Xavier «X» Santolaria :verified_paw: :donor:<p>📨 Latest issue of my curated <a href="https://infosec.exchange/tags/cybersecurity" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cybersecurity</span></a> and <a href="https://infosec.exchange/tags/infosec" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosec</span></a> list of resources for week #40/2023 is out! It includes the following and much more:</p><p>🇺🇸 🗳️ D.C. Board of <a href="https://infosec.exchange/tags/Elections" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Elections</span></a> confirms voter data stolen in site hack<br>🔓 🪪 <a href="https://infosec.exchange/tags/MGM" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>MGM</span></a> Resorts confirms hackers stole customers’ personal data during <a href="https://infosec.exchange/tags/cyberattack" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>cyberattack</span></a><br>🔓 🧬 <a href="https://infosec.exchange/tags/DNA" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DNA</span></a> testing service 23andMe investigating theft of user data<br>🔓 🎧 <a href="https://infosec.exchange/tags/Sony" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Sony</span></a> confirms <a href="https://infosec.exchange/tags/databreach" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>databreach</span></a> impacting thousands in the U.S.<br>📱 💥 Lyca Mobile Group Services Significantly Disrupted by Cyberattack<br>🔓 🕵🏻♂️ <a href="https://infosec.exchange/tags/NATO" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NATO</span></a> investigating breach, <a href="https://infosec.exchange/tags/leak" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>leak</span></a> of internal documents<br>🔓 🇪🇺 European Telecommunications Standards Institute Discloses Data Breach<br>🔓 🏨 <a href="https://infosec.exchange/tags/MotelOne" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>MotelOne</span></a> discloses data breach following <a href="https://infosec.exchange/tags/ransomware" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ransomware</span></a> attack<br>🇰🇵 💰 North Korea's <a href="https://infosec.exchange/tags/Lazarus" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Lazarus</span></a> Group Launders $900 Million in <a href="https://infosec.exchange/tags/Cryptocurrency" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Cryptocurrency</span></a><br>🇧🇪 🇨🇳 <a href="https://infosec.exchange/tags/Alibaba" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Alibaba</span></a> accused of ‘possible espionage’ at European hub<br>🇨🇳 <a href="https://infosec.exchange/tags/China" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>China</span></a>-linked cyberspies <a href="https://infosec.exchange/tags/backdoor" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>backdoor</span></a> <a href="https://infosec.exchange/tags/semiconductor" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>semiconductor</span></a> firms with <a href="https://infosec.exchange/tags/CobaltStrike" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CobaltStrike</span></a><br>🥸 Meet LostTrust <a href="https://infosec.exchange/tags/ransomware" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ransomware</span></a> — A likely rebrand of the <a href="https://infosec.exchange/tags/MetaEncryptor" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>MetaEncryptor</span></a> gang<br>🇬🇾 🇨🇳 <a href="https://infosec.exchange/tags/Guyana" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Guyana</span></a> Governmental Entity Hit by <a href="https://infosec.exchange/tags/DinodasRAT" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DinodasRAT</span></a> in <a href="https://infosec.exchange/tags/CyberEspionage" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>CyberEspionage</span></a> Attack<br>🇷🇺 🇺🇸 <a href="https://infosec.exchange/tags/FBI" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>FBI</span></a> most-wanted Russian hacker reveals why he burned his passport<br>🇺🇸 🏥 <a href="https://infosec.exchange/tags/FDA" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>FDA</span></a> cyber mandates for <a href="https://infosec.exchange/tags/medicaldevices" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>medicaldevices</span></a> goes into effect<br>☁️ 🔓 Number of Internet-Exposed <a href="https://infosec.exchange/tags/ICS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>ICS</span></a> Drops Below 100,000<br>☁️ <a href="https://infosec.exchange/tags/Microsoft" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Microsoft</span></a> Warns of Cyber Attacks Attempting to Breach Cloud via <a href="https://infosec.exchange/tags/SQL" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>SQL</span></a> Server Instance<br>🦠 📈 <a href="https://infosec.exchange/tags/QakBot" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>QakBot</span></a> Threat Actors Still in Action, Using Ransom Knight and Remcos RAT in Latest Attacks<br>🔓 🍏 <a href="https://infosec.exchange/tags/Apple" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Apple</span></a> Warns of Newly Exploited iOS 17 Kernel Zero-Day<br>🎣 🧑🏻💼 US Executives Targeted in <a href="https://infosec.exchange/tags/Phishing" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Phishing</span></a> Attacks Exploiting Flaw in Indeed Job Platform<br>🦠 🏦 <a href="https://infosec.exchange/tags/Zanubis" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Zanubis</span></a> <a href="https://infosec.exchange/tags/Android" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Android</span></a> Banking Trojan Poses as Peruvian Government App to Target Users<br>🦠 🇮🇷 Iranian APT Group <a href="https://infosec.exchange/tags/OilRig" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>OilRig</span></a> Using New Menorah <a href="https://infosec.exchange/tags/Malware" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Malware</span></a> for Covert Operations<br>🔐 ☁️ <a href="https://infosec.exchange/tags/Amazon" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Amazon</span></a> to make <a href="https://infosec.exchange/tags/MFA" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>MFA</span></a> mandatory for 'root' <a href="https://infosec.exchange/tags/AWS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>AWS</span></a> accounts by mid-2024<br>🛡️ 🧅 <a href="https://infosec.exchange/tags/Microsoft" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Microsoft</span></a> Defender no longer flags <a href="https://infosec.exchange/tags/Tor" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Tor</span></a> Browser as malware<br>👀 X-Force uncovers global <a href="https://infosec.exchange/tags/NetScaler" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>NetScaler</span></a> Gateway credential harvesting campaign<br>🐛 💰 Zero-days for hacking <a href="https://infosec.exchange/tags/WhatsApp" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>WhatsApp</span></a> are now worth millions of dollars<br>🩹 <a href="https://infosec.exchange/tags/Cisco" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Cisco</span></a> fixes hard-coded root credentials in Emergency Responder<br>🔓 Vulnerabilities in <a href="https://infosec.exchange/tags/Supermicro" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Supermicro</span></a> BMCs could allow for unkillable server <a href="https://infosec.exchange/tags/rootkits" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>rootkits</span></a><br>🔓 🐧 Looney Tunables: New <a href="https://infosec.exchange/tags/Linux" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Linux</span></a> Flaw Enables Privilege Escalation on Major Distributions<br>🐍 Warning: <a href="https://infosec.exchange/tags/PyTorch" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>PyTorch</span></a> Models Vulnerable to Remote Code Execution via ShellTorch<br>🩹 Microsoft Edge, Teams get fixes for zero-days in <a href="https://infosec.exchange/tags/opensource" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>opensource</span></a> libraries<br>🔓 🔥 Live Exploitation Underscores Urgency to Patch Critical WS-FTP Server Flaw<br>☁️ Cloudflare <a href="https://infosec.exchange/tags/DDoS" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>DDoS</span></a> protections ironically bypassed using <a href="https://infosec.exchange/tags/Cloudflare" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>Cloudflare</span></a></p> <p>📚 This week's recommended reading is: "8 Steps to Better Security: A Simple Cyber Resilience Guide for Business" by Kim Crawley</p> <p>Subscribe to the <a href="https://infosec.exchange/tags/infosecMASHUP" class="mention hashtag" rel="nofollow noopener" target="_blank">#<span>infosecMASHUP</span></a> newsletter to have it piping hot in your inbox every week-end ⬇️</p><p><a href="https://infosec-mashup.santolaria.net/p/infosec-mashup-week-402023" rel="nofollow noopener" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">infosec-mashup.santolaria.net/</span><span class="invisible">p/infosec-mashup-week-402023</span></a></p>