01/07

EDR Parallel-asis through Analysis - MDSec

https://www.mdsec.co.uk/2022/01/edr-parallel-asis-through-analysis/
EDR Parallel-asis through Analysis - MDSec

Spring Boot + H2数据库JNDI注入

https://mp.weixin.qq.com/s/Yn5U8WHGJZbTJsxwUU3UiQ
Spring Boot + H2数据库JNDI注入

JNDI-Related Vulnerability Discovered in H2 Database Console | JFrog

https://jfrog.com/blog/the-jndi-strikes-back-unauthenticated-rce-in-h2-database-console/
JNDI-Related Vulnerability Discovered in H2 Database Console | JFrog

FinalSite ransomware attack shuts down thousands of school websites

https://www.bleepingcomputer.com/news/security/finalsite-ransomware-attack-shuts-down-thousands-of-school-websites/
FinalSite ransomware attack shuts down thousands of school websites

FluBot malware now targets Europe posing as Flash Player app

https://www.bleepingcomputer.com/news/security/flubot-malware-now-targets-europe-posing-as-flash-player-app/
FluBot malware now targets Europe posing as Flash Player app

Space / Twitter

https://twitter.com/i/spaces/1OyKADkEwYNxb
Space / Twitter

Log4Shell-like Critical RCE Flaw Discovered in H2 Database Console

https://thehackernews.com/2022/01/log4shell-like-critical-rce-flaw.html
Log4Shell-like Critical RCE Flaw Discovered in H2 Database Console

Google Docs Comment Exploit Allows for Distribution of Phishing and Malware

https://www.avanan.com/blog/google-docs-comment-exploit-allows-for-distribution-of-phishing-and-malware
Google Docs Comment Exploit Allows for Distribution of Phishing and Malware

UK NHS: Threat actor targets VMware Horizon servers using Log4Shell exploits - The Record from Recorded Future News

https://therecord.media/uk-nhs-threat-actor-targets-vmware-horizon-servers-using-log4shell-exploits/
UK NHS: Threat actor targets VMware Horizon servers using Log4Shell exploits - The Record from Recorded Future News

A phishing document signed by Microsoft – part 2 | Outflank

https://outflank.nl/blog/2022/01/07/a-phishing-document-signed-by-microsoft-part-2/
A phishing document signed by Microsoft – part 2 | Outflank

Security Researcher Finds Facebook App Tracking iPhone Movements

https://www.forbes.com/sites/zakdoffman/2021/10/23/apple-iphone-users-delete-facebook-app-after-new-tracking-warning/
Security Researcher Finds Facebook App Tracking iPhone Movements

FBI: FIN7 hackers target US companies with BadUSB devices to install ransomware - The Record from Recorded Future News

https://therecord.media/fbi-fin7-hackers-target-us-companies-with-badusb-devices-to-install-ransomware/
FBI: FIN7 hackers target US companies with BadUSB devices to install ransomware - The Record from Recorded Future News

NOBELIUM’s EnvyScout infection chain goes in the registry

https://www.sekoia.io/en/nobeliums-envyscout-infection-chain-goes-in-the-registry-targeting-embassies/
NOBELIUM’s EnvyScout infection chain goes in the registry

Enumerates why each DLL loaded for each process via PEB · GitHub

https://gist.github.com/olliencc/2ebe7c1305f45175fc3972b99a769a2f
Enumerates why each DLL loaded for each process via PEB · GitHub

Blog — Signal Labs

https://www.signal-labs.com/blog
Blog — Signal Labs

VirusTotal - File - 2823b5805c218ecca1843e6b410654de4e3044259dcfc86ccaa3fd7c2a35cfba

https://www.virustotal.com/gui/file/2823b5805c218ecca1843e6b410654de4e3044259dcfc86ccaa3fd7c2a35cfba
VirusTotal - File - 2823b5805c218ecca1843e6b410654de4e3044259dcfc86ccaa3fd7c2a35cfba

Moxie Marlinspike >> Blog >> My first impressions of web3

https://moxie.org/2022/01/07/web3-first-impressions.html
Moxie Marlinspike >> Blog >> My first impressions of web3