03/22

Updated Okta Statement on LAPSUS$ | Okta

https://www.okta.com/blog/2022/03/updated-okta-statement-on-lapsus/
Updated Okta Statement on LAPSUS$ | Okta

DEV-0537 criminal actor targeting organizations for data exfiltration and destruction - Microsoft Security Blog

https://www.microsoft.com/security/blog/2022/03/22/dev-0537-criminal-actor-targeting-organizations-for-data-exfiltration-and-destruction/
DEV-0537 criminal actor targeting organizations for data exfiltration and destruction - Microsoft Security Blog

CERT-UA

https://cert.gov.ua/article/38088
CERT-UA

Lapsus$ hackers leak 37GB of Microsoft's alleged source code

https://www.bleepingcomputer.com/news/microsoft/lapsus-hackers-leak-37gb-of-microsofts-alleged-source-code/
Lapsus$ hackers leak 37GB of Microsoft's alleged source code

Hackers hit authentication firm Okta, customers 'may have been impacted' | Reuters

https://www.reuters.com/technology/authentication-services-firm-okta-says-it-is-investigating-report-breach-2022-03-22/
Hackers hit authentication firm Okta, customers 'may have been impacted' | Reuters

Okta investigating claims of customer data breach from Lapsus$ group

https://www.bleepingcomputer.com/news/security/okta-investigating-claims-of-customer-data-breach-from-lapsus-group/
Okta investigating claims of customer data breach from Lapsus$ group

file.7z (MD5: EEB3A0EB46BE5C1ADE4B6F8824151884) - Interactive analysis - ANY.RUN

https://app.any.run/tasks/1b8aa27d-ef8e-4165-a6a8-6009be224815
file.7z (MD5: EEB3A0EB46BE5C1ADE4B6F8824151884) - Interactive analysis - ANY.RUN

Exploring a New Class of Kernel Exploit Primitive – Microsoft Security Response Center

https://msrc-blog.microsoft.com/2022/03/22/exploring-a-new-class-of-kernel-exploit-primitive/
Exploring a New Class of Kernel Exploit Primitive – Microsoft Security Response Center

Threat Detection Report: Introduction - Red Canary

https://redcanary.com/threat-detection-report/
Threat Detection Report: Introduction - Red Canary

Fury As Okta—The Company That Manages 100 Million Log-ins—Fails To Tell Customers About Breach For Months

https://www.forbes.com/sites/thomasbrewster/2022/03/22/fury-as-okta-the-company-that-manages-100-million-logins-fails-to-tell-customers-about-breach-for-months/
Fury As Okta—The Company That Manages 100 Million Log-ins—Fails To Tell Customers About Breach For Months

Tweet / Twitter

https://twitter.com/S0ufi4n3/status/1506325204787679237
Tweet / Twitter

One Way Or Another: Initial Access Vectors

https://blog.bushidotoken.net/2022/03/one-way-or-another-initial-access.html
One Way Or Another: Initial Access Vectors

Triage | Behavioral Report

https://tria.ge/220322-lfjxfsbbhn/behavioral1
Triage | Behavioral Report

detection-rules/rules/integrations/okta at main · elastic/detection-rules · GitHub

https://github.com/elastic/detection-rules/tree/main/rules/integrations/okta
detection-rules/rules/integrations/okta at main · elastic/detection-rules · GitHub

Statement by President Biden on our Nation’s Cybersecurity - The White House

https://www.whitehouse.gov/briefing-room/statements-releases/2022/03/21/statement-by-president-biden-on-our-nations-cybersecurity/
Statement by President Biden on our Nation’s Cybersecurity - The White House

CSIRT

http://www.csirt.gob.cl
CSIRT

Mitigating Risks in Software Supply Chain Security | SANS Webcast

https://www.sans.org/webcasts/mitigating-risks-software-supply-chain-security/
Mitigating Risks in Software Supply Chain Security | SANS Webcast

Access the 2022 Threat Detection Report - Red Canary

https://redcanary.com/resources/guides/threat-detection-report/?utm_source=twitter&utm_medium=social&utm_campaign=2022tdr
Access the 2022 Threat Detection Report - Red Canary

IcedID/icedID_22.03.2022.txt at main · pr0xylife/IcedID · GitHub

https://github.com/pr0xylife/IcedID/blob/main/icedID_22.03.2022.txt
IcedID/icedID_22.03.2022.txt at main · pr0xylife/IcedID · GitHub

New Dell BIOS Bugs Affect Millions of Inspiron, Vostro, XPS, Alienware Systems

https://thehackernews.com/2022/03/new-dell-bios-bugs-affect-millions-of.html
New Dell BIOS Bugs Affect Millions of Inspiron, Vostro, XPS, Alienware Systems

Cloudflare’s investigation of the January 2022 Okta compromise

https://blog.cloudflare.com/cloudflare-investigation-of-the-january-2022-okta-compromise/
Cloudflare’s investigation of the January 2022 Okta compromise

Qakbot/Qakbot_obama168_22.03.2022.txt at main · pr0xylife/Qakbot · GitHub

https://github.com/pr0xylife/Qakbot/blob/main/Qakbot_obama168_22.03.2022.txt
Qakbot/Qakbot_obama168_22.03.2022.txt at main · pr0xylife/Qakbot · GitHub

Lapsus$ Extortion Group Claims Okta Hack, Microsoft Source Code Leak | WIRED

https://www.wired.com/story/okta-hack-microsoft-bing-code-leak-lapsus/
Lapsus$ Extortion Group Claims Okta Hack, Microsoft Source Code Leak | WIRED

www.sesin.at

http://www.sesin.at
www.sesin.at

LAPSUS$ Hackers Claim to Have Breached Microsoft and Authentication Firm Okta

https://thehackernews.com/2022/03/lapsus-hackers-claim-to-have-breached.html
LAPSUS$ Hackers Claim to Have Breached Microsoft and Authentication Firm Okta

| Job Preference

http://www.jobpreference.com
| Job Preference

Azure Dominance Paths - Cloudbrothers

https://cloudbrothers.info/en/azure-dominance-paths/
Azure Dominance Paths - Cloudbrothers

Hundreds of HP printer models vulnerable to remote code execution

https://www.bleepingcomputer.com/news/security/hundreds-of-hp-printer-models-vulnerable-to-remote-code-execution/
Hundreds of HP printer models vulnerable to remote code execution