Security Affairs
Pegasus Used Against MEP Investigating Pegasus, Citizen Lab Finds|JADEPUFFER: First End-to-End AI-Driven Ransomware Operation|The Anatomy of a Shadow AI Supply-Chain Breach: Lessons from the 2026 Vercel Incident|Law enforcememt operation disrupted Malicious Residential Proxy Networks NetNut|Government and Healthcare Are the Weakest Links in Global Email Security|Europe Confirms Record €4.1B Penalty Against Google for Android Practices|U.S. CISA adds a Microsoft SharePoint Server flaw to its Known Exploited Vulnerabilities catalog|430,000 FortiGate Devices Exposed in FortiBleed Ransomware Link|Adobe fixed multiple maximum-severity flaws in ColdFusion and Campaign Classic|Alleged Scattered Spider Hacker Extradited to U.S. to Face Cybercrime Charges|Oracle E-Business Suite Flaw Under Active Attack, 950 Systems Exposed|Azure CLI Targeted in LSHIY Password Spray Campaign Across 64 Orgs|Pegasus Used Against MEP Investigating Pegasus, Citizen Lab Finds|JADEPUFFER: First End-to-End AI-Driven Ransomware Operation|The Anatomy of a Shadow AI Supply-Chain Breach: Lessons from the 2026 Vercel Incident|Law enforcememt operation disrupted Malicious Residential Proxy Networks NetNut|Government and Healthcare Are the Weakest Links in Global Email Security|Europe Confirms Record €4.1B Penalty Against Google for Android Practices|U.S. CISA adds a Microsoft SharePoint Server flaw to its Known Exploited Vulnerabilities catalog|430,000 FortiGate Devices Exposed in FortiBleed Ransomware Link|Adobe fixed multiple maximum-severity flaws in ColdFusion and Campaign Classic|Alleged Scattered Spider Hacker Extradited to U.S. to Face Cybercrime Charges|Oracle E-Business Suite Flaw Under Active Attack, 950 Systems Exposed|Azure CLI Targeted in LSHIY Password Spray Campaign Across 64 Orgs|
Advertisement

Ad Placeholder

Full Width × 90

Breaking News

Security Affairs newsletter Round 344

A new round of the weekly Security Affairs newsletter arrived! Every week the best security articles from Security Affairs free for you in your email box. If you want to also receive for free the newsletter with the international press subscribe here. Western Digital SanDisk SecureAccess flaws allow brute force and dictionary attacks New ‘Karakurt’ cybercrime […]

newsletter

A new round of the weekly Security Affairs newsletter arrived! Every week the best security articles from Security Affairs free for you in your email box.

If you want to also receive for free the newsletter with the international press subscribe here.

Western Digital SanDisk SecureAccess flaws allow brute force and dictionary attacks
New ‘Karakurt’ cybercrime gang focuses on data theft and extortion
Cybereason released Logout4Shell, a vaccine for Log4Shell Apache Log4j RCE
Volvo Cars suffers a data breach. Is it a ransomware attack?
Australian ACSC warns of Conti ransomware attacks against local orgs
A zero-day exploit for Log4j Java library could have a tsunami impact on IT giants
1.6 million WordPress sites targeted in the last couple of days
Dark Mirai botnet spreads targeting RCE on TP-Link routers
Mozilla fixed high-severity bugs in Firefox and Thunderbird mail client
Crooks injects e-skimmers in random WordPress plugins of e-stores
Tens of malicious NPM packages caught hijacking Discord servers
Moobot botnet spreads by exploiting CVE-2021-36260 flaw in Hikvision products
Microsoft Vancouver leaking website credentials via overlooked DS_STORE file
SonicWall strongly urges customers to apply patches to SMA 100 devices
CS Energy foiled a ransomware attack
Emotet directly drops Cobalt Strike beacons without intermediate Trojans
Google disrupts the Glupteba botnet
Bitcoin Miner [oom_reaper] targets QNAP NAS devices
Microsoft seized 42 domains used by the China-linked APT15 cyberespionage group
Nobelium continues to target organizations worldwide with custom malware
Nobelium APT targets French orgs, French ANSSI agency warns
330 SPAR stores close or switch to cash-only payments after a cyberattack
DMEA Colorado electric utility hit by a disruptive cyberattack
Threat actors stole more than $150 million worth of cryptocurrency tokens from BitMart platform
Hackers are sending receipts with anti-work messages to businesses’ printers
Magnat malvertising campaigns spreads malicious Chrome extensions, backdoors and info stealers
Hundreds of vulnerabilities in common Wi-Fi routers affect millions of users
German BSI agency warns of ransomware attacks over Christmas holidays

If you want to also receive for free the newsletter with the international press subscribe here.

Follow me on Twitter: @securityaffairs and Facebook

[adrotate banner=”9″][adrotate banner=”12″]

Pierluigi Paganini

(SecurityAffairs – hacking, newsletter)

[adrotate banner=”5″]

[adrotate banner=”13″]