• Home
  • Cyber Crime
  • Cyber warfare
  • APT
  • Data Breach
  • Deep Web
  • Digital ID
  • Hacking
  • Hacktivism
  • Intelligence
  • Internet of Things
  • Laws and regulations
  • Malware
  • Mobile
  • Reports
  • Security
  • Social Networks
  • Terrorism
  • ICS-SCADA
  • POLICIES
  • Contact me
MUST READ

Critical FortiSIEM flaw under active exploitation, Fortinet warns

 | 

Charon Ransomware targets Middle East with APT attack methods

 | 

Hackers leak 2.8M sensitive records from Allianz Life in Salesforce data breach

 | 

SAP fixed 26 flaws in August 2025 Update, including 4 Critical

 | 

August 2025 Patch Tuesday fixes a Windows Kerberos Zero-Day

 | 

Dutch NCSC: Citrix NetScaler zero-day breaches critical orgs

 | 

Chrome sandbox escape nets security researcher $250,000 reward

 | 

Smart Buses flaws expose vehicles to tracking, control, and spying

 | 

MedusaLocker ransomware group is looking for pentesters

 | 

Google confirms Salesforce CRM breach, faces extortion threat

 | 

SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 57

 | 

Security Affairs newsletter Round 536 by Pierluigi Paganini – INTERNATIONAL EDITION

 | 

Embargo Ransomware nets $34.2M in crypto since April 2024

 | 

Germany limits police spyware use to serious crimes

 | 

Phishing attacks exploit WinRAR flaw CVE-2025-8088 to install RomCom

 | 

French firm Bouygues Telecom suffered a data breach impacting 6.4M customers

 | 

Columbia University data breach impacted 868,969 people

 | 

SonicWall dismisses zero-day fears after Ransomware probe

 | 

Air France and KLM disclosed data breaches following the hack of a third-party platform

 | 

CISA, Microsoft warn of critical Exchange hybrid flaw CVE-2025-53786

 | 
  • Home
  • Cyber Crime
  • Cyber warfare
  • APT
  • Data Breach
  • Deep Web
  • Digital ID
  • Hacking
  • Hacktivism
  • Intelligence
  • Internet of Things
  • Laws and regulations
  • Malware
  • Mobile
  • Reports
  • Security
  • Social Networks
  • Terrorism
  • ICS-SCADA
  • POLICIES
  • Contact me
  • Home
  • Breaking News
  • Security Affairs newsletter Round 447 by Pierluigi Paganini – INTERNATIONAL EDITION

Security Affairs newsletter Round 447 by Pierluigi Paganini – INTERNATIONAL EDITION

Pierluigi Paganini November 26, 2023

A new round of the weekly SecurityAffairs newsletter arrived! Every week the best security articles from Security Affairs are free for you in your email box.

Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press.

Rhysida ransomware gang claimed China Energy hack
North Korea-linked APT Lazarus is using a MagicLine4NX zero-day flaw in supply chain attack
Hamas-linked APT uses Rust-based SysJoker backdoor against Israel
App used by hundreds of schools leaking children’s data
Microsoft launched its new Microsoft Defender Bounty Program
Exposed Kubernetes configuration secrets can fuel supply chain attacks
North Korea-linked Konni APT uses Russian-language weaponized documents
MALWARE
ClearFake campaign spreads macOS AMOS information stealer
Welltok data breach impacted 8.5 million patients in the U.S.
North Korea-linked APT Diamond Sleet supply chain attack relies on CyberLink software
New InfectedSlurs Mirai-based botnet exploits two zero-days
SiegedSec hacktivist group hacked Idaho National Laboratory (INL)
CISA adds Looney Tunables Linux bug to its Known Exploited Vulnerabilities catalog
Enterprise software provider TmaxSoft leaks 2TB of data
Citrix provides additional measures to address Citrix Bleed
Tor Project removed several relays associated with a suspicious cryptocurrency scheme
Experts warn of a surge in NetSupport RAT attacks against education and government sectors
Canadian government impacted by data breaches of two of its contractors
Rhysida ransomware gang is auctioning data stolen from the British Library
Russia-linked APT29 group exploited WinRAR 0day in attacks against embassies
DarkCasino joins the list of APT groups exploiting WinRAR zero-day
US teenager pleads guilty to his role in credential stuffing attack on a betting site
8Base ransomware operators use a new variant of the Phobos ransomware

Cybercrime

Illicit Financial Flows from Cyber-Enabled Fraud

Wisconsin Man Pleads Guilty To Hacking Fantasy Sports And Betting Website   

Mitigation Guide: Healthcare and Public Health (HPH) Sector

Actor yalishanda: A snapshot of a prolific bulletproof hoster  

Australia Breaks Apart Crime Network Handling Nearly $1 Billion in Cryptocurrency   

Malware

The Mirai Confessions: Three Young Hackers Who Built a Web-Killing Monster Finally Tell Their Story  

VX-Underground malware collective framed by Phobos ransomware

NetSupport RAT: The RAT King Returns 

#StopRansomware: LockBit 3.0 Ransomware Affiliates Exploit CVE 2023-4966 Citrix Bleed Vulnerability   

InfectedSlurs Botnet Spreads Mirai via Zero-Days   

Atomic Stealer distributed to Mac users via fake browser updates  

Konni Campaign Distributed Via Malicious Document  

ISRAEL-HAMAS WAR SPOTLIGHT: SHAKING THE RUST OFF SYSJOKER   

Hacking

The New APT Group DarkCasino and the Global Surge in WinRAR 0-Day Exploits    

Hackers are taking over planes’ GPS — experts are lost on how to fix it 

ADVANCED FUZZING UNMASKS ELUSIVE VULNERABILITIES  

The Ticking Supply Chain Attack Bomb of Exposed Kubernetes Secrets

Microsoft Defender Bounty Program      

How Hackers Are Using AI To Steal Your Bank Account Password

Hackers Claim Attack on General Electric, Leak Data Samples

Potentially hundreds of UK law firms affected by cyberattack on IT provider CTS 

Flipper Zero can still crash iPhones running the latest version of iOS 17           

Intelligence and Information Warfare

Diamond Sleet supply chain compromise distributes a modified CyberLink installer

Europol sets up OSINT taskforce to support investigations into war crimes committed in Ukraine   

DPRK state-linked cyber actors conduct software supply chain attacks

Secretive White House Surveillance Program Gives Cops Access to Trillions of US Phone Records        

Chinese cyber espionage exposes years-long grip on Dutch chip giant  

Cybersecurity

ChatGPT Is Apparently a Great Surveillance Tool  

Message to current and former public service employees and members of the Canadian Armed Forces and Royal Canadian Mounted Police   

Safeguarding the Tor network: our commitment to network health and supporting relay operators   

DOJ Charges Binance With Vast Money-Laundering Scheme and Sanctions Violations  

iOS 15 Image Forensics Analysis and Tools Comparison – Browsers, Mail Clients, and Productivity apps  

OpenAI researchers warned board of AI breakthrough ahead of CEO ouster, sources say      

Cybersecurity industry responds to SEC charges against SolarWinds and former CISO  

Follow me on Twitter: @securityaffairs and Facebook and Mastodon

Pierluigi Paganini

(SecurityAffairs – hacking, newsletter)


facebook linkedin twitter

Cybercrime data breach Hacking information security news IT Information Security malware Newsletter Pierluigi Paganini Security Affairs Security News

you might also like

Pierluigi Paganini August 13, 2025
Critical FortiSIEM flaw under active exploitation, Fortinet warns
Read more
Pierluigi Paganini August 13, 2025
Charon Ransomware targets Middle East with APT attack methods
Read more

leave a comment

newsletter

Subscribe to my email list and stay
up-to-date!

    recent articles

    Critical FortiSIEM flaw under active exploitation, Fortinet warns

    Hacking / August 13, 2025

    Charon Ransomware targets Middle East with APT attack methods

    Malware / August 13, 2025

    Hackers leak 2.8M sensitive records from Allianz Life in Salesforce data breach

    Data Breach / August 13, 2025

    SAP fixed 26 flaws in August 2025 Update, including 4 Critical

    Uncategorized / August 13, 2025

    August 2025 Patch Tuesday fixes a Windows Kerberos Zero-Day

    Hacking / August 12, 2025

    To contact me write an email to:

    Pierluigi Paganini :
    pierluigi.paganini@securityaffairs.co

    LEARN MORE

    QUICK LINKS

    • Home
    • Cyber Crime
    • Cyber warfare
    • APT
    • Data Breach
    • Deep Web
    • Digital ID
    • Hacking
    • Hacktivism
    • Intelligence
    • Internet of Things
    • Laws and regulations
    • Malware
    • Mobile
    • Reports
    • Security
    • Social Networks
    • Terrorism
    • ICS-SCADA
    • POLICIES
    • Contact me

    Copyright@securityaffairs 2024

    We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept All”, you consent to the use of ALL the cookies. However, you may visit "Cookie Settings" to provide a controlled consent.
    Cookie SettingsAccept All
    Manage consent

    Privacy Overview

    This website uses cookies to improve your experience while you navigate through the website. Out of these cookies, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities...
    Necessary
    Always Enabled
    Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
    Non-necessary
    Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.
    SAVE & ACCEPT