Europe Confirms Record €4.1B Penalty Against Google for Android Practices|U.S. CISA adds a Microsoft SharePoint Server flaw to its Known Exploited Vulnerabilities catalog|430,000 FortiGate Devices Exposed in FortiBleed Ransomware Link|Adobe fixed multiple maximum-severity flaws in ColdFusion and Campaign Classic|Alleged Scattered Spider Hacker Extradited to U.S. to Face Cybercrime Charges|Oracle E-Business Suite Flaw Under Active Attack, 950 Systems Exposed|Azure CLI Targeted in LSHIY Password Spray Campaign Across 64 Orgs|CISA Warns BlueHammer Flaw Is Now Exploited in Ransomware Attacks|RustDuck: The Botnet That’s Still Small but Engineering Like It Plans to Grow|GuardFall Flaw Hits 10 of 11 Popular Open-Source AI Agents|XSS.is, The Forum That Ran the Ransomware Supply Chain Is Down. The Market Isn’t|U.S. CISA adds SimpleHelp flaw to its Known Exploited Vulnerabilities catalog|Europe Confirms Record €4.1B Penalty Against Google for Android Practices|U.S. CISA adds a Microsoft SharePoint Server flaw to its Known Exploited Vulnerabilities catalog|430,000 FortiGate Devices Exposed in FortiBleed Ransomware Link|Adobe fixed multiple maximum-severity flaws in ColdFusion and Campaign Classic|Alleged Scattered Spider Hacker Extradited to U.S. to Face Cybercrime Charges|Oracle E-Business Suite Flaw Under Active Attack, 950 Systems Exposed|Azure CLI Targeted in LSHIY Password Spray Campaign Across 64 Orgs|CISA Warns BlueHammer Flaw Is Now Exploited in Ransomware Attacks|RustDuck: The Botnet That’s Still Small but Engineering Like It Plans to Grow|GuardFall Flaw Hits 10 of 11 Popular Open-Source AI Agents|XSS.is, The Forum That Ran the Ransomware Supply Chain Is Down. The Market Isn’t|U.S. CISA adds SimpleHelp flaw to its Known Exploited Vulnerabilities catalog|
Advertisement

Ad Placeholder

Full Width × 90

Breaking News

Security Affairs newsletter Round 154 – News of the week

A new round of the weekly SecurityAffairs newsletter arrived! The best news of the week with Security Affairs. Let me inform you that my new book, “Digging in the Deep Web” is online Kindle Edition Paper Copy Once again thank you! ·      Governments rely on Sandvine network gear to deliver spyware and miners ·      Hacking […]

newsletter

A new round of the weekly SecurityAffairs newsletter arrived!

The best news of the week with Security Affairs.

Let me inform you that my new book, “Digging in the Deep Web” is online

Kindle Edition

Paper Copy

Digging The Deep Web

Once again thank you!

·      Governments rely on Sandvine network gear to deliver spyware and miners
·      Hacking Team is back … probably it never stopped its activity. Watch Out!
·      China-Linked APT15 used new backdoors in attack against UK Governments service provider
·      Cryptocurrency mining operations target Windows Server, Redis and Apache Solr servers online
·      Kaspersky – Sofacy ‘s campaigns overlap with other APT groups operations
·      The South America connection and the leadership on ATM Malware development
·      13 Vulnerabilities in Hanwha SmartCams Demonstrate Risks of Feature Complexity
·      A critical flaw in Credential Security Support Provider protocol (CredSSP) affects all versions of Windows
·      MOSQUITO attack allows to exfiltrates data from Air-Gapped computers via leverage connected speakers
·      Samba fixed two critical vulnerabilities, update your version as soon as possible
·      Study confirms the trade of code-signing certificates is a flourishing business
·      13 Critical flaws and exploitable backdoors found in various AMD chips
·      March 2018 SAP Security Patch Day addresses decade-old vulnerabilities
·      OceanLotus APT is very active, it used new Backdoor in recent campaigns
·      Whats new in Microsoft Patch Tuesday updates for March 2018?
·      Experts discovered a new tiny Pos Malware dubbed Pinkkite
·      Qrypter RAT hits 243 organizations worldwide in February
·      The RottenSys botnet is already composed of nearly 5 million Android devices
·      VPN leaks affect 3 Major VPN vendors, only Hotspot Shield promptly fixed it
·      GandCrab ransomware evolves thanks to an AGILE development process
·      Hackers can elevate privileges by hacking into popular text editors
·      Hacking SAP CRM by chaining 2 vulnerabilities in SAP NetWeaver AS Java
·      Mossack Fonseca law firm shuts down operations 2 years after Panama Papers
·      Chinese APT Group TEMP.Periscope targets US Engineering and Maritime Industries
·      Hackers awarded $267,000 at Pwn2Own 2018, was far less than in the past editions
·      Popular Hacker Adrian Lamo, known for the case Chelsea Manning, is dead
·      VMware addresses a DoS flaw in Workstation and Fusion products
[adrotate banner=”9″] [adrotate banner=”12″]

Pierluigi Paganini

(Security Affairs – Newsletter)

[adrotate banner=”5″]

[adrotate banner=”13″]