08/16

Sysmon 14.0 — FileBlockExecutable | by Olaf Hartong | Aug, 2022 | Medium

https://medium.com/@olafhartong/sysmon-14-0-fileblockexecutable-13d7ba3dff3e
Sysmon 14.0 — FileBlockExecutable | by Olaf Hartong | Aug, 2022 | Medium

Save the Environment (Variable)

https://www.wietzebeukema.nl/blog/save-the-environment-variables
Save the Environment (Variable)

Disrupting SEABORGIUM’s ongoing phishing operations - Microsoft Security Blog

https://www.microsoft.com/security/blog/2022/08/15/disrupting-seaborgiums-ongoing-phishing-operations/
Disrupting SEABORGIUM’s ongoing phishing operations - Microsoft Security Blog

Understanding a New Mitigation: Module Tampering Protection – Winsider Seminars & Solutions Inc.

https://windows-internals.com/understanding-a-new-mitigation-module-tampering-protection/
Understanding a New Mitigation: Module Tampering Protection – Winsider Seminars & Solutions Inc.

Impact to DigitalOcean customers resulting from Mailchimp security incident

https://www.digitalocean.com/blog/digitalocean-response-to-mailchimp-security-incident
Impact to DigitalOcean customers resulting from Mailchimp security incident

On Detection: Tactical to Functional | by Jared Atkinson | Aug, 2022 | Posts By SpecterOps Team Members

https://posts.specterops.io/on-detection-tactical-to-functional-5ff667af633b
On Detection: Tactical to Functional | by Jared Atkinson | Aug, 2022 | Posts By SpecterOps Team Members

Hackers Took Over a Commercial Satellite to Broadcast Hacker Movies

https://www.vice.com/en/article/y3pwqx/hackers-took-over-a-commercial-satellite-to-broadcast-hacker-movies
Hackers Took Over a Commercial Satellite to Broadcast Hacker Movies

Argentina's Judiciary of Córdoba hit by PLAY ransomware attack

https://www.bleepingcomputer.com/news/security/argentinas-judiciary-of-c-rdoba-hit-by-play-ransomware-attack/
Argentina's Judiciary of Córdoba hit by PLAY ransomware attack

PoC/CVE-2022-35742 at main · 78ResearchLab/PoC · GitHub

https://github.com/78ResearchLab/PoC/tree/main/CVE-2022-35742
PoC/CVE-2022-35742 at main · 78ResearchLab/PoC · GitHub

https://share.vx-underground.org/cl0p-thameswater.txt

https://share.vx-underground.org/cl0p-thameswater.txt

Windows Segment Heap: Attacking the VS Allocator | Bluefrostsecurity

https://labs.bluefrostsecurity.de/blog.html/2022/08/16/windows-segment-heap-attacking-the-vs-allocator/
Windows Segment Heap: Attacking the VS Allocator | Bluefrostsecurity

Malware-IOCs/2022-08-15 NetSupport RAT IOCs at main · executemalware/Malware-IOCs · GitHub

https://github.com/executemalware/Malware-IOCs/blob/main/2022-08-15%20NetSupport%20RAT%20IOCs
Malware-IOCs/2022-08-15 NetSupport RAT IOCs at main · executemalware/Malware-IOCs · GitHub

sec22-mantovani.pdf

https://www.usenix.org/system/files/sec22-mantovani.pdf
sec22-mantovani.pdf

Hackers attack UK water supplier with 1.6 million customers

https://www.bleepingcomputer.com/news/security/hackers-attack-uk-water-supplier-with-16-million-customers/
Hackers attack UK water supplier with 1.6 million customers

Evil PLC Attack: Hacking PLCs to Attack Engineering Workstations | Claroty

https://claroty.com/team82/blog/evil-plc-attack-using-a-controller-as-predator-rather-than-prey
Evil PLC Attack: Hacking PLCs to Attack Engineering Workstations | Claroty

IcedID_08_16_2022.txt · GitHub

https://gist.github.com/myrtus0x0/a4021be91d8abd75dd4b18d2f5b65916
IcedID_08_16_2022.txt · GitHub

This String of Emojis Is Actually Malware

https://www.vice.com/en/article/wxnj49/this-string-of-emojis-is-actually-malware
This String of Emojis Is Actually Malware

New MailChimp breach exposed DigitalOcean customer email addresses

https://www.bleepingcomputer.com/news/security/new-mailchimp-breach-exposed-digitalocean-customer-email-addresses/
New MailChimp breach exposed DigitalOcean customer email addresses

ÆPIC and SQUIP Vulnerabilities Found in Intel and AMD Processors

https://thehackernews.com/2022/08/pic-and-squip-vulnerabilities-found-in.html
ÆPIC and SQUIP Vulnerabilities Found in Intel and AMD Processors

Zero Day Initiative — The August 2022 Security Update Review

https://www.zerodayinitiative.com/blog/2022/8/9/the-august-2022-security-update-review
Zero Day Initiative — The August 2022 Security Update Review

New Evil PLC Attack Weaponizes PLCs to Breach OT and Enterprise Networks

https://thehackernews.com/2022/08/new-evil-plc-attack-weaponizes-plcs-to.html
New Evil PLC Attack Weaponizes PLCs to Breach OT and Enterprise Networks

Hackers linked to China have been targeting human rights groups for years | MIT Technology Review

https://www.technologyreview.com/2022/08/16/1057894/hackers-linked-to-china-have-been-targeting-human-rights-groups-for-years/
Hackers linked to China have been targeting human rights groups for years | MIT Technology Review

WMI Internals Part 2. Reversing a WMI Provider | by Jonathan Johnson | Aug, 2022 | Medium

https://jsecurity101.medium.com/wmi-internals-part-2-522f3e97709a
WMI Internals Part 2. Reversing a WMI Provider | by Jonathan Johnson | Aug, 2022 | Medium

CVE-2022-35742 - Security Update Guide - Microsoft - Microsoft Outlook Denial of Service Vulnerability

https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2022-35742
CVE-2022-35742 - Security Update Guide - Microsoft - Microsoft Outlook Denial of Service Vulnerability