02/01

Mars Stealer: Oski refactoring | 3xp0rt

https://3xp0rt.com/posts/mars-stealer
Mars Stealer: Oski refactoring | 3xp0rt

writeups/Hacking-Google-Drive-Integrations.md at main · httpvoid/writeups · GitHub

https://github.com/httpvoid/writeups/blob/main/Hacking-Google-Drive-Integrations.md
writeups/Hacking-Google-Drive-Integrations.md at main · httpvoid/writeups · GitHub

Inside Trickbot, Russia’s Notorious Ransomware Gang | WIRED

https://www.wired.com/story/trickbot-malware-group-internal-messages/
Inside Trickbot, Russia’s Notorious Ransomware Gang | WIRED

Iranian APT MuddyWater targets Turkish users via malicious PDFs, executables

https://blog.talosintelligence.com/2022/01/iranian-apt-muddywater-targets-turkey.html
Iranian APT MuddyWater targets Turkish users via malicious PDFs, executables

Cryptanalysis and quantum: How NSA spies are trying to shape the future | MIT Technology Review

https://www.technologyreview.com/2022/02/01/1044561/meet-the-nsa-spies-shaping-the-future/
Cryptanalysis and quantum: How NSA spies are trying to shape the future | MIT Technology Review

(1) New Messages!

https://www.cybereason.com/blog/strifewater-rat-iranian-apt-moses-staff-adds-new-trojan-to-ransomware-operations
(1) New Messages!

SysWhispers is dead, long live SysWhispers! | CyberSecurity Blog

https://klezvirus.github.io/RedTeaming/AV_Evasion/NoSysWhisper/
SysWhispers is dead, long live SysWhispers! | CyberSecurity Blog

New Samba Bug Allows Remote Attackers to Execute Arbitrary Code as Root

https://thehackernews.com/2022/01/new-samba-bug-allows-remote-attackers.html
New Samba Bug Allows Remote Attackers to Execute Arbitrary Code as Root

Tweet / Twitter

https://twitter.com/edbutler2/status/1488496146242850818
Tweet / Twitter

Iranian Hackers Using New PowerShell Backdoor in Cyber Espionage Attacks

https://thehackernews.com/2022/02/iranian-hackers-using-new-powershell.html
Iranian Hackers Using New PowerShell Backdoor in Cyber Espionage Attacks

Triage | Static Report

https://tria.ge/220201-p64w4aaffq/static1
Triage | Static Report

Researchers Uncover New Iranian Hacking Campaign Targeting Turkish Users

https://thehackernews.com/2022/01/researchers-uncover-new-iranian-hacking.html
Researchers Uncover New Iranian Hacking Campaign Targeting Turkish Users

Security Onion: Security Onion 2.3.100 now available including SOC Cases!

https://blog.securityonion.net/2022/01/security-onion-23100-now-available.html
Security Onion: Security Onion 2.3.100 now available including SOC Cases!

Domain Escalation – Machine Accounts – Penetration Testing Lab

https://pentestlab.blog/2022/02/01/machine-accounts/
Domain Escalation – Machine Accounts – Penetration Testing Lab

PowerLess Trojan: Iranian APT Phosphorus Adds New PowerShell Backdoor for Espionage

https://www.cybereason.com/blog/powerless-trojan-iranian-apt-phosphorus-adds-new-powershell-backdoor-for-espionage
PowerLess Trojan: Iranian APT Phosphorus Adds New PowerShell Backdoor for Espionage

Deep Malware Analysis - Deep Malware Analysis on a Domain joined Analyzer

https://www.joesecurity.org/blog/900813386196537837
Deep Malware Analysis - Deep Malware Analysis on a Domain joined Analyzer

New SureMDM Vulnerabilities Could Expose Companies to Supply Chain Attacks

https://thehackernews.com/2022/01/new-suremdm-vulnerabilities-could.html
New SureMDM Vulnerabilities Could Expose Companies to Supply Chain Attacks

SolarMarker Malware Uses Novel Techniques to Persist on Hacked Systems

https://thehackernews.com/2022/02/solarmarker-malware-uses-novel.html
SolarMarker Malware Uses Novel Techniques to Persist on Hacked Systems