This Week's [in]Security - Issue 279
Welcome to This Week’s [in]Security. NIST 4th round PQC candidate broken! GPU array achieves quantum supremacy!? PCI updates, Payment terminal portal breach, and Chargebacks. New breaches: Twitter PII & API keys, Cellebrite, Slack, QuestionPro. New Ransomware, Taiwan DDoS. Follow-ups: Capital One. Privacy: Car-surveillance, Ring, Duck-duck. Laws & Regs - US: Breach disclosure, Robocalls, Robinhood, Meta. World: India. Defense - Chess & CyberSecurity, Tools & Techniques, Attack Surfaces, Win11. Vulnerabilities - Patching: VMware, Android. Significant: Roundup, Chrome, DrayTeck. Emergency Alert System. Crypto-research. Cybercrime - Trends: GitHub & PyPi poisoning. Crime & Enforcement: Nuke sabatoge? Nation States and mercenaries. Other Risks - Cheap-Complexity, WFH, AI, Disinformation, Health, Safety, Environment, Economy. SaaS control? Russia v. Ukraine. Innovation and more.