Security Affairs newsletter Round 475 by Pierluigi Paganini – INTERNATIONAL EDITION

Pierluigi Paganini June 09, 2024

A new round of the weekly SecurityAffairs newsletter arrived! Every week the best security articles from Security Affairs are free for you in your email box.

Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press.

New York Times source code compromised via exposed GitHub token
SolarWinds fixed multiple flaws in Serv-U and SolarWinds Platform
Pandabuy was extorted twice by the same threat actor
UAC-0020 threat actor used the SPECTR Malware to target Ukraine’s defense forces
Chinese threat actor exploits old ThinkPHP flaws since October 2023
A new Linux version of TargetCompany ransomware targets VMware ESXi environments
FBI obtained 7,000 LockBit decryption keys, victims should contact the feds to get support
RansomHub operation is a rebranded version of the Knight RaaS
Malware can steal data collected by the Windows Recall tool, experts warn
Cisco addressed Webex flaws used to compromise German government meetings
Zyxel addressed three RCEs in end-of-life NAS devices
A ransomware attack on Synnovis impacted several London hospitals
RansomHub gang claims the hack of the telecommunications giant Frontier Communications
Cybercriminals attack banking customers in EU with V3B phishing kit – PhotoTAN and SmartID supported.
Experts released PoC exploit code for a critical bug in Progress Telerik Report Servers
Multiple flaws in Cox modems could have impacted millions of devices
CISA adds Oracle WebLogic Server flaw to its Known Exploited Vulnerabilities catalog
Spanish police shut down illegal TV streaming network
APT28 targets key networks in Europe with HeadLace malware
Experts found information of European politicians on the dark web
FlyingYeti targets Ukraine using WinRAR exploit to deliver COOKBOX Malware

International Press – Newsletter

Cybercrime  

      

The National Police dismantles a network that obtained more than 5,300,000 euros through the illicit distribution of audiovisual content        

  

Malware

   

  

UAC-0020 (Vermin) attacks the Defense Forces of Ukraine using the SPECTR WPS in tandem with a legitimate SyncThing (“SickSync” campaign)   

Hacking 

 

  

Molding Lies Into Reality || Exploiting CVE-2024-4358  

    

      

  

Intelligence and Information Warfare 

  

      

  

  

  

Cybersecurity  

  

Google Leak Reveals Thousands of Privacy Incidents    

  

        

  

Follow me on Twitter:  and  and Mastodon

(SecurityAffairs – hacking, newsletter)



you might also like

leave a comment