https://whova.com/web/GKSmlhCK%2FWzBY2c8qqJ%2Bp7kNcnjsUQAQJ%2ByBsjLrbOo%3D/
https://whova.com/web/GKSmlhCK%2FWzBY2c8qqJ%2Bp7kNcnjsUQAQJ%2ByBsjLrbOo%3D/
Exclusive: Russian hackers are linked to new Brexit leak website, Google says | Reuters
https://www.reuters.com/technology/exclusive-russian-hackers-are-linked-new-brexit-leak-website-google-says-2022-05-25/
InterProcessCommunication-Samples/ALPC/CPP-ALPC-Basic-Client-Server at master · csandker/InterProcessCommunication-Samples · GitHub
https://github.com/csandker/InterProcessCommunication-Samples/tree/master/ALPC/CPP-ALPC-Basic-Client-Server
Offensive Windows IPC Internals 3: ALPC · csandker.io
https://csandker.io/2022/05/24/Offensive-Windows-IPC-3-ALPC.html
GitHub - thefLink/DeepSleep: A variant of Gargoyle for x64 to hide memory artifacts using ROP only and PIC
https://github.com/thefLink/DeepSleep
Seatbelt/CHANGELOG.md at master · GhostPack/Seatbelt · GitHub
https://github.com/GhostPack/Seatbelt/blob/master/CHANGELOG.md#120---2022-05-18
Spring Security RegexRequestMatcher 认证绕过漏洞分析(CVE-2022-22978)|NOSEC安全讯息平台 - 白帽汇安全研究院
https://nosec.org/m/share/5006.html#&gid=1&pid=1
DuckDuckGo browser allows Microsoft trackers due to search agreement
https://www.bleepingcomputer.com/news/security/duckduckgo-browser-allows-microsoft-trackers-due-to-search-agreement/
ChromeLoader: a pushy malvertiser
https://redcanary.com/blog/chromeloader/
Malware-IOCs/2022-05-25_Emotet_DownloadURLs at main · CronUp/Malware-IOCs · GitHub
https://github.com/CronUp/Malware-IOCs/blob/main/2022-05-25_Emotet_DownloadURLs
Automating Azure Abuse Research — Part 1 | by Andy Robbins | Posts By SpecterOps Team Members
https://posts.specterops.io/automating-azure-abuse-research-part-1-30b0eca33418
Security Code Audit - For Fun and Fails | Frycos Security Diary
https://frycos.github.io/vulns4free/2022/05/24/security-code-audit-fails.html
New Zoom Flaws Could Let Attackers Hack Victims Just by Sending them a Message
https://thehackernews.com/2022/05/new-zoom-flaws-could-let-attackers-hack.html
NETGEAR社製ルーターにおける認証不要の任意コード実行の技術的解説(PSV-2022-0044) - Flatt Security Blog
https://blog.flatt.tech/entry/psv-2022-0044
frycos on Twitter: "Is anyone also interested in me blogging about "failed" code audit attempts, e.g. only getting high-privileged auth'd RCE in a product? I could instead explain the methodological paths up to hitting the dead ends in more detail." / Twitter
https://twitter.com/frycos/status/1526114711443480576
Chris Bing on Twitter: "EXCLUSIVE Russian hackers are linked to new Brexit leak website, Google says https://t.co/GLTxDO83mZ" / Twitter
https://twitter.com/Bing_Chris/status/1529484076528422915
Finding Bugs in Windows Drivers, Part 1 – WDM
https://www.cyberark.com/resources/threat-research-blog/finding-bugs-in-windows-drivers-part-1-wdm
Bumblebee/Bumblebee_25.05.2022.txt at main · pr0xylife/Bumblebee · GitHub
https://github.com/pr0xylife/Bumblebee/blob/main/Bumblebee_25.05.2022.txt
Emotet Botnet Rises Again | Bitsight
https://www.bitsight.com/blog/emotet-botnet-rises-again
How to Hunt for DecisiveArchitect and Its JustForFun Implant | CrowdStrike
https://www.crowdstrike.com/blog/how-to-hunt-for-decisivearchitect-and-justforfun-implant/
CalciumDegenerate.exe (MD5: F190C4D0809492DC706E622FF11609A0) - Interactive analysis - ANY.RUN
https://app.any.run/tasks/d00abd07-63fc-4efd-a0f7-b2971766a0b8/#
matt on Twitter: "florida high school class president zander moricz was told by his school that they would cut his microphone if he said “gay” in his grad speech, so he replaced gay with “having curly hair.” i am in awe https://t.co/OqLbar5bwq" / Twitter
https://twitter.com/mattxiv/status/1529181072931659777
2254 - Zoom: Remote Code Execution with XMPP Stanza Smuggling - project-zero
https://bugs.chromium.org/p/project-zero/issues/detail?id=2254
Facebook Copies TikTok App to Make Instagram Cool to Teens - Bloomberg
https://www.bloomberg.com/news/features/2022-05-25/facebook-copies-tiktok-app-to-make-instagram-cool-to-teens
SpiceJet airline passengers stranded after ransomware attack
https://www.bleepingcomputer.com/news/security/indian-airline-spicejets-flights-impacted-by-ransomware-attack/