Updates
- Two Patch Tuesday flaws you should fix right now
- Microsoft’s March 2023 Patch Tuesday Addresses 76 CVEs (CVE-2023-23397)
- Adobe fixed ColdFusion flaw listed as under active exploit
- iMicrosoft Updates - SANS Internet Storm Center
- SAP releases security updates fixing five critical vulnerabilities
Incidents
- Cancer patient sues hospital over stolen naked photos
- Hitachi Energy confirms data breach after Clop GoAnywhere attacks
- Amazon-owned Ring reportedly suffers ransomware attack
- Hospital in Brussels latest victim in spate of European healthcare cyberattacks
- Blackbaud penalized $3M for not disclosing the full scope of ransomware attack
- LockBit claims it stole SpaceX schematics, may leak them
Threats
- What is Reverse Tabnabbing and What Can You Do to Stop It?
- New ‘Trigona’ Ransomware Targets US, Europe, Australia
- Eufy security cam 'stored unique ID' of everyone filmed
- Google sounds alarm on Samsung modem bugs in Android devices
- Microsoft Azure Warns on Killnet's Growing DDoS Onslaught Against Healthcare
- Winter Vivern APT hackers use fake antivirus scans to install malware
- Microsoft Warns of Large-Scale Use of Phishing Kits to Send Millions of Emails Daily
- YoroTrooper cyberspies target CIS energy orgs, EU embassies
- North Korean hackers target security researchers with a new backdoor
- Hackers Lure Cybersecurity Researchers With Fake LinkedIn Recruiter Profiles
- Warning: AI-generated YouTube Video Tutorials Spreading Infostealer Malware
- Fortinet: New FortiOS bug used as zero-day to attack govt networks
Cyber Crime
- Feds arrested Pompompurin, the alleged owner of BreachForums
- RAT developer arrested for infecting 10,000 PCs with malware
- Alleged BreachForums owner ‘Pompompurin’ arrested on cybercrime charges
- Kimsuky group appears to be exploiting OneNote like the cybercrime group
- Authorities Shut Down ChipMixer Platform Tied to Crypto Laundering Scheme
- Emotet attempts to sell access after infiltrating high-value networks
Malware
- HinataBot, a new Go-Based DDoS botnet in the threat landscape
- Emotet malware now distributed in Microsoft OneNote files to evade defenses
- Kaspersky released a new decryptor for Conti-based ransomware
- Emotet Returns, Now Adopts Binary Padding for Evasion
- Golang-Based Botnet GoBruteforcer targets web servers