01/11

Guidance for preventing, detecting, and hunting for exploitation of the Log4j 2 vulnerability - Microsoft Security Blog

https://www.microsoft.com/security/blog/2021/12/11/guidance-for-preventing-detecting-and-hunting-for-cve-2021-44228-log4j-2-exploitation/
Guidance for preventing, detecting, and hunting for exploitation of the Log4j 2 vulnerability - Microsoft Security Blog

Page Not Found | CISA

http://go.usa.gov/xtYHj
Page Not Found | CISA

Malware-analysis-and-Reverse-engineering/NightSky_Ransomware–just_a_Rook_RW_fork_in_VMProtect_suit.md at main · Dump-GUY/Malware-analysis-and-Reverse-engineering · GitHub

https://github.com/Dump-GUY/Malware-analysis-and-Reverse-engineering/blob/main/NightSky_Ransomware%E2%80%93just_a_Rook_RW_fork_in_VMProtect_suit/NightSky_Ransomware%E2%80%93just_a_Rook_RW_fork_in_VMProtect_suit.md
Malware-analysis-and-Reverse-engineering/NightSky_Ransomware–just_a_Rook_RW_fork_in_VMProtect_suit.md at main · Dump-GUY/Malware-analysis-and-Reverse-engineering · GitHub

APT35 exploits Log4j vulnerability to distribute new modular PowerShell toolkit - Check Point Research

https://research.checkpoint.com/2022/apt35-exploits-log4j-vulnerability-to-distribute-new-modular-powershell-toolkit/
APT35 exploits Log4j vulnerability to distribute new modular PowerShell toolkit - Check Point Research

Page Not Found | Armor Cybersecurity

https://www.armor.com/resources/threat-intelligence/the-evolution-of-doppel-spider-from-bitpaymer-to-grief-ransomware/
Page Not Found | Armor Cybersecurity

How the Pentagon enlisted ethical hackers amid the Log4j crisis - The Record from Recorded Future News

https://therecord.media/how-the-pentagon-enlisted-ethical-hackers-amid-the-log4j-crisis/
How the Pentagon enlisted ethical hackers amid the Log4j crisis - The Record from Recorded Future News

JOINT_CSA_UNDERSTANDING_MITIGATING_RUSSIAN_CYBER_THREATS_TO_US_CRITICAL_INFRASTRUCTURE_20220111.PDF

https://media.defense.gov/2022/Jan/11/2002919950/-1/-1/1/JOINT_CSA_UNDERSTANDING_MITIGATING_RUSSIAN_CYBER_THREATS_TO_US_CRITICAL_INFRASTRUCTURE_20220111.PDF
JOINT_CSA_UNDERSTANDING_MITIGATING_RUSSIAN_CYBER_THREATS_TO_US_CRITICAL_INFRASTRUCTURE_20220111.PDF

Signed kernel drivers – Unguarded gateway to Windows’ core | WeLiveSecurity

https://www.welivesecurity.com/2022/01/11/signed-kernel-drivers-unguarded-gateway-windows-core/
Signed kernel drivers – Unguarded gateway to Windows’ core | WeLiveSecurity

Exploiting URL Parsing Confusion | Claroty

https://claroty.com/2022/01/10/blog-research-exploiting-url-parsing-confusion/
Exploiting URL Parsing Confusion | Claroty

CVE-2021-20038..42: SonicWall SMA 100 Multiple Vulnerabilities (FIXED) | Rapid7 Blog

https://www.rapid7.com/blog/post/2022/01/11/cve-2021-20038-42-sonicwall-sma-100-multiple-vulnerabilities-fixed-2/
CVE-2021-20038..42: SonicWall SMA 100 Multiple Vulnerabilities (FIXED) | Rapid7 Blog

Triage | Behavioral Report

https://tria.ge/220111-xwczmaggf8/behavioral2
Triage | Behavioral Report

Signal >> Blog >> New year, new CEO

https://signal.org/blog/new-year-new-ceo/
Signal >> Blog >> New year, new CEO

Domain Escalation – sAMAccountName Spoofing – Penetration Testing Lab

https://pentestlab.blog/2022/01/10/domain-escalation-samaccountname-spoofing/
Domain Escalation – sAMAccountName Spoofing – Penetration Testing Lab

ShadowCoerce | Pentest Laboratories

https://pentestlaboratories.com/2022/01/11/shadowcoerce/
ShadowCoerce | Pentest Laboratories

Signal CEO Resigns, WhatsApp Co-Founder Takes Over as Interim CEO

https://thehackernews.com/2022/01/signal-ceo-resigns-whatsapp-co-founder.html
Signal CEO Resigns, WhatsApp Co-Founder Takes Over as Interim CEO

CVE-2021-20039 | AttackerKB

https://attackerkb.com/topics/9szJhq46lw/cve-2021-20039/rapid7-analysis?referrer=twitter
CVE-2021-20039 | AttackerKB

2112.15561.pdf

https://arxiv.org/pdf/2112.15561.pdf
2112.15561.pdf

New SysJoker backdoor targets Windows, macOS, and Linux

https://www.bleepingcomputer.com/news/security/new-sysjocker-backdoor-targets-windows-macos-and-linux/
New SysJoker backdoor targets Windows, macOS, and Linux

Signed DLL campaigns as a service | by Jason Reaves | Walmart Global Tech Blog | Medium

https://medium.com/walmartglobaltech/signed-dll-campaigns-as-a-service-7760ac676489
Signed DLL campaigns as a service | by Jason Reaves | Walmart Global Tech Blog | Medium

Tweet / Twitter

https://twitter.com/th3_protoCOL/status/1480621526764322817
Tweet / Twitter

APT_REPORT/summary/2022 at master · blackorbird/APT_REPORT · GitHub

https://github.com/blackorbird/APT_REPORT/tree/master/summary/2022
APT_REPORT/summary/2022 at master · blackorbird/APT_REPORT · GitHub