06/26

WarCon 2022 – Modern Initial Access and Evasion Tactics – mgeeky's lair

https://mgeeky.tech/warcon-2022-modern-initial-access-and-evasion-tactics/
WarCon 2022 – Modern Initial Access and Evasion Tactics – mgeeky's lair

A Begginers All Inclusive Guide to ETW — Blake's R&D

http://bmcder.com/blog/a-begginers-all-inclusive-guide-to-etw
A Begginers All Inclusive Guide to ETW — Blake's R&D

Overview of Russian GRU and SVR Cyberespionage Campaigns 1H 2022

https://blog.bushidotoken.net/2022/06/overview-of-russian-gru-and-svr.html
Overview of Russian GRU and SVR Cyberespionage Campaigns 1H 2022

Download - MEGA

https://mega.nz/file/IL9xWASa#44m-y_81ZmyqZ5V-qnchYoFzv7FYqlPeyl3ZMmNxMdE
Download - MEGA

https://riskmitigation.ch/yara-scan/results/66bd649340f55bbea8cb679ce8227b780a3295bb24c058b93a6af08e100ce150/

https://riskmitigation.ch/yara-scan/results/66bd649340f55bbea8cb679ce8227b780a3295bb24c058b93a6af08e100ce150/

YARAify | Rule SocGholish_Obfuscated

https://yaraify.abuse.ch/yarahub/rule/SocGholish_Obfuscated/
YARAify | Rule SocGholish_Obfuscated

Azure Blob Container Threats & Attack

https://misconfig.io/azure-blob-container-threats-attack/
Azure Blob Container Threats & Attack

Added PDF owner password format: $pdfo$ · DidierStevens/john@8dedc30 · GitHub

https://github.com/DidierStevens/john/commit/8dedc305b67ad5637ecad5b6c5c8d65ade6eb7bb
Added PDF owner password format: $pdfo$ · DidierStevens/john@8dedc30 · GitHub

20220626a added JtR executable (john & john.exe) with new $pdfo$ format · DidierStevens/FalsePositives@b3fdeb6 · GitHub

https://github.com/DidierStevens/FalsePositives/commit/b3fdeb6a272548ce90aa74cc5b37e0ff013cb5ce
20220626a added JtR executable (john & john.exe) with new $pdfo$ format · DidierStevens/FalsePositives@b3fdeb6 · GitHub

XJunior

https://x-junior.github.io/
XJunior

Sean Hastings on Twitter: "🤣 https://t.co/FC7ECmFDQC" / Twitter

https://twitter.com/whysean/status/1541043604394745856
Sean Hastings on Twitter: "🤣 https://t.co/FC7ECmFDQC" / Twitter

Tyranid's Lair: Finding Running RPC Server Information with NtObjectManager

https://www.tiraniddo.dev/2022/06/finding-running-rpc-server-information.html
Tyranid's Lair: Finding Running RPC Server Information with NtObjectManager