Breaking News

Security Affairs newsletter Round 344

A new round of the weekly Security Affairs newsletter arrived! Every week the best security articles from Security Affairs free for you in your email box.

If you want to also receive for free the newsletter with the international press subscribe here.

Western Digital SanDisk SecureAccess flaws allow brute force and dictionary attacks
New ‘Karakurt’ cybercrime gang focuses on data theft and extortion
Cybereason released Logout4Shell, a vaccine for Log4Shell Apache Log4j RCE
Volvo Cars suffers a data breach. Is it a ransomware attack?
Australian ACSC warns of Conti ransomware attacks against local orgs
A zero-day exploit for Log4j Java library could have a tsunami impact on IT giants
1.6 million WordPress sites targeted in the last couple of days
Dark Mirai botnet spreads targeting RCE on TP-Link routers
Mozilla fixed high-severity bugs in Firefox and Thunderbird mail client
Crooks injects e-skimmers in random WordPress plugins of e-stores
Tens of malicious NPM packages caught hijacking Discord servers
Moobot botnet spreads by exploiting CVE-2021-36260 flaw in Hikvision products
Microsoft Vancouver leaking website credentials via overlooked DS_STORE file
SonicWall strongly urges customers to apply patches to SMA 100 devices
CS Energy foiled a ransomware attack
Emotet directly drops Cobalt Strike beacons without intermediate Trojans
Google disrupts the Glupteba botnet
Bitcoin Miner [oom_reaper] targets QNAP NAS devices
Microsoft seized 42 domains used by the China-linked APT15 cyberespionage group
Nobelium continues to target organizations worldwide with custom malware
Nobelium APT targets French orgs, French ANSSI agency warns
330 SPAR stores close or switch to cash-only payments after a cyberattack
DMEA Colorado electric utility hit by a disruptive cyberattack
Threat actors stole more than $150 million worth of cryptocurrency tokens from BitMart platform
Hackers are sending receipts with anti-work messages to businesses’ printers
Magnat malvertising campaigns spreads malicious Chrome extensions, backdoors and info stealers
Hundreds of vulnerabilities in common Wi-Fi routers affect millions of users
German BSI agency warns of ransomware attacks over Christmas holidays

If you want to also receive for free the newsletter with the international press subscribe here.

Follow me on Twitter: @securityaffairs and Facebook

[adrotate banner=”9″][adrotate banner=”12″]

Pierluigi Paganini

(SecurityAffairs – hacking, newsletter)

[adrotate banner=”5″]

[adrotate banner=”13″]

Pierluigi Paganini

Pierluigi Paganini is member of the ENISA (European Union Agency for Network and Information Security) Threat Landscape Stakeholder Group and Cyber G7 Group, he is also a Security Evangelist, Security Analyst and Freelance Writer. Editor-in-Chief at "Cyber Defense Magazine", Pierluigi is a cyber security expert with over 20 years experience in the field, he is Certified Ethical Hacker at EC Council in London. The passion for writing and a strong belief that security is founded on sharing and awareness led Pierluigi to find the security blog "Security Affairs" recently named a Top National Security Resource for US. Pierluigi is a member of the "The Hacker News" team and he is a writer for some major publications in the field such as Cyber War Zone, ICTTF, Infosec Island, Infosec Institute, The Hacker News Magazine and for many other Security magazines. Author of the Books "The Deep Dark Web" and “Digital Virtual Currency and Bitcoin”.

Recent Posts

SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 84

Security Affairs Malware newsletter includes a collection of the best articles and research on malware…

16 minutes ago

Security Affairs newsletter Round 563 by Pierluigi Paganini – INTERNATIONAL EDITION

A new round of the weekly Security Affairs newsletter has arrived! Every week, the best…

48 minutes ago

Fintech firm Figure disclosed data breach after employee phishing attack

Fintech firm Figure confirmed a data breach after hackers used social engineering to trick an…

21 hours ago

U.S. CISA adds a flaw in BeyondTrust RS and PRA to its Known Exploited Vulnerabilities catalog

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds a flaw in BeyondTrust RS and…

22 hours ago

Suspected Russian hackers deploy CANFAIL malware against Ukraine

A new alleged Russia-linked APT group targeted Ukrainian defense, government, and energy groups, with CANFAIL…

1 day ago

New threat actor UAT-9921 deploys VoidLink against enterprise sectors

A new threat actor, UAT-9921, uses the modular VoidLink framework to target technology and financial…

2 days ago

This website uses cookies.