06/21

Malware Hell

https://c3rb3ru5d3d53c.github.io/docs/malware-analysis-beginner-guide/
Malware Hell

Arsenal Kit Update: Thread Stack Spoofing | Cobalt Strike

https://www.cobaltstrike.com/blog/arsenal-kit-update-thread-stack-spoofing/
Arsenal Kit Update: Thread Stack Spoofing | Cobalt Strike

Are blockchains decentralized? | Trail of Bits Blog

https://blog.trailofbits.com/2022/06/21/are-blockchains-decentralized/
Are blockchains decentralized? | Trail of Bits Blog

Matanbuchus yara · GitHub

https://gist.github.com/silence-is-best/1bc62a53c1a0ddb3a8bcdff19bc80c3e
Matanbuchus yara · GitHub

Emotet SMB spreader overview | ..

http://reversing.fun/posts/2022/06/20/emotet-smb-spreader.html
Emotet SMB spreader overview | ..

MuddyWater’s “light” first-stager targeting Middle East

https://lab52.io/blog/muddywaters-light-first-stager-targetting-middle-east/
MuddyWater’s “light” first-stager targeting Middle East

Cloudflare outage on June 21, 2022

https://blog.cloudflare.com/cloudflare-outage-on-june-21-2022/
Cloudflare outage on June 21, 2022

Russia's APT28 uses fear of nuclear war to spread Follina docs in Ukraine | Malwarebytes Labs

https://blog.malwarebytes.com/threat-intelligence/2022/06/russias-apt28-uses-fear-of-nuclear-war-to-spread-follina-docs-in-ukraine/
Russia's APT28 uses fear of nuclear war to spread Follina docs in Ukraine | Malwarebytes Labs

MalwareBazaar | SHA256 6ed7b3c6a701a4372461b6267b8d01ce2a05b7b78a582bc5bfbbebd04bae27c3

https://bazaar.abuse.ch/sample/6ed7b3c6a701a4372461b6267b8d01ce2a05b7b78a582bc5bfbbebd04bae27c3/
MalwareBazaar | SHA256 6ed7b3c6a701a4372461b6267b8d01ce2a05b7b78a582bc5bfbbebd04bae27c3

New ToddyCat Hacker Group on Experts' Radar After Targeting MS Exchange Servers

https://thehackernews.com/2022/06/new-toddycat-hacker-group-on-experts.html
New ToddyCat Hacker Group on Experts' Radar After Targeting MS Exchange Servers

One-liner for running queries against CSV files with SQLite | Simon Willison’s TILs

https://til.simonwillison.net/sqlite/one-line-csv-operations
One-liner for running queries against CSV files with SQLite | Simon Willison’s TILs

Attacking With WebView2 Applications | mr.d0x

https://mrd0x.com/attacking-with-webview2-applications/
Attacking With WebView2 Applications | mr.d0x

Hacking into the worldwide Jacuzzi SmartTub network

https://eaton-works.com/2022/06/20/hacking-into-the-worldwide-jacuzzi-smarttub-network/
Hacking into the worldwide Jacuzzi SmartTub network

Researchers Disclose 56 Vulnerabilities Impacting OT Devices from 10 Vendors

https://thehackernews.com/2022/06/researchers-disclose-56-vulnerabilities.html
Researchers Disclose 56 Vulnerabilities Impacting OT Devices from 10 Vendors

Malware-IOCs/2022-06-20 Formbook IOCs at main · executemalware/Malware-IOCs · GitHub

https://github.com/executemalware/Malware-IOCs/blob/main/2022-06-20%20Formbook%20IOCs
Malware-IOCs/2022-06-20 Formbook IOCs at main · executemalware/Malware-IOCs · GitHub

Error | RallyUp

https://ruraltechfund.rallyup.com/raffle2022
Error | RallyUp

Matanbuchus: Malware-as-a-Service with Demonic Intentions

https://unit42.paloaltonetworks.com/matanbuchus-malware-as-a-service/
Matanbuchus: Malware-as-a-Service with Demonic Intentions

Security BSides / Security BSides Response to the BSides Cleveland Incident

http://www.securitybsides.com/w/page/149536464/Security%20BSides%20Response%20to%20the%20BSides%20Cleveland%20Incident
Security BSides / Security BSides Response to the BSides Cleveland Incident

GitHub - Wh04m1001/DFSCoerce

https://github.com/Wh04m1001/DFSCoerce
GitHub - Wh04m1001/DFSCoerce

New NTLM Relay Attack Lets Attackers Take Control Over Windows Domain

https://thehackernews.com/2022/06/new-ntlm-relay-attack-lets-attackers.html
New NTLM Relay Attack Lets Attackers Take Control Over Windows Domain