By security practitioners, for security practitioners novacoast federal | Pillr | novacoast | about innovate
By security practitioners, for security practitioners

Weekly Top Ten Cybersecurity Stories – 4.14.2023

WEEKLY TOP TEN | APRIL 14, 2023 17:12 GMT

Our Threat Operations and Intelligence team compiles a daily digest of new cybersecurity threats from around the Internet. This top 10 has been culled from the 40+ unique stories we found relevant over the week, ranked by highest risk:

  1. Urgent: Microsoft Issues Patches for 97 Flaws, Including Active Ransomware Exploit
    https://thehackernews.com/2023/04/urgent-microsoft-issues-patches-for-97.html
  2. Nokoyawa ransomware attacks with Windows zero-day
    https://securelist.com/nokoyawa-ransomware-attacks-with-windows-zero-day/109483/
  3. Microsoft shares guidance to detect BlackLotus UEFI bootkit attacks
    https://www.bleepingcomputer.com/news/security/microsoft-shares-guidance-to-detect-blacklotus-uefi-bootkit-attacks/
  4. Israel-based Spyware Firm QuaDream Targets High-Risk iPhones with Zero-Click Exploit
    https://thehackernews.com/2023/04/israel-based-spyware-firm-quadream.html
  5. Newly Discovered “By-Design” Flaw in Microsoft Azure Could Expose Storage Accounts to Hackers
    https://thehackernews.com/2023/04/newly-discovered-by-design-flaw-in.html
  6. Kyocera Android app with 1M installs can be abused to drop malware
    https://www.bleepingcomputer.com/news/security/kyocera-android-app-with-1m-installs-can-be-abused-to-drop-malware/
  7. RTM Locker: Emerging Cybercrime Group Targeting Businesses with Ransomware
    https://thehackernews.com/2023/04/rtm-locker-emerging-cybercrime-group.html
  8. Legion: New hacktool steals credentials from misconfigured sites
    https://www.bleepingcomputer.com/news/security/legion-new-hacktool-steals-credentials-from-misconfigured-sites/
  9. Recent IcedID (Bokbot) activity
    https://isc.sans.edu/diary/Recent+IcedID+Bokbot+activity/29740
  10. Following the Lazarus group by tracking DeathNote campaign
    https://securelist.com/the-lazarus-group-deathnote-campaign/109490/
Previous Post

AI Danger: Aligning Cyber and Policy Experts

Next Post

The Future of Identity

Innovate uses cookies to give you the best online experience. If you continue to use this site, you agree to the use of cookies. Please see our privacy policy for details.