Confluence Security Advisory 2022-06-02 | Confluence Data Center and Server 7.19 | Atlassian Documentation
https://confluence.atlassian.com/doc/confluence-security-advisory-2022-06-02-1130377146.html
Zero-Day Exploitation of Atlassian Confluence | Volexity
https://www.volexity.com/blog/2022/06/02/zero-day-exploitation-of-atlassian-confluence/
Volexity on Twitter: ".@Volexity discovers zero-day exploit impacting all current versions of Atlassian Confluence Server and Data Center. Attackers deploy in-memory Java implant to evade detection. Read more in our latest blog post: https://t.co/aCSwnSUfj8 #DFIR #ThreatIntel #InfoSec" / Twitter
https://twitter.com/Volexity/status/1532492927813013507
Active Exploitation of Confluence CVE-2022-26134 | Rapid7 Blog
https://www.rapid7.com/blog/post/2022/06/02/active-exploitation-of-confluence-cve-2022-26134/
VirusTotal - File - ca7e9c65fd2cec62110b50581529198c43b7982820a38c912baa81d0294b8126
https://www.virustotal.com/gui/file/ca7e9c65fd2cec62110b50581529198c43b7982820a38c912baa81d0294b8126/details
Critical Atlassian Confluence zero-day actively used in attacks
https://www.bleepingcomputer.com/news/security/critical-atlassian-confluence-zero-day-actively-used-in-attacks/
Corey Quinn on Twitter: "Corporate Infosec sends a phishing test email, I click, and somehow I'm the asshole because "[I] failed the test; had this been real it would have destroyed the company network"? If me clicking can destroy the network, I'm not the one in this conversation who sucks at their job." / Twitter
https://twitter.com/QuinnyPig/status/1532724283079700480
Outbreak of Follina in Australia - Avast Threat Labs
https://decoded.avast.io/threatintel/outbreak-of-follina-in-australia/
Popping Eagle: How Global Analytics Uncovered a Stealthy Threat Actor
https://unit42.paloaltonetworks.com/popping-eagle-malware/
Researchers Uncover Malware Controlling Thousands of Sites in Parrot TDS Network
https://thehackernews.com/2022/06/researchers-uncover-malware-controlling.html
Sabrina on Twitter: "Make a programmer cry with 4 words" / Twitter
https://twitter.com/sabrinaesaquino/status/1532004885415206914
To HADES and Back: UNC2165 Shifts to LOCKBIT to Evade Sanctions | Mandiant
https://www.mandiant.com/resources/unc2165-shifts-to-evade-sanctions
GitLab Issues Security Patch for Critical Account Takeover Vulnerability
https://thehackernews.com/2022/06/gitlab-issues-security-patch-for.html
Hackers Exploiting Unpatched Critical Atlassian Confluence Zero-Day Vulnerability
https://thehackernews.com/2022/06/hackers-exploiting-unpatched-critical.html
GitHub - airbus-cert/ttddbg: Time Travel Debugging IDA plugin
https://github.com/airbus-cert/ttddbg