Industroyer2: Industroyer reloaded | WeLiveSecurity
https://www.welivesecurity.com/2022/04/12/industroyer2-industroyer-reloaded/
One of the world’s biggest hacker forums taken down | Europol
https://www.europol.europa.eu/media-press/newsroom/news/one-of-world%E2%80%99s-biggest-hacker-forums-taken-down
United States Leads Seizure of One of the World’s Largest Hacker Forums and Arrests Administrator | OPA | Department of Justice
https://www.justice.gov/opa/pr/united-states-leads-seizure-one-world-s-largest-hacker-forums-and-arrests-administrator
CVE-2022-24521 - Security Update Guide - Microsoft - Windows Common Log File System Driver Elevation of Privilege Vulnerability
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2022-24521
GitHub - sherlocksecurity/VMware-CVE-2022-22954: POC for VMWARE CVE-2022-22954
https://github.com/sherlocksecurity/VMware-CVE-2022-22954
Addressing Security Weaknesses in the NGINX LDAP Reference Implementation - NGINX
https://www.nginx.com/blog/addressing-security-weaknesses-nginx-ldap-reference-implementation/
T-Mobile Secretly Bought Its Customer Data from Hackers to Stop Leak. It Failed.
https://www.vice.com/en/article/k7w9mv/tmobile-hacked-bought-data-mandiant
AWS RDS Vulnerability Leads to AWS Internal Service Credentials
https://blog.lightspin.io/aws-rds-critical-security-vulnerability
Understanding and Defending Against Reflective Code Loading on macOS | by Justin Bui | Medium
https://slyd0g.medium.com/understanding-and-defending-against-reflective-code-loading-on-macos-e2e83211e48f
NotGitBleed - TL;DR | Notgitbleed
https://www.notgitbleed.com/
ESET research on Twitter: "#BREAKING #ESETresearch helped analyze a #Sandworm campaign against an energy company in #Ukraine 🇺🇦 using #CaddyWiper and a new version of the infamous #Industroyer malware. #WarInUkraine https://t.co/QRR5M6etfS 1/5" / Twitter
https://twitter.com/esetresearch/status/1513814315480010754
mRr3b00t #StandWithUkraine #DefendAsOne on Twitter: "you probably want to patch this: vwmware one workspace /VMware Identity Manager - CVE-2022-22954 #vmware #workspace #identity #manager #vulnerability #CVE202222954 https://t.co/X7CmGP05Ff" / Twitter
https://twitter.com/UK_Daniel_Card/status/1513824492480573441
Tarrask malware uses scheduled tasks for defense evasion - Microsoft Security Blog
https://www.microsoft.com/security/blog/2022/04/12/tarrask-malware-uses-scheduled-tasks-for-defense-evasion/
Tweet / Twitter
https://twitter.com/HowellONeill/status/1513912065236377602
Tweet / Twitter
https://twitter.com/vxunderground/status/1513890316809551877
DEF CON® 30 Hacking Conference - Call for Papers
https://defcon.org/html/defcon-30/dc-30-cfp.html
CryptBot - Too good to be true | fr3d.hk
https://fr3d.hk/blog/cryptbot-too-good-to-be-true
E.U. Officials Reportedly Targeted with Israeli Pegasus Spyware
https://thehackernews.com/2022/04/eu-officials-reportedly-targeted-with.html
Over 16,500 Sites Hacked to Distribute Malware via Web Redirect Service
https://thehackernews.com/2022/04/over-16500-sites-hacked-to-distribute.html
Russian hackers tried to bring down Ukraine's power grid to help the invasion | MIT Technology Review
https://www.technologyreview.com/2022/04/12/1049586/russian-hackers-tried-to-bring-down-ukraines-power-grid-to-help-the-invasion/
Putin ‘purges’ 150 FSB agents in response to Russia’s botched war with Ukraine | News | The Times
https://www.thetimes.co.uk/article/putin-purges-150-fsb-agents-in-response-to-russias-botched-war-with-ukraine-lf9k6tn6g?utm_medium=Social&utm_source=Twitter#Echobox=1649702327-1
Attack On Europe: Documenting Russian Equipment Losses During The 2022 Russian Invasion Of Ukraine - Oryx
https://oryxspioenkop.com/2022/02/attack-on-europe-documenting-equipment.html
Round Two: An Updated Universal Deserialisation Gadget for Ruby 2.x-3.x | devcraft.io
https://devcraft.io/2022/04/04/universal-deserialisation-gadget-for-ruby-2-x-3-x.html
GitHub - zhzyker/dismap: Asset discovery and identification tools 快速识别 Web 指纹信息,定位资产类型。辅助红队快速定位目标资产信息,辅助蓝队发现疑似脆弱点
https://github.com/zhzyker/dismap
CISA adds WatchGuard flaw to its Known Exploited Vulnerabilities CatalogSecurity Affairs
https://securityaffairs.co/wordpress/130112/security/cisa-watchguard-flaw-known-exploited-vulnerabilities-catalog.html
Alleged founder of cyber criminal marketplace, 21, arrested in UK | Science & Tech News | Sky News
https://news.sky.com/story/alleged-21-year-old-founder-of-cyber-criminal-marketplace-arrested-in-uk-12588639