06/01

US military hackers conducting offensive operations in support of Ukraine, says head of Cyber Command | Science & Tech News | Sky News

https://news.sky.com/story/us-military-hackers-conducting-offensive-operations-in-support-of-ukraine-says-head-of-cyber-command-12625139
US military hackers conducting offensive operations in support of Ukraine, says head of Cyber Command | Science & Tech News | Sky News

Takedown of SMS-based FluBot spyware infecting Android phones | Europol

https://www.europol.europa.eu/media-press/newsroom/news/takedown-of-sms-based-flubot-spyware-infecting-android-phones
Takedown of SMS-based FluBot spyware infecting Android phones | Europol

Chinese Hackers Begin Exploiting Latest Microsoft Office Zero-Day Vulnerability

https://thehackernews.com/2022/05/chinese-hackers-begin-exploiting-latest.html
Chinese Hackers Begin Exploiting Latest Microsoft Office Zero-Day Vulnerability

DeepPass — Finding Passwords With Deep Learning | by Will Schroeder | Posts By SpecterOps Team Members

https://posts.specterops.io/deeppass-finding-passwords-with-deep-learning-4d31c534cd00
DeepPass — Finding Passwords With Deep Learning | by Will Schroeder | Posts By SpecterOps Team Members

2272 - libxml2: heap-buffer-overflow in xmlBufAdd - project-zero

https://bugs.chromium.org/p/project-zero/issues/detail?id=2272
2272 - libxml2: heap-buffer-overflow in xmlBufAdd - project-zero

Enumeration and lateral movement in GCP environments | by Security Shenanigans | InfoSec Write-ups

https://securityshenanigans.medium.com/enumeration-and-lateral-movement-in-gcp-environments-c3b82d342794
Enumeration and lateral movement in GCP environments | by Security Shenanigans | InfoSec Write-ups

Place where polar bears dwell

https://sandboxescaper.blogspot.com/2022/06/how-to-get-into-bug-hunting.html
Place where polar bears dwell

Patch Your WSO2: CVE-2022-29464 Exploited to Install Linux-Compatible Cobalt Strike Beacons, Other Malware

https://www.trendmicro.com/en_us/research/22/e/patch-your-wso2-cve-2022-29464-exploited-to-install-linux-compatible-cobalt-strike-beacons-other-malware.html
Patch Your WSO2: CVE-2022-29464 Exploited to Install Linux-Compatible Cobalt Strike Beacons, Other Malware

Arbitrary File Upload Tricks In Java

https://pyn3rd.github.io/2022/05/07/Arbitrary-File-Upload-Tricks-In-Java/
Arbitrary File Upload Tricks In Java

MalwareBazaar | SHA256 ea52c881008e458daee5570c03b89726a0b3a652c26a3ec63002c82ba461e48c (BumbleBee)

https://bazaar.abuse.ch/sample/ea52c881008e458daee5570c03b89726a0b3a652c26a3ec63002c82ba461e48c/
MalwareBazaar | SHA256 ea52c881008e458daee5570c03b89726a0b3a652c26a3ec63002c82ba461e48c (BumbleBee)

Seven years in the making, DHS's new cyber talent system boasts just one hire - FCW

https://fcw.com/security/2022/05/seven-years-making-dhss-new-cyber-talent-system-boasts-just-one-hire/367534/
Seven years in the making, DHS's new cyber talent system boasts just one hire - FCW

Fed judiciary says yes to free PACER searches. Here are the details so far | Reuters

https://www.reuters.com/legal/government/fed-judiciary-says-yes-free-pacer-searches-here-are-details-so-far-2022-05-31/
Fed judiciary says yes to free PACER searches. Here are the details so far | Reuters

MalwareBazaar | follina

https://bazaar.abuse.ch/browse/tag/follina/
MalwareBazaar | follina

Guidance for CVE-2022-30190 Microsoft Support Diagnostic Tool Vulnerability – Microsoft Security Response Center

https://msrc-blog.microsoft.com/2022/05/30/guidance-for-cve-2022-30190-microsoft-support-diagnostic-tool-vulnerability/
Guidance for CVE-2022-30190 Microsoft Support Diagnostic Tool Vulnerability – Microsoft Security Response Center

YODA Tool Found ~47,000 Malicious WordPress Plugins Installed in Over 24,000 Sites

https://thehackernews.com/2022/06/yoda-tool-found-47000-malicious.html
YODA Tool Found ~47,000 Malicious WordPress Plugins Installed in Over 24,000 Sites

MalwareBazaar | SHA256 79dc227db72f2c2007db98902390d43908649c057d31cbf1339774cf249b2959 (BumbleBee)

https://bazaar.abuse.ch/sample/79dc227db72f2c2007db98902390d43908649c057d31cbf1339774cf249b2959/
MalwareBazaar | SHA256 79dc227db72f2c2007db98902390d43908649c057d31cbf1339774cf249b2959 (BumbleBee)

Bumblebee/Bumblebee_01.06.2022.txt at main · pr0xylife/Bumblebee · GitHub

https://github.com/pr0xylife/Bumblebee/blob/main/Bumblebee_01.06.2022.txt
Bumblebee/Bumblebee_01.06.2022.txt at main · pr0xylife/Bumblebee · GitHub