Security Affairs newsletter Round 465 by Pierluigi Paganini – INTERNATIONAL EDITION

Pierluigi Paganini March 31, 2024

A new round of the weekly SecurityAffairs newsletter arrived! Every week the best security articles from Security Affairs are free for you in your email box.

Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press.

Expert found a backdoor in XZ tools used many Linux distributions
German BSI warns of 17,000 unpatched Microsoft Exchange servers
Cisco warns of password-spraying attacks targeting Secure Firewall devices
American fast-fashion firm Hot Topic hit by credential stuffing attacks
Cisco addressed high-severity flaws in IOS and IOS XE software
Google: China dominates government exploitation of zero-day vulnerabilities in 2023
Google addressed 2 Chrome zero-days demonstrated at Pwn2Own 2024
INC Ransom stole 3TB of data from the National Health Service (NHS) of Scotland
CISA adds Microsoft SharePoint bug disclosed at Pwn2Own to its Known Exploited Vulnerabilities catalog
The DDR Advantage: Real-Time Data Defense
Finnish police linked APT31 to the 2021 parliament attack
TheMoon bot infected 40,000 devices in January and FebruaryUK, New Zealand against China-linked cyber operations
US Treasury Dep announced sanctions against members of China-linked APT31
CISA adds FortiClient EMS, Ivanti EPM CSA, Nice Linear eMerge E3-Series bugs to its Known Exploited Vulnerabilities catalog
Iran-Linked APT TA450 embeds malicious links in PDF attachments
StrelaStealer targeted over 100 organizations across the EU and US
GoFetch side-channel attack against Apple systems allows secret keys extraction
Cybercriminals Accelerate Online Scams During Ramadan and Eid Fitr

Cybercrime

  

  

My mom started messaging me… two weeks AFTER her death: Families left traumatized by new ‘ghost hacking’ scam that targets dead people  

Malware

 

  

  

 

Hacking  

  

  

  

Thousands of Microsoft Exchange servers vulnerable to critical vulnerabilities  

 

Intelligence and Information Warfare 

UK calls out China state-affiliated actors for malicious cyber targeting of UK democratic institutions and parliamentarians     

Investigation into hacking of Parliament’s information systems has been ongoing  

  

Cybersecurity          

  

Artificial intelligence [What Think Tanks are thinking]  

Skills shortage and unpatched systems soar to high-ranking 2030 cyber threats

  

  

Follow me on Twitter:  and  and Mastodon

(SecurityAffairs – hacking, newsletter)



you might also like

leave a comment