03/30

'I can fight with a keyboard': How one Ukrainian IT specialist exposed a notorious Russian ransomware gang - CNNPolitics

https://www.cnn.com/2022/03/30/politics/ukraine-hack-russian-ransomware-gang/index.html
'I can fight with a keyboard': How one Ukrainian IT specialist exposed a notorious Russian ransomware gang - CNNPolitics

vx-underground - Directory

https://share.vx-underground.org/
vx-underground - Directory

Hackers Gaining Power of Subpoena Via Fake “Emergency Data Requests” – Krebs on Security

https://krebsonsecurity.com/2022/03/hackers-gaining-power-of-subpoena-via-fake-emergency-data-requests/
Hackers Gaining Power of Subpoena Via Fake “Emergency Data Requests” – Krebs on Security

PoC/DCNMPwn.md at master · pedrib/PoC · GitHub

https://github.com/pedrib/PoC/blob/master/advisories/Cisco/DCNMPwn.md
PoC/DCNMPwn.md at master · pedrib/PoC · GitHub

Spring | Home

http://spring.cloud
Spring | Home

KA-SAT Network cyber attack overview - Viasat

https://www.viasat.com/about/newsroom/blog/ka-sat-network-cyber-attack-overview/
KA-SAT Network cyber attack overview - Viasat

Tracking cyber activity in Eastern Europe

https://blog.google/threat-analysis-group/tracking-cyber-activity-eastern-europe/
Tracking cyber activity in Eastern Europe

SpringShell: Spring Core RCE 0-day Vulnerability - Cyber Kendra

https://www.cyberkendra.com/2022/03/springshell-rce-0-day-vulnerability.html
SpringShell: Spring Core RCE 0-day Vulnerability - Cyber Kendra

IT Firm Globant Confirms Breach after LAPSUS$ Leaks 70GB of Data

https://thehackernews.com/2022/03/lapsus-claims-to-have-breached-it-firm.html
IT Firm Globant Confirms Breach after LAPSUS$ Leaks 70GB of Data

Page not found · GitHub · GitHub

https://github.com/chaosec2021/Spring-cloud-function-SpEL-RCE
Page not found · GitHub · GitHub

Mars Stealer: Exclusive New Threat Research

https://blog.morphisec.com/threat-research-mars-stealer
Mars Stealer: Exclusive New Threat Research

EXCLUSIVE Hackers who crippled Viasat modems in Ukraine are still active- company official | Reuters

https://www.reuters.com/business/media-telecom/exclusive-hackers-who-crippled-viasat-modems-ukraine-are-still-active-company-2022-03-30/
EXCLUSIVE Hackers who crippled Viasat modems in Ukraine are still active- company official | Reuters

Deadwood 2022 Conference - Wild West Hackin' Fest

https://wildwesthackinfest.com/deadwood/
Deadwood 2022 Conference - Wild West Hackin' Fest

Putin's hackers gained full access to Hungary's foreign ministry networks, the Orbán government has been unable to stop them | Direkt36

https://www.direkt36.hu/en/putyin-hekkerei-is-latjak-a-magyar-kulugy-titkait-az-orban-kormany-evek-ota-nem-birja-elharitani-oket/
Putin's hackers gained full access to Hungary's foreign ministry networks, the Orbán government has been unable to stop them | Direkt36

Dive into Analysis with Malware Configuration - ANY.RUN Blog

https://any.run/cybersecurity-blog/malware-configuration/
Dive into Analysis with Malware Configuration - ANY.RUN Blog

Critical SonicOS Vulnerability Affects SonicWall Firewall Appliances

https://thehackernews.com/2022/03/critical-sonicos-vulnerability-affects.html
Critical SonicOS Vulnerability Affects SonicWall Firewall Appliances

Facebook paid Republican strategy firm to malign TikTok - The Washington Post

https://www.washingtonpost.com/technology/2022/03/30/facebook-tiktok-targeted-victory/
Facebook paid Republican strategy firm to malign TikTok - The Washington Post

Apple, Meta Gave User Data to Hackers With Forged Legal Requests (AAPL, FB) - Bloomberg

https://www.bloomberg.com/news/articles/2022-03-30/apple-meta-gave-user-data-to-hackers-who-forged-legal-requests?sref=ylv224K8
Apple, Meta Gave User Data to Hackers With Forged Legal Requests (AAPL, FB) - Bloomberg

CISA Warns of Ongoing Cyber Attacks Targeting Internet-Connected UPS Devices

https://thehackernews.com/2022/03/cisa-warns-of-ongoing-cyber-attacks.html
CISA Warns of Ongoing Cyber Attacks Targeting Internet-Connected UPS Devices

Emotet対応トリアージのポイント解説(2022-03-30) | ドクセル

https://www.docswell.com/s/snowyowl/K1WR8Z-2022-03-30-1_0
Emotet対応トリアージのポイント解説(2022-03-30) | ドクセル

Malware-Traffic-Analysis.net - 2022-03-29 (Tuesday) - Emotet epoch 4 with Cobalt Strike

https://www.malware-traffic-analysis.net/2022/03/29/index.html
Malware-Traffic-Analysis.net - 2022-03-29 (Tuesday) - Emotet epoch 4 with Cobalt Strike

SpringShell: Spring Core RCE 0-day Vulnerability - Cyber Kendra

https://www.cyberkendra.com/2022/03/springshell-rce-0-day-vulnerability.html?m=1
SpringShell: Spring Core RCE 0-day Vulnerability - Cyber Kendra

BumbleBee (Malware Family)

https://malpedia.caad.fkie.fraunhofer.de/details/win.bumblebee
BumbleBee (Malware Family)

New Spring Java framework zero-day allows remote code execution

https://www.bleepingcomputer.com/news/security/new-spring-java-framework-zero-day-allows-remote-code-execution/
New Spring Java framework zero-day allows remote code execution

signature-base/expl_spring4shell.yar at master · Neo23x0/signature-base · GitHub

https://github.com/Neo23x0/signature-base/blob/master/yara/expl_spring4shell.yar
signature-base/expl_spring4shell.yar at master · Neo23x0/signature-base · GitHub