02/09

SpoolFool: Windows Print Spooler Privilege Escalation (CVE-2022-21999) | by Oliver Lyak | Feb, 2022 | IFCR

https://research.ifcr.dk/spoolfool-windows-print-spooler-privilege-escalation-cve-2022-22718-bf7752b68d81
SpoolFool: Windows Print Spooler Privilege Escalation (CVE-2022-21999) | by Oliver Lyak | Feb, 2022 | IFCR

Ransomware dev releases Egregor, Maze master decryption keys

https://www.bleepingcomputer.com/news/security/ransomware-dev-releases-egregor-maze-master-decryption-keys/
Ransomware dev releases Egregor, Maze master decryption keys

Attack surface reduction rules reference | Microsoft Learn

https://docs.microsoft.com/en-us/microsoft-365/security/defender-endpoint/attack-surface-reduction-rules-reference?view=o365-worldwide#:~:text=The%20default%20state,end%20user%20notifications
Attack surface reduction rules reference | Microsoft Learn

Top 10 web hacking techniques of 2021 | PortSwigger Research

https://portswigger.net/research/top-10-web-hacking-techniques-of-2021
Top 10 web hacking techniques of 2021 | PortSwigger Research

Maze / Sekhmet / Egregor decryptor - Emsisoft: Free Ransomware Decryption Tools

https://www.emsisoft.com/ransomware-decryption-tools/maze-sekhmet-egregor
Maze / Sekhmet / Egregor decryptor - Emsisoft: Free Ransomware Decryption Tools

Radio station snafu in Seattle bricks some Mazda infotainment systems | Ars Technica

https://arstechnica.com/cars/2022/02/radio-station-snafu-in-seattle-bricks-some-mazda-infotainment-systems/
Radio station snafu in Seattle bricks some Mazda infotainment systems | Ars Technica

CISA, FBI, NSA and International Partners Issue Advisory on Ransomware Trends from 2021 > National Security Agency/Central Security Service > Article

https://www.nsa.gov/Press-Room/News-Highlights/Article/Article/2928709/cisa-fbi-nsa-and-international-partners-issue-advisory-on-ransomware-trends-fro/
CISA, FBI, NSA and International Partners Issue Advisory on Ransomware Trends from 2021 > National Security Agency/Central Security Service > Article

The Limited Edition BloodHound Shirt Custom Ink Fundraising

https://www.customink.com/fundraising/bloodhound-22
The Limited Edition BloodHound Shirt Custom Ink Fundraising

Ugg Boots 4 Sale: A Tale of Palestinian-Aligned Espionage | Proofpoint US

https://www.proofpoint.com/us/blog/threat-insight/ugg-boots-4-sale-tale-palestinian-aligned-espionage
Ugg Boots 4 Sale: A Tale of Palestinian-Aligned Espionage | Proofpoint US

CISA and SAP warn about major vulnerability - The Record from Recorded Future News

https://therecord.media/cisa-and-sap-warn-about-major-vulnerability/
CISA and SAP warn about major vulnerability - The Record from Recorded Future News

Two Arrested for Alleged Conspiracy to Launder $4.5 Billion in Stolen Cryptocurrency | OPA | Department of Justice

https://www.justice.gov/opa/pr/two-arrested-alleged-conspiracy-launder-45-billion-stolen-cryptocurrency
Two Arrested for Alleged Conspiracy to Launder $4.5 Billion in Stolen Cryptocurrency | OPA | Department of Justice

NaturalFreshMall: a Vulnerable Magento Extension and a Mass Hack – Sansec

https://sansec.io/research/naturalfreshmall-mass-hack
NaturalFreshMall: a Vulnerable Magento Extension and a Mass Hack – Sansec

CVE-2022-21703: cross-origin request forgery against Grafana :: jub0bs.com

https://jub0bs.com/posts/2022-02-08-cve-2022-21703-writeup/
CVE-2022-21703: cross-origin request forgery against Grafana :: jub0bs.com

Site not found · GitHub Pages

https://elastic.github.io/security-research/whitepapers/2022/02/03.exploring-windows-uac-bypass-techniques-detection-strategies/article/
Site not found · GitHub Pages

NCSC joins US and Australian partners to reveal latest... - NCSC.GOV.UK

https://www.ncsc.gov.uk/news/ncsc-joins-us-and-australian-partners-to-reveal-latest-ransomware-trends
NCSC joins US and Australian partners to reveal latest... - NCSC.GOV.UK

CyberSlide - The Cyber Startup Observatory

https://cyberstartupobservatory.com/resources-cyberslide/
CyberSlide - The Cyber Startup Observatory

404 - File Not Found | CISA

http://go.usa.gov/xt79T
404 - File Not Found | CISA

Microsoft and Other Major Software Firms Release February 2022 Patch Updates

https://thehackernews.com/2022/02/microsoft-and-other-major-software.html
Microsoft and Other Major Software Firms Release February 2022 Patch Updates

eset_threat_report_t32021.pdf

https://www.welivesecurity.com/wp-content/uploads/2022/02/eset_threat_report_t32021.pdf
eset_threat_report_t32021.pdf

CISA warns admins to patch maximum severity SAP vulnerability

https://www.bleepingcomputer.com/news/security/cisa-warns-admins-to-patch-maximum-severity-sap-vulnerability/
CISA warns admins to patch maximum severity SAP vulnerability

Russian APT Hackers Used COVID-19 Lures to Target European Diplomats

https://thehackernews.com/2022/02/russian-apt-hackers-used-covid-19-lures.html
Russian APT Hackers Used COVID-19 Lures to Target European Diplomats

IcedID/icedID_09.02.2022.txt at main · pr0xylife/IcedID · GitHub

https://github.com/pr0xylife/IcedID/blob/main/icedID_09.02.2022.txt
IcedID/icedID_09.02.2022.txt at main · pr0xylife/IcedID · GitHub

Microsoft (MSFT) Considering Possible Deal For Mandiant (MNDT) - Bloomberg

https://www.bloomberg.com/news/articles/2022-02-08/microsoft-is-said-to-pursue-deal-for-cybersecurity-firm-mandiant
Microsoft (MSFT) Considering Possible Deal For Mandiant (MNDT) - Bloomberg