01/17

Potential Stealer: Purrglar in Progress

https://www.kandji.io/blog/kitty-stealer
Potential Stealer: Purrglar in Progress

HEX.DANCE

http://HEX.DANCE
HEX.DANCE

Office of Public Affairs | Former CIA Analyst Pleads Guilty to Transmitting Top Secret National Defense Information | United States Department of Justice

https://www.justice.gov/opa/pr/former-cia-analyst-pleads-guilty-transmitting-top-secret-national-defense-information
Office of Public Affairs | Former CIA Analyst Pleads Guilty to Transmitting Top Secret National Defense Information | United States Department of Justice

FCC orders telecoms to secure their networks after Salt Tyhpoon hacks

https://www.bleepingcomputer.com/news/security/fcc-orders-telecoms-to-secure-their-networks-after-salt-tyhpoon-hacks/
FCC orders telecoms to secure their networks after Salt Tyhpoon hacks

A Journey of Limited Path Traversal To RCE With $40,000 Bounty! | by HX007 | Jan, 2025 | Medium

https://medium.com/@HX007/a-journey-of-limited-path-traversal-to-rce-with-40-000-bounty-fc63c89576ea
A Journey of Limited Path Traversal To RCE With $40,000 Bounty! | by HX007 | Jan, 2025 | Medium

Advanced Windows Kernel Programming

https://training.trainsec.net/advanced-windows-kernel-programming
Advanced Windows Kernel Programming

US sanctions Chinese firm, hacker behind telecom and Treasury hacks

https://www.bleepingcomputer.com/news/security/us-sanctions-chinese-firm-hacker-behind-telecom-and-treasury-hacks/
US sanctions Chinese firm, hacker behind telecom and Treasury hacks

Finding SSRFs in Azure DevOps

https://binarysecurity.no/posts/2025/01/finding-ssrfs-in-devops
Finding SSRFs in Azure DevOps

U.S. Sanctions North Korean IT Worker Network Supporting WMD Programs

https://thehackernews.com/2025/01/us-sanctions-north-korean-it-worker.html
U.S. Sanctions North Korean IT Worker Network Supporting WMD Programs

Critical Flaws in WGS-804HPT Switches Enable RCE and Network Exploitation

https://thehackernews.com/2025/01/critical-flaws-in-wgs-804hpt-switches.html
Critical Flaws in WGS-804HPT Switches Enable RCE and Network Exploitation

Investigating an "evil" RJ45 dongle - lcamtuf’s thing

https://lcamtuf.substack.com/p/investigating-an-evil-rj45-dongle
Investigating an "evil" RJ45 dongle - lcamtuf’s thing

ccc_Heppyky.pdf

https://fahrplan.events.ccc.de/congress/2024/fahrplan/media/38c3/submissions/YM3UTV/resources/ccc_Heppyky.pdf
ccc_Heppyky.pdf

Microsoft fixes Office 365 apps crashing on Windows Server systems

https://www.bleepingcomputer.com/news/microsoft/microsoft-fixes-office-365-apps-crashing-on-windows-server-systems/
Microsoft fixes Office 365 apps crashing on Windows Server systems

Biden signs executive order to bolster national cybersecurity

https://www.bleepingcomputer.com/news/security/biden-signs-executive-order-to-bolster-national-cybersecurity/
Biden signs executive order to bolster national cybersecurity

New 'Sneaky 2FA' Phishing Kit Targets Microsoft 365 Accounts with 2FA Code Bypass

https://thehackernews.com/2025/01/new-sneaky-2fa-phishing-kit-targets.html
New 'Sneaky 2FA' Phishing Kit Targets Microsoft 365 Accounts with 2FA Code Bypass

GDPR complaints filed against TikTok, Temu for sending user data to China

https://www.bleepingcomputer.com/news/security/gdpr-complaints-filed-against-tiktok-temu-for-sending-user-data-to-china/
GDPR complaints filed against TikTok, Temu for sending user data to China

Rob Fuller on LinkedIn: Come join the McKesson Red Team [Fully Remote - US/CA/IR] as a Lead…

https://www.linkedin.com/posts/mubix_come-join-the-mckesson-red-team-fully-remote-activity-7285372003627237376-bVwm
Rob Fuller on LinkedIn: Come join the McKesson Red Team [Fully Remote - US/CA/IR] as a Lead…