GitHub - chip-red-pill/MicrocodeDecryptor
https://github.com/chip-red-pill/MicrocodeDecryptor
Better know a data source: Logon sessions
https://redcanary.com/blog/logon-sessions/
On Detection: Tactical to Functional | by Jared Atkinson | Jul, 2022 | Posts By SpecterOps Team Members
https://posts.specterops.io/on-detection-tactical-to-functional-d71da6505720
Russia Released a Ukrainian App for Hacking Russia That Was Actually Malware
https://www.vice.com/en/article/bvmnxd/russia-released-a-ukrainian-app-for-hacking-russia-that-was-actually-malware
Continued cyber activity in Eastern Europe observed by TAG
https://blog.google/threat-analysis-group/continued-cyber-activity-in-eastern-europe-observed-by-tag/
China: Declaration by the Minister for Foreign Affairs on behalf of the Belgian Government urging Chinese authorities to take action against malicious cyber activities undertaken by Chinese actors | Federal Public Service Foreign Affairs
https://diplomatie.belgium.be/en/news/declaration-minister-foreign-affairs-malicious-cyber-activities
Several New Play Store Apps Spotted Distributing Joker, Facestealer and Coper Malware
https://thehackernews.com/2022/07/several-new-play-store-apps-spotted.html
I see what you did there: A look at the CloudMensis macOS spyware | WeLiveSecurity
https://www.welivesecurity.com/2022/07/19/i-see-what-you-did-there-look-cloudmensis-macos-spyware/
Air-gapped systems leak data via SATA cable WiFi antennas
https://www.bleepingcomputer.com/news/security/air-gapped-systems-leak-data-via-sata-cable-wifi-antennas/
Unit 42 Threat Group Naming Update
https://unit42.paloaltonetworks.com/unit-42-threat-group-naming-update/
x86matthew - AddExeImport - Add a hardcoded DLL dependency to any EXE
https://www.x86matthew.com/view_post?id=add_exe_import
CVE-2022-30526 (Fixed): Zyxel Firewall Local Privilege Escalation | Rapid7 Blog
https://www.rapid7.com/blog/post/2022/07/19/cve-2022-30526-fixed-zyxel-firewall-local-privilege-escalation/
Hacker saves the world. Teaches you hacking. - YouTube
https://youtu.be/sxCUZFVM8xk
Threat Hunting Series: The Threat Hunting Process | by Kostas | Jul, 2022 | Medium
https://kostas-ts.medium.com/threat-hunting-series-the-threat-hunting-process-f76583f2475b
EJS, Server side template injection RCE (CVE-2022-29078) - writeup | ~#whoami <Eslam Salem>
https://eslam.io/posts/ejs-server-side-template-injection-rce/