Technical

Detecting and eliminating Chamois, a fraud botnet on Android
https://security.googleblog.com/2017/03/detecting-and-eliminating-chamois-fraud.html

Virtual machine escape fetches $105,000 at Pwn2Own hacking contest
https://arstechnica.com/security/2017/03/hack-that-escapes-vm-by-exploiting-edge-browser-fetches-105000-at-pwn2own/

DoubleAgent: Taking Full Control Over Your Antivirus
http://cybellum.com/doubleagent-taking-full-control-antivirus/
http://cybellum.com/doubleagentzero-day-code-injection-and-persistence-technique/

PS: https://forum.avast.com/index.php?topic=199290.0 (Forum discussion)

Necurs Diversifies Its Portfolio
http://blog.talosintelligence.com/2017/03/necurs-diversifies.html

Diverse protections for a diverse ecosystem: Android Security 2016 Year in Review
https://security.googleblog.com/2017/03/diverse-protections-for-diverse.html
https://static.googleusercontent.com/media/source.android.com/en//security/reports/Google_Android_Security_2016_Report_Final.pdf

Dark Matter
https://wikileaks.org/vault7/darkmatter/

In case E.T. need to phone home :wink:

The Moon could have its own mobile data network as soon as next year
http://www.wired.co.uk/article/moon-mobile-data-2018

Great the moon will have better communications than many villages on this world.

Adware Replaces Phone Numbers for Security Firms Returned in Search Results
https://www.bleepingcomputer.com/news/security/adware-replaces-phone-numbers-for-security-firms-returned-in-search-results/

Number of internet facing vulnerable IIS 6.0 to CVE-2017–7269
https://medium.com/@iraklis/number-of-internet-facing-vulnerable-iis-6-0-to-cve-2017-7269-8bd153ef5812
https://github.com/edwardz246003/IIS_exploit

Skype Malvertising Campaign Pushes Fake Flash Player
https://www.bleepingcomputer.com/news/security/skype-malvertising-campaign-pushes-fake-flash-player/

Avast joins No More Ransom project as associate partner
https://blog.avast.com/avast-joins-no-more-ransom-project-as-associate-partner
https://www.nomoreransom.org

Mobile spyware uses sandbox to avoid antivirus detections
https://blog.avast.com/mobile-spyware-uses-sandbox-to-avoid-antivirus-detections

Worried about ransomware or nuclear war, you may store your backup here
http://www.livescience.com/58497-second-doomsday-vault-opens-for-data.html?utm_medium=syndication&utm_source=zergnet

Automatically Inferring Malware Signatures for Anti-Virus Assisted Attacks
https://www.sec.cs.tu-bs.de/pubs/2017-asiaccs.pdf

Pegasus for Android - Technical Analysis and Findings of Chrysaor
https://info.lookout.com/rs/051-ESQ-475/images/lookout-pegasus-android-technical-analysis.pdf

Longhorn: Tools used by cyberespionage group linked to Vault 7
https://www.symantec.com/connect/blogs/longhorn-tools-used-cyberespionage-group-linked-vault-7

Dridex Campaigns Hitting Millions of Recipients Using Unpatched Microsoft Zero-Day
https://www.proofpoint.com/us/threat-insight/post/dridex-campaigns-millions-recipients-unpatched-microsoft-zero-day

MS - April 2017 Security Updates
https://portal.msrc.microsoft.com/en-us/security-guidance/releasenotedetail/42b8fa28-9d09-e711-80d9-000d3a32fc99
https://portal.msrc.microsoft.com/en-us/security-guidance

A deeper look into malware abusing TeamViewer
https://blog.avast.com/a-deeper-look-into-malware-abusing-teamviewer