04/04

Stolen Images Campaign Ends in Conti Ransomware – The DFIR Report

https://thedfirreport.com/2022/04/04/stolen-images-campaign-ends-in-conti-ransomware/
Stolen Images Campaign Ends in Conti Ransomware – The DFIR Report

FIN7 Power Hour: Adversary Archaeology and the Evolution of FIN7 | Mandiant

https://www.mandiant.com/resources/evolution-of-fin7
FIN7 Power Hour: Adversary Archaeology and the Evolution of FIN7 | Mandiant

A Syscall Journey in the Windows Kernel - Alice Climent-Pommeret

https://alice.climent-pommeret.red/posts/a-syscall-journey-in-the-windows-kernel/
A Syscall Journey in the Windows Kernel - Alice Climent-Pommeret

Dead Lay Out in Bucha for Weeks, Refuting Russian Claim, Satellite Images Show - The New York Times

https://www.nytimes.com/2022/04/04/world/europe/bucha-ukraine-bodies.html
Dead Lay Out in Bucha for Weeks, Refuting Russian Claim, Satellite Images Show - The New York Times

Experts Shed Light on BlackGuard Infostealer Malware Sold on Russian Hacking Forums

https://thehackernews.com/2022/04/experts-shed-light-on-blackguard.html
Experts Shed Light on BlackGuard Infostealer Malware Sold on Russian Hacking Forums

Hackers breach MailChimp's internal tools to target crypto customers

https://www.bleepingcomputer.com/news/security/hackers-breach-mailchimps-internal-tools-to-target-crypto-customers/
Hackers breach MailChimp's internal tools to target crypto customers

Sharing is Caring: Abusing Shared Sections for Code Injection

https://billdemirkapi.me/sharing-is-caring-abusing-shared-sections-for-code-injection
Sharing is Caring: Abusing Shared Sections for Code Injection

Tweet / Twitter

https://twitter.com/alonkol/status/1510662819385159684
Tweet / Twitter

Establishment of the Bureau of Cyberspace and Digital Policy - United States Department of State

https://www.state.gov/establishment-of-the-bureau-of-cyberspace-and-digital-policy/
Establishment of the Bureau of Cyberspace and Digital Policy - United States Department of State

Fake Trezor data breach emails used to steal cryptocurrency wallets

https://www.bleepingcomputer.com/news/security/fake-trezor-data-breach-emails-used-to-steal-cryptocurrency-wallets/
Fake Trezor data breach emails used to steal cryptocurrency wallets

FIN7 hackers evolve toolset, work with multiple ransomware gangs

https://www.bleepingcomputer.com/news/security/fin7-hackers-evolve-toolset-work-with-multiple-ransomware-gangs/
FIN7 hackers evolve toolset, work with multiple ransomware gangs

Exploiting a double-edged SSRF for server and client-side impact – Yassine Aboukir – Application security engineering, consulting and bug bounties

https://www.yassineaboukir.com/blog/exploiting-a-double-edged-SSRF-for-server-and-client-side-impact/
Exploiting a double-edged SSRF for server and client-side impact – Yassine Aboukir – Application security engineering, consulting and bug bounties

Emotet/e5_emotet_04.04.2022.txt at main · pr0xylife/Emotet · GitHub

https://github.com/pr0xylife/Emotet/blob/main/e5_emotet_04.04.2022.txt
Emotet/e5_emotet_04.04.2022.txt at main · pr0xylife/Emotet · GitHub

Beastmode DDoS Botnet Exploiting New TOTOLINK Bugs to Enslave More Routers

https://thehackernews.com/2022/04/beastmode-ddos-botnet-exploiting-new.html
Beastmode DDoS Botnet Exploiting New TOTOLINK Bugs to Enslave More Routers

New Borat remote access malware is no laughing matter

https://www.bleepingcomputer.com/news/security/new-borat-remote-access-malware-is-no-laughing-matter/
New Borat remote access malware is no laughing matter

Multiple Hacker Groups Capitalizing on Ukraine Conflict for Distributing Malware

https://thehackernews.com/2022/04/multiple-hacker-groups-capitalizing-on.html
Multiple Hacker Groups Capitalizing on Ukraine Conflict for Distributing Malware

Way West Conference - Wild West Hackin' Fest

https://wildwesthackinfest.com/way-west/
Way West Conference - Wild West Hackin' Fest

UniCon 2022 - April 8

https://www.scythe.io/unicon2022
UniCon 2022 - April 8

Qakbot/Qakbot_obama172_04.04.2022.txt at main · pr0xylife/Qakbot · GitHub

https://github.com/pr0xylife/Qakbot/blob/main/Qakbot_obama172_04.04.2022.txt
Qakbot/Qakbot_obama172_04.04.2022.txt at main · pr0xylife/Qakbot · GitHub

University Project Cataloged 1,100 Ransomware Attacks on Critical Infrastructure - SecurityWeek

https://www.securityweek.com/university-project-cataloged-1100-ransomware-attacks-critical-infrastructure
University Project Cataloged 1,100 Ransomware Attacks on Critical Infrastructure - SecurityWeek