{"id":165703,"date":"2024-07-14T16:39:25","date_gmt":"2024-07-14T16:39:25","guid":{"rendered":"https:\/\/securityaffairs.com\/?p=165703"},"modified":"2024-07-14T16:39:27","modified_gmt":"2024-07-14T16:39:27","slug":"security-affairs-newsletter-round-480-by-pierluigi-paganini-international-edition","status":"publish","type":"post","link":"https:\/\/securityaffairs.com\/165703\/breaking-news\/security-affairs-newsletter-round-480-by-pierluigi-paganini-international-edition.html","title":{"rendered":"Security Affairs newsletter Round 480 by Pierluigi Paganini \u2013 INTERNATIONAL EDITION<\/gwmw>"},"content":{"rendered":"
<\/div>\n

A new round of the weekly SecurityAffairs newsletter arrived! Every week the best security articles from Security Affairs are free in your email box.<\/h2>\n\n\n\n

Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press.<\/p>\n\n\n\n

Vyacheslav Igorevich Penchukov was sentenced to prison for his role in Zeus and IcedID operations<\/a><\/td><\/tr>
Rite Aid disclosed data breach following RansomHub ransomware attack<\/a><\/td><\/tr>
New AT&T data breach exposed call logs of almost all customers<\/a><\/td><\/tr>
Critical flaw in Exim MTA could allow to deliver malware to users’ inboxes<\/a><\/td><\/tr>
Palo Alto Networks fixed a critical bug in the Expedition tool<\/a><\/td><\/tr>
Smishing Triad Is Targeting India To Steal Personal and Payment Data at Scale<\/a><\/td><\/tr>
October ransomware attack on Dallas County impacted over 200,000 people<\/a><\/td><\/tr>
CrystalRay operations have scaled 10x to over 1,500 victims<\/a><\/td><\/tr>
Multiple threat actors exploit PHP flaw CVE-2024-4577 to deliver malware<\/a><\/td><\/tr>
AI-Powered Russia’s bot farm operates on X, US and its allies warn<\/a><\/td><\/tr>
VMware fixed critical SQL-Injection in Aria Automation product<\/a><\/td><\/tr>
Citrix fixed critical and high-severity bugs in NetScaler product<\/a><\/td><\/tr>
Multiple cybersecurity agencies warn of China-linked APT40 ‘s capabilities<\/a><\/td><\/tr>
A new flaw in OpenSSH can lead to remote code execution<\/a><\/td><\/tr>
Microsoft Patch Tuesday for July 2024 fixed 2 actively exploited zero-days<\/a><\/td><\/tr>
U.S. CISA adds Microsoft Windows and Rejetto HTTP File Server bugs to its Known Exploited Vulnerabilities catalog<\/a><\/td><\/tr>
Evolve Bank data breach impacted over 7.6 million individuals<\/a><\/td><\/tr>
More than 31 million customer email addresses exposed following Neiman Marcus data breach<\/a><\/td><\/tr>
Avast released a decryptor for DoNex Ransomware and its predecessors<\/a><\/td><\/tr>
RockYou2024 compilation containing 10 billion passwords was leaked online<\/a><\/td><\/tr>
Critical Ghostscript flaw exploited in the wild. Patch it now!<\/a><\/td><\/tr>
Apple removed 25 VPN apps from the App Store in Russia following Moscow’s requests<\/a><\/td><\/tr>
CISA adds Cisco NX-OS Command Injection bug to its Known Exploited Vulnerabilities catalog<\/a><\/td><\/tr>
Apache fixed a source code disclosure flaw in Apache HTTP Server<\/a><\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n

International Press \u2013 Newsletter<\/strong><\/p>\n\n\n\n

Cybercrime<\/strong>  <\/p>\n\n\n\n

Home Routing is limiting law enforcement evidence gathering, warns Europol<\/strong><\/a>    <\/p>\n\n\n\n

Huione Guarantee: The multi-billion dollar marketplace used by online scammers<\/strong><\/a>   <\/p>\n\n\n\n

CRYSTALRAY: Inside the Operations of a Rising Threat Actor Exploiting OSS Tools<\/strong><\/a>  <\/p>\n\n\n\n

Smoked Out: Uncovering the Life & Personality of a SmokeLoader Actor Targeted by Operation Endgame<\/strong><\/a><\/p>\n\n\n\n

Smishing Triad Is Targeting India To Steal Personal And Payment Data At Scale<\/strong><\/a>  <\/p>\n\n\n\n

Crooks Steal Phone, SMS Records for Nearly All AT&T Customers<\/strong><\/a>           <\/p>\n\n\n\n

Rite Aid breached (again) according to new ransomware claim<\/strong><\/a><\/p>\n\n\n\n

Hacker \u2018Tank\u2019 gets prison sentence for connections to Zeus and IcedID malware<\/strong><\/a>        <\/p>\n\n\n\n

 <\/h4>\n\n\n\n

Malware<\/strong><\/p>\n\n\n\n

New Android Spyware Steals Data from Gamers and TikTok Users<\/a>\u00a0\u00a0<\/gwmw><\/p>\n\n\n\n

Mekotio Banking Trojan Threatens Financial Systems in Latin America<\/a>\u00a0\u00a0<\/p>\n\n\n\n

Turning Jenkins Into a Cryptomining Machine From an Attacker’s Perspective<\/a><\/p>\n\n\n\n

Patch or Peril: A Veeam vulnerability incident<\/a><\/p>\n\n\n\n

New Malware Campaign Targeting Spanish Language Victims<\/a><\/p>\n\n\n\n

DarkGate: Dancing the Samba With Alluring Excel Files<\/a>\u00a0\u00a0\u00a0<\/gwmw><\/p>\n\n\n\n

Hacking<\/strong><\/p>\n\n\n\n

Attackers Exploiting Remote Code Execution Vulnerability in Ghostscript<\/a>  <\/p>\n\n\n\n

RockYou2024: 10 billion passwords leaked in the largest compilation of all time<\/a><\/p>\n\n\n\n

New OpenSSH Vulnerability Discovered: Potential Remote Code Execution Risk<\/a><\/p>\n\n\n\n

Blast-RADIUS Attack in More Detail<\/a> <\/p>\n\n\n\n

Introducing a New Vulnerability Class: False File Immutability<\/a>     <\/p>\n\n\n\n

Vulnerability in Exim MTA Could Allow Malicious Email Attachments Past Filters<\/a>  <\/p>\n\n\n\n

AT&T says criminals stole phone records of \u2018nearly all\u2019 customers in new data breach<\/a>  <\/p>\n\n\n\n

Intelligence and Information Warfare<\/strong> <\/p>\n\n\n\n

Signals intelligence has become a cyber-activity<\/a>  <\/p>\n\n\n\n

Russian-linked cybercampaigns put a bull\u2019s-eye on France. Their focus? The Olympics and elections<\/a><\/p>\n\n\n\n

The Invisible War: How OSINT Shapes the Battle for Ukraine<\/a>      <\/p>\n\n\n\n

Emboldened and Evolving: A Snapshot of Cyber Threats Facing NATO<\/a>  <\/p>\n\n\n\n

People\u2019s Republic of China (PRC) Ministry of State Security APT40 Tradecraft in Action<\/a>  <\/p>\n\n\n\n

State-Sponsored Russian Media Leverages Meliorator Software for Foreign Malign Influence Activity<\/a><\/p>\n\n\n\n

Comprehensive Threat Intelligence Report: APT Groups Targeting Universities in the EU and US<\/a>    <\/p>\n\n\n\n

Two Australian citizens charged with an espionage-related offence<\/a>  <\/p>\n\n\n\n

Cybersecurity <\/strong> <\/p>\n\n\n\n

VPN service apps Proton, Nord, Red Shield and Le VPN removed from Russian AppStore<\/a>  <\/p>\n\n\n\n

Chinese self-driving cars have quietly traveled 1.8 million miles on U.S. roads, collecting detailed data with cameras and lasers<\/a> <\/p>\n\n\n\n

Shopify denies it was hacked, links stolen data to third-party app<\/strong><\/a><\/p>\n\n\n\n

The July 2024 Security Update Review<\/a>  <\/p>\n\n\n\n

Can AI be Meaningfully Regulated, or is Regulation a Deceitful Fudge?<\/a> \u00a0\u00a0<\/gwmw><\/p>\n\n\n\n

Follow me on Twitter: @securityaffairs<\/strong><\/a> and Facebook<\/strong><\/a> and Mastodon<\/a><\/gwmw><\/p>\n\n\n\n

Pierluigi\u00a0Paganini<\/strong><\/a><\/gwmw><\/gwmw><\/p>\n\n\n\n

(<\/strong>SecurityAffairs<\/strong><\/a>\u00a0\u2013<\/strong>\u00a0hacking,\u00a0newsletter)<\/strong><\/gwmw><\/gwmw><\/p>\n","protected":false},"excerpt":{"rendered":"

A new round of the weekly SecurityAffairs newsletter arrived! Every week the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press. Vyacheslav Igorevich Penchukov was sentenced to prison for his role in Zeus and IcedID operations Rite Aid disclosed […]<\/p>\n","protected":false},"author":1,"featured_media":35167,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[3323,55],"tags":[88,182,4112,9508,9506,10918,30,3529,687,841,1533],"class_list":["post-165703","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-breaking-news","category-security","tag-cybercrime","tag-data-breach","tag-hacking","tag-hacking-news","tag-information-security-news","tag-it-information-security","tag-malware-2","tag-newsletter","tag-pierluigi-paganini","tag-security-affairs","tag-security-news"],"yoast_head":"\n杭州江阴科强工业胶带有限公司