05/31

Guidance for CVE-2022-30190 Microsoft Support Diagnostic Tool Vulnerability – Microsoft Security Response Center

https://msrc-blog.microsoft.com/2022/05/30/guidance-for-cve-2022-30190-microsoft-support-diagnostic-tool-vulnerability/
Guidance for CVE-2022-30190 Microsoft Support Diagnostic Tool Vulnerability – Microsoft Security Response Center

Troubleshooting: Allow users to access and run Troubleshooting Wizards

https://admx.help/?Category=Windows_10_2016&Policy=Microsoft.Policies.ScriptedDiagnostics::ScriptedDiagnosticsExecutionPolicy
Troubleshooting: Allow users to access and run Troubleshooting Wizards

Follina — a Microsoft Office code execution vulnerability | by Kevin Beaumont | DoublePulsar

https://doublepulsar.com/follina-a-microsoft-office-code-execution-vulnerability-1a47fce5629e
Follina — a Microsoft Office code execution vulnerability | by Kevin Beaumont | DoublePulsar

Discord Is the World’s Most Important Financial Messenger, and a Hotbed for Scammers

https://www.vice.com/en/article/n7n848/discord-is-the-worlds-most-important-financial-messenger-and-a-hotbed-for-scammers
Discord Is the World’s Most Important Financial Messenger, and a Hotbed for Scammers

thesis-electron.pdf

https://benjamin-altpeter.de/doc/thesis-electron.pdf
thesis-electron.pdf

Space / Twitter

https://twitter.com/i/spaces/1DXGyDNWEgvKM
Space / Twitter

Microsoft shares mitigation for Office zero-day exploited in attacks

https://www.bleepingcomputer.com/news/microsoft/microsoft-shares-mitigation-for-office-zero-day-exploited-in-attacks/
Microsoft shares mitigation for Office zero-day exploited in attacks

The Underground Company That Hacks iPhones for Ordinary Consumers

https://www.vice.com/en/article/jgmygb/checkm8-info-remove-icloud-activation-lock
The Underground Company That Hacks iPhones for Ordinary Consumers

MalwareBazaar | SHA256 344b6a7c3888aed4239480b4b79381bdf995e0ab8103f982912d1b769d2a8ec2 (IcedID)

https://bazaar.abuse.ch/sample/344b6a7c3888aed4239480b4b79381bdf995e0ab8103f982912d1b769d2a8ec2/
MalwareBazaar | SHA256 344b6a7c3888aed4239480b4b79381bdf995e0ab8103f982912d1b769d2a8ec2 (IcedID)

Microsoft Releases Workarounds for Office Vulnerability Under Active Exploitation

https://thehackernews.com/2022/05/microsoft-releases-workarounds-for.html
Microsoft Releases Workarounds for Office Vulnerability Under Active Exploitation

Rapid Response: Microsoft Office RCE - “Follina” MSDT Attack

https://www.huntress.com/blog/microsoft-office-remote-code-execution-follina-msdt-bug
Rapid Response: Microsoft Office RCE - “Follina” MSDT Attack

SCYTHE Library: Breaking: Follina (MSDT) Vulnerability

https://www.scythe.io/library/breaking-follina-msdt-vulnerability
SCYTHE Library: Breaking: Follina (MSDT) Vulnerability

Finding command execution sinks in decompiled JVM languages | $BLOG_TITLE

https://blog.deesee.xyz/code-review/reverse-engineering/2022/05/30/scala-kotlin-groovy-clojure-command-execution.html
Finding command execution sinks in decompiled JVM languages | $BLOG_TITLE

Exploiting MSDT 0-Day CVE-2022-30190 - YouTube

https://www.youtube.com/watch?v=dGCOhORNKRk
Exploiting MSDT 0-Day CVE-2022-30190 - YouTube

XLoader Botnet: Find Me If You Can - Check Point Research

https://research.checkpoint.com/2022/xloader-botnet-find-me-if-you-can/
XLoader Botnet: Find Me If You Can - Check Point Research

| Job Preference

http://www.jobpreference.com
| Job Preference

New XLoader botnet uses probability theory to hide its servers

https://www.bleepingcomputer.com/news/security/new-xloader-botnet-uses-probability-theory-to-hide-its-servers/
New XLoader botnet uses probability theory to hide its servers