01/20

MoonBounce: the dark side of UEFI firmware | Securelist

https://securelist.com/moonbounce-the-dark-side-of-uefi-firmware/105468/
MoonBounce: the dark side of UEFI firmware | Securelist

vx-underground - Directory

https://samples.vx-underground.org/samples/Families/
vx-underground - Directory

Windows Drivers Reverse Engineering Methodology - VoidSec

https://voidsec.com/windows-drivers-reverse-engineering-methodology/
Windows Drivers Reverse Engineering Methodology - VoidSec

VirusTotal - File - 694fb9d8ffeddf9988e6ae8946a50ee195ebb3021b0d0b0370f5246a497c4353

https://www.virustotal.com/gui/file/694fb9d8ffeddf9988e6ae8946a50ee195ebb3021b0d0b0370f5246a497c4353/community
VirusTotal - File - 694fb9d8ffeddf9988e6ae8946a50ee195ebb3021b0d0b0370f5246a497c4353

Hackers Attempt to Exploit New SolarWinds Serv-U Bug in Log4Shell Attacks

https://thehackernews.com/2022/01/microsoft-hackers-exploiting-new.html
Hackers Attempt to Exploit New SolarWinds Serv-U Bug in Log4Shell Attacks

Zloader Installs Remote Access Backdoors and Delivers Cobalt Strike – Sophos News

https://news.sophos.com/en-us/2022/01/19/zloader-installs-remote-access-backdoors-and-delivers-cobalt-strike/
Zloader Installs Remote Access Backdoors and Delivers Cobalt Strike – Sophos News

Google Details Two Zero-Day Bugs Reported in Zoom Clients and MMR Servers

https://thehackernews.com/2022/01/google-details-two-zero-day-bugs.html
Google Details Two Zero-Day Bugs Reported in Zoom Clients and MMR Servers

Belarusian Government Officials Charged with Aircraft Piracy for Diverting Ryanair Flight 4978 to Arrest Dissident Journalist in May 2021 | OPA | Department of Justice

https://www.justice.gov/opa/pr/belarusian-government-officials-charged-aircraft-piracy-diverting-ryanair-flight-4978-arrest
Belarusian Government Officials Charged with Aircraft Piracy for Diverting Ryanair Flight 4978 to Arrest Dissident Journalist in May 2021 | OPA | Department of Justice

Memorandum on Improving the Cybersecurity of National Security, Department of Defense, and Intelligence Community Systems - The White House

https://www.whitehouse.gov/briefing-room/presidential-actions/2022/01/19/memorandum-on-improving-the-cybersecurity-of-national-security-department-of-defense-and-intelligence-community-systems/
Memorandum on Improving the Cybersecurity of National Security, Department of Defense, and Intelligence Community Systems - The White House

One Source to Rule Them All: Chasing AVADDON Ransomware | Mandiant

https://www.mandiant.com/resources/chasing-avaddon-ransomware
One Source to Rule Them All: Chasing AVADDON Ransomware | Mandiant

WMI for Script Kiddies - TrustedSec

https://hubs.la/Q012zm7n0
WMI for Script Kiddies - TrustedSec

People Can’t See Some NFTs on Twitter, Crypto Wallets After OpenSea Goes Down

https://www.vice.com/en/article/g5qjej/people-cant-see-some-nfts-in-crypto-wallets-after-opensea-goes-down
People Can’t See Some NFTs on Twitter, Crypto Wallets After OpenSea Goes Down

The Real "F-Word": Understanding the Source of False Positives from EDR Systems & How to Ease the Pain | SANS Institute

https://www.sans.org/webcasts/the-real-f-word-understanding-the-source-of-false-positives-from-edr-systems-how-to-ease-the-pain/
The Real "F-Word": Understanding the Source of False Positives from EDR Systems & How to Ease the Pain | SANS Institute

SecurityZines

http://securityzines.com
SecurityZines

Cisco bug gives remote attackers root privileges via debug mode

https://www.bleepingcomputer.com/news/security/cisco-bug-gives-remote-attackers-root-privileges-via-debug-mode/
Cisco bug gives remote attackers root privileges via debug mode

Supply-Chain Risk Management: Doing More for Less - Infosecurity Magazine

https://www.infosecurity-magazine.com/webinars/supply-chain-risk-management/
Supply-Chain Risk Management: Doing More for Less - Infosecurity Magazine

EU wants to build its own DNS infrastructure with built-in filtering capabilities - The Record from Recorded Future News

https://therecord.media/eu-wants-to-build-its-own-dns-infrastructure-with-built-in-filtering-capabilities/
EU wants to build its own DNS infrastructure with built-in filtering capabilities - The Record from Recorded Future News

FBI links Diavol ransomware to the TrickBot cybercrime group

https://www.bleepingcomputer.com/news/security/fbi-links-diavol-ransomware-to-the-trickbot-cybercrime-group/
FBI links Diavol ransomware to the TrickBot cybercrime group

Pirates Spammed an Infamous Soviet Short-wave Radio Station with Memes

https://www.vice.com/en/article/y3vbjj/pirates-spammed-an-infamous-soviet-short-wave-radio-station-with-memes-uvb-76
Pirates Spammed an Infamous Soviet Short-wave Radio Station with Memes

Site not found · GitHub Pages

https://elastic.github.io/security-research/malware/2022/01/01.operation-bleeding-bear/article/
Site not found · GitHub Pages

New BHUNT Password Stealer Malware Targeting Cryptocurrency Wallets

https://thehackernews.com/2022/01/new-bhunt-password-stealer-malware.html
New BHUNT Password Stealer Malware Targeting Cryptocurrency Wallets

test.mysmartlogon.com PingCastle 2023-02-20

https://pingcastle.com/PingCastleFiles/ad_hc_test.mysmartlogon.com.html
test.mysmartlogon.com PingCastle 2023-02-20