07/22

PART 1: How I Met Your Beacon - Overview - MDSec

https://www.mdsec.co.uk/2022/07/part-1-how-i-met-your-beacon-overview/
PART 1: How I Met Your Beacon - Overview - MDSec

Publications/How I Met Your Beacon - x33fcon.pdf at master · mdsecresearch/Publications · GitHub

https://github.com/mdsecresearch/Publications/blob/master/presentations/How%20I%20Met%20Your%20Beacon%20-%20x33fcon.pdf
Publications/How I Met Your Beacon - x33fcon.pdf at master · mdsecresearch/Publications · GitHub

WordPress Transposh: Exploiting a Blind SQL Injection via XSS - RCE Security

https://www.rcesecurity.com/2022/07/WordPress-Transposh-Exploiting-a-Blind-SQL-Injection-via-XSS/
WordPress Transposh: Exploiting a Blind SQL Injection via XSS - RCE Security

The Return of Candiru: Zero-days in the Middle East - Avast Threat Labs

https://decoded.avast.io/janvojtesek/the-return-of-candiru-zero-days-in-the-middle-east/
The Return of Candiru: Zero-days in the Middle East - Avast Threat Labs

Candiru Spyware Caught Exploiting Google Chrome Zero-Day to Target Journalists

https://thehackernews.com/2022/07/candiru-spyware-caught-exploiting.html
Candiru Spyware Caught Exploiting Google Chrome Zero-Day to Target Journalists

Microsoft warns that new Windows updates may break printing

https://www.bleepingcomputer.com/news/microsoft/microsoft-warns-that-new-windows-updates-may-break-printing/
Microsoft warns that new Windows updates may break printing

GitHub - Wh04m1001/DiagTrackEoP

https://github.com/Wh04m1001/DiagTrackEoP
GitHub - Wh04m1001/DiagTrackEoP

[CVE-2022-34918] A crack in the Linux firewall

https://www.randorisec.fr/crack-linux-firewall/
[CVE-2022-34918] A crack in the Linux firewall

Hackers breach Ukrainian radio network to spread fake news about Zelenskiy

https://www.bleepingcomputer.com/news/security/hackers-breach-ukrainian-radio-network-to-spread-fake-news-about-zelenskiy/
Hackers breach Ukrainian radio network to spread fake news about Zelenskiy

Gitlab Project Import RCE Analysis (CVE-2022-2185) | STAR Labs

https://starlabs.sg/blog/2022/07-gitlab-project-import-rce-analysis-cve-2022-2185/
Gitlab Project Import RCE Analysis (CVE-2022-2185) | STAR Labs

MalwareBazaar | SHA256 4026021c26c8b1392f006fbe4c5e733fb2d0949b98e155d86e3359ba0cddf082

https://bazaar.abuse.ch/sample/4026021c26c8b1392f006fbe4c5e733fb2d0949b98e155d86e3359ba0cddf082/
MalwareBazaar | SHA256 4026021c26c8b1392f006fbe4c5e733fb2d0949b98e155d86e3359ba0cddf082

Windows 11 now blocks RDP brute-force attacks by default

https://www.bleepingcomputer.com/news/microsoft/windows-11-now-blocks-rdp-brute-force-attacks-by-default/
Windows 11 now blocks RDP brute-force attacks by default

Chengdu 404 – Intrusion Truth

https://intrusiontruth.wordpress.com/2022/07/22/chengdu-404/
Chengdu 404 – Intrusion Truth

WarzoneRAT Can Now Evade Detection With Process Hollowing

https://www.uptycs.com/blog/warzonerat-can-now-evade-with-process-hollowing
WarzoneRAT Can Now Evade Detection With Process Hollowing