11/09

KdcSponge, NGLite, Godzilla Webshell Used in Targeted Attack Campaign

https://unit42.paloaltonetworks.com/manageengine-godzilla-nglite-kdcsponge/
KdcSponge, NGLite, Godzilla Webshell Used in Targeted Attack Campaign

GitHub - zeronetworks/rpcfirewall

https://github.com/zeronetworks/rpcfirewall
GitHub - zeronetworks/rpcfirewall

Scammer Convinced Instagram That Its Top Executive Was Dead

https://www.vice.com/en/article/7kb9by/adam-mosseri-dead-instagram-account-locked
Scammer Convinced Instagram That Its Top Executive Was Dead

CVE-2021-40449 Exploitation | Kristal’s Notebook

https://kristal-g.github.io/2021/11/05/CVE-2021-40449_POC.html
CVE-2021-40449 Exploitation | Kristal’s Notebook

TA505 exploits SolarWinds Serv-U vulnerability (CVE-2021-35211) for initial access | NCC Group Research Blog | Making the world safer and more secure

https://research.nccgroup.com/2021/11/08/ta505-exploits-solarwinds-serv-u-vulnerability-cve-2021-35211-for-initial-access/
TA505 exploits SolarWinds Serv-U vulnerability (CVE-2021-35211) for initial access | NCC Group Research Blog | Making the world safer and more secure

Robinhood discloses security breach and extortion attempt

https://therecord.media/robinhood-discloses-security-breach-and-extortion-attempt/
Robinhood discloses security breach and extortion attempt

Threat Hunting Certificate Account Persistence | Pentest Laboratories

https://pentestlaboratories.com/2021/11/08/threat-hunting-certificate-account-persistence/
Threat Hunting Certificate Account Persistence | Pentest Laboratories

Europol: Seven REvil/GandCrab ransomware affiliates were arrested in 2021

https://therecord.media/europol-seven-revil-gandcrab-ransomware-affiliates-were-arrested-in-2021/
Europol: Seven REvil/GandCrab ransomware affiliates were arrested in 2021

https://rawcdn.githack.com/campuscodi/Microsoft-Patch-Tuesday-Security-Reports/f18c781b4406271bd289b4f2f112f9e4c7b27de5/Reports/MSRC_CVEs2021-Nov.html

https://rawcdn.githack.com/campuscodi/Microsoft-Patch-Tuesday-Security-Reports/f18c781b4406271bd289b4f2f112f9e4c7b27de5/Reports/MSRC_CVEs2021-Nov.html

Threat actor DEV-0322 exploiting ZOHO ManageEngine ADSelfService Plus - Microsoft Security Blog

https://www.microsoft.com/security/blog/2021/11/08/threat-actor-dev-0322-exploiting-zoho-manageengine-adselfservice-plus/
Threat actor DEV-0322 exploiting ZOHO ManageEngine ADSelfService Plus - Microsoft Security Blog

Shodan Search Engine

https://www.shodan.io/search?query=product%3A%22Cobalt%20Strike%20Beacon%22
Shodan Search Engine

The MOST IMPORTANT advice for young hackers - YouTube

https://www.youtube.com/watch?v=0Ejj2aBG5c8
The MOST IMPORTANT advice for young hackers - YouTube

Way West Conference - Wild West Hackin' Fest

https://wildwesthackinfest.com/way-west/
Way West Conference - Wild West Hackin' Fest

New Tool: cs-extract-key.py | Didier Stevens

https://blog.didierstevens.com/2021/11/03/new-tool-cs-extract-key-py/
New Tool: cs-extract-key.py | Didier Stevens

New Critical Vulnerabilities Found on Nucleus TCP/IP Stack - Forescout

https://www.forescout.com/blog/new-critical-vulnerabilities-found-on-nucleus-tcp-ip-stack/
New Critical Vulnerabilities Found on Nucleus TCP/IP Stack - Forescout

Multifactor authentication (MFA)  | CISA

http://cisa.gov/publication/multi-factor-authentication-mfa
Multifactor authentication (MFA)  | CISA

client-side-prototype-pollution/README.md at master · BlackFan/client-side-prototype-pollution · GitHub

https://github.com/BlackFan/client-side-prototype-pollution/blob/master/README.md
client-side-prototype-pollution/README.md at master · BlackFan/client-side-prototype-pollution · GitHub

Robinhood Trading App Suffers Data Breach Exposing 7 Million Users' Information

https://thehackernews.com/2021/11/robinhood-trading-app-suffers-data.html
Robinhood Trading App Suffers Data Breach Exposing 7 Million Users' Information