Security Affairs
Google Fined €890M Under EU Digital Markets Act Over Search and Play Store Practices|Thailand’s Ministry of Finance Targeted With Hermes AI Agent Running Unattended, Hades Implant Staged|UAC-0099 Is Now Hiding Malware Inside a Fake Notepad++ Plugin to Target Ukrainian Organizations|The AI Trust Paradox: Businesses Are Racing Ahead, but Consumers Are Hesitating|US Agencies Warn of Laundry Bear Campaign Targeting Unpatched Zimbra Servers|U.S. CISA adds Microsoft SharePoint and Check Point SmartConsole flaws to its Known Exploited Vulnerabilities catalog|Chaos ransomware deploys browser-based msaRAT to evade network detection|Google Released Gemini 3.5 Flash Cyber AI, a Specialized AI Model for Vulnerability Hunting|Check Point patches actively exploited SmartConsole authentication bypass flaw|CVE-2026-8933: Ubuntu security flaw breaks Snap sandbox protections|Adobe Acrobat Chrome extension bug enabled silent WhatsApp data theft|U.S. CISA adds DD-WRT, Langflow and WordPress flaws to its Known Exploited Vulnerabilities catalog|Google Fined €890M Under EU Digital Markets Act Over Search and Play Store Practices|Thailand’s Ministry of Finance Targeted With Hermes AI Agent Running Unattended, Hades Implant Staged|UAC-0099 Is Now Hiding Malware Inside a Fake Notepad++ Plugin to Target Ukrainian Organizations|The AI Trust Paradox: Businesses Are Racing Ahead, but Consumers Are Hesitating|US Agencies Warn of Laundry Bear Campaign Targeting Unpatched Zimbra Servers|U.S. CISA adds Microsoft SharePoint and Check Point SmartConsole flaws to its Known Exploited Vulnerabilities catalog|Chaos ransomware deploys browser-based msaRAT to evade network detection|Google Released Gemini 3.5 Flash Cyber AI, a Specialized AI Model for Vulnerability Hunting|Check Point patches actively exploited SmartConsole authentication bypass flaw|CVE-2026-8933: Ubuntu security flaw breaks Snap sandbox protections|Adobe Acrobat Chrome extension bug enabled silent WhatsApp data theft|U.S. CISA adds DD-WRT, Langflow and WordPress flaws to its Known Exploited Vulnerabilities catalog|
Advertisement

Ad Placeholder

Full Width × 90

Breaking News

Security Affairs newsletter Round 131 – News of the week

A new round of the weekly SecurityAffairs newsletter arrived! The best news of the week with Security Affairs. Once again thank you! ·      60% of institutions in Saudi Arabia hit by malware-based attacks ·      Security Affairs newsletter Round 130 – News of the week ·      Vxers abused legitimate VMware binary to spread Banking Trojan Distribution […]

newsletter

A new round of the weekly SecurityAffairs newsletter arrived!

The best news of the week with Security Affairs.

Once again thank you!

·      60% of institutions in Saudi Arabia hit by malware-based attacks
·      Security Affairs newsletter Round 130 – News of the week
·      Vxers abused legitimate VMware binary to spread Banking Trojan Distribution
·      Who Knows Your (Sex) Secrets? Internet of Sex Toys
·      Dream Market dark web drug dealer OxyMonster arrested on way to beard contest
·      Netgear addressed dozens of vulnerabilities in Routers, Switches and NAS
·      R6DB hacked. Rainbow Six Siege services database wiped and held for ransom
·      UK National Lottery knocked offline by a DDoS attack on Saturday
·      Equifax hack affected 145.5 million individuals, 2.5M more than originally stated
·      Googles Security Research Team Identifies and Fixes 7 Vulnerabilities in Dnsmasq
·      Imperva Report Q2 2017- Over 75% of DDoS targets were hit multiple times
·      Zero-Day flaws in 3 WordPress Plugins being exploited in the wild
·      A new Ethereum ICO was hacked, the victim is Etherparty
·      Intezer researchers link CCleaner hack to Chinese APT17 hackers
·      Which are most frequently blacklisted apps by enterprises?
·      Yahoo hack – All 3 Billion Yahoo accounts were hacked in 2013 attack
·      CSE CybSec ZLAB Malware Analysis Report: APT28 Hospitality malware
·      CVE-2017-12617 Code Execution flaw patched in Apache Tomcat
·      Experts discovered a SYSCON Backdoor using FTP Server as C&C
·      Russian firm provides North Korea with second Internet route
·      Apple file system flaw, macOS shows encrypted drives password in the hint box
·      Russian spies pilfered data from NSA Contractors home PC running a Kaspersky AV
·      Securing smart grid and advanced metering infrastructure
·      Zapad drills – Russia may have tested cyber weapons on Latvia
·      A critical vulnerability affects Siemens smart meters
·      British teenager admits trying to hack CIA Chief and other top US officials
·      Disqus data breach – 2012 incident Exposed details for 17.5 Million users
·      Experts spotted KnockKnock attacks, a new ingenious attack technique on Office 365 System Accounts

 

[adrotate banner=”9″] [adrotate banner=”12″]

Pierluigi Paganini

(Security Affairs – Newsletter)

[adrotate banner=”5″]

[adrotate banner=”13″]