Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press.
Cybercrime
First Known Targeted OSS Supply Chain Attacks Against the Banking Sector
FraudGPT: The Villain Avatar of ChatGPT
Ambulance patient records system hauled offline for cyber-attack probe
ALPHV ransomware adds data leak API in new extortion strategy
Healthcare files of 8M-plus people fall into hands of Clop via MOVEit mega-bug
Lazarus hackers linked to $60 million Alphapo cryptocurrency heist
Malware
Who and What is Behind the Malware Proxy Service SocksEscort?
Conti and Akira: Chained Together
Linux version of Abyss Locker ransomware targets VMware ESXi servers
Sneaky XWorm Uses MultiStaged Attack
Related CherryBlos and FakeTrade Android Malware Involved in Scam Campaigns
CISA Releases Malware Analysis Reports on Barracuda Backdoors
Hacking
Norwegian Ministries exposed to computer attacks
A flaw in #OpenSSH forwarded ssh-agent allows remote code execution
Apple Rolls Out Urgent Patches for Zero-Day Flaws Impacting iPhones, iPads and Macs
CVE-2023-38408: Remote Code Execution in OpenSSH’s forwarded ssh-agent
Exploiting MikroTik RouterOS Hardware with CVE-2023-30799
GameOver(lay): Easy-to-exploit local privilege escalation vulnerabilities in Ubuntu Linux affect 40% of Ubuntu cloud workloads
TETRA radio comms used by emergency heroes easily cracked, say experts
Intelligence and Information Warfare
Moldova to kick out Russian diplomats over espionage allegations
BlueBravo Adapts to Target Diplomatic Entities with GraphicalProton Malware
Cybersecurity
Apple slams UK surveillance-bill proposals
Think tank calls for monitoring of Chinese AI-enabled products
Cyber Command, NSA pick advances to Senate floor, but path to confirmation remains blocked
US Senator Wyden Accuses Microsoft of ‘Cybersecurity Negligence’
Follow me on Twitter: @securityaffairs and Facebook and Mastodon
(SecurityAffairs – hacking, newsletter)