Security Affairs newsletter Round 381

A new round of the weekly SecurityAffairs newsletter arrived! Every week the best security articles from Security Affairs free for you in your email box.

If you want to also receive for free the newsletter with the international press subscribe here.

Twilio hackers also breached the food delivery firm DoorDashUnprecedented cyber attack hit State Infrastructure of MontenegroThreat actor abuses Genshin Impact Anti-Cheat driver to disable antivirusCritical flaw impacts Atlassian Bitbucket Server and Data CenterIran-linked Mercury APT exploited Log4Shell in SysAid Apps for initial accessGoldDragon campaign: North-Korea linked Kimsuky APT adopts victim verification technique0ktapus phishing campaign: Twilio hackers targeted other 136 organizationsLastPass data breach: threat actors stole a portion of source codeNobelium APT uses new Post-Compromise malware MagicWebGAIROSCOPE attack allows to exfiltrate data from Air-Gapped systems via ultrasonic tonesThreat actors are using the Tox P2P messenger as C2 serverPlex discloses data breach and urges password resetAiTM phishing campaign also targets G Suite usersVMware fixed a privilege escalation issue in VMware ToolsFrance hospital Center Hospitalier Sud Francilien suffered ransomware attackMicrosoft publicly discloses details on critical ChromeOS flawGitLab fixed a critical Remote Code Execution (RCE) bug in CE and EE releasesOver 80,000 Hikvision cameras can be easily hackedCISA adds Palo Alto Networks PAN-OS to its Known Exploited Vulnerabilities CatalogCounterfeit versions of popular mobile devices target WhatsApp and WhatsApp BusinessLockbit leak sites hit by mysterious DDoS attack after Entrust hackEuropean Cybersecurity in Context: A Policy-Oriented Comparative Analysis8-year-old Linux Kernel flaw DirtyCred is nasty as Dirty PipeGroup-IB CEO will remain in jail – complaint deniedEscanor Malware delivered in Weaponized Microsoft Office DocumentsDonot Team cyberespionage group updates its Windows malware frameworkFake DDoS protection pages on compromised WordPress sites lead to malware infectionsThreat actors are stealing funds from General Bytes Bitcoin ATMGrandoreiro banking malware targets Mexico and SpainWhite hat hackers broadcasted talks and hacker movies through a decommissioned satelliteFollow me on Twitter: @securityaffairs and Facebook

try {
window._mNHandle.queue.push(function (){
window._mNDetails.loadTag(“816788371”, “300×250”, “816788371”);
});
}
catch (error) {}

try {
window._mNHandle.queue.push(function (){
window._mNDetails.loadTag(“816788371”, “300×250”, “816788371”);
});
}
catch (error) {}
Pierluigi Paganini

(SecurityAffairs – hacking, newsletter)

The post Security Affairs newsletter Round 381 appeared first on Security Affairs.