Security Affairs
U.S. CISA adds Red Hat, Linux Kernel, Ajax.NET Professional, Microsoft SQL Server, and Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog|Cyberattack on UK Airport Operator MAG Exposes Data of 8.7 Million Customers Across Three Airports|Dark Caracal Deploys New Go Malware With Ethereum-Based C2 Fallback|Australian Police Charge Two Over TeamPCP Credential Theft|Meta to Pay Up to $18B Over Teen Social Media Use|CISA Warns Water Utilities: Find Your Exposed PLCs Before Attackers Do|OpenAI banned Russian ChatGPT accounts backing covert influence operation|CISA Red Team Fully Compromised Two Critical Infrastructure Orgs|FBI Seizes China-Linked Hacking Platforms QScan and QTRouter Used Against Critical Infrastructure|U.S. CISA adds Gitea flaw to its Known Exploited Vulnerabilities catalog|88 ID Verification Breaches Show the Cost of Collecting Identity Data|WhatsApp Adds Stronger Security as Passkeys Hit 1 Billion|U.S. CISA adds Red Hat, Linux Kernel, Ajax.NET Professional, Microsoft SQL Server, and Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog|Cyberattack on UK Airport Operator MAG Exposes Data of 8.7 Million Customers Across Three Airports|Dark Caracal Deploys New Go Malware With Ethereum-Based C2 Fallback|Australian Police Charge Two Over TeamPCP Credential Theft|Meta to Pay Up to $18B Over Teen Social Media Use|CISA Warns Water Utilities: Find Your Exposed PLCs Before Attackers Do|OpenAI banned Russian ChatGPT accounts backing covert influence operation|CISA Red Team Fully Compromised Two Critical Infrastructure Orgs|FBI Seizes China-Linked Hacking Platforms QScan and QTRouter Used Against Critical Infrastructure|U.S. CISA adds Gitea flaw to its Known Exploited Vulnerabilities catalog|88 ID Verification Breaches Show the Cost of Collecting Identity Data|WhatsApp Adds Stronger Security as Passkeys Hit 1 Billion|
Advertisement

Ad Placeholder

Full Width × 90

Breaking News

Security Affairs newsletter Round 191 – News of the week

A new round of the weekly SecurityAffairs newsletter arrived! The best news of the week with Security Affairs. Let me inform you that my new book, “Digging in the Deep Web” is online with a special deal 20% discount Kindle Edition Paper Copy Once again thank you! ·      Very trivial Spotify phishing campaign uncovered by […]

newsletter

A new round of the weekly SecurityAffairs newsletter arrived!

The best news of the week with Security Affairs.

Let me inform you that my new book, “Digging in the Deep Web” is online with a special deal

20% discount

Kindle Edition

Paper Copy

Digging The Deep Web

Once again thank you!

·      Very trivial Spotify phishing campaign uncovered by experts
·      Experts found a new powerful modular Linux cryptominer
·      Hacker stole $1m from Silicon Valley executive via SIM swap
·      Linux Kernel is affected by two DoS vulnerabilities still unpatched
·      Ransomware attack disrupted emergency rooms at Ohio Hospital System
·      When Do You Need to Report a Data Breach?
·      Experts demonstrate how to exfiltrate data using smart bulbs
·      Malicious developer distributed tainted version of Event-Stream NodeJS Module to steal Bitcoins
·      The SLoad Powershell malspam is expanding to Italy
·      UK Parliament seized confidential Facebook docs to investigate its data protection policies.
·      British MP: Facebook was aware about Russian activity at least since 2014
·      FBI along with security firms dismantled 3ve Ad Fraud Operation
·      Initial patch for Webex Meetings flaw WebExec was incomplete. Cisco fixed it again
·      Uber fined nearly $1.2 Million by Dutch and UK Data Protection Authorities over data breach
·      AccuDoc Data Breach impacted 2.6 Million Atrium Health patients
·      Dell data breach – Dell forces password reset after the incident
·      Dissecting the Mindscrew-Powershell Obfuscation
·      Knock-Knock Docker!! Will you let me in? Open API Abuse in Docker Containers
·      U.S. DoJ charges Iranian duo over SamSam Ransomware activity
·      327 million Marriott guests affected in Starwood Data Breach
·      New PowerShell-based Backdoor points to MuddyWater
·      ETERNALSILENCE – 270K+ devices vulnerable to UPnProxy Botnet build using NSA hacking tools
·      MITRE evaluates Enterprise security products using the ATT&CK Framework
[adrotate banner=”9″] [adrotate banner=”12″]

Pierluigi Paganini

(Security Affairs – Newsletter)

[adrotate banner=”5″]

[adrotate banner=”13″]