02/04

offensivecon_22_attacking_javascript_engines.pdf

https://saelo.github.io/presentations/offensivecon_22_attacking_javascript_engines.pdf
offensivecon_22_attacking_javascript_engines.pdf

Operation EmailThief: Active Exploitation of Zero-day XSS Vulnerability in Zimbra | Volexity

https://www.volexity.com/blog/2022/02/03/operation-emailthief-active-exploitation-of-zero-day-xss-vulnerability-in-zimbra/
Operation EmailThief: Active Exploitation of Zero-day XSS Vulnerability in Zimbra | Volexity

Cyberattack on News Corp, Believed Linked to China, Targeted Emails of Journalists, Others - WSJ

https://www.wsj.com/articles/cyberattack-on-news-corp-believed-linked-to-china-targeted-emails-of-journalists-others-11643979328?st=yrhf72fjgcuccqv&reflink=desktopwebshare_permalink
Cyberattack on News Corp, Believed Linked to China, Targeted Emails of Journalists, Others - WSJ

An ALPHV (BlackCat) representative discusses the group’s plans for a ransomware ‘meta-universe’ - The Record from Recorded Future News

https://therecord.media/an-alphv-blackcat-representative-discusses-the-groups-plans-for-a-ransomware-meta-universe/
An ALPHV (BlackCat) representative discusses the group’s plans for a ransomware ‘meta-universe’ - The Record from Recorded Future News

ACTINIUM targets Ukrainian organizations - Microsoft Security Blog

https://www.microsoft.com/security/blog/2022/02/04/actinium-targets-ukrainian-organizations/
ACTINIUM targets Ukrainian organizations - Microsoft Security Blog

NSA Funds Development, Release of D3FEND > National Security Agency/Central Security Service > Press Release View

https://www.nsa.gov/Press-Room/Press-Releases-Statements/Press-Release-View/Article/2665993/nsa-funds-development-release-of-d3fend/
NSA Funds Development, Release of D3FEND > National Security Agency/Central Security Service > Press Release View

Malware Analysis Series (MAS) – Article 2 – Exploit Reversing

https://exploitreversing.com/2022/02/03/malware-analysis-series-mas-article-2/
Malware Analysis Series (MAS) – Article 2 – Exploit Reversing

Firefox JIT Use-After-Frees | Exploiting CVE-2020-26950 - SentinelOne

https://www.sentinelone.com/labs/firefox-jit-use-after-frees-exploiting-cve-2020-26950/
Firefox JIT Use-After-Frees | Exploiting CVE-2020-26950 - SentinelOne

Hackers Exploited 0-Day Vulnerability in Zimbra Email Platform to Spy on Users

https://thehackernews.com/2022/02/hackers-exploited-0-day-vulnerability.html
Hackers Exploited 0-Day Vulnerability in Zimbra Email Platform to Spy on Users

Cyber Signals: Defending against cyber threats with the latest research, insights, and trends - Microsoft Security Blog

https://www.microsoft.com/security/blog/2022/02/03/cyber-signals-defending-against-cyber-threats-with-the-latest-research-insights-and-trends/
Cyber Signals: Defending against cyber threats with the latest research, insights, and trends - Microsoft Security Blog

MalwareBazaar | Browse Checking your browser

https://bazaar.abuse.ch/sample/54d8230199caabbab5472a7c92343960101223744e0cab53f7029113d144d77f/
MalwareBazaar | Browse Checking your browser

Emotet/e4_emotet_04.02.2022.txt at main · pr0xylife/Emotet · GitHub

https://github.com/pr0xylife/Emotet/blob/main/e4_emotet_04.02.2022.txt
Emotet/e4_emotet_04.02.2022.txt at main · pr0xylife/Emotet · GitHub

News Corp breached by suspected Chinese hackers - The Record from Recorded Future News

https://therecord.media/news-corp-breached-by-suspected-chinese-hackers/
News Corp breached by suspected Chinese hackers - The Record from Recorded Future News

State hackers' new malware helped them stay undetected for 250 days

https://www.bleepingcomputer.com/news/security/state-hackers-new-malware-helped-them-stay-undetected-for-250-days/
State hackers' new malware helped them stay undetected for 250 days

Another Israeli Firm, QuaDream, Caught Weaponizing iPhone Bug for Spyware

https://thehackernews.com/2022/02/another-israeli-firm-quadream-caught.html
Another Israeli Firm, QuaDream, Caught Weaponizing iPhone Bug for Spyware

A look at the new Sugar ransomware demanding low ransoms

https://www.bleepingcomputer.com/news/security/a-look-at-the-new-sugar-ransomware-demanding-low-ransoms/
A look at the new Sugar ransomware demanding low ransoms

IWCon2022

http://iwcon.live
IWCon2022

Emotet/e5_emotet_04.02.2022.txt at main · pr0xylife/Emotet · GitHub

https://github.com/pr0xylife/Emotet/blob/main/e5_emotet_04.02.2022.txt
Emotet/e5_emotet_04.02.2022.txt at main · pr0xylife/Emotet · GitHub

U.S. Authorities Charge 6 Indian Call Centers Scamming Thousands of Americans

https://thehackernews.com/2022/02/us-authorities-charge-6-indian-call.html
U.S. Authorities Charge 6 Indian Call Centers Scamming Thousands of Americans

Kronos Still Dragging Itself Back From Ransomware Hell | Threatpost

https://threatpost.com/kronos-dragging-itself-back-ransomware-hell/178213/
Kronos Still Dragging Itself Back From Ransomware Hell | Threatpost

Testing Two-Factor Authentication – NCC Group Research

https://research.nccgroup.com/2021/06/10/testing-two-factor-authentication/
Testing Two-Factor Authentication – NCC Group Research