Xavier «X» Santolaria :verified_paw: :donor:<p>📨 Latest issue of my curated <a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cybersecurity</span></a> and <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infosec</span></a> list of resources for week #44/2023 is out! It includes the following and much more:</p><p>➝ 🔓 <a href="https://infosec.exchange/tags/Okta" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Okta</span></a> hit by another <a href="https://infosec.exchange/tags/breach" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>breach</span></a>, this one stealing employee data from 3rd-party vendor<br>➝ 🔓 💸 <a href="https://infosec.exchange/tags/LastPass" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LastPass</span></a> breach linked to theft of $4.4 million in crypto<br>➝ 🇮🇳 <a href="https://infosec.exchange/tags/India" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>India</span></a>'s Biggest Data Leak So Far? Covid-19 Test Info of 81.5Cr Citizens With ICMR Up for Sale<br>➝ 🔓 ✈️ <a href="https://infosec.exchange/tags/Lockbit" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Lockbit</span></a> ransomware group claims to have hacked <a href="https://infosec.exchange/tags/Boeing" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Boeing</span></a><br>➝ 🇳🇱 ⚖️ Dutch hacker jailed for extortion, selling stolen data on RaidForums<br>➝ 🇷🇺 🇺🇸 Russian Reshipping Service ‘SWAT USA Drop’ Exposed<br>➝ 🇮🇷 🦠 Iranian Cyber Spies Use ‘<a href="https://infosec.exchange/tags/LionTail" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LionTail</span></a>’ Malware in Latest Attacks<br>➝ 📉 Security researchers observed ‘deliberate’ takedown of notorious <a href="https://infosec.exchange/tags/Mozi" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Mozi</span></a> <a href="https://infosec.exchange/tags/botnet" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>botnet</span></a><br>➝ 🇮🇳 📱 Apple warns Indian opposition leaders of state-sponsored <a href="https://infosec.exchange/tags/iPhone" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>iPhone</span></a> attacks<br>➝ 🌍 Four dozen countries declare they won’t pay <a href="https://infosec.exchange/tags/ransomware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ransomware</span></a> ransoms<br>➝ 🇷🇺 How <a href="https://infosec.exchange/tags/Kopeechka" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Kopeechka</span></a>, an Automated Social Media Accounts Creation Service, Can Facilitate <a href="https://infosec.exchange/tags/Cybercrime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Cybercrime</span></a><br>➝ 🇪🇺 EU digital ID reforms should be ‘actively resisted’, say experts<br>➝ 🇷🇺 🇺🇦 <a href="https://infosec.exchange/tags/FSB" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>FSB</span></a> arrests Russian hackers working for Ukrainian cyber forces<br>➝ 🇺🇸 FTC orders non-bank financial firms to report breaches in 30 days<br>➝ 🇨🇦 📱 <a href="https://infosec.exchange/tags/Canada" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Canada</span></a> Bans <a href="https://infosec.exchange/tags/WeChat" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WeChat</span></a> and <a href="https://infosec.exchange/tags/Kaspersky" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Kaspersky</span></a> Apps On Government Devices<br>➝ 🇺🇸 <a href="https://infosec.exchange/tags/SEC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SEC</span></a> Charges <a href="https://infosec.exchange/tags/SolarWinds" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SolarWinds</span></a> and Its <a href="https://infosec.exchange/tags/CISO" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CISO</span></a> With Fraud and Cybersecurity Failures<br>➝ 🇺🇸 🤖 <a href="https://infosec.exchange/tags/Biden" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Biden</span></a> Wants to Move Fast on AI Safeguards and Will Sign an Executive Order to Address His Concerns<br>➝ 🦠 📱 <a href="https://infosec.exchange/tags/Avast" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Avast</span></a> confirms it tagged Google app as <a href="https://infosec.exchange/tags/malware" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>malware</span></a> on Android phones<br>➝ 🦠 🇰🇵 North Korean Hackers Targeting Crypto Experts with <a href="https://infosec.exchange/tags/KANDYKORN" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>KANDYKORN</span></a> <a href="https://infosec.exchange/tags/macOS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>macOS</span></a> Malware<br>➝ 👥 💸 EleKtra-Leak <a href="https://infosec.exchange/tags/Cryptojacking" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Cryptojacking</span></a> Attacks Exploit <a href="https://infosec.exchange/tags/AWS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AWS</span></a> IAM Credentials Exposed on <a href="https://infosec.exchange/tags/GitHub" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>GitHub</span></a><br>➝ 🦠 🐍 Trojanized <a href="https://infosec.exchange/tags/PyCharm" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PyCharm</span></a> Software Version Delivered via <a href="https://infosec.exchange/tags/Google" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Google</span></a> Search Ads<br>➝ ✅ 🤖 <a href="https://infosec.exchange/tags/GooglePlay" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>GooglePlay</span></a> adds security audit badges for Android <a href="https://infosec.exchange/tags/VPN" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>VPN</span></a> apps<br>➝ 🔐 Microsoft pledges to bolster security as part of ‘Secure Future’ initiative<br>➝ 🆕 FIRST Releases <a href="https://infosec.exchange/tags/CVSS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CVSS</span></a> 4.0 Vuln Scoring Standard<br>➝ 🆕 <a href="https://infosec.exchange/tags/MITRE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MITRE</span></a> Releases ATT&CK v14 With Improvements to Detections, ICS, Mobile<br>➝ ⛔️ 🦠 <a href="https://infosec.exchange/tags/Samsung" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Samsung</span></a> Galaxy gets new Auto Blocker anti-malware feature<br>➝ 🍏 🔐 <a href="https://infosec.exchange/tags/Apple" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Apple</span></a> Improves <a href="https://infosec.exchange/tags/iMessage" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>iMessage</span></a> Security With Contact Key Verification<br>➝ 🔓 Researchers Find 34 <a href="https://infosec.exchange/tags/Windows" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Windows</span></a> Drivers Vulnerable to Full Device Takeover<br>➝ 🔓 🪶 3,000 <a href="https://infosec.exchange/tags/Apache" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Apache</span></a> <a href="https://infosec.exchange/tags/ActiveMQ" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ActiveMQ</span></a> servers vulnerable to RCE attacks exposed online<br>➝ 🗣️ <a href="https://infosec.exchange/tags/Atlassian" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Atlassian</span></a> CISO Urges Quick Action to Protect <a href="https://infosec.exchange/tags/Confluence" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Confluence</span></a> Instances From Critical <a href="https://infosec.exchange/tags/Vulnerability" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Vulnerability</span></a><br>➝ 🔓 🩸 “This vulnerability is now under mass exploitation.” <a href="https://infosec.exchange/tags/CitrixBleed" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CitrixBleed</span></a> bug bites hard<br>➝ 🐛 💰 HackerOne paid ethical hackers over $300 million in <a href="https://infosec.exchange/tags/bugbounties" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>bugbounties</span></a></p> <p>📚 This week's recommended reading is: "Permanent Record" by Edward Snowden</p> <p>Subscribe to the <a href="https://infosec.exchange/tags/infosecMASHUP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>infosecMASHUP</span></a> newsletter to have it piping hot in your inbox every week-end ⬇️</p><p><a href="https://infosec-mashup.santolaria.net/p/infosec-mashup-week-442023" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">infosec-mashup.santolaria.net/</span><span class="invisible">p/infosec-mashup-week-442023</span></a></p>