US military hackers conducting offensive operations in support of Ukraine, says head of Cyber Command | Science & Tech News | Sky News
https://news.sky.com/story/us-military-hackers-conducting-offensive-operations-in-support-of-ukraine-says-head-of-cyber-command-12625139
Takedown of SMS-based FluBot spyware infecting Android phones | Europol
https://www.europol.europa.eu/media-press/newsroom/news/takedown-of-sms-based-flubot-spyware-infecting-android-phones
Chinese Hackers Begin Exploiting Latest Microsoft Office Zero-Day Vulnerability
https://thehackernews.com/2022/05/chinese-hackers-begin-exploiting-latest.html
GitHub - GhostPack/DeepPass: Hunting for passwords with deep learning
https://github.com/GhostPack/DeepPass
DeepPass — Finding Passwords With Deep Learning | by Will Schroeder | Posts By SpecterOps Team Members
https://posts.specterops.io/deeppass-finding-passwords-with-deep-learning-4d31c534cd00
Alexander Martin on Twitter: "🚨 Scoop: In an exclusive interview with Sky News, General Paul Nakasone confirmed that Cyber Command has conducted offensive operations in support of Ukraine. https://t.co/HdLmwM17Uq" / Twitter
https://twitter.com/alexmartin/status/1531965128111017985
2272 - libxml2: heap-buffer-overflow in xmlBufAdd - project-zero
https://bugs.chromium.org/p/project-zero/issues/detail?id=2272
From open redirect to RCE in one week | byq | Medium
https://link.medium.com/ftOSGKkZtqb
Enumeration and lateral movement in GCP environments | by Security Shenanigans | InfoSec Write-ups
https://securityshenanigans.medium.com/enumeration-and-lateral-movement-in-gcp-environments-c3b82d342794
Steve Herman on Twitter: "Offensive cyber abilities against #Russia don't violate the US policy of avoiding a direct military conflict with Moscow, according to @PressSec. https://t.co/rEicMPLeXd" / Twitter
https://twitter.com/w7voa/status/1532103405627383808
3a5480d5ea288089567f338055545b05c195f8eaf350ec4698ca6cb03b91f787.bin (MD5: F90879110D316FF87567E5090B32099C) - Interactive analysis - ANY.RUN
https://app.any.run/tasks/45f5d114-91ea-486c-ab01-41c4093d2861/
Place where polar bears dwell
https://sandboxescaper.blogspot.com/2022/06/how-to-get-into-bug-hunting.html
Patch Your WSO2: CVE-2022-29464 Exploited to Install Linux-Compatible Cobalt Strike Beacons, Other Malware
https://www.trendmicro.com/en_us/research/22/e/patch-your-wso2-cve-2022-29464-exploited-to-install-linux-compatible-cobalt-strike-beacons-other-malware.html
Arbitrary File Upload Tricks In Java
https://pyn3rd.github.io/2022/05/07/Arbitrary-File-Upload-Tricks-In-Java/
MalwareBazaar | SHA256 ea52c881008e458daee5570c03b89726a0b3a652c26a3ec63002c82ba461e48c (BumbleBee)
https://bazaar.abuse.ch/sample/ea52c881008e458daee5570c03b89726a0b3a652c26a3ec63002c82ba461e48c/
Seven years in the making, DHS's new cyber talent system boasts just one hire - FCW
https://fcw.com/security/2022/05/seven-years-making-dhss-new-cyber-talent-system-boasts-just-one-hire/367534/
Fed judiciary says yes to free PACER searches. Here are the details so far | Reuters
https://www.reuters.com/legal/government/fed-judiciary-says-yes-free-pacer-searches-here-are-details-so-far-2022-05-31/
MalwareBazaar | follina
https://bazaar.abuse.ch/browse/tag/follina/
Guidance for CVE-2022-30190 Microsoft Support Diagnostic Tool Vulnerability – Microsoft Security Response Center
https://msrc-blog.microsoft.com/2022/05/30/guidance-for-cve-2022-30190-microsoft-support-diagnostic-tool-vulnerability/
YODA Tool Found ~47,000 Malicious WordPress Plugins Installed in Over 24,000 Sites
https://thehackernews.com/2022/06/yoda-tool-found-47000-malicious.html
MalwareBazaar | SHA256 79dc227db72f2c2007db98902390d43908649c057d31cbf1339774cf249b2959 (BumbleBee)
https://bazaar.abuse.ch/sample/79dc227db72f2c2007db98902390d43908649c057d31cbf1339774cf249b2959/
Unit 42 on Twitter: "CVE-2022-30190 aka #Follina has potential to be of high impact given the amount of publicly available information, ease of use and effectiveness of the exploit. Read our analysis and recommendations. https://t.co/F80W8RDjum https://t.co/Ro4IUSDzbG" / Twitter
https://twitter.com/Unit42_Intel/status/1531767484050817025
Bumblebee/Bumblebee_01.06.2022.txt at main · pr0xylife/Bumblebee · GitHub
https://github.com/pr0xylife/Bumblebee/blob/main/Bumblebee_01.06.2022.txt