{"id":169417,"date":"2024-10-06T12:05:37","date_gmt":"2024-10-06T12:05:37","guid":{"rendered":"https:\/\/securityaffairs.com\/?p=169417"},"modified":"2024-10-06T12:05:39","modified_gmt":"2024-10-06T12:05:39","slug":"security-affairs-newsletter-round-492-by-pierluigi-paganini-international-edition","status":"publish","type":"post","link":"https:\/\/securityaffairs.com\/169417\/breaking-news\/security-affairs-newsletter-round-492-by-pierluigi-paganini-international-edition.html","title":{"rendered":"Security Affairs newsletter Round 492 by Pierluigi Paganini \u2013 INTERNATIONAL EDITION"},"content":{"rendered":"
<\/div>\n

A new round of the weekly SecurityAffairs newsletter arrived! Every week the best security articles from Security Affairs are free in your email box.<\/gwmw><\/gwmw><\/gwmw><\/gwmw><\/gwmw><\/gwmw><\/h2>\n\n\n\n

Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press.<\/p>\n\n\n\n

WordPress LiteSpeed Cache plugin flaw could allow site takeover<\/a><\/td><\/tr>
Apple iOS 18.0.1 and iPadOS 18.0.1 fix media session and passwords bugs<\/a>Google removed Kaspersky’s security apps from the Play Store<\/a><\/td><\/tr>
New Perfctl Malware targets Linux servers in cryptomining campaign<\/a><\/td><\/tr>
Microsoft and DOJ seized the attack infrastructure used by Russia-linked Callisto Group<\/a><\/td><\/tr>
Dutch police breached by a state actor<\/a><\/td><\/tr>
Thousands of Adobe Commerce e-stores hacked by exploiting the CosmicSting bug<\/a><\/td><\/tr>
Cloudflare mitigated new record-breaking DDoS attack of 3.8 Tbps<\/a><\/td><\/tr>
Telegram revealed it shared U.S. user data with law enforcement<\/a><\/td><\/tr>
U.S. CISA adds Ivanti Endpoint Manager (EPM) flaw to its Known Exploited Vulnerabilities catalog<\/a><\/td><\/tr>
14 New DrayTek routers’ flaws impacts over 700,000 devices in 168 countries<\/a><\/td><\/tr>
Rhadamanthys information stealer introduces AI-driven capabilities<\/a><\/td><\/tr>
Critical Zimbra Postjournal flaw CVE-2024-45519 actively exploited in the wild. Patch it now!<\/a><\/td><\/tr>
Police arrested four new individuals linked to the LockBit ransomware operation<\/a><\/td><\/tr>
UMC Health System diverted patients following a ransomware attack<\/a><\/td><\/tr>
U.S. CISA adds D-Link DIR-820 Router, DrayTek Multiple Vigor Router, Motion Spell GPAC, SAP Commerce Cloud bugs to its Known Exploited Vulnerabilities catalog<\/a><\/td><\/tr>
News agency AFP hit by cyberattack, client services impacted<\/a><\/td><\/tr>
North Korea-linked APT Kimsuky targeted German defense firm Diehl Defence<\/a><\/td><\/tr>
Patelco Credit Union data breach impacted over 1 million people<\/a><\/td><\/tr>
Community Clinic of Maui discloses a data breach following May Lockbit ransomware attack<\/a><\/td><\/tr>
A British national has been charged for his execution of a hack-to-trade scheme<\/a><\/td><\/tr>
Critical NVIDIA Container Toolkit flaw could allow access to the underlying host<\/a><\/td><\/tr>
Israel army hacked the communication network of the Beirut Airport control tower<\/a><\/strong><\/td><\/tr><\/tbody><\/table><\/figure>\n\n\n\n

International Press \u2013 Newsletter<\/strong><\/p>\n\n\n\n

Cybercrime<\/strong>  <\/p>\n\n\n\n

<\/a>U.K. National Charged with Multimillion-Dollar Hack-to-Trade Fraud Scheme<\/a>  <\/p>\n\n\n\n

Crooked Cops, Stolen Laptops & the Ghost of UGNazi<\/a> <\/p>\n\n\n\n

Investigating Infrastructure and Tactics of Phishing-as-a-Service Platform Sniper Dz<\/a> <\/p>\n\n\n\n

Police arrest four suspects linked to LockBit ransomware gang<\/a><\/p>\n\n\n\n

How the FBI and Mandiant caught a \u2018serial hacker\u2019 who tried to fake his own death<\/a><\/p>\n\n\n\n

FIN7 hosting honeypot domains with malicious AI DeepNude Generators \u2013 New Silent Push research<\/a>     <\/p>\n\n\n\n

Arrests in international operation targeting cybercriminals in West Africa<\/a> <\/p>\n\n\n\n

A Single Cloud Compromise Can Feed an Army of AI Sex Bots<\/a>  <\/p>\n\n\n\n

Pig Butchering Alert: Fraudulent Trading App targeted iOS and Android users<\/a><\/p>\n\n\n\n

Fraudsters imprisoned for scamming Apple out of 6,000 iPhones<\/a><\/p>\n\n\n\n

Malware<\/strong><\/p>\n\n\n\n

Rhadamanthys Stealer Adds Innovative AI Feature in Version 0.7.0<\/a><\/p>\n\n\n\n

Threat Actors leverage Docker Swarm and Kubernetes to mine cryptocurrency at scale<\/a>  <\/p>\n\n\n\n

Crypto-Stealing Code Lurking in Python Package Dependencies<\/a>\u00a0\u00a0\u00a0\u00a0\u00a0<\/p>\n\n\n\n

Fake browser updates spread updated WarmCookie malware<\/a><\/gwmw><\/p>\n\n\n\n

Hacking<\/strong><\/p>\n\n\n\n

Demystifying Physical Memory Primitive Exploitation on Windows<\/a>  <\/p>\n\n\n\n

Trojan cars: Why the US fears Chinese cyberattacks on electric vehicles<\/a><\/p>\n\n\n\n

Wiz Research Finds Critical NVIDIA AI Vulnerability Affecting Containers Using NVIDIA GPUs, Including Over 35% of Cloud Environments<\/a>      <\/p>\n\n\n\n

Zimbra – Remote Command Execution (CVE-2024-45519)<\/a>   <\/a><\/p>\n\n\n\n

Critical Zimbra Vulnerability Exploited One Day After PoC Release<\/a><\/p>\n\n\n\n

Zero-Day Breach at Rackspace Sparks Vendor Blame Game<\/a> <\/p>\n\n\n\n

Thousands of Adobe Commerce stores hacked in competing CosmicSting campaigns<\/a><\/p>\n\n\n\n

Unauthenticated Stored XSS Vulnerability in LiteSpeed Cache Plugin Affecting 6+ Million Sites<\/a>   <\/p>\n\n\n\n

Intelligence and Information Warfare<\/strong> <\/p>\n\n\n\n

Israel reportedly hacks Beirut airport control tower, warns Iranian plane not to land<\/a>  <\/p>\n\n\n\n

Army to close active information operations command as it moves those ops to smaller specialized units<\/a>  <\/p>\n\n\n\n

FSB Center for Special Technologies (TsST): Crafting Russia\u2019s Cyber Weapons for Information Warfare<\/a>  <\/p>\n\n\n\n

North Korean hackers targeted arms company Diehl<\/a>  <\/p>\n\n\n\n

The Silent Battlefield Above: Unraveling Russia’s Cyber Operations Against Military Satellites and Space Assets<\/a>  <\/p>\n\n\n\n

Chinese Military Exploring Wasy to Win in Intelligent Warfare Amidst Change & Constancy<\/a><\/p>\n\n\n\n

North Korean Hackers Using New VeilShell Backdoor in Stealthy Cyber Attacks<\/a><\/p>\n\n\n\n

Dutch government blames a \u2018state actor\u2019 for hacking a police network<\/a><\/p>\n\n\n\n

Justice Department Disrupts Russian Intelligence Spear-Phishing Efforts<\/a>  <\/p>\n\n\n\n

Deep Dive into North Korea\u2019s Ongoing Campaign Against Southeast Asia<\/a><\/p>\n\n\n\n

Separating the bee from the panda: CeranaKeeper making a beeline for Thailand<\/a>  <\/p>\n\n\n\n

Cybersecurity<\/strong><\/p>\n\n\n\n

Endpoint Prevention and Response (EPR) Test findings<\/a><\/p>\n\n\n\n

Critical Flaws in Tank Gauge Systems Expose Gas Stations to Remote Attacks<\/a><\/p>\n\n\n\n

Media giant AFP hit by cyberattack impacting news delivery services<\/a><\/gwmw><\/p>\n\n\n\n

SecurityCracking the Cloud: The Persistent Threat of Credential-Based Attacks<\/a>  <\/p>\n\n\n\n

Dray:Break<\/a><\/p>\n\n\n\n

Fake memories, persistent threats: When AI remembers what isn\u2019t true<\/a>  <\/p>\n\n\n\n

Telegram Confirms it Gave U.S. User Data to the Cops<\/a> <\/p>\n\n\n\n

First Ai-iD Kit toolkit built to empower and educate everyone about deepfakes<\/a><\/p>\n\n\n\n

How Cloudflare auto-mitigated world record 3.8 Tbps DDoS attack<\/a>  <\/p>\n\n\n\n

Protecting Democratic Institutions from Cyber Threats<\/a><\/p>\n\n\n\n

Finding a needle in a haystack: Machine learning at the forefront of threat hunting research<\/a>      <\/p>\n\n\n\n

German-French recommendations for the use of AI programming assistants<\/a>  <\/p>\n\n\n\n

Pixel’s Proactive Approach to Security: Addressing Vulnerabilities in Cellular Modems<\/a><\/p>\n\n\n\n

Subscribe to the newsletter for free here:<\/strong><\/gwmw><\/p>\n\n\n\n

https:\/\/www.linkedin.com\/build-relation\/newsletter-follow?entityUrn=7093942975545667584<\/strong><\/a><\/gwmw><\/gwmw><\/gwmw><\/p>\n\n\n\n

Follow me on Twitter: @securityaffairs<\/strong><\/a> and Facebook<\/strong><\/a> and Mastodon<\/a><\/p>\n\n\n\n

Pierluigi\u00a0Paganini<\/strong><\/a><\/p>\n\n\n\n

(<\/strong>SecurityAffairs<\/strong><\/a>\u00a0\u2013hacking,\u00a0newsletter)<\/strong><\/p>\n\n\n\n

<\/gwmw><\/gwmw><\/gwmw><\/p>\n","protected":false},"excerpt":{"rendered":"

A new round of the weekly SecurityAffairs newsletter arrived! Every week the best security articles from Security Affairs are free in your email box. Enjoy a new round of the weekly SecurityAffairs newsletter, including the international press. WordPress LiteSpeed Cache plugin flaw could allow site takeover Apple iOS 18.0.1 and iPadOS 18.0.1 fix media session […]<\/p>\n","protected":false},"author":1,"featured_media":35167,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_jetpack_memberships_contains_paid_content":false,"footnotes":""},"categories":[3323],"tags":[88,182,4112,9508,9506,10918,30,687,841,1533],"class_list":["post-169417","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-breaking-news","tag-cybercrime","tag-data-breach","tag-hacking","tag-hacking-news","tag-information-security-news","tag-it-information-security","tag-malware-2","tag-pierluigi-paganini","tag-security-affairs","tag-security-news"],"yoast_head":"\n杭州江阴科强工业胶带有限公司