03/08

Google to Acquire Mandiant | Mandiant

https://www.mandiant.com/company/press-release/mgc
Google to Acquire Mandiant | Mandiant

Put an io_uring on it: Exploiting the Linux Kernel - Blog | Grapl

https://www.graplsecurity.com/post/iou-ring-exploiting-the-linux-kernel
Put an io_uring on it: Exploiting the Linux Kernel - Blog | Grapl

Does This Look Infected? A Summary of APT41 Targeting U.S. State Governments | Mandiant

https://www.mandiant.com/resources/apt41-us-state-governments
Does This Look Infected? A Summary of APT41 Targeting U.S. State Governments | Mandiant

https://haxx.in/files/dirtypipez.c

https://haxx.in/files/dirtypipez.c

An update on the threat landscape

https://blog.google/threat-analysis-group/update-threat-landscape-ukraine/
An update on the threat landscape

New Linux bug gives root on all major distros, exploit released

https://www.bleepingcomputer.com/news/security/new-linux-bug-gives-root-on-all-major-distros-exploit-released/
New Linux bug gives root on all major distros, exploit released

Researchers Warn of Linux Kernel 'Dirty Pipe' Arbitrary File Overwrite Vulnerability

https://thehackernews.com/2022/03/researchers-warn-of-linux-kernel-dirty.html
Researchers Warn of Linux Kernel 'Dirty Pipe' Arbitrary File Overwrite Vulnerability

HHRG-117-IG00-Wstate-HainesA-20220308.pdf

https://docs.house.gov/meetings/IG/IG00/20220308/114469/HHRG-117-IG00-Wstate-HainesA-20220308.pdf
HHRG-117-IG00-Wstate-HainesA-20220308.pdf

HTTPVoid Research | HTTPVoid is a research oriented team of computer security.

https://httpvoid.com/?p=Circumventing-Browser-Security-Mechanisms-For-SSRF.md
HTTPVoid Research | HTTPVoid is a research oriented team of computer security.

The Good, the Bad, and the Web Bug: TA416 Increases Operational Tempo Against European Governments as Conflict in Ukraine Escalates | Proofpoint US

https://www.proofpoint.com/us/blog/threat-insight/good-bad-and-web-bug-ta416-increases-operational-tempo-against-european
The Good, the Bad, and the Web Bug: TA416 Increases Operational Tempo Against European Governments as Conflict in Ukraine Escalates | Proofpoint US

PROPHET SPIDER Exploits Citrix ShareFile | CrowdStrike

https://www.crowdstrike.com/blog/prophet-spider-exploits-citrix-sharefile/
PROPHET SPIDER Exploits Citrix ShareFile | CrowdStrike

SATCOM terminals under attack in Europe: a plausible analysis.

https://www.reversemode.com/2022/03/satcom-terminals-under-attack-in-europe.html
SATCOM terminals under attack in Europe: a plausible analysis.

2021 Year In Review – The DFIR Report

https://thedfirreport.com/2022/03/07/2021-year-in-review/
2021 Year In Review – The DFIR Report

FBI: Ransomware gang breached 52 US critical infrastructure orgs

https://www.bleepingcomputer.com/news/security/fbi-ransomware-gang-breached-52-us-critical-infrastructure-orgs/
FBI: Ransomware gang breached 52 US critical infrastructure orgs

grsecurity - The AMD Branch (Mis)predictor Part 2: Where No CPU has Gone Before (CVE-2021-26341)

https://grsecurity.net/amd_branch_mispredictor_part_2_where_no_cpu_has_gone_before
grsecurity - The AMD Branch (Mis)predictor Part 2: Where No CPU has Gone Before (CVE-2021-26341)

How to Remove Telegram Messages from Your Phone

https://www.vice.com/en/article/m7vk9q/advice-on-how-to-use-telegram-safely
How to Remove Telegram Messages from Your Phone

Conti Ransomware Group Diaries, Part IV: Cryptocrime – Krebs on Security

https://krebsonsecurity.com/2022/03/conti-ransomware-group-diaries-part-iv-cryptocrime/
Conti Ransomware Group Diaries, Part IV: Cryptocrime – Krebs on Security

Branch History Injection - VUSec

https://www.vusec.net/projects/bhi-spectre-bhb
Branch History Injection - VUSec

Cobalt Strike Roadmap Update - Cobalt Strike Research and Development

https://www.cobaltstrike.com/blog/cobalt-strike-roadmap-update/
Cobalt Strike Roadmap Update - Cobalt Strike Research and Development

Expanding the Hound: Introducing Plaintext Field to Compromised Accounts - TrustedSec

https://www.trustedsec.com/blog/expanding-the-hound-introducing-plaintext-field-to-compromised-accounts/
Expanding the Hound: Introducing Plaintext Field to Compromised Accounts - TrustedSec

AutoWarp Microsoft Azure Automation Vulnerability - Orca Security

https://orca.security/resources/blog/autowarp-microsoft-azure-automation-service-vulnerability/
AutoWarp Microsoft Azure Automation Vulnerability - Orca Security

BTC 2022 Speaker Bios - Blue Team Con

https://blueteamcon.com/2022/talks/speaker-bios/
BTC 2022 Speaker Bios - Blue Team Con