12/02

Former Ubiquiti employee charged with hacking and extorting company

https://therecord.media/former-ubiquiti-employee-charged-with-hacking-and-extorting-company/
Former Ubiquiti employee charged with hacking and extorting company

A Peek Inside Anom, the Phone Company Secretly Used in an FBI Honeypot

https://www.vice.com/en/article/n7nnmg/inside-anom-video-operation-trojan-shield-ironside
A Peek Inside Anom, the Phone Company Secretly Used in an FBI Honeypot

Suspected Chinese hackers breach more US defense and tech firms | CNN Politics

https://www.cnn.com/2021/12/02/politics/china-hackers-espionage-defense-contractors/index.html
Suspected Chinese hackers breach more US defense and tech firms | CNN Politics

InfoSec Jupyterthon 2021 - Day 1 - YouTube

https://aka.ms/Jupyterthon2021Live1
InfoSec Jupyterthon 2021 - Day 1 - YouTube

Jumping the air gap: 15 years of nation‑state effort | WeLiveSecurity

https://www.welivesecurity.com/2021/12/01/jumping-air-gap-15-years-nation-state-effort/
Jumping the air gap: 15 years of nation‑state effort | WeLiveSecurity

Project Zero: This shouldn't have happened: A vulnerability postmortem

https://googleprojectzero.blogspot.com/2021/12/this-shouldnt-have-happened.html
Project Zero: This shouldn't have happened: A vulnerability postmortem

405 Banned

https://urlhaus.abuse.ch/browse/tag/emotet/
405 Banned

APT Conducts Active Campaign Against ManageEngine ServiceDesk Plus

https://unit42.paloaltonetworks.com/tiltedtemple-manageengine-servicedesk-plus/
APT Conducts Active Campaign Against ManageEngine ServiceDesk Plus

Former Ubiquiti dev charged for trying to extort his employer

https://www.bleepingcomputer.com/news/security/former-ubiquiti-dev-charged-for-trying-to-extort-his-employer/
Former Ubiquiti dev charged for trying to extort his employer

Researchers Warn Iranian Users of Widespread SMS Phishing Campaigns

https://thehackernews.com/2021/12/researchers-warn-iranian-users-of.html
Researchers Warn Iranian Users of Widespread SMS Phishing Campaigns

New malware hides as legit nginx process on e-commerce servers

https://www.bleepingcomputer.com/news/security/new-malware-hides-as-legit-nginx-process-on-e-commerce-servers/
New malware hides as legit nginx process on e-commerce servers

Tweet / Twitter

https://twitter.com/campuscodi/status/1466217906606329860
Tweet / Twitter

Microsoft Teams - Disabling chat with personal accounts - Cloudrun

https://cloudrun.co.uk/teams/disable-chat-teams-personal/
Microsoft Teams - Disabling chat with personal accounts - Cloudrun

Researches Detail 17 Malicious Frameworks Used to Attack Air-Gapped Networks

https://thehackernews.com/2021/12/researches-detail-17-malicious.html
Researches Detail 17 Malicious Frameworks Used to Attack Air-Gapped Networks

Critical Bug in Mozilla's NSS Crypto Library Potentially Affects Several Other Software

https://thehackernews.com/2021/12/critical-bug-in-mozillas-nss-crypto.html
Critical Bug in Mozilla's NSS Crypto Library Potentially Affects Several Other Software

Hakluke: Creating the Perfect Bug Bounty Automation - Detectify Labs

https://labs.detectify.com/2021/11/30/hakluke-creating-the-perfect-bug-bounty-automation/
Hakluke: Creating the Perfect Bug Bounty Automation - Detectify Labs

Emotet now spreads via fake Adobe Windows App Installer packages

https://www.bleepingcomputer.com/news/security/emotet-now-spreads-via-fake-adobe-windows-app-installer-packages/
Emotet now spreads via fake Adobe Windows App Installer packages

Hackers Steal $119M From ‘Web3’ Crypto Project With Old School Attack

https://www.vice.com/en/article/pkpp4n/hackers-steal-dollar119m-from-web3-crypto-project-with-old-school-attack
Hackers Steal $119M From ‘Web3’ Crypto Project With Old School Attack

Nine WiFi routers used by millions were vulnerable to 226 flaws

https://www.bleepingcomputer.com/news/security/nine-wifi-routers-used-by-millions-were-vulnerable-to-226-flaws/
Nine WiFi routers used by millions were vulnerable to 226 flaws

Disclosing state-linked information operations we've removed

https://blog.twitter.com/en_us/topics/company/2021/disclosing-state-linked-information-operations-we-ve-removed.html
Disclosing state-linked information operations we've removed

Injection is the New Black: Novel RTF Template Inject Technique Poised for Widespread Adoption Beyond APT Actors  | Proofpoint US

https://www.proofpoint.com/us/blog/threat-insight/injection-new-black-novel-rtf-template-inject-technique-poised-widespread
Injection is the New Black: Novel RTF Template Inject Technique Poised for Widespread Adoption Beyond APT Actors  | Proofpoint US

https://bit.ly/3ChiQsE

https://bit.ly/3ChiQsE

Signal >> Blog >> Become a Signal Sustainer

https://signal.org/blog/become-a-signal-sustainer/
Signal >> Blog >> Become a Signal Sustainer

Hackers Are Spamming Businesses’ Receipt Printers With ‘Antiwork’ Manifestos

https://www.vice.com/en/article/qjbb9d/hackers-are-spamming-businesses-receipt-printers-with-antiwork-manifestos
Hackers Are Spamming Businesses’ Receipt Printers With ‘Antiwork’ Manifestos