12/07

The hidden side of Seclogon part 2: Abusing leaked handles to dump LSASS memory

https://splintercod3.blogspot.com/p/the-hidden-side-of-seclogon-part-2.html
The hidden side of Seclogon part 2: Abusing leaked handles to dump LSASS memory

Windows 10 RCE: The exploit is in the link | Positive Security

https://positive.security/blog/ms-officecmd-rce
Windows 10 RCE: The exploit is in the link | Positive Security

Ransomware playbook (ITSM.00.099) - Canadian Centre for Cyber Security

https://cyber.gc.ca/en/guidance/ransomware-playbook-itsm00099?mtm_campaign=cse-cst-ransomware-2021&mtm_source=twt&mtm_medium=smo&mtm_content=ransomware-playbook-e
Ransomware playbook (ITSM.00.099) - Canadian Centre for Cyber Security

Project Zero: Windows Exploitation Tricks: Relaying DCOM Authentication

https://googleprojectzero.blogspot.com/2021/10/windows-exploitation-tricks-relaying.html
Project Zero: Windows Exploitation Tricks: Relaying DCOM Authentication

Kamala Harris Is Right: Bluetooth Is a Security Risk

https://www.vice.com/en/article/pkpgd7/kamala-harris-is-right-bluetooth-is-a-security-risk
Kamala Harris Is Right: Bluetooth Is a Security Risk

NICKEL targeting government organizations across Latin America and Europe - Microsoft Security Blog

https://www.microsoft.com/security/blog/2021/12/06/nickel-targeting-government-organizations-across-latin-america-and-europe/
NICKEL targeting government organizations across Latin America and Europe - Microsoft Security Blog

GitHub - wavestone-cdt/EDRSandblast

https://github.com/wavestone-cdt/EdrSandblast
GitHub - wavestone-cdt/EDRSandblast

Not found – 404 error

https://jobs.lever.co/redcanary/bf6b74f6-a78e-4c42-bd40-fefc1517e157
Not found – 404 error

SolarWinds Hackers Targeting Government and Business Entities Worldwide

https://thehackernews.com/2021/12/solarwinds-hackers-targeting-government.html
SolarWinds Hackers Targeting Government and Business Entities Worldwide

FIN13: A Cybercriminal Threat Actor Focused on Mexico | Mandiant

https://www.mandiant.com/resources/fin13-cybercriminal-mexico
FIN13: A Cybercriminal Threat Actor Focused on Mexico | Mandiant

The Popular Family Safety App Life360 Is Selling Precise Location Data on Its Tens of Millions of Users – The Markup

https://themarkup.org/privacy/2021/12/06/the-popular-family-safety-app-life360-is-selling-precise-location-data-on-its-tens-of-millions-of-user
The Popular Family Safety App Life360 Is Selling Precise Location Data on Its Tens of Millions of Users – The Markup

Microsoft Seizes 42 Malicious Web Domains Used By Chinese Hackers

https://thehackernews.com/2021/12/microsoft-seizes-42-malicious-web.html
Microsoft Seizes 42 Malicious Web Domains Used By Chinese Hackers

Latest Firefox 95 Includes RLBox Sandboxing to Protect Browser from Malicious Code

https://thehackernews.com/2021/12/latest-firefox-95-includes-rlbox.html
Latest Firefox 95 Includes RLBox Sandboxing to Protect Browser from Malicious Code

Disrupting the Glupteba operation

https://blog.google/threat-analysis-group/disrupting-glupteba-operation/
Disrupting the Glupteba operation

Protecting people from recent cyberattacks - Microsoft On the Issues

https://blogs.microsoft.com/on-the-issues/2021/12/06/cyberattacks-nickel-dcu-china/
Protecting people from recent cyberattacks - Microsoft On the Issues

Win My Golden Ticket! | Chris Sanders

https://chrissanders.org/2021/12/goldenticket2021/
Win My Golden Ticket! | Chris Sanders

The story of the year: ransomware in the headlines | Securelist

https://securelist.com/the-story-of-the-year-ransomware-in-the-headlines/105138/
The story of the year: ransomware in the headlines | Securelist