12/03

U.S. State Department phones hacked with Israeli company spyware - sources | Reuters

https://www.reuters.com/technology/exclusive-us-state-department-phones-hacked-with-israeli-company-spyware-sources-2021-12-03/
U.S. State Department phones hacked with Israeli company spyware - sources | Reuters

InfoSec Jupyterthon 2021 - Day 2 - YouTube

https://aka.ms/Jupyterthon2021Live2
InfoSec Jupyterthon 2021 - Day 2 - YouTube

A mysterious threat actor is running hundreds of malicious Tor relays

https://therecord.media/a-mysterious-threat-actor-is-running-hundreds-of-malicious-tor-relays/
A mysterious threat actor is running hundreds of malicious Tor relays

New Payment Data Stealing Malware Hides in Nginx Process on Linux Servers

https://thehackernews.com/2021/12/new-payment-data-sealing-malware-hides.html
New Payment Data Stealing Malware Hides in Nginx Process on Linux Servers

Azure Privilege Escalation via Azure API Permissions Abuse | by Andy Robbins | Posts By SpecterOps Team Members

https://posts.specterops.io/azure-privilege-escalation-via-azure-api-permissions-abuse-74aee1006f48
Azure Privilege Escalation via Azure API Permissions Abuse | by Andy Robbins | Posts By SpecterOps Team Members

SideCopy APT: Connecting lures to victims, payloads to infrastructure

https://blog.malwarebytes.com/threat-intelligence/2021/12/sidecopy-apt-connecting-lures-to-victims-payloads-to-infrastructure/
SideCopy APT: Connecting lures to victims, payloads to infrastructure

Space / Twitter

https://twitter.com/i/spaces/1lPKqmPlwknKb
Space / Twitter

US State Department Employees Targeted with NSO Group Malware

https://www.vice.com/en/article/5dggxk/us-state-department-employees-targeted-with-nso-group-malware
US State Department Employees Targeted with NSO Group Malware

FBI - Tips

http://tips.fbi.gov
FBI - Tips

Tags · lgandx/Responder · GitHub

https://github.com/lgandx/Responder/tags
Tags · lgandx/Responder · GitHub

Home 🏠 - Subdomain Enumeration Guide

https://sidxparab.gitbook.io/subdomain-enumeration-guide/
Home 🏠 - Subdomain Enumeration Guide

Fundraiser by Tod Beardsley : Molly Beardsley Memorial Fund

https://www.gofundme.com/f/molly-beardsley-memorial-fund
Fundraiser by Tod Beardsley : Molly Beardsley Memorial Fund

CISA Warns of Actively Exploited Critical Zoho ManageEngine ServiceDesk Vulnerability

https://thehackernews.com/2021/12/cisa-warns-of-actively-exploited.html
CISA Warns of Actively Exploited Critical Zoho ManageEngine ServiceDesk Vulnerability

https://bit.ly/3ChiQsE

https://bit.ly/3ChiQsE

Space / Twitter

https://twitter.com/i/spaces/1nAJEYlWQRRJL
Space / Twitter

NSO Pegasus spyware used to hack U.S. diplomats’ phones - The Washington Post

https://www.washingtonpost.com/technology/2021/12/03/israel-nso-pegasus-hack-us-diplomats/?tid=ss_tw
NSO Pegasus spyware used to hack U.S. diplomats’ phones - The Washington Post

GitHub - l0ggg/VMware_vCenter: VMware vCenter 7.0.2.00100 unauth Arbitrary File Read + SSRF + Reflected XSS

https://github.com/l0ggg/VMware_vCenter?fbclid=IwAR3JfQTRI7ZGcsB2nh-IAZPkCLwGgiLcv_u1LBxHDCzULcUDvH14Z2yhG0g
GitHub - l0ggg/VMware_vCenter: VMware vCenter 7.0.2.00100 unauth Arbitrary File Read + SSRF + Reflected XSS

Tweet / Twitter

https://twitter.com/campuscodi/status/1466747229016924163
Tweet / Twitter