• Home
  • Cyber Crime
  • Cyber warfare
  • APT
  • Data Breach
  • Deep Web
  • Digital ID
  • Hacking
  • Hacktivism
  • Intelligence
  • Internet of Things
  • Laws and regulations
  • Malware
  • Mobile
  • Reports
  • Security
  • Social Networks
  • Terrorism
  • ICS-SCADA
  • POLICIES
  • Contact me
MUST READ

APT42 impersonates cyber professionals to phish Israeli academics and journalists

 | 

Kai West, aka IntelBroker, indicted for cyberattacks causing $25M in damages

 | 

Cisco fixed critical ISE flaws allowing Root-level remote code execution

 | 

U.S. CISA adds AMI MegaRAC SPx, D-Link DIR-859 routers, and Fortinet FortiOS flaws to its Known Exploited Vulnerabilities catalog

 | 

CitrixBleed 2: The nightmare that echoes the 'CitrixBleed' flaw in Citrix NetScaler devices

 | 

Hackers deploy fake SonicWall VPN App to steal corporate credentials

 | 

Mainline Health Systems data breach impacted over 100,000 individuals

 | 

Disrupting the operations of cryptocurrency mining botnets

 | 

Prometei botnet activity has surged since March 2025

 | 

The U.S. House banned WhatsApp on government devices due to security concerns

 | 

Russia-linked APT28 use Signal chats to target Ukraine official with malware

 | 

China-linked APT Salt Typhoon targets Canadian Telecom companies

 | 

U.S. warns of incoming cyber threats following Iran airstrikes

 | 

McLaren Health Care data breach impacted over 743,000 people

 | 

American steel giant Nucor confirms data breach in May attack

 | 

The financial impact of Marks & Spencer and Co-op cyberattacks could reach £440M

 | 

Iran-Linked Threat Actors Cyber Fattah Leak Visitors and Athletes' Data from Saudi Games

 | 

SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 50

 | 

Security Affairs newsletter Round 529 by Pierluigi Paganini – INTERNATIONAL EDITION

 | 

Iran confirmed it shut down internet to protect the country against cyberattacks

 | 
  • Home
  • Cyber Crime
  • Cyber warfare
  • APT
  • Data Breach
  • Deep Web
  • Digital ID
  • Hacking
  • Hacktivism
  • Intelligence
  • Internet of Things
  • Laws and regulations
  • Malware
  • Mobile
  • Reports
  • Security
  • Social Networks
  • Terrorism
  • ICS-SCADA
  • POLICIES
  • Contact me
  • Home
  • Breaking News
  • Security Affairs newsletter Round 488 by Pierluigi Paganini – INTERNATIONAL EDITION

Security Affairs newsletter Round 488 by Pierluigi Paganini – INTERNATIONAL EDITION

Pierluigi Paganini September 08, 2024

A new round of the weekly SecurityAffairs newsletter arrived! Every week the best security articles from Security Affairs are free in your email box.

Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press.

U.S. CISA adds Draytek VigorConnect and Kingsoft WPS Office bugs to its Known Exploited Vulnerabilities catalog
A flaw in WordPress LiteSpeed Cache Plugin allows account takeover
Car rental company Avis discloses a data breach
SonicWall warns that SonicOS bug exploited in attacks
Apache fixed a new remote code execution flaw in Apache OFBiz
Russia-linked GRU Unit 29155 targeted critical infrastructure globally
Veeam fixed a critical flaw in Veeam Backup & Replication software
Earth Lusca adds multiplatform malware KTLVdoor to its arsenal
Is Russian group APT28 behind the cyber attack on the German air traffic control agency (DFS)?
Quishing, an insidious threat to electric car owners
Google fixed actively exploited Android flaw CVE-2024-32896
Discontinued D-Link DIR-846 routers are affected by code execution flaws. Replace them!
Head Mare hacktivist group targets Russia and Belarus
Zyxel fixed critical OS command injection flaw in multiple routers
VMware fixed a code execution flaw in Fusion hypervisor
U.S. oil giant Halliburton disclosed a data breach
Vulnerabilities in Microsoft apps for macOS allow stealing permissions
Three men plead guilty to running MFA bypass service OTP.Agency
Transport for London (TfL) is dealing with an ongoing cyberattack
Lockbit gang claims the attack on the Toronto District School Board (TDSB)
A new variant of Cicada ransomware targets VMware ESXi systems
An air transport security system flaw allowed to bypass airport security screenings

International Press – Newsletter

Cybercrime  

Cambodian scam giant handled $49 billion in crypto transactions since 2021, researchers say

Toronto school board confirms students’ info stolen as LockBit claims breach      

Owners of 1-Time Passcode Theft Service Plead Guilty  

Spoofed GlobalProtect Used to Deliver Unique WikiLoader Variant  

Exclusive: LockBit 3.0 appears to be duplicating old listings as Design Intoto named a second time  

Malla: Demystifying Real-world Large Language Model Integrated Malicious Services  

EXPOSED: OnlyFans Hack Gone Wrong – How Cyber Criminals Turn into Victims Overnight

Planned Parenthood confirms cyberattack as RansomHub claims breach

Russian authorities able to identify train saboteur from anonymous Telegram account  

Malware

BlackSuit Ransomware

Year-Long Campaign of Malicious npm Packages Targeting Roblox Users  

Rocinante: The trojan horse that wanted to fly   

Earth Lusca Uses KTLVdoor Backdoor for Multiplatform Intrusion     

FBI: Play ransomware gang has attacked 300 orgs since 2022  

New Android SpyAgent Campaign Steals Crypto Credentials via Image Recognition  

Hacking

Bypassing airport security via SQL injection

Dragon Hactivists on Prowl      

Hiding in plain sight: Techniques and defenses against `/proc` filesystem manipulation in Linux

How multiple vulnerabilities in Microsoft apps for macOS pave the way to stealing permissions

Learning Rust for fun and backdoo-rs    

Head Mare: adventures of a unicorn in Russia and Belarus       

Earth Lusca Uses KTLVdoor Backdoor for Multiplatform Intrusion  

Windows Wi-Fi Driver RCE Vulnerability – CVE-2024-30078 

Advanced forensic techniques for recovering hidden data in wearable devices  

Recent SonicWall Firewall Vulnerability Potentially Exploited in the Wild

Threat Actors Exploit GeoServer Vulnerability CVE-2024-36401   

Intelligence and Information Warfare 

The Geopolitics of Cyber Espionage Goes Far Beyond Sensitive Information Theft  

Social Media as an Intelligence Tool for Information Warfare

NATO Wants to Boost Its Undersea Defenses     

German air traffic control was attacked by pro-Russian hackers  

Russian Military Cyber Actors Target US and Global Critical Infrastructure

NSA’s China-focused ‘innovation pipeline’ targets economic imbalances

US cracks down on Russian disinformation before 2024 election      

BlindEagle Targets Colombian Insurance Sector with BlotchyQuasar

Chinese APT Abuses VSCode to Target Government in Asia  

With charges and sanctions, US takes aim at Russian disinformation ahead of November election

North Korea Aggressively Targeting Crypto Industry with Well-Disguised Social Engineering Attacks      

Cybersecurity

A concrete example of ES|QL and SOC detection rules  

TfL faces ‘ongoing cyber security incident’  

What is the future of cross-border data flows?  

Managing Cybersecurity in the Age of Artificial Intelligence  

Clearview AI Faces €30.5M Fine for Building Illegal Facial Recognition Database

X is hiring staff for security and safety after two years of layoffs  

Critical Account Takeover Vulnerability Patched in LiteSpeed Cache Plugin  

A scientific approach to eavesdropping via HDMI  

Follow me on Twitter: @securityaffairs and Facebook and Mastodon

Pierluigi Paganini

(SecurityAffairs – hacking, newsletter)


facebook linkedin twitter

Cybercrime data breach Hacking hacking news information security news IT Information Security malware Newsletter Pierluigi Paganini Security News

you might also like

Pierluigi Paganini June 27, 2025
APT42 impersonates cyber professionals to phish Israeli academics and journalists
Read more
Pierluigi Paganini June 26, 2025
Kai West, aka IntelBroker, indicted for cyberattacks causing $25M in damages
Read more

leave a comment

newsletter

Subscribe to my email list and stay
up-to-date!

    recent articles

    APT42 impersonates cyber professionals to phish Israeli academics and journalists

    APT / June 27, 2025

    Kai West, aka IntelBroker, indicted for cyberattacks causing $25M in damages

    Cyber Crime / June 26, 2025

    Cisco fixed critical ISE flaws allowing Root-level remote code execution

    Security / June 26, 2025

    U.S. CISA adds AMI MegaRAC SPx, D-Link DIR-859 routers, and Fortinet FortiOS flaws to its Known Exploited Vulnerabilities catalog

    Security / June 26, 2025

    CitrixBleed 2: The nightmare that echoes the 'CitrixBleed' flaw in Citrix NetScaler devices

    Hacking / June 26, 2025

    To contact me write an email to:

    Pierluigi Paganini :
    pierluigi.paganini@securityaffairs.co

    LEARN MORE

    QUICK LINKS

    • Home
    • Cyber Crime
    • Cyber warfare
    • APT
    • Data Breach
    • Deep Web
    • Digital ID
    • Hacking
    • Hacktivism
    • Intelligence
    • Internet of Things
    • Laws and regulations
    • Malware
    • Mobile
    • Reports
    • Security
    • Social Networks
    • Terrorism
    • ICS-SCADA
    • POLICIES
    • Contact me

    Copyright@securityaffairs 2024

    We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept All”, you consent to the use of ALL the cookies. However, you may visit "Cookie Settings" to provide a controlled consent.
    Cookie SettingsAccept All
    Manage consent

    Privacy Overview

    This website uses cookies to improve your experience while you navigate through the website. Out of these cookies, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities...
    Necessary
    Always Enabled
    Necessary cookies are absolutely essential for the website to function properly. This category only includes cookies that ensures basic functionalities and security features of the website. These cookies do not store any personal information.
    Non-necessary
    Any cookies that may not be particularly necessary for the website to function and is used specifically to collect user personal data via analytics, ads, other embedded contents are termed as non-necessary cookies. It is mandatory to procure user consent prior to running these cookies on your website.
    SAVE & ACCEPT