Security Affairs
PaperCut Zero-Day Under Active Attack: Emergency Patch Released|U.S. CISA adds Red Hat, Linux Kernel, Ajax.NET Professional, Microsoft SQL Server, and Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog|Cyberattack on UK Airport Operator MAG Exposes Data of 8.7 Million Customers Across Three Airports|Dark Caracal Deploys New Go Malware With Ethereum-Based C2 Fallback|Australian Police Charge Two Over TeamPCP Credential Theft|Meta to Pay Up to $18B Over Teen Social Media Use|CISA Warns Water Utilities: Find Your Exposed PLCs Before Attackers Do|OpenAI banned Russian ChatGPT accounts backing covert influence operation|CISA Red Team Fully Compromised Two Critical Infrastructure Orgs|FBI Seizes China-Linked Hacking Platforms QScan and QTRouter Used Against Critical Infrastructure|U.S. CISA adds Gitea flaw to its Known Exploited Vulnerabilities catalog|88 ID Verification Breaches Show the Cost of Collecting Identity Data|PaperCut Zero-Day Under Active Attack: Emergency Patch Released|U.S. CISA adds Red Hat, Linux Kernel, Ajax.NET Professional, Microsoft SQL Server, and Citrix NetScaler flaws to its Known Exploited Vulnerabilities catalog|Cyberattack on UK Airport Operator MAG Exposes Data of 8.7 Million Customers Across Three Airports|Dark Caracal Deploys New Go Malware With Ethereum-Based C2 Fallback|Australian Police Charge Two Over TeamPCP Credential Theft|Meta to Pay Up to $18B Over Teen Social Media Use|CISA Warns Water Utilities: Find Your Exposed PLCs Before Attackers Do|OpenAI banned Russian ChatGPT accounts backing covert influence operation|CISA Red Team Fully Compromised Two Critical Infrastructure Orgs|FBI Seizes China-Linked Hacking Platforms QScan and QTRouter Used Against Critical Infrastructure|U.S. CISA adds Gitea flaw to its Known Exploited Vulnerabilities catalog|88 ID Verification Breaches Show the Cost of Collecting Identity Data|
Advertisement

Ad Placeholder

Full Width × 90

Breaking News

Security Affairs newsletter Round 332

A new round of the weekly Security Affairs newsletter arrived! Every week the best security articles from Security Affairs free for you in your email box. The Biden administration plans to target exchanges supporting ransomware operations with sanctions Threat actor has been targeting the aviation industry since at least 2018 Expert discloses details and PoC […]

newsletter

A new round of the weekly Security Affairs newsletter arrived! Every week the best security articles from Security Affairs free for you in your email box.

The Biden administration plans to target exchanges supporting ransomware operations with sanctions
Threat actor has been targeting the aviation industry since at least 2018
Expert discloses details and PoC code for Netgear Seventh Inferno bug
CVE-2021-26333 AMD Chipset Driver flaw allows obtaining sensitive data
Experts warn that Mirai Botnet starts exploiting OMIGOD flaw
German Election body hit by a cyber attack
New Go malware Capoae uses multiple flaws to target WordPress installs, Linux systems
A new Win malware uses Windows Subsystem for Linux (WSL) to evade detection
FBI, CISA, and CGCYBER warn of nation-state actors exploiting CVE-2021-40539 Zoho bug
Microsoft warns of attacks exploiting recently patched Windows MSHTML CVE-2021-40444 bug
Bitdefender released free REvil ransomware decryptor that works for past victims
Anonymous hacked the controversial, far-right web host Epik
OMIGOD vulnerabilities expose thousands of Azure users to hack
Microsoft announces passwordless authentication for consumer accounts
Three formers NSA employees fined for providing hacker-for-hire services to UAE firm
US CISA appointed Kiersten Todt as new chief of staff
Microsoft Patch Tuesday fixes CVE-2021-40444 MSHTML zero-day
Mēris Bot infects MikroTik routers compromised in 2018
Millions of HP OMEN gaming PCs impacted by CVE-2021-3437 driver flaw
Google addresses a new Chrome zero-day flaw actively exploited in the wild
Vermilion Strike, a Linux implementation of Cobalt Strike Beacon used in attacks
Popular NPM package Pac-Resolver affected by a critical flaw
Apple fixes actively exploited FORCEDENTRY zero-day flaws
Facebook announces WhatsApp end-to-end encrypted (E2EE) backups
New Spook.Js attack allows to bypass Google Chrome Site Isolation protections
BlackMatter ransomware gang hit Technology giant Olympus
The new maxtrilha trojan is being disseminated and targeting several banks
Department of Justice and Constitutional Development of South Africa hit by a ransomware attack
Google implements new Private Compute Services for Android
Revil ransomware operators are targeting new victims

If you want to also receive for free the international press subscribe here.

Follow me on Twitter: @securityaffairs and Facebook

[adrotate banner=”9″][adrotate banner=”12″]

Pierluigi Paganini

(SecurityAffairs – hacking, newsletter)

[adrotate banner=”5″]

Follow me on Twitter: @securityaffairs and Facebook

[adrotate banner=”9″][adrotate banner=”12″]

Pierluigi Paganini

(SecurityAffairs – hacking, newsletter)

[adrotate banner=”5″]

[adrotate banner=”13″]