Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press.
Europol knocks RagnarLocker offline in second major ransomware bust this year
The Fake Browser Update Scam Gets a Makeover
Ragnar Locker ransomware gang taken down by international police swoop
Malware
DarkGate Opens Organizations for Attack via Skype, Teams
New paper: Nexus Android banking botnet – compromising C&C panels and dissecting mobile AppInjects
BlackCat Climbs the Summit With a New Tactic
Hacking
Active exploitation of Cisco IOS XE Software Web Management User Interface vulnerability
Widespread Cisco IOS XE Implants in the Wild
Synology NAS DSM Account Takeover: When Random is not Secure
Remediations for Citrix NetScaler ADC and Gateway Vulnerability (CVE-2023-4966)
CVE-2023-20198 – Cisco IOS-XE ZeroDay
Tracking Unauthorized Access to Okta’s Support System
Intelligence and Information Warfare
Hamas Cyber Capabilities: Threats and Implications for Israel
Peculiarities of destructive cyber attacks against Ukrainian providers (CERT-UA#7627)
Government-backed actors exploiting WinRAR vulnerability
Multiple North Korean threat actors exploiting the TeamCity CVE-2023-42793 vulnerability
MI5 head warns of ‘epic scale’ of Chinese espionage
International Criminal Court systems breached for cyber espionage
Cybersecurity
NIST – Digital Identity Guidelines – Authentication and Lifecycle Management
Automatic disruption of human-operated attacks through containment of compromised user accounts
Signal Debunks Zero-Day Vulnerability Reports, Finds No Evidence
Cloud and Threat Report: Top Adversary Tactics and Techniques
Follow me on Twitter: @securityaffairs and Facebook and Mastodon
(SecurityAffairs – hacking, newsletter)