Breaking News

Security Affairs newsletter Round 343

A new round of the weekly Security Affairs newsletter arrived! Every week the best security articles from Security Affairs free for you in your email box.

If you want to also receive for free the newsletter with the international press subscribe here.

Hundreds of vulnerabilities in common Wi-Fi routers affect millions of users
German BSI agency warns of ransomware attacks over Christmas holidays
Cuba ransomware gang hacked 49 US critical infrastructure organizations
CISA warns of vulnerabilities in Hitachi Energy products
NSO Group spyware used to compromise iPhones of 9 US State Dept officials
KAX17 threat actor is attempting to deanonymize Tor users running thousands of rogue relays
Threat actors stole $120 M in crypto from BadgerDAO DeFi platform
Watch out for Omicron COVID-19-themed phishing messages!
CISA adds Zoho, Apache, Qualcomm, Mikrotik flaws to the list of actively exploited issues
Russian internet watchdog Roskomnadzor bans six more VPN services
NginRAT – A stealth malware targets e-store hiding on Nginx servers
Europol arrested 1800 money mules as part of an anti-money-laundering operation
Mozilla fixes critical flaw in Network Security Services (NSS) cryptography library
VirusTotal Collections allows enhancing the sharing of Indicators of Compromise (IoCs)
New RTF Template Inject technique used by APT groups in recent attacks
FBI training document shows lawful access to multiple encrypted messaging apps
Sabbath Ransomware target critical infrastructure in the US and Canada
Play the Opera Please – Opera patches a flaw in their turbo servers
New EwDoor Botnet is targeting AT&T customers
Critical Printing Shellz flaws impact 150 HP multifunction printer models
WIRTE APT group targets the Middle East since at least 2019
4 Android banking trojans were spread via Google Play infecting 300.000+ devices
Google experts found 2 flaws in video conferencing software Zoom
Panasonic confirmed that its network was illegally accessed by attackers
Experts warn of attacks exploiting CVE-2021-40438 flaw in Apache HTTP Server
Biopharmaceutical firm Supernus Pharmaceuticals hit by Hive ransomware during an ongoing acquisition
Israel cut cyber export list, excluding totalitarian regimesa
French court indicted Nexa Technologies for complicity in acts of torture
RATDispenser, a new stealthy JavaScript loader used to distribute RATs
North Korea-linked Zinc group posed as Samsung recruiters to target security firms
0patch releases unofficial patches for CVE-2021-24084 Windows 10 zero-day

F

Follow me on Twitter: @securityaffairs and Facebook

[adrotate banner=”9″][adrotate banner=”12″]

Pierluigi Paganini

(SecurityAffairs – hacking, newsletter)

[adrotate banner=”5″]

Follow me on Twitter: @securityaffairs and Facebook

[adrotate banner=”9″][adrotate banner=”12″]

Pierluigi Paganini

(SecurityAffairs – hacking, newsletter)

[adrotate banner=”5″]

[adrotate banner=”13″]

Pierluigi Paganini

Pierluigi Paganini is member of the ENISA (European Union Agency for Network and Information Security) Threat Landscape Stakeholder Group and Cyber G7 Group, he is also a Security Evangelist, Security Analyst and Freelance Writer. Editor-in-Chief at "Cyber Defense Magazine", Pierluigi is a cyber security expert with over 20 years experience in the field, he is Certified Ethical Hacker at EC Council in London. The passion for writing and a strong belief that security is founded on sharing and awareness led Pierluigi to find the security blog "Security Affairs" recently named a Top National Security Resource for US. Pierluigi is a member of the "The Hacker News" team and he is a writer for some major publications in the field such as Cyber War Zone, ICTTF, Infosec Island, Infosec Institute, The Hacker News Magazine and for many other Security magazines. Author of the Books "The Deep Dark Web" and “Digital Virtual Currency and Bitcoin”.

Recent Posts

DOJ moves to seize $7.74M in crypto linked to North Korean IT worker scam

US seeks to seize $7.74M in crypto linked to North Korean fake IT worker schemes,…

12 hours ago

OpenAI bans ChatGPT accounts linked to Russian, Chinese cyber ops

OpenAI banned ChatGPT accounts tied to Russian and Chinese hackers using the tool for malware,…

19 hours ago

New Mirai botnet targets TBK DVRs by exploiting CVE-2024-3721

A new variant of the Mirai botnet exploits CVE-2024-3721 to target DVR systems, using a…

22 hours ago

BadBox 2.0 botnet infects millions of IoT devices worldwide, FBI warns

BadBox 2.0 malware has infected millions of IoT devices globally, creating a botnet used for…

23 hours ago

Over 950K weekly downloads at risk in ongoing supply chain attack on Gluestack packages

A supply chain attack hit NPM, threat actors compromised 16 popular Gluestack packages, affecting 950K+…

2 days ago

SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 48

Security Affairs Malware newsletter includes a collection of the best articles and research on malware…

2 days ago