06/28

Unrar Path Traversal Vulnerability affects Zimbra Mail

https://blog.sonarsource.com/zimbra-pre-auth-rce-via-unrar-0day/
Unrar Path Traversal Vulnerability affects Zimbra Mail

The Phantom Credentials of SCCM: Why the NAA Won’t Die | by Duane Michael | Jun, 2022 | Posts By SpecterOps Team Members

https://posts.specterops.io/the-phantom-credentials-of-sccm-why-the-naa-wont-die-332ac7aa1ab9
The Phantom Credentials of SCCM: Why the NAA Won’t Die | by Duane Michael | Jun, 2022 | Posts By SpecterOps Team Members

code white | Blog: Bypassing .NET Serialization Binders

https://codewhitesec.blogspot.com/2022/06/bypassing-dotnet-serialization-binders.html
code white | Blog: Bypassing .NET Serialization Binders

Cisco Talos Intelligence Group - Comprehensive Threat Intelligence: De-anonymizing ransomware domains on the dark web

https://blog.talosintelligence.com/2022/06/de-anonymizing-ransomware-domains-on.html
Cisco Talos Intelligence Group - Comprehensive Threat Intelligence: De-anonymizing ransomware domains on the dark web

Evilnum APT returns with updated TTPs and New Targets | Blog

https://www.zscaler.com/blogs/security-research/return-evilnum-apt-updated-ttps-and-new-targets
Evilnum APT returns with updated TTPs and New Targets | Blog

The hidden side of Seclogon part 3: Racing for LSASS dumps

https://splintercod3.blogspot.com/p/the-hidden-side-of-seclogon-part-3.html
The hidden side of Seclogon part 3: Racing for LSASS dumps

Over 900,000 Kubernetes instances found exposed online

https://www.bleepingcomputer.com/news/security/over-900-000-kubernetes-instances-found-exposed-online/
Over 900,000 Kubernetes instances found exposed online

LockBit 3.0 introduces the first ransomware bug bounty program

https://www.bleepingcomputer.com/news/security/lockbit-30-introduces-the-first-ransomware-bug-bounty-program/
LockBit 3.0 introduces the first ransomware bug bounty program

random/28_06_2022_QBOT.csv at main · aanubhav-ioc/random · GitHub

https://github.com/aanubhav-ioc/random/blob/main/28_06_2022_QBOT.csv
random/28_06_2022_QBOT.csv at main · aanubhav-ioc/random · GitHub

KISA 암호이용활성화 - 암호 역기능 대응 - 자료실

https://seed.kisa.or.kr/kisa/Board/133/detailView.do
KISA 암호이용활성화 - 암호 역기능 대응 - 자료실

APT Hackers Targeting Industrial Control Systems with ShadowPad Backdoor

https://thehackernews.com/2022/06/apt-hackers-targeting-industrial.html
APT Hackers Targeting Industrial Control Systems with ShadowPad Backdoor

MalwareBazaar | Browse malware samples

https://bazaar.abuse.ch/sample/247331dfc1ff971623e169a302fc2c8eb5c895573d055ca1b985d6ac1cfd6720/
MalwareBazaar | Browse malware samples

ZuoRAT Hijacks SOHO Routers to Silently Stalk Networks - Lumen

https://blog.lumen.com/zuorat-hijacks-soho-routers-to-silently-stalk-networks/
ZuoRAT Hijacks SOHO Routers to Silently Stalk Networks - Lumen

MalwareBazaar | Browse malware samples

https://bazaar.abuse.ch/sample/7284dbccfd2327ead9ea433fe75a1e164723abf9fd5fbad4b363e7e0311da83a/
MalwareBazaar | Browse malware samples

Raccoon Stealer v2 - Part 1: The return of the dead - SEKOIA.IO Blog

https://blog.sekoia.io/raccoon-stealer-v2-part-1-the-return-of-the-dead/
Raccoon Stealer v2 - Part 1: The return of the dead - SEKOIA.IO Blog

MalwareBazaar | SHA256 ba43866447e97dea2a94cfb5ae8974be90809331cb9d90ab5abf6f1d8dcd49f2 (AgentTesla)

https://bazaar.abuse.ch/sample/ba43866447e97dea2a94cfb5ae8974be90809331cb9d90ab5abf6f1d8dcd49f2/
MalwareBazaar | SHA256 ba43866447e97dea2a94cfb5ae8974be90809331cb9d90ab5abf6f1d8dcd49f2 (AgentTesla)

https://pastebin.com/raw/dNxptGCe

https://pastebin.com/raw/dNxptGCe

gov.uscourts.flmd.386126.33.0.pdf

https://storage.courtlistener.com/recap/gov.uscourts.flmd.386126/gov.uscourts.flmd.386126.33.0.pdf
gov.uscourts.flmd.386126.33.0.pdf

odbcconf | LOLBAS

https://lolbas-project.github.io/lolbas/Binaries/Odbcconf/
odbcconf | LOLBAS