Security Affairs
Google Fined €890M Under EU Digital Markets Act Over Search and Play Store Practices|Thailand’s Ministry of Finance Targeted With Hermes AI Agent Running Unattended, Hades Implant Staged|UAC-0099 Is Now Hiding Malware Inside a Fake Notepad++ Plugin to Target Ukrainian Organizations|The AI Trust Paradox: Businesses Are Racing Ahead, but Consumers Are Hesitating|US Agencies Warn of Laundry Bear Campaign Targeting Unpatched Zimbra Servers|U.S. CISA adds Microsoft SharePoint and Check Point SmartConsole flaws to its Known Exploited Vulnerabilities catalog|Chaos ransomware deploys browser-based msaRAT to evade network detection|Google Released Gemini 3.5 Flash Cyber AI, a Specialized AI Model for Vulnerability Hunting|Check Point patches actively exploited SmartConsole authentication bypass flaw|CVE-2026-8933: Ubuntu security flaw breaks Snap sandbox protections|Adobe Acrobat Chrome extension bug enabled silent WhatsApp data theft|U.S. CISA adds DD-WRT, Langflow and WordPress flaws to its Known Exploited Vulnerabilities catalog|Google Fined €890M Under EU Digital Markets Act Over Search and Play Store Practices|Thailand’s Ministry of Finance Targeted With Hermes AI Agent Running Unattended, Hades Implant Staged|UAC-0099 Is Now Hiding Malware Inside a Fake Notepad++ Plugin to Target Ukrainian Organizations|The AI Trust Paradox: Businesses Are Racing Ahead, but Consumers Are Hesitating|US Agencies Warn of Laundry Bear Campaign Targeting Unpatched Zimbra Servers|U.S. CISA adds Microsoft SharePoint and Check Point SmartConsole flaws to its Known Exploited Vulnerabilities catalog|Chaos ransomware deploys browser-based msaRAT to evade network detection|Google Released Gemini 3.5 Flash Cyber AI, a Specialized AI Model for Vulnerability Hunting|Check Point patches actively exploited SmartConsole authentication bypass flaw|CVE-2026-8933: Ubuntu security flaw breaks Snap sandbox protections|Adobe Acrobat Chrome extension bug enabled silent WhatsApp data theft|U.S. CISA adds DD-WRT, Langflow and WordPress flaws to its Known Exploited Vulnerabilities catalog|
Advertisement

Ad Placeholder

Full Width × 90

Breaking News

Security Affairs newsletter Round 132 – News of the week

A new round of the weekly SecurityAffairs newsletter arrived! The best news of the week with Security Affairs. Once again thank you! ·      Forrester, one of the most influential research and advisory firms was hacked ·      HPE allowed Russians review the code of ArcSight software also used by the Pentagon ·      Security Affairs newsletter Round […]

newsletter

A new round of the weekly SecurityAffairs newsletter arrived!

The best news of the week with Security Affairs.

Once again thank you!

·      Forrester, one of the most influential research and advisory firms was hacked
·      HPE allowed Russians review the code of ArcSight software also used by the Pentagon
·      Security Affairs newsletter Round 131 – News of the week
·      Security researcher found roughly 700 Brother printers left exposed online
·      A man who goes by the nickname LiquidWorm released a FLIR Thermal Camera Exploit
·      Credit agency Experian is using scare tactics to sell a service for tracking traded user data on the dark web
·      KovCoreG group spreading Kovter Malware via fake browser and Flash updates
·      North Korea hackers threaten Irish companies with ‘almost daily attacks
·      Sri Lanka police arrest two men over cyber theft at the Taiwan Bank
·      4G/5G Wireless Networks as Vulnerable as WiFi and putting SmartCities at Risk
·      FIN7 hacking group is switched to new techniques to evade detection
·      FormBook malware used in high-volume distribution campaigns targeting organizations in the US and South Korea
·      Iran-linked OilRig hacked group use a new Trojan in Middle East Attacks
·      Microsofts October Patch Tuesday addresses critical Windows DNS client Zero-Day Flaws tied to DNSSEC
·      Accenture – Embarrassing data leak business data in a public Amazon S3 bucket
·      Israel hackers caught Russian cyber spies abusing Kaspersky AV to steal NSA secrets
·      Kaspersky spotted ATMii, a new strain of ATM malware
·      Microsoft addresses CVE-2017-11826 Office Zero-Day used to deliver malware
·      ASD revealed hacker stole 30GB of sensitive data on Australias military capabilities
·      Equifax website redirected visitors to fake Flash update, its malvertising
·      Results and forecasts: Group-IB presented Hi-Tech Crime Trends 2017 report
·      Swiss BPC banking software SmartVista is vulnerable to SQL Injection attacks
·      A new Facebook scam allows your friend contacts to hack your account
·      Akamai shared a detailed analysis of a Fast Flux Botnet composed of 14K IPs
·      Hyatt Hotels suffered a new payment card breach, the second in two years
·      Republican polling firm Victory Phones database was hacked
·      DoubleLocker, the Android Ransomware that encrypts files and changes PIN Lock
·      SecureWorks shed light on BRONZE BUTLER group that targets Japanese Enterprises
·      Security Service of Ukraine of a new wave of large-scale NotPetya-like attack

 

[adrotate banner=”9″] [adrotate banner=”12″]

Pierluigi Paganini

(Security Affairs – Newsletter)

[adrotate banner=”5″]

[adrotate banner=”13″]