Newsletter: https://riskybiznews.substack.com/p/chinese-apt-hacks-subsidiaries Podcast: https://risky.biz/RBNEWS202/ -Chinese APT hacks subsidiaries, pivots to corporate headquarters -Google and Mozilla patch another Chrome & Firefox zero-day -Cisco patches its own zero-day -new DarkRiver APT targets Russian defense sector -HVAC platform Johnson Controls goes down in ransomware incident -Google urges SMS EoL -OpenSSL 1.x EoL -82% of CISA staff to be furlough in govt shutdown -Twitter fully embraces propaganda -Russian hacker couple detained https://files.mastodon.social/media_attachments/files/111/147/683/873/963/212/original/885399558440f810.png
Plus: -ECH support lands in Chrome -Snatch ransomware leak site leaks data on its owners -Confiant takes down ScamClub malvertising group -FBI warns of double-ransomware attacks -Hackers spoof Dependabot to inject malware in projects -APT reports on AridViper and Budworm -Taiwan hit with CN disinfo -Russian exploit broker promises $20mil for iOS and Android zero-days -Apache NiFi and JBoss RichFaces exploitation -Apple security updates -New GPU.zip, Marvin, SideEye attacks -New tool—Chalk https://files.mastodon.social/media_attachments/files/111/147/699/183/159/247/original/4889de20ddd937dd.png