07/12

Abusing forgotten permissions on computer objects in Active Directory - dirkjanm.io

https://dirkjanm.io/abusing-forgotten-permissions-on-precreated-computer-objects-in-active-directory/
Abusing forgotten permissions on computer objects in Active Directory - dirkjanm.io

Exploiting Authentication in AWS IAM Authenticator for Kubernetes

https://blog.lightspin.io/exploiting-eks-authentication-vulnerability-in-aws-iam-authenticator
Exploiting Authentication in AWS IAM Authenticator for Kubernetes

GitHub - reecdeep/HiveV5_keystream_decryptor: bad stuffs by bad guys

https://github.com/reecdeep/HiveV5_keystream_decryptor
GitHub - reecdeep/HiveV5_keystream_decryptor: bad stuffs by bad guys

Malware-IOCs/2022-07-11 Qakbot (obama200) IOCs at main · executemalware/Malware-IOCs · GitHub

https://github.com/executemalware/Malware-IOCs/blob/main/2022-07-11%20Qakbot%20(obama200)%20IOCs
Malware-IOCs/2022-07-11 Qakbot (obama200) IOCs at main · executemalware/Malware-IOCs · GitHub

MalwareBazaar | SHA256 858f567340cee8755dbd745b6afd9adc78a998bf2cbfda85e6302197994c577c

https://bazaar.abuse.ch/sample/858f567340cee8755dbd745b6afd9adc78a998bf2cbfda85e6302197994c577c/
MalwareBazaar | SHA256 858f567340cee8755dbd745b6afd9adc78a998bf2cbfda85e6302197994c577c

SOC Core Skills w/ John Strand - Antisyphon

https://www.antisyphontraining.com/soc-core-skills-w-john-strand/
SOC Core Skills w/ John Strand - Antisyphon

Microsoft Windows Autopatch is Now Generally Available for Enterprise Systems

https://thehackernews.com/2022/07/microsoft-windows-autopatch-is-now.html
Microsoft Windows Autopatch is Now Generally Available for Enterprise Systems

Microsoft: Phishing bypassed MFA in attacks against 10,000 orgs

https://www.bleepingcomputer.com/news/security/microsoft-phishing-bypassed-mfa-in-attacks-against-10-000-orgs/
Microsoft: Phishing bypassed MFA in attacks against 10,000 orgs

From cookie theft to BEC: Attackers use AiTM phishing sites as entry point to further financial fraud - Microsoft Security Blog

https://www.microsoft.com/security/blog/2022/07/12/from-cookie-theft-to-bec-attackers-use-aitm-phishing-sites-as-entry-point-to-further-financial-fraud/
From cookie theft to BEC: Attackers use AiTM phishing sites as entry point to further financial fraud - Microsoft Security Blog