2025-06-13
Schneier on Security
Friday Squid Blogging: Stubby Squid
Schneier on Security
Paragon Spyware Used to Spy on European Journalists
Eclypsium
Secure Device Lifecycle Management
Google Safety & Security
An age assurance tool for Europe and beyond
Amazon Security
How to create post-quantum signatures using AWS KMS and ML-DSA
Amazon Security
AI security strategies from Amazon and the CIA: Insights from AWS Summit Washington, DC
Dark Reading
Cyberattacks on Humanitarian Orgs Jump Worldwide
Google Security Blog
Mitigating prompt injection attacks with a layered defense strategy
Palo Alto Networks
The New AI Attack Surface — How Cortex Cloud Secures MCP
2025-06-12
Schneier on Security
Airlines Secretly Selling Passenger Data to the Government
Cloudflare
Cloudflare service outage June 12, 2025
Talos Intelligence
Know thyself, know thy environment
Eclypsium
Securing AI Data Centers
Troy Hunt
Weekly Update 456
Elastic Security Labs
Call Stacks: No More Free Passes For Malware
Microsoft Security
Cyber resilience begins before the crisis
Ars Technica Security
Coming to Apple OSes: A seamless, secure way to import and export passkeys
The Citizen Lab
Graphite Caught: First Forensic Confirmation of Paragon’s iOS Mercenary Spyware Finds Journalists Targeted
Offensive Security
CVE-2024-21683 – Authenticated RCE via “Add a New Language” in Atlassian Confluence
Offensive Security
CVE‑2025‑49113 – Post‑Auth Remote Code Execution in Roundcube via PHP Object Deserialization
Krebs on Security
Inside a Dark Adtech Empire Fed by Fake CAPTCHAs
Palo Alto Networks
See How We’re Fortifying Cloud and AI at AWS re:Inforce 2025
Sansec Threat Research
Adobe patches critical Magento admin takeover via menu injection
2025-06-11
Fastly
DDoS in May
Project Black
FileFlows SQL Injection by Decompiling .NET Code
Talos Intelligence
catdoc zero-day, NVIDIA, High-Logic FontCreator and Parallel vulnerabilities
Amazon Security
AWS completes Police-Assured Secure Facilities (PASF) audit in Europe (London) AWS Region
Black Lantern Security
Doomla! Zero Days
Dark Reading
ConnectWise to Rotate Code-Signing Certificates
Dark Reading
Agentic AI Takes Over Gartner's SRM Summit
Krebs on Security
Patch Tuesday, June 2025 Edition
Searchlight Cyber
Why is Attack Surface Management Now Worth the Cost?
Synacktiv
NTLM reflection is dead, long live NTLM reflection! – An in-depth analysis of CVE-2025-33073
Redteam-Pentesting.de
A Look in the Mirror - The Reflective Kerberos Relay Attack
2025-06-10
Rapid7
Patch Tuesday - June 2025
Talos Intelligence
Microsoft Patch Tuesday for June 2025 — Snort rules and prominent vulnerabilities
Eclypsium
Leading Cloud Computing Company Relies on Eclypsium to Protect AI Data Center Infrastructure
Datadog HQ
Explore your data with Sheets, DDSQL Editor, and Notebooks for advanced analysis in Datadog
Datadog HQ
Detect anomalies beyond spikes and new values with Content Anomaly Detection in Cloud SIEM
Datadog HQ
Reduce cloud storage costs and improve operational efficiency with Datadog Storage Monitoring
Amazon Security
Building identity-first security: A guide to the Identity and Access Management track at AWS re:Inforce 2025
Ars Technica Security
Found in the wild: 2 Secure Boot exploits. Microsoft is patching only 1 of them.
Dark Reading
PoC Code Escalates Roundcube Vuln Threat
Compass Security Blog
LinkedIn for OSINT: tips and tricks
Sicuranext Blog
Influencing LLM Output using logprobs and Token Distribution
Zero Day Initiative
The June 2025 Security Update Review
Sicuranext Blog
Influencing LLM Output using logprobs and Token Distribution
TrustedSec
Common Mobile Device Threat Vectors
White Knight Labs
Understanding Double Free in Windows Kernel Drivers
Synacktiv
Exploiting Heroes of Might and Magic V
2025-06-09
Schneier on Security
New Way to Covertly Track Android Users
Malwarebytes
How and where to report an online scam
Malwarebytes
Been scammed online? Here’s what to do
Troy Hunt
Weekly Update 455
Amazon Security
Building secure foundations: A guide to network and infrastructure security at AWS re:Inforce 2025
Dark Reading
'Librarian Ghouls' Cyberattackers Strike at Night
Dark Reading
Next-Gen Developers Are a Cybersecurity Powder Keg
Palo Alto Networks
Securing AI Agent Innovation with Prisma AIRS MCP Server