06/20

Project Zero: An Autopsy on a Zombie In-the-Wild 0-day

https://googleprojectzero.blogspot.com/2022/06/an-autopsy-on-zombie-in-wild-0-day.html
Project Zero: An Autopsy on a Zombie In-the-Wild 0-day

GitHub - elttam/semgrep-rules

https://github.com/elttam/semgrep-rules
GitHub - elttam/semgrep-rules

Google Researchers Detail 5-Year-Old Apple Safari Vulnerability Exploited in the Wild

https://thehackernews.com/2022/06/google-researchers-detail-5-year-old.html
Google Researchers Detail 5-Year-Old Apple Safari Vulnerability Exploited in the Wild

Finding client-side prototype pollution with DOM Invader | Blog - PortSwigger

https://portswigger.net/blog/finding-client-side-prototype-pollution-with-dom-invader
Finding client-side prototype pollution with DOM Invader | Blog - PortSwigger

abuse.ch | Introducing YARAify

https://abuse.ch/blog/introducing-yaraify/
abuse.ch | Introducing YARAify

MSRPC-to-ATTACK/MS-DFSNM.md at main · jsecurity101/MSRPC-to-ATTACK · GitHub

https://github.com/jsecurity101/MSRPC-to-ATTACK/blob/main/documents/MS-DFSNM.md
MSRPC-to-ATTACK/MS-DFSNM.md at main · jsecurity101/MSRPC-to-ATTACK · GitHub

VirusTotal - File - 7e068268ee3b89d1f8800d6354c9f63cd57c00088ce0d850893b4ddd8e750573

https://www.virustotal.com/gui/file/7e068268ee3b89d1f8800d6354c9f63cd57c00088ce0d850893b4ddd8e750573/detection
VirusTotal - File - 7e068268ee3b89d1f8800d6354c9f63cd57c00088ce0d850893b4ddd8e750573

JSAC2024

https://jsac.jpcert.or.jp/
JSAC2024

Recent Windows Server updates break VPN, RDP, RRAS connections

https://www.bleepingcomputer.com/news/microsoft/windows-server-june-updates-break-vpn-rdp-rras-connections/
Recent Windows Server updates break VPN, RDP, RRAS connections

Malware Hell

https://c3rb3ru5d3d53c.github.io/docs/kvm-malware-lab/
Malware Hell

BRATA Android Malware Gains Advanced Mobile Threat Capabilities

https://thehackernews.com/2022/06/brata-android-malware-gains-advanced.html
BRATA Android Malware Gains Advanced Mobile Threat Capabilities

VirusTotal - File - 211a1f74eea68ebe7178d90f0df0446a87cdda865145c397b7a32e253086139e

https://www.virustotal.com/gui/file/211a1f74eea68ebe7178d90f0df0446a87cdda865145c397b7a32e253086139e/detection
VirusTotal - File - 211a1f74eea68ebe7178d90f0df0446a87cdda865145c397b7a32e253086139e

VirusTotal - File - 7913b157495341f990bf2a23187bf36ed9260cf49635c2efee0f6772f76bed8e

https://www.virustotal.com/gui/file/7913b157495341f990bf2a23187bf36ed9260cf49635c2efee0f6772f76bed8e/detection
VirusTotal - File - 7913b157495341f990bf2a23187bf36ed9260cf49635c2efee0f6772f76bed8e

Understanding OLE Objects and Microsoft Magic to mess with with CVE-2022-30190(Follina)

https://danusminimus.github.io/2022/06/18/Understanding-OLE-Objects-and-Microsoft-Magic-to-mess-with-with-CVE-2022-30190(Follina).html
Understanding OLE Objects and Microsoft Magic to mess with with CVE-2022-30190(Follina)

YARAify | YARA File Scan

https://yaraify.abuse.ch/scan/
YARAify | YARA File Scan

Why Paper Receipts are Money at the Drive-Thru – Krebs on Security

https://krebsonsecurity.com/2022/06/why-paper-receipts-are-money-at-the-drive-thru/
Why Paper Receipts are Money at the Drive-Thru – Krebs on Security