06/29

Unrar Path Traversal Vulnerability affects Zimbra Mail

https://blog.sonarsource.com/zimbra-pre-auth-rce-via-unrar-0day/
Unrar Path Traversal Vulnerability affects Zimbra Mail

odbcconf | LOLBAS

https://lolbas-project.github.io/lolbas/Binaries/Odbcconf/
odbcconf | LOLBAS

Exploiting Intel Graphics Kernel Extensions on macOS | RET2 Systems Blog

https://blog.ret2.io/2022/06/29/pwn2own-2021-safari-sandbox-intel-graphics-exploit/
Exploiting Intel Graphics Kernel Extensions on macOS | RET2 Systems Blog

Canada’s national police force admits use of spyware to hack phones - POLITICO

https://www.politico.com/news/2022/06/29/canada-national-police-spyware-phones-00043092
Canada’s national police force admits use of spyware to hack phones - POLITICO

Cisco Talos Intelligence Group - Comprehensive Threat Intelligence: De-anonymizing ransomware domains on the dark web

https://blog.talosintelligence.com/2022/06/de-anonymizing-ransomware-domains-on.html
Cisco Talos Intelligence Group - Comprehensive Threat Intelligence: De-anonymizing ransomware domains on the dark web

Mez0: Vulpes: Obfuscating Memory Regions with Timers

https://mez0.cc/posts/vulpes-obfuscating-memory-regions/
Mez0: Vulpes: Obfuscating Memory Regions with Timers

Hatching Triage | Behavioral Report

https://tria.ge/220629-k5qwmagdbj/behavioral1
Hatching Triage | Behavioral Report

VirusTotal - File - a6fdd0629ed927d7b38a7309bcfcadd08e6a7368b3f18ca49a7d40c755193312

https://www.virustotal.com/gui/file/a6fdd0629ed927d7b38a7309bcfcadd08e6a7368b3f18ca49a7d40c755193312
VirusTotal - File - a6fdd0629ed927d7b38a7309bcfcadd08e6a7368b3f18ca49a7d40c755193312

Super Easy Memory Forensics

https://www.slideshare.net/IIJ_PR/super-easy-memory-forensics
Super Easy Memory Forensics

GitHub - ufrisk/MemProcFS: MemProcFS

https://github.com/ufrisk/MemProcFS
GitHub - ufrisk/MemProcFS: MemProcFS

The Phantom Credentials of SCCM: Why the NAA Won’t Die | by Duane Michael | Jun, 2022 | Posts By SpecterOps Team Members

https://posts.specterops.io/the-phantom-credentials-of-sccm-why-the-naa-wont-die-332ac7aa1ab9
The Phantom Credentials of SCCM: Why the NAA Won’t Die | by Duane Michael | Jun, 2022 | Posts By SpecterOps Team Members

Abusing Cloudflare Workers - Christophe Tafani-Dereeper

https://blog.christophetd.fr/abusing-cloudflare-workers
Abusing Cloudflare Workers - Christophe Tafani-Dereeper

How security leaders can help their teams avoid burnout - Microsoft Security Blog

http://www.microsoft.com/security/blog/2022/06/28/how-security-leaders-can-help-their-teams-avoid-burnout/
How security leaders can help their teams avoid burnout - Microsoft Security Blog

Did You Know Your Browser’s Autofill Credentials Could Be Stolen via Cross-Site Scripting (XSS) - GoSecure

https://www.gosecure.net/blog/2022/06/29/did-you-know-your-browsers-autofill-credentials-could-be-stolen-via-cross-site-scripting-xss/
Did You Know Your Browser’s Autofill Credentials Could Be Stolen via Cross-Site Scripting (XSS) - GoSecure

New 'FabricScape' Bug in Microsoft Azure Service Fabric Impacts Linux Workloads

https://thehackernews.com/2022/06/new-fabricscape-bug-in-microsoft-azure.html
New 'FabricScape' Bug in Microsoft Azure Service Fabric Impacts Linux Workloads

Attack on Titan M: Vulnerability Research on a Modern Security Chip

https://troopers.de/troopers22/agenda/tr22-1081-attack-on-titan-m-vulnerability-research-on-a-modern-security-chip/
Attack on Titan M: Vulnerability Research on a Modern Security Chip

Bypassing Firefox's HTML Sanitizer API | PortSwigger Research

https://portswigger.net/research/bypassing-firefoxs-html-sanitizer-api
Bypassing Firefox's HTML Sanitizer API | PortSwigger Research

ZuoRAT Hijacks SOHO Routers to Silently Stalk Networks - Lumen

https://blog.lumen.com/zuorat-hijacks-soho-routers-to-silently-stalk-networks/
ZuoRAT Hijacks SOHO Routers to Silently Stalk Networks - Lumen

CISA's Cybersecurity Hiring Event

https://app.brazenconnect.com/events/A3nJDHw
CISA's Cybersecurity Hiring Event

CISA Warns of Active Exploitation of 'PwnKit' Linux Vulnerability in the Wild

https://thehackernews.com/2022/06/cisa-warns-of-active-exploitation-of.html
CISA Warns of Active Exploitation of 'PwnKit' Linux Vulnerability in the Wild

code white | Blog: Bypassing .NET Serialization Binders

https://codewhitesec.blogspot.com/2022/06/bypassing-dotnet-serialization-binders.html
code white | Blog: Bypassing .NET Serialization Binders