03/24

Four Russian Government Employees Charged in Two Historical Hacking Campaigns Targeting Critical Infrastructure Worldwide | OPA | Department of Justice

https://www.justice.gov/opa/pr/four-russian-government-employees-charged-two-historical-hacking-campaigns-targeting-critical
Four Russian Government Employees Charged in Two Historical Hacking Campaigns Targeting Critical Infrastructure Worldwide | OPA | Department of Justice

Countering threats from North Korea

https://blog.google/threat-analysis-group/countering-threats-north-korea/
Countering threats from North Korea

A Closer Look at the LAPSUS$ Data Extortion Group – Krebs on Security

https://krebsonsecurity.com/2022/03/a-closer-look-at-the-lapsus-data-extortion-group/
A Closer Look at the LAPSUS$ Data Extortion Group – Krebs on Security

Remote Code Execution on Western Digital PR4100 NAS (CVE-2022-23121) – NCC Group Research

https://research.nccgroup.com/2022/03/24/remote-code-execution-on-western-digital-pr4100-nas-cve-2022-23121/
Remote Code Execution on Western Digital PR4100 NAS (CVE-2022-23121) – NCC Group Research

| Job Preference

http://www.jobpreference.com
| Job Preference

Delegations - The Hacker Recipes

https://www.thehacker.recipes/ad/movement/kerberos/delegations#talk
Delegations - The Hacker Recipes

www.infosec.tirol | 522: Connection timed out

https://www.infosec.tirol/edr-a-closer-look-at-protected-services/
www.infosec.tirol | 522: Connection timed out

Project Zero: Racing against the clock -- hitting a tiny kernel race window

https://googleprojectzero.blogspot.com/2022/03/racing-against-clock-hitting-tiny.html
Project Zero: Racing against the clock -- hitting a tiny kernel race window

Storm Cloud on the Horizon: GIMMICK Malware Strikes at macOS | Volexity

https://www.volexity.com/blog/2022/03/22/storm-cloud-on-the-horizon-gimmick-malware-strikes-at-macos/
Storm Cloud on the Horizon: GIMMICK Malware Strikes at macOS | Volexity

Not So Lazarus: Mapping DPRK Cyber Threat Groups to Government Organizations | Mandiant

https://www.mandiant.com/resources/mapping-dprk-groups-to-government
Not So Lazarus: Mapping DPRK Cyber Threat Groups to Government Organizations | Mandiant

LAPSUS$: How a Sloppy Extortion Gang Became One of the Most Prolific Hacking Groups

https://www.vice.com/en/article/3abedn/who-is-lapsus-hacking-gang
LAPSUS$: How a Sloppy Extortion Gang Became One of the Most Prolific Hacking Groups

Researchers Trace LAPSUS$ Cyber Attacks to 16-Year-Old Hacker from England

https://thehackernews.com/2022/03/researchers-trace-lapsus-cyber-attacks.html
Researchers Trace LAPSUS$ Cyber Attacks to 16-Year-Old Hacker from England

Okta’s Investigation of the January 2022 Compromise | Okta Australia

https://www.okta.com/au/blog/2022/03/oktas-investigation-of-the-january-2022-compromise/
Okta’s Investigation of the January 2022 Compromise | Okta Australia

Tweet / Twitter

https://twitter.com/williamturton/status/1506739931456155648
Tweet / Twitter

MalwareBazaar | APT-C-36

https://bazaar.abuse.ch/browse/tag/APT-C-36/
MalwareBazaar | APT-C-36

random/latinamerica_campaign at main · aanubhav-ioc/random · GitHub

https://github.com/aanubhav-ioc/random/blob/main/latinamerica_campaign
random/latinamerica_campaign at main · aanubhav-ioc/random · GitHub

Behind the hack-and-leak scandal in Poland - VSQUARE.ORG

https://vsquare.org/behind-the-hack-and-leak-scandal-in-poland/
Behind the hack-and-leak scandal in Poland - VSQUARE.ORG

Over 200 Malicious NPM Packages Caught Targeting Azure Developers

https://thehackernews.com/2022/03/over-200-malicious-npm-packages-caught.html
Over 200 Malicious NPM Packages Caught Targeting Azure Developers

FBI adds Russian cybercrime market owner to most wanted list

https://www.bleepingcomputer.com/news/security/fbi-adds-russian-cybercrime-market-owner-to-most-wanted-list/
FBI adds Russian cybercrime market owner to most wanted list