Twitter Safety on Twitter: "Beginning today, we will not allow the sharing of private media, such as images or videos of private individuals without their consent. Publishing people's private info is also prohibited under the policy, as is threatening or incentivizing others to do so.https://t.co/7EXvXdwegG" / Twitter
https://twitter.com/twittersafety/status/1465683094581792771
ScarCruft surveilling North Korean defectors and human rights activists | Securelist
https://securelist.com/scarcruft-surveilling-north-korean-defectors-and-human-rights-activists/105074/
Printing Shellz | WithSecure™ Labs
https://labs.f-secure.com/publications/printing-shellz
When Russia Helped the U.S. Nab Cybercriminals
https://zetter.substack.com/p/when-russia-helped-the-us-nab-cybercriminals
DNA testing firm discloses data breach affecting 2.1 million people
https://www.bleepingcomputer.com/news/security/dna-testing-firm-discloses-data-breach-affecting-21-million-people/
CONTInuing the Bazar Ransomware Story
https://thedfirreport.com/2021/11/29/continuing-the-bazar-ransomware-story/
TryHackMe | Advent of Cyber | TryHackMe
https://tryhackme.com/christmas
Kitten.gif: Meet the Sabbath Ransomware Affiliate Program, Again | Mandiant
https://www.mandiant.com/resources/sabbath-ransomware-affiliate
The Cyber Startup Observatory - The Global Cyber Innovation Network
https://cyberstartupobservatory.com
MalwareBazaar | Browse Checking your browser
https://bazaar.abuse.ch/browse/tag/brt/
Linux Stealth Rootkit Malware with EDR Evasion
https://www.sandflysecurity.com/blog/linux-stealth-rootkit-malware-with-edr-evasion-analyzed/
Humble Book Bundle: Hacking by No Starch Press
https://www.humblebundle.com/books/hacking-by-no-starch-press-books
Discovering Full Read SSRF in Jamf (CVE-2021-39303 & CVE-2021-40809) – Assetnote
https://blog.assetnote.io/2021/11/30/jamf-ssrf/
We Need to Stop Saying ‘Blacklist’ and ‘Whitelist’
https://www.vice.com/en/article/v7dd3d/we-need-to-stop-saying-blacklist-and-whitelist
Yanluowang: Further Insights on New Ransomware Threat | Symantec Enterprise Blogs
https://symantec-enterprise-blogs.security.com/blogs/threat-intelligence/yanluowang-ransomware-attacks-continue
Unpatched Unauthorized File Read Vulnerability Affects Microsoft Windows OS
https://thehackernews.com/2021/11/unpatched-unauthorized-file-read.html
Call For Papers (CFP) - Blue Team Con
https://blueteamcon.com/2022/CFP
Tweet / Twitter
https://twitter.com/adhalls/status/1465008740910854151
The Roundup: Purple Team - Wild West Hackin' Fest
https://wildwesthackinfest.com/the-roundup-purple-team/
Lateral Movement with Managed Identities of Azure Virtual Machines | Microsoft 365 Security
https://m365internals.com/2021/11/30/lateral-movement-with-managed-identities-of-azure-virtual-machines/
https://bit.ly/3ChiQsE
https://bit.ly/3ChiQsE
Kap on Twitter: "Why did you get into tech? Not how, why." / Twitter
https://twitter.com/kapehe_ok/status/1465355637487910922
HITCON CTF 2022
https://ctf.hitcon.org/
Webinar Registration - Zoom
https://specterops.zoom.us/webinar/register/WN_2Qkmj0PzTY60ixXydOZv3w
Malware-Traffic-Analysis.net - 2021-11-29 (Monday) - Emotet epoch 5 infection from email sent on Friday 2021-11-26
https://www.malware-traffic-analysis.net/2021/11/29/index.html
FBI document shows what data can be obtained from encrypted messaging apps
https://therecord.media/fbi-document-shows-what-data-can-be-obtained-from-encrypted-messaging-apps/
MalwareBazaar | Browse Checking your browser
https://bazaar.abuse.ch/sample/3afbf890873d196a76b7e797075807770ae9c5250f231cdfead1b4733cdf7880/
FBI Document Says the Feds Can Get Your WhatsApp Data — in Real Time – Rolling Stone
https://www.rollingstone.com/politics/politics-features/whatsapp-imessage-facebook-apple-fbi-privacy-1261816/
What does APT Activity Look Like on MacOS? – The Mitten Mac
https://themittenmac.com/what-does-apt-activity-look-like-on-macos/
HP Multi-Function Printers - Improper validation of an array index | WithSecure™ Labs
https://labs.f-secure.com/advisories/hp-multi-function-printers-improper-validation-of-an-array-index
https://pastebin.com/raw/xYGEXByz
https://pastebin.com/raw/xYGEXByz
http://apmaustin.com
http://apmaustin.com
Dark web market Cannazon shuts down after massive DDoS attack
https://www.bleepingcomputer.com/news/security/dark-web-market-cannazon-shuts-down-after-massive-ddos-attack/
Rasta Mouse on Twitter: "Blog post is up for Patrons https://t.co/TYcL6eeiHo" / Twitter
https://twitter.com/_RastaMouse/status/1464690515723657220
COM Objects P.1: The Hidden Backdoor in Your System | by Amr Thabet | MalTrak
https://medium.com/maltrak/com-objects-p-1-the-hidden-backdoor-in-your-system-947ac4285e85
Cobalt Strike: Decrypting DNS Traffic – Part 5 – NVISO Labs
https://blog.nviso.eu/2021/11/29/cobalt-strike-decrypting-dns-traffic-part-5/