Juha Saarinen

Juha Saarinen has been covering the technology sector since the mid-1990s for publications around the world. He has been writing for iTnews since 2010 and also contributes to the New Zealand Herald, the Guardian and Wired's Threat Level section. He is based in Auckland, New Zealand. Google

Recent articles by Juha Saarinen

Apple warns of actively exploited iOS and iPadOS zero-day

Apple warns of actively exploited iOS and iPadOS zero-day

Big set of security patches released.
Oct 26 2022 9:38AM
October Patch Wednesday handles 13 critical vulnerabilities

October Patch Wednesday handles 13 critical vulnerabilities

One PrivEsc bug exploited in the wild.
Oct 12 2022 12:18PM
Lapsus$ affiliates behind Uber hack, company says

Lapsus$ affiliates behind Uber hack, company says

Compromised external contractor's account.
Sep 20 2022 6:30AM
EZVIZ video cameras can be accessed remotely

EZVIZ video cameras can be accessed remotely

Full device takeover possible.
Sep 19 2022 6:50AM
Serious two-year old bug bites ManageEngine

Serious two-year old bug bites ManageEngine

Unauthenticated attackers can run arbitrary code remotely.
Sep 12 2022 12:30PM
AT&T outs new 'Shikitega' Linux malware

AT&T outs new 'Shikitega' Linux malware

Drops Monero crypto miner.
Sep 9 2022 10:45AM
Slick new phishing-as-a-service kit emerges

Slick new phishing-as-a-service kit emerges

EvilProxy covers accounts with most major brands.
Sep 6 2022 10:25AM
Chinese state hackers targeted Australian federal and local gov

Chinese state hackers targeted Australian federal and local gov

Launched watering hole attacks via fake news sites.
Aug 31 2022 7:25AM
LastPass source code copied by hacker

LastPass source code copied by hacker

Attacker accessed developer environment.
Aug 26 2022 11:25AM
Twilio and Cloudflare attacks part of extensive phishing campaign

Twilio and Cloudflare attacks part of extensive phishing campaign

Over 130 organisations worldwide targeted, including Australia.
Aug 26 2022 11:24AM
Malware floods npm and PyPi registries in supply-chain attacks

Malware floods npm and PyPi registries in supply-chain attacks

Over 200 packages try to drop cryptominers.
Aug 22 2022 5:06AM
Apple drops iOS and iPadOS 15.6.1 to fix two exploited zero days

Apple drops iOS and iPadOS 15.6.1 to fix two exploited zero days

Kernel and WebKit bugs abused.
Aug 18 2022 6:33AM
Oh Deere: Aussie researcher roots tractor control system

Oh Deere: Aussie researcher roots tractor control system

Simple text file gave dealer-level access.
Aug 16 2022 11:39AM
Twilio phish sees Signal users' numbers at risk of re-registering

Twilio phish sees Signal users' numbers at risk of re-registering

Locally stored user information can't be compromised, company says.
Aug 16 2022 6:35AM
US puts million-dollar bounty on Russian ransomware raiders

US puts million-dollar bounty on Russian ransomware raiders

To capture Conti criminals.
Aug 12 2022 12:01PM
ACCC greenlights Google's buy of Mandiant

ACCC greenlights Google's buy of Mandiant

Finds no competition risk.
Aug 11 2022 12:30PM
Patch Wednesday fixes two-year-old Dogwalk vulnerability

Patch Wednesday fixes two-year-old Dogwalk vulnerability

Path traversal bug in diagnostics tool could be used for remote code execution.
Aug 10 2022 6:40AM
Twilio phishers went after Cloudflare, but failed

Twilio phishers went after Cloudflare, but failed

Most organisations would probably be breached in sophisticated attack.
Aug 10 2022 6:33AM
Twilio hacked in phishing attack

Twilio hacked in phishing attack

Customer data taken.
Aug 9 2022 8:34AM
ACSC and CISA detail top malware of 2021

ACSC and CISA detail top malware of 2021

Two Trojans in use for over a decade.
Aug 5 2022 12:45PM

Log In

  |  Forgot your password?