marketplace
For the more technical
- Analyzing a modern in-the-wild Android exploit
- CVE-2023-4863: Heap buffer overflow in Google libwebp (WebP)
- Signal adds quantum-resistant encryption to its E2EE messaging protocol
- GitLab critical security release: 16.3.4 and 16.2.7
- CVE-2023-36844 and friends: RCE in Juniper devices
- Commonalities in vehicle vulernabilities (PDF)
- 38TB of data accidentally exposed by Microsoft AI researchers
- “MrTonyScam” — Botnet of Facebook users launch high-intent Messenger phishing attack on business accounts
- New ShroudedSnooper actor targets telecommunications firms in the Middle East with novel implants
- Ahmed Eltantawy targeted with Predator spyware after announcing presidential ambitions
- Fake CVE-2023-40477 proof of concept leads to VenomRAT
- Overview of IoT threats in 2023
- Behind the scenes of BBTok: Analyzing a banker’s server side components
- Snatch ransomware – what you need to know
- Earth Lusca employs new Linux backdoor, uses Cobalt Strike for lateral movement
- Transparent Tribe’s CapraRAT mimics YouTube to hijack Android phones
- UNC3944 leverages SMS phishing campaigns for SIM swapping, ransomware, extortion, and notoriety
- Sandman APT – A mystery group targeting telcos with a LuaJIT toolkit
- How the Lazarus Group is stepping up crypto hacks and changing its tactics
- Operation Rusty Flag – A malicious campaign against Azerbaijanian targets
- Cado Security Labs researchers witness a 600X increase in P2Pinfect traffic
Did you enjoy this list? You can subscribe to one of our feeds on Twitter, Facebook or RSS.