03/01

IsaacWiper and HermeticWizard: New wiper and worm targeting Ukraine | WeLiveSecurity

https://www.welivesecurity.com/2022/03/01/isaacwiper-hermeticwizard-wiper-worm-targeting-ukraine/
IsaacWiper and HermeticWizard: New wiper and worm targeting Ukraine | WeLiveSecurity

vx-underground - Directory

https://share.vx-underground.org
vx-underground - Directory

vx-underground - Directory

https://share.vx-underground.org/Conti/
vx-underground - Directory

SEKTOR7 Institute

https://institute.sektor7.net/?coupon=DONATE-UKRAINE
SEKTOR7 Institute

Introducing the Golden GMSA Attack | Semperis

https://www.semperis.com/blog/golden-gmsa-attack/
Introducing the Golden GMSA Attack | Semperis

Rogue RDP – Revisiting Initial Access Methods - Black Hills Information Security

https://www.blackhillsinfosec.com/rogue-rdp-revisiting-initial-access-methods/
Rogue RDP – Revisiting Initial Access Methods - Black Hills Information Security

Namecheap is banning Russians, asks them to switch registrars

https://www.bleepingcomputer.com/news/technology/namecheap-terminates-services-for-russians-asks-them-to-move-domains/
Namecheap is banning Russians, asks them to switch registrars

Asylum Ambuscade: State Actor Uses Compromised Private Ukrainian Military Emails to Target European Governments and Refugee Movement | Proofpoint US

https://www.proofpoint.com/us/blog/threat-insight/asylum-ambuscade-state-actor-uses-compromised-private-ukrainian-military-emails
Asylum Ambuscade: State Actor Uses Compromised Private Ukrainian Military Emails to Target European Governments and Refugee Movement | Proofpoint US

404 Page not found

https://hardenedvault.net/2022/03/01/poc-cve-2021-26708.html
404 Page not found

Learning Linux kernel exploitation - Part 1 - Laying the groundwork

https://0x434b.dev/dabbling-with-linux-kernel-exploitation-ctf-challenges-to-learn-the-ropes/
Learning Linux kernel exploitation - Part 1 - Laying the groundwork

How I Cracked CONTI Ransomware Group’s Leaked Source Code ZIP File - Wade Hickey - Medium

https://medium.com/@whickey000/how-i-cracked-conti-ransomware-groups-leaked-source-code-zip-file-e15d54663a8
How I Cracked CONTI Ransomware Group’s Leaked Source Code ZIP File - Wade Hickey - Medium

Daxin: Stealthy Backdoor Designed for Attacks Against Hardened Networks | Broadcom Software Blogs

https://symantec-enterprise-blogs.security.com/blogs/threat-intelligence/daxin-backdoor-espionage
Daxin: Stealthy Backdoor Designed for Attacks Against Hardened Networks | Broadcom Software Blogs

Conti Ransomware Group Diaries, Part I: Evasion – Krebs on Security

https://krebsonsecurity.com/2022/03/conti-ransomware-group-diaries-part-i-evasion/
Conti Ransomware Group Diaries, Part I: Evasion – Krebs on Security

Ready, Set, Go — Golang Internals and Symbol Recovery | Mandiant

https://www.mandiant.com/resources/golang-internals-symbol-recovery
Ready, Set, Go — Golang Internals and Symbol Recovery | Mandiant

Digital technology and the war in Ukraine - Microsoft On the Issues

https://blogs.microsoft.com/on-the-issues/2022/02/28/ukraine-russia-digital-war-cyberattacks/
Digital technology and the war in Ukraine - Microsoft On the Issues

'Help Ukraine' crypto scams emerge as Ukraine raises over $37 million

https://www.bleepingcomputer.com/news/security/help-ukraine-crypto-scams-emerge-as-ukraine-raises-over-37-million/
'Help Ukraine' crypto scams emerge as Ukraine raises over $37 million

‘Yes, He Would’: Fiona Hill on Putin and Nukes - POLITICO

https://www.politico.com/news/magazine/2022/02/28/world-war-iii-already-there-00012340
‘Yes, He Would’: Fiona Hill on Putin and Nukes - POLITICO

DiskKill/HermeticWiper and NotPetya (Dis)similarities

https://marcoramilli.com/2022/03/01/diskkill-hermeticwiper-and-notpetya-dissimilarities/
DiskKill/HermeticWiper and NotPetya (Dis)similarities

Microsoft: Windows domain controller restarts caused by LSASS crashes

https://www.bleepingcomputer.com/news/microsoft/microsoft-windows-domain-controller-restarts-caused-by-lsass-crashes/
Microsoft: Windows domain controller restarts caused by LSASS crashes

Sign Up | LinkedIn

https://www.linkedin.com/posts/lcarhart_im-happy-to-share-that-im-starting-a-new-activity-6901974949796679680-Oqa_
Sign Up | LinkedIn

Making Space for Diversity in Cybersecurity - Ms. Magazine

https://msmagazine.com/2022/02/25/diversity-cybersecurity-black-women/
Making Space for Diversity in Cybersecurity - Ms. Magazine

TrickBot Malware Gang Upgrades its AnchorDNS Backdoor to AnchorMail

https://thehackernews.com/2022/03/trickbot-malware-gang-upgrades-its.html
TrickBot Malware Gang Upgrades its AnchorDNS Backdoor to AnchorMail

Shields Up | CISA

http://cisa.gov/shields-up
Shields Up | CISA

URLhaus | Checking your browser

https://urlhaus.abuse.ch/url/2068673/
URLhaus | Checking your browser

Tweet / Twitter

https://twitter.com/elbeardsley/status/1498640644339908609
Tweet / Twitter

BrokenPrint: A Netgear stack overflow – NCC Group Research

https://research.nccgroup.com/2022/02/28/brokenprint-a-netgear-stack-overflow/
BrokenPrint: A Netgear stack overflow – NCC Group Research

Microsoft Finds FoxBlade Malware Hit Ukraine Hours Before Russian Invasion

https://thehackernews.com/2022/03/microsoft-finds-foxblade-malware-hit.html
Microsoft Finds FoxBlade Malware Hit Ukraine Hours Before Russian Invasion

vx-underground - Directory

https://samples.vx-underground.org/APTs/2022/2022.02.28/
vx-underground - Directory