08/05

Who Needs Macros? | Threat Actors Pivot to Abusing Explorer and Other LOLBins via Windows Shortcuts  - SentinelOne

https://www.sentinelone.com/labs/who-needs-macros-threat-actors-pivot-to-abusing-explorer-and-other-lolbins-via-windows-shortcuts/
Who Needs Macros? | Threat Actors Pivot to Abusing Explorer and Other LOLBins via Windows Shortcuts  - SentinelOne

An incident impacting some accounts and private information on Twitter

https://privacy.twitter.com/en/blog/2022/an-issue-affecting-some-anonymous-accounts
An incident impacting some accounts and private information on Twitter

flipperzero-firmware/princeton.c at dev · flipperdevices/flipperzero-firmware · GitHub

https://github.com/flipperdevices/flipperzero-firmware/blob/dev/lib/subghz/protocols/princeton.c#L11
flipperzero-firmware/princeton.c at dev · flipperdevices/flipperzero-firmware · GitHub

Eric Capuano ⬡ on Twitter: "Yikes Slack 😬 https://t.co/73gx6NbnhB" / Twitter

https://twitter.com/eric_capuano/status/1555407572622000128
Eric Capuano ⬡ on Twitter: "Yikes Slack 😬 https://t.co/73gx6NbnhB" / Twitter

Detecting Linux Anti-Forensics: Timestomping

https://www.inversecos.com/2022/08/detecting-linux-anti-forensics.html
Detecting Linux Anti-Forensics: Timestomping

Twitter confirms zero-day used to expose data of 5.4 million accounts

https://www.bleepingcomputer.com/news/security/twitter-confirms-zero-day-used-to-expose-data-of-54-million-accounts/
Twitter confirms zero-day used to expose data of 5.4 million accounts

Hackers try to extort survey firm QuestionPro after alleged data theft

https://www.bleepingcomputer.com/news/security/hackers-try-to-extort-survey-firm-questionpro-after-alleged-data-theft/
Hackers try to extort survey firm QuestionPro after alleged data theft

Certipy 4.0: ESC9 & ESC10, BloodHound GUI, New Authentication and Request Methods — and more! | by Oliver Lyak | Aug, 2022 | IFCR

https://research.ifcr.dk/certipy-4-0-esc9-esc10-bloodhound-gui-new-authentication-and-request-methods-and-more-7237d88061f7
Certipy 4.0: ESC9 & ESC10, BloodHound GUI, New Authentication and Request Methods — and more! | by Oliver Lyak | Aug, 2022 | IFCR

CVE-2022-29582 - Computer security and related topics

https://ruia-ruia.github.io/2022/08/05/CVE-2022-29582-io-uring/
CVE-2022-29582 - Computer security and related topics

On Detection: Tactical to Functional | by Jared Atkinson | Posts By SpecterOps Team Members

https://posts.specterops.io/on-detection-tactical-to-functional-37ddcd75234b
On Detection: Tactical to Functional | by Jared Atkinson | Posts By SpecterOps Team Members

XSS in Gmail's Amp4Email

https://www.adico.me/post/xss-in-gmail-s-amp4email
XSS in Gmail's Amp4Email

2021 Top Malware Strains | CISA

https://www.cisa.gov/uscert/ncas/alerts/aa22-216a
2021 Top Malware Strains | CISA

Israel Police's Pegasus Spyware Prototype Revealed - Israel News - Haaretz.com

https://www.haaretz.com/israel-news/2022-08-04/ty-article/.premium/israel-polices-version-of-pegasus-spyware-revealed/00000182-6911-d2f5-a3e6-ed1db74e0000
Israel Police's Pegasus Spyware Prototype Revealed - Israel News - Haaretz.com

VirusTotal - File - 50cd4fbf0ebfe65fc135523fda1525a32dc50764748f863193da22d4616c8666

https://www.virustotal.com/gui/file/50cd4fbf0ebfe65fc135523fda1525a32dc50764748f863193da22d4616c8666
VirusTotal - File - 50cd4fbf0ebfe65fc135523fda1525a32dc50764748f863193da22d4616c8666

x55.is (1×1)

https://brutelogic.com.br/redir.svg?url=//X55.is
x55.is (1×1)

https://brutelogic.com.br/poc.svg

https://brutelogic.com.br/poc.svg

x55.is (1×1)

https://brutelogic.com.br/redir.svg?url=//X55.is&w=1
x55.is (1×1)

https://brutelogic.com.br/brute.svg

https://brutelogic.com.br/brute.svg

VirusTotal - File - 1d1ea78d13d0623458e8ede07cb545945d32134f6324a8b472d77304f32cb778

https://www.virustotal.com/gui/file/1d1ea78d13d0623458e8ede07cb545945d32134f6324a8b472d77304f32cb778
VirusTotal - File - 1d1ea78d13d0623458e8ede07cb545945d32134f6324a8b472d77304f32cb778

Emergency Alert System Flaws Could Let Attackers Transmit Fake Messages

https://thehackernews.com/2022/08/emergency-alert-system-flaws-could-let.html
Emergency Alert System Flaws Could Let Attackers Transmit Fake Messages

Google

https://brutelogic.com.br/redir.svg
Google

German Chambers of Industry and Commerce hit by 'massive' cyberattack

https://www.bleepingcomputer.com/news/security/german-chambers-of-industry-and-commerce-hit-by-massive-cyberattack/
German Chambers of Industry and Commerce hit by 'massive' cyberattack