07/25

CosmicStrand: the discovery of a sophisticated UEFI firmware rootkit | Securelist

https://securelist.com/cosmicstrand-uefi-firmware-rootkit/106973/
CosmicStrand: the discovery of a sophisticated UEFI firmware rootkit | Securelist

PART 2: How I Met Your Beacon - Cobalt Strike - MDSec

https://www.mdsec.co.uk/2022/07/part-2-how-i-met-your-beacon-cobalt-strike/
PART 2: How I Met Your Beacon - Cobalt Strike - MDSec

The End of PPLdump | itm4n's blog

https://itm4n.github.io/the-end-of-ppldump/
The End of PPLdump | itm4n's blog

VirusTotal - File - 0f5e3d33c824f9f03d038b4f1a376b15cc5f1694aef086bd17c516ad951fc45a

https://www.virustotal.com/gui/file/0f5e3d33c824f9f03d038b4f1a376b15cc5f1694aef086bd17c516ad951fc45a/detection
VirusTotal - File - 0f5e3d33c824f9f03d038b4f1a376b15cc5f1694aef086bd17c516ad951fc45a

Intezer Analyze – Security analysts' trusted advisor

https://analyze.intezer.com/analyses/337ed9a1-b257-474c-9b49-0a60f93adb9d
Intezer Analyze – Security analysts' trusted advisor

IcedID_07_25_2022.txt · GitHub

https://gist.github.com/myrtus0x0/d36bacc2a6b2445ea9cfdd82635d0d74
IcedID_07_25_2022.txt · GitHub

GitHub - mandiant/Azure_Workshop

https://github.com/mandiant/Azure_Workshop
GitHub - mandiant/Azure_Workshop

Old cat, new tricks, bad habits

https://www.pwc.com/gx/en/issues/cybersecurity/cyber-threat-intelligence/old-cat-new-tricks.html
Old cat, new tricks, bad habits

QBot phishing uses Windows Calculator sideloading to infect devices

https://www.bleepingcomputer.com/news/security/qbot-phishing-uses-windows-calculator-sideloading-to-infect-devices/
QBot phishing uses Windows Calculator sideloading to infect devices

Revealed: Documents Show How Roblox Planned to Bend to Chinese Censorship

https://www.vice.com/en/article/wxndpx/revealed-documents-show-how-roblox-planned-to-bend-to-chinese-censorship
Revealed: Documents Show How Roblox Planned to Bend to Chinese Censorship

Hackers exploited PrestaShop zero-day to breach online stores

https://www.bleepingcomputer.com/news/security/hackers-exploited-prestashop-zero-day-to-breach-online-stores/
Hackers exploited PrestaShop zero-day to breach online stores

Defeating Javascript Obfuscation | PerimeterX

https://www.perimeterx.com/tech-blog/2022/defeating-javascript-obfuscation/
Defeating Javascript Obfuscation | PerimeterX

Magecart Hacks Food Ordering Systems to Steal Payment Data from Over 300 Restaurants

https://thehackernews.com/2022/07/magecart-hacks-online-food-ordering.html
Magecart Hacks Food Ordering Systems to Steal Payment Data from Over 300 Restaurants

Deep understand ASPX file handling and some related attack vectors

https://blog.viettelcybersecurity.com/deep-understand-aspx-file-handling-and-some-related-attack-vector/
Deep understand ASPX file handling and some related attack vectors