<?xml version="1.0" encoding="UTF-8"?><rss version="2.0" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>37c3 &amp;mdash; 📰wrzlbrmpft&#39;s cyberlights💥</title>
    <link>https://infosec.press/wrzlbrmpfts-cyberlights/tag:37c3</link>
    <description>weekly cybersecurity highlights (for everyone!)</description>
    <pubDate>Wed, 22 Apr 2026 16:18:02 +0000</pubDate>
    <item>
      <title>week 52/2023</title>
      <link>https://infosec.press/wrzlbrmpfts-cyberlights/week-52-2023</link>
      <description>&lt;![CDATA[This is simply an attempt at building a weekly shortlist of cyber security highlights. My intention is - kind of - to pick stuff that I think everyone should know about, but there is no actual planning done towards my choices - it is what I think is significant, cool or fun.&#xA;&#xA;Most of the articles are in English, but some current warnings might also be in German.&#xA;&#xA;For All&#xA;🎧 Spotify music converter TuneFab puts users at risk &#xA;https://securityaffairs.com/156659/security/spotify-music-converter-tunefab-data-leak.html&#xA;&#xA;⬛ New Black Basta decryptor exploits ransomware flaw to recover files encrypted between November 2022 earlier this month&#xA;https://www.databreaches.net/new-black-basta-decryptor-exploits-ransomware-flaw-to-recover-files-encrypted-between-november-2022-earlier-this-month/&#xA;&#xA;Games&#xA;🎮 Game mod on Steam breached to push password-stealing malware&#xA;https://www.bleepingcomputer.com/news/security/game-mod-on-steam-breached-to-push-password-stealing-malware/&#xA;&#xA;🎮 GTA 5 source code reportedly leaked online a year after RockStar hack&#xA;https://www.bleepingcomputer.com/news/security/gta-5-source-code-reportedly-leaked-online-a-year-after-rockstar-hack/&#xA;&#xA;Health&#xA;💊 Australia: St Vincent’s unable to confirm if medical records stolen&#xA;Comment: No Logs -  no visibility -  no clue&#xA;https://www.databreaches.net/au-st-vincents-unable-to-confirm-if-medical-records-stolen/&#xA;&#xA;🏥 Lockbit ransomware disrupts emergency care at German hospitals&#xA;https://www.bleepingcomputer.com/news/security/lockbit-ransomware-disrupts-emergency-care-at-german-hospitals/&#xA;&#xA;🏥 Hospitals ask courts to force cloud storage firm to return stolen data &#xA;https://www.bleepingcomputer.com/news/security/hospitals-ask-courts-to-force-cloud-storage-firm-to-return-stolen-data/&#xA;&#xA;more, For the Curious&#xA;🚨 SSH ProxyCommand Unexpected Code Execution Vulnerability (CVE-2023-51385)&#xA;https://threatprotect.qualys.com/2023/12/26/ssh-proxycommand-unexpected-code-execution-vulnerability-cve-2023-51385/&#xA;&#xA;🐍 New Version of Meduza Stealer Released in Dark Web&#xA;https://securityaffairs.com/156598/malware/meduza-stealer-released-dark-web.html&#xA;&#xA;🍎 Most Sophisticated iPhone Hack Ever Exploited Apple&#39;s Hidden Hardware Feature&#xA;https://thehackernews.com/2023/12/most-sophisticated-iphone-hack-ever.html&#xA;&#xA;📧 SMTP Smuggling&#xA;a little older but popped up, because of #37c3&#xA;https://sec-consult.com/blog/detail/smtp-smuggling-spoofing-e-mails-worldwide/&#xA;&#xA;---&#xD;&#xA;(by @wrzlbrmpft@infosec.exchange)&#xD;&#xA;Obviously, the opinions inside these articles are not my own. No guarantee for correct- or completeness in any way. &#xD;&#xA;&#xD;&#xA;theme: https://write.as/themes/fosstodon-hub]]&gt;</description>
      <content:encoded><![CDATA[<p>This is simply an attempt at building a weekly shortlist of cyber security highlights. My intention is – kind of – to pick stuff that I think everyone should know about, but there is no actual planning done towards my choices – it is what I think is significant, cool or fun.</p>

<p>Most of the articles are in English, but some current warnings might also be in German.</p>

<h3 id="for-all">For All</h3>

<p>🎧 Spotify music converter TuneFab puts users at risk
<a href="https://securityaffairs.com/156659/security/spotify-music-converter-tunefab-data-leak.html" rel="nofollow">https://securityaffairs.com/156659/security/spotify-music-converter-tunefab-data-leak.html</a></p>

<p>⬛ New Black Basta decryptor exploits ransomware flaw to recover files encrypted between November 2022 earlier this month
<a href="https://www.databreaches.net/new-black-basta-decryptor-exploits-ransomware-flaw-to-recover-files-encrypted-between-november-2022-earlier-this-month/" rel="nofollow">https://www.databreaches.net/new-black-basta-decryptor-exploits-ransomware-flaw-to-recover-files-encrypted-between-november-2022-earlier-this-month/</a></p>

<p><strong>Games</strong>
🎮 Game mod on Steam breached to push password-stealing malware
<a href="https://www.bleepingcomputer.com/news/security/game-mod-on-steam-breached-to-push-password-stealing-malware/" rel="nofollow">https://www.bleepingcomputer.com/news/security/game-mod-on-steam-breached-to-push-password-stealing-malware/</a></p>

<p>🎮 GTA 5 source code reportedly leaked online a year after RockStar hack
<a href="https://www.bleepingcomputer.com/news/security/gta-5-source-code-reportedly-leaked-online-a-year-after-rockstar-hack/" rel="nofollow">https://www.bleepingcomputer.com/news/security/gta-5-source-code-reportedly-leaked-online-a-year-after-rockstar-hack/</a></p>

<p><strong>Health</strong>
💊 Australia: St Vincent’s unable to confirm if medical records stolen
<em>Comment: No Logs –&gt; no visibility –&gt; no clue</em>
<a href="https://www.databreaches.net/au-st-vincents-unable-to-confirm-if-medical-records-stolen/" rel="nofollow">https://www.databreaches.net/au-st-vincents-unable-to-confirm-if-medical-records-stolen/</a></p>

<p>🏥 Lockbit ransomware disrupts emergency care at German hospitals
<a href="https://www.bleepingcomputer.com/news/security/lockbit-ransomware-disrupts-emergency-care-at-german-hospitals/" rel="nofollow">https://www.bleepingcomputer.com/news/security/lockbit-ransomware-disrupts-emergency-care-at-german-hospitals/</a></p>

<p>🏥 Hospitals ask courts to force cloud storage firm to return stolen data
<a href="https://www.bleepingcomputer.com/news/security/hospitals-ask-courts-to-force-cloud-storage-firm-to-return-stolen-data/" rel="nofollow">https://www.bleepingcomputer.com/news/security/hospitals-ask-courts-to-force-cloud-storage-firm-to-return-stolen-data/</a></p>

<h3 id="more-for-the-curious">more, For the Curious</h3>

<p>🚨 SSH ProxyCommand Unexpected Code Execution Vulnerability (CVE-2023-51385)
<a href="https://threatprotect.qualys.com/2023/12/26/ssh-proxycommand-unexpected-code-execution-vulnerability-cve-2023-51385/" rel="nofollow">https://threatprotect.qualys.com/2023/12/26/ssh-proxycommand-unexpected-code-execution-vulnerability-cve-2023-51385/</a></p>

<p>🐍 New Version of Meduza Stealer Released in Dark Web
<a href="https://securityaffairs.com/156598/malware/meduza-stealer-released-dark-web.html" rel="nofollow">https://securityaffairs.com/156598/malware/meduza-stealer-released-dark-web.html</a></p>

<p>🍎 Most Sophisticated iPhone Hack Ever Exploited Apple&#39;s Hidden Hardware Feature
<a href="https://thehackernews.com/2023/12/most-sophisticated-iphone-hack-ever.html" rel="nofollow">https://thehackernews.com/2023/12/most-sophisticated-iphone-hack-ever.html</a></p>

<p>📧 SMTP Smuggling
<em>a little older but popped up, because of <a href="/wrzlbrmpfts-cyberlights/tag:37c3" class="hashtag" rel="nofollow"><span>#</span><span class="p-category">37c3</span></a></em>
<a href="https://sec-consult.com/blog/detail/smtp-smuggling-spoofing-e-mails-worldwide/" rel="nofollow">https://sec-consult.com/blog/detail/smtp-smuggling-spoofing-e-mails-worldwide/</a></p>

<hr>

<p>(by <a href="https://infosec.press/@/wrzlbrmpft@infosec.exchange" class="u-url mention" rel="nofollow">@<span>wrzlbrmpft@infosec.exchange</span></a>)
Obviously, the opinions inside these articles are not my own. No guarantee for correct- or completeness in any way.</p>

<p><em>theme: <a href="https://write.as/themes/fosstodon-hub" rel="nofollow">https://write.as/themes/fosstodon-hub</a></em></p>
]]></content:encoded>
      <guid>https://infosec.press/wrzlbrmpfts-cyberlights/week-52-2023</guid>
      <pubDate>Sun, 31 Dec 2023 14:57:00 +0000</pubDate>
    </item>
  </channel>
</rss>