- Security News:
- REvil Ransomware Gang Mysteriously Disappears After High-Profile Attacks [Ravie Lakshmanan, The Hacker News]
- iOS zero-day let SolarWinds hackers compromise fully updated iPhones [Dan Goodin, Ars Technica]
- Spain arrests 16 for working with the Mekotio and Grandoreiro malware gangs [Catalin Cimpanu, The Record]
- Email-Borne Threats:
- Kaseya warns of phishing campaign pushing fake security updates [Sergiu Gatlan, Bleeping Computer]
- Nested Archives Help to Evade SEGs and Deliver BazarBackdoor [Aaron Riley, Cofense]
- Breaches & Leaks:
- Kaseya ransomware attack: What we know now [Charlie Osborne, ZDNet]
- Malware:
- WildPressure’s multi-platform malware hits macOS in the Middle East [Kaspersky]
- Fake Zoom App Dropped by New APT ‘LuminousMoth’ [Lisa Vaas, Threatpost]
- Vulnerabilities & Patches:
- Kaseya patches VSA vulnerabilities used in REvil ransomware attack [Lawrence Abrams, Bleeping Computer]
- Cisco Adaptive Security Appliance Software Release 9.16.1 and Cisco Firepower Threat Defense Software Release 7.0.0 IPsec Denial of Service Vulnerability [Cisco]
- Microsoft July 2021 Patch Tuesday: 117 vulnerabilities, Pwn2Own Exchange Server bug fixed [Charlie Osborne, ZDNet]
- Google Details iOS, Chrome, IE Zero-Day Flaws Exploited Recently in the Wild [Ravie Lakshmanan, The Hacker News]
- Microsoft discovers critical SolarWinds zero-day under active attack [Dan Goodin, Ars Technica]
- SonicWall Warns Secure VPN Hardware Bugs Under Attack [Tom Spring, Threatpost]
- VMware ESXi updates address authentication and denial of service vulnerabilities [VMware]
- Others:
- Ensuring your cyber security is built for purpose [Ralph Bernd, ITWeb]
- Adobe: Critical Flaws in Reader, Acrobat, Illustrator [Ryan Naraine, SecurityWeek]
- Operation SpoofedScholars: A Conversation with TA453 [Proofpoint]
- Microsoft to Acquire RiskIQ [Doug Olenick, Bank Info Security]
C410 A2BE CB73 EF77 746E 9682 E2C4 91CE D20D 800F