WMI Internals Part 1. Understanding the Basics | by Jonathan Johnson | Jul, 2022 | Medium
https://jsecurity101.medium.com/wmi-internals-part-1-41bb97e7f5eb
2271 - Windows: Kerberos Redirected Logon Buffer EoP - project-zero
https://bugs.chromium.org/p/project-zero/issues/detail?id=2271
Brute Ratel C4 Red Teaming Tool Being Abused by Malicious Actors
https://unit42.paloaltonetworks.com/brute-ratel-c4-tool/
GitHub - h3xduck/TripleCross: A Linux eBPF rootkit with a backdoor, C2, library injection, execution hijacking, persistence and stealth capabilities.
https://github.com/h3xduck/TripleCross
AstraLocker ransomware shuts down and releases decryptors
https://www.bleepingcomputer.com/news/security/astralocker-ransomware-shuts-down-and-releases-decryptors/
Abusing functionality to exploit a super SSRF in Jira Server (CVE-2022-26135) – Assetnote
https://blog.assetnote.io/2022/06/26/exploiting-ssrf-in-jira/
Hive ransomware gets upgrades in Rust - Microsoft Security Blog
https://msft.it/6013bxKG7
One I/O Ring to Rule Them All: A Full Read/Write Exploit Primitive on Windows 11 – Winsider Seminars & Solutions Inc.
https://windows-internals.com/one-i-o-ring-to-rule-them-all-a-full-read-write-exploit-primitive-on-windows-11/
Researchers Share Techniques to Uncover Anonymized Ransomware Sites on Dark Web
https://thehackernews.com/2022/07/researchers-share-techniques-to-uncover.html
Game Of Active Directory v2 | Mayfly
https://mayfly277.github.io/posts/GOADv2/
A Diamond in the Ruff - TrustedSec
https://hubs.la/Q01g9LXm0
NIST Announces First Four Quantum-Resistant Cryptographic Algorithms | NIST
https://www.nist.gov/news-events/news/2022/07/nist-announces-first-four-quantum-resistant-cryptographic-algorithms
Researchers Uncover Malicious NPM Packages Stealing Data from Apps and Web Forms
https://thehackernews.com/2022/07/researchers-uncover-malicious-npm.html
How a nonprofit group has become the biggest repository for hacked Russian data : NPR
https://www.npr.org/2022/07/05/1109779532/how-a-nonprofit-group-has-become-the-biggest-repository-for-hacked-russian-data
https://www.openssl.org/news/secadv/20220705.txt
https://www.openssl.org/news/secadv/20220705.txt
Bitter APT continues to target Bangladesh | SECUINFRA Falcon Team
https://www.secuinfra.com/en/techtalk/whatever-floats-your-boat-bitter-apt-continues-to-target-bangladesh
Hive ransomware gets upgrades in Rust - Microsoft Security Blog
https://www.microsoft.com/security/blog/2022/07/05/hive-ransomware-gets-upgrades-in-rust/
GitHub - winterknife/PINKPANTHER: Windows x64 handcrafted token stealing kernel-mode shellcode
https://github.com/winterknife/PINKPANTHER
Unit 42 on Twitter: "Threat actors using nation-state tradecraft have begun to adopt the pentest tool #BruteRatel C4 https://t.co/C11ZqoGxXi https://t.co/HV4ykeNOoX" / Twitter
https://twitter.com/Unit42_Intel/status/1544329255919800322
Update Google Chrome Browser to Patch New Zero-Day Exploit Detected in the Wild
https://thehackernews.com/2022/07/update-google-chrome-browser-to-patch.html
VirusTotal - File - fcc70f401071db38c857af0c1af21e005845fb04fb1b1bf87fef42e55214d892
https://www.virustotal.com/gui/file/fcc70f401071db38c857af0c1af21e005845fb04fb1b1bf87fef42e55214d892
Brute Ratel C4 Red Teaming Tool Being Abused by Malicious Actors
https://bit.ly/3acaivi