04/14

Akamai Blog | Critical Remote Code Execution Vulnerabilities in Windows RPC Runtime

https://www.akamai.com/blog/security/critical-remote-code-execution-vulnerabilities-windows-rpc-runtime
Akamai Blog | Critical Remote Code Execution Vulnerabilities in Windows RPC Runtime

Dismantling ZLoader: How malicious ads led to disabled security tools and ransomware - Microsoft Security Blog

https://www.microsoft.com/security/blog/2022/04/13/dismantling-zloader-how-malicious-ads-led-to-disabled-security-tools-and-ransomware/
Dismantling ZLoader: How malicious ads led to disabled security tools and ransomware - Microsoft Security Blog

Make phishing great again. VSTO office files are the new macro nightmare? | by Daniel Schell | Medium

https://medium.com/@airlockdigital/make-phishing-great-again-vsto-office-files-are-the-new-macro-nightmare-e09fcadef010
Make phishing great again. VSTO office files are the new macro nightmare? | by Daniel Schell | Medium

Exploiting Struts RCE on 2.5.26

https://mc0wn.blogspot.com/2021/04/exploiting-struts-rce-on-2526.html
Exploiting Struts RCE on 2.5.26

Bypassing Cortex XDR | mr.d0x

https://mrd0x.com/cortex-xdr-analysis-and-bypass/
Bypassing Cortex XDR | mr.d0x

Project Zero: CVE-2021-1782, an iOS in-the-wild vulnerability in vouchers

https://googleprojectzero.blogspot.com/2022/04/cve-2021-1782-ios-in-wild-vulnerability.html
Project Zero: CVE-2021-1782, an iOS in-the-wild vulnerability in vouchers

INCONTROLLER: New State-Sponsored Cyber Attack Tools Target Multiple Industrial Control Systems | Mandiant

https://www.mandiant.com/resources/incontroller-state-sponsored-ics-tool
INCONTROLLER: New State-Sponsored Cyber Attack Tools Target Multiple Industrial Control Systems | Mandiant

Proof of Concept: CVE-2022-21907 HTTP Protocol Stack Remote Code Execution Vulnerability | Core Labs

https://www.coresecurity.com/core-labs/articles/proof-concept-cve-2022-21907-http-protocol-stack-remote-code-execution
Proof of Concept: CVE-2022-21907 HTTP Protocol Stack Remote Code Execution Vulnerability | Core Labs

GitHub - f8al/CVE-2022-26809: CVE-2022-26809 PoC

https://github.com/f8al/CVE-2022-26809
GitHub - f8al/CVE-2022-26809: CVE-2022-26809 PoC

Offensive Driver Development

https://courses.zeropointsecurity.co.uk/courses/offensive-driver-development
Offensive Driver Development

Page Not Found - Google Careers

https://careers.google.com/jobs/results/137586428310627014/
Page Not Found - Google Careers

pocs/windows/spooler-splenumforms-iov at main · grigoritchy/pocs · GitHub

https://github.com/grigoritchy/pocs/tree/main/windows/spooler-splenumforms-iov
pocs/windows/spooler-splenumforms-iov at main · grigoritchy/pocs · GitHub

U.S. Warns of APT Hackers Targeting ICS/SCADA Systems with Specialized Malware

https://thehackernews.com/2022/04/us-warns-of-apt-hackers-targeting.html
U.S. Warns of APT Hackers Targeting ICS/SCADA Systems with Specialized Malware

| Job Preference

http://www.jobpreference.com
| Job Preference

MicroBurst/Get-AzPasswords.ps1 at master · NetSPI/MicroBurst · GitHub

https://github.com/NetSPI/MicroBurst/blob/master/Az/Get-AzPasswords.ps1
MicroBurst/Get-AzPasswords.ps1 at master · NetSPI/MicroBurst · GitHub

Where To Find Us | SpecterOps

https://specterops.io/resources/upcoming-events
Where To Find Us | SpecterOps

CVE-2022-26809 – Critical Windows RPC Vulnerability – PwnDefend

https://www.pwndefend.com/2022/04/14/cve-2022-26809/
CVE-2022-26809 – Critical Windows RPC Vulnerability – PwnDefend

APT Cyber Tools Targeting ICS/SCADA Devices | CISA

https://www.cisa.gov/uscert/ncas/alerts/aa22-103a
APT Cyber Tools Targeting ICS/SCADA Devices | CISA

Tarrask malware uses scheduled tasks for defense evasion - Microsoft Security Blog

https://www.microsoft.com/security/blog/2022/04/12/tarrask-malware-uses-scheduled-tasks-for-defense-evasion/
Tarrask malware uses scheduled tasks for defense evasion - Microsoft Security Blog

Microsoft Disrupts ZLoader Cybercrime Botnet in Global Operation

https://thehackernews.com/2022/04/microsoft-disrupts-zloader-cybercrime.html
Microsoft Disrupts ZLoader Cybercrime Botnet in Global Operation

Army Combat Fitness Test

https://go.usa.gov/xugkU
Army Combat Fitness Test

Putin’s cyber blind spot

https://gru.gq/2022/04/14/putins-cyber-blind-spot/
Putin’s cyber blind spot

Diving Deeper into WatchGuard Pre-Auth RCE - CVE-2022-26318 – Assetnote

https://blog.assetnote.io/2022/04/13/watchguard-firebox-rce/
Diving Deeper into WatchGuard Pre-Auth RCE - CVE-2022-26318 – Assetnote

writeups/CVE-2022-26133 at main · snowyyowl/writeups · GitHub

https://github.com/snowyyowl/writeups/tree/main/CVE-2022-26133
writeups/CVE-2022-26133 at main · snowyyowl/writeups · GitHub