Disclosure of three 0-day iOS vulnerabilities and critique of Apple Security Bounty program https://habr.com/en/post/579714/
The Throughtek Kalay Vulnerability Is Absolutely Absurd; Here’s Why It Should Worry You https://aws.plainenglish.io/the-throughtek-kalay-vulnerability-is-absolutely-absurd-heres-why-it-should-worry-you-fe222549dd0d
Disclosing CVE-2021-40823 and CVE-2021-40824: E2EE vulnerability in multiple Matrix clients https://matrix.org/blog/2021/09/13/vulnerability-disclosure-key-sharing
Microsoft Exchange hack caused by China, US and allies say https://apnews.com/article/microsoft-exchange-hack-biden-china-d533f5361cbc3374fdea58d3fb059f35
Windows Print Pooler vulnerability still persistent, tracked by Microsoft as CVE-2021-34481 https://www.secureblink.com/cyber-security-news/windows-print-pooler-vulnerability-still-persistent-tracked-by-microsoft-as-cve-2021-34481
WooCommerce patched a critical vulnerability exploited in the wild exposed $5 million e-comm sites https://www.secureblink.com/cyber-security-news/woocommerce-patched-a-critical-vulnerability-exploited-in-the-wild-exposed-dollar5-million-e-comm-sites
Bombshell Report Finds Phone Network Encryption Was Deliberately Weakened https://www.vice.com/en/article/4avnan/bombshell-report-finds-phone-network-encryption-was-deliberately-weakened
328 weaknesses found by WA Auditor-General in 50 local government systems https://www.zdnet.com/article/328-weaknesses-found-by-wa-auditor-general-in-50-local-government-systems/
Tech industry quietly patches FragAttacks Wi-Fi flaws that leak data, weaken security https://www.theregister.com/2021/05/12/krack_hack_wifi/
WhatsApp Pink virus lets an attacker to get complete access of your device https://techential.com/whatsapp-pink-virus-lets-an-attacker-to-get-complete-access-of-your-device/
Popular remote lesson monitoring program could be exploited to attack student PCs https://www.zdnet.com/article/popular-remote-student-learning-program-found-to-be-riddled-with-security-holes/
DuckDuckGo Privacy Essentials vulnerabilities: Insecure communication and Universal XSS https://palant.info/2021/03/15/duckduckgo-privacy-essentials-vulnerabilities-insecure-communication-and-universal-xss/
Dozens of journalists’ iPhones hacked with NSO ‘zero-click’ spyware, says Citizen Lab https://techcrunch.com/2020/12/20/citizen-lab-iphone-nso-group/
iPhones vulnerable to hacking tool for months, researchers say https://www.theguardian.com/technology/2020/dec/20/iphones-vulnerable-to-hacking-tool-for-months-researchers-say
iPhone zero-click Wi-Fi exploit is one of the most breathtaking hacks ever https://arstechnica.com/gadgets/2020/12/iphone-zero-click-wi-fi-exploit-is-one-of-the-most-breathtaking-hacks-ever/