Security Affairs newsletter Round 272

A new round of the weekly SecurityAffairs newsletter arrived! Every week the best security articles from Security Affairs free for you in your email box.

CISA warns organizations of cyberattacks from the Tor networkCisco Talos discloses technicals details of Chrome, Firefox flawsHuawei faces 5G ban from Britishs 5G network within monthsFormer Yahoo! employee who accessed 6K accounts avoids jailNorth Korean Lazarus APT stole credit card data from US and EU storesSnake Ransomware isolates infected Systems before encrypting filesThreat actors are attempting to exploit recently fixed F5 BIG-IP flawAuthors of Purple Fox EK adds 2 Microsoft exploitsNew release of Lampion trojan spreads in Portugal with some improvements on the VBS downloaderProject Freta, a free service that allows finding malware in OS memory snapshotsRansomware infected systems at Xchanging, a DXC subsidiaryUnsecured Chinese companies leak users sensitive personal and business dataDOJ indicts Fxmsp hacker for selling access to hacked businessesMalicious app in Google Play used to deliver Cerberus Banking TrojanSentinelOne released free decryptor for ThiefQuest ransomwareThreat actors found a way to bypass mitigation F5 BIG-IP CVE-2020-5902 flaw15 billion credentials available in the cybercrime marketplacesGoogle Tsunami vulnerability scanner is now open-sourceJoker malware apps bypassed Googles Play Store security checksPalo Alto Networks addresses another high severity issue in PAN-OS devicesZoom is working on a patch for a zero-day in Windows clientJuniper Networks addressed many issues in its productsKingComposer fixes a reflected XSS impacting 100,000 WordPress sitesPre-Installed malware spotted on other Android phones sold in USResearchers found allegedly intentional backdoors in FTTH devices from Chinese vendor C-DataEvilnum Group targets European and British fintech companiesHackers are scanning the web for vulnerable Citrix systemsCISA warns organizations of cyberattacks from the Tor networkCisco Talos discloses technicals details of Chrome, Firefox flawsHuawei faces 5G ban from Britishs 5G network within monthsSecurity Affairs newsletter Round 271Former Yahoo! employee who accessed 6K accounts avoids jailNorth Korean Lazarus APT stole credit card data from US and EU storesSnake Ransomware isolates infected Systems before encrypting filesThreat actors are attempting to exploit recently fixed F5 BIG-IP flawAuthors of Purple Fox EK adds 2 Microsoft exploitsNew release of Lampion trojan spreads in Portugal with some improvements on the VBS downloaderProject Freta, a free service that allows finding malware in OS memory snapshotsRansomware infected systems at Xchanging, a DXC subsidiaryUnsecured Chinese companies leak users sensitive personal and business dataDOJ indicts Fxmsp hacker for selling access to hacked businessesMalicious app in Google Play used to deliver Cerberus Banking TrojanSentinelOne released free decryptor for ThiefQuest ransomwareThreat actors found a way to bypass mitigation F5 BIG-IP CVE-2020-5902 flaw15 billion credentials available in the cybercrime marketplacesGoogle Tsunami vulnerability scanner is now open-sourceJoker malware apps bypassed Googles Play Store security checksPalo Alto Networks addresses another high severity issue in PAN-OS devicesZoom is working on a patch for a zero-day in Windows clientJuniper Networks addressed many issues in its productsKingComposer fixes a reflected XSS impacting 100,000 WordPress sitesPre-Installed malware spotted on other Android phones sold in USResearchers found allegedly intentional backdoors in FTTH devices from Chinese vendor C-DataEvilnum Group targets European and British fintech companiesHackers are scanning the web for vulnerable Citrix systems

window._mNHandle = window._mNHandle || {};
window._mNHandle.queue = window._mNHandle.queue || [];
medianet_versionId = “3121199”;

try {
window._mNHandle.queue.push(function () {
window._mNDetails.loadTag(“762221962”, “300×250”, “762221962”);
});
}
catch (error) {}

Pierluigi Paganini

(SecurityAffairs – hacking, newsletter)

The post Security Affairs newsletter Round 272 appeared first on Security Affairs.