08/18

JSSLoader: the shellcode edition

https://malwarebytes.com/blog/threat-intelligence/2022/08/jssloader-the-shellcode-edition
JSSLoader: the shellcode edition

How a Third-Party SMS Service Was Used to Take Over Signal Accounts

https://www.vice.com/en/article/qjkvxv/how-a-third-party-sms-service-was-used-to-take-over-signal-accounts
How a Third-Party SMS Service Was Used to Take Over Signal Accounts

IDORs with unpredictable IDs are valid vulnerabilities · rez0

https://rez0.blog/hacking/cybersecurity/2022/08/18/unpredictable-idors.html
IDORs with unpredictable IDs are valid vulnerabilities · rez0

Orange: Let's Dance in the Cache - Destabilizing Hash Table on Microsoft IIS!

https://blog.orange.tw/2022/08/lets-dance-in-the-cache-destabilizing-hash-table-on-microsoft-iis.html
Orange: Let's Dance in the Cache - Destabilizing Hash Table on Microsoft IIS!

Red Team Ops II

https://training.zeropointsecurity.co.uk/courses/red-team-ops-ii
Red Team Ops II

On Detection: Tactical to Functional | by Jared Atkinson | Aug, 2022 | Posts By SpecterOps Team Members

https://posts.specterops.io/on-detection-tactical-to-functional-fef1e09d3174
On Detection: Tactical to Functional | by Jared Atkinson | Aug, 2022 | Posts By SpecterOps Team Members

GitHub - wavestone-cdt/EDRSandblast at DefCon30Release

https://github.com/wavestone-cdt/EDRSandblast/tree/DefCon30Release
GitHub - wavestone-cdt/EDRSandblast at DefCon30Release

Ransomware Summit 2022 - YouTube

https://www.youtube.com/playlist?list=PLtgaAEEmVe6AGQj2LhA4UnN0XolmeYw9_
Ransomware Summit 2022 - YouTube

GitHub - ConsciousHacker/WFH

https://github.com/ConsciousHacker/WFH
GitHub - ConsciousHacker/WFH

Reservations Requested: TA558 Targets Hospitality and Travel  | Proofpoint US

https://www.proofpoint.com/us/blog/threat-insight/reservations-requested-ta558-targets-hospitality-and-travel
Reservations Requested: TA558 Targets Hospitality and Travel  | Proofpoint US

Analysis of the emerging Darth Maul eCrime Market

https://blog.bushidotoken.net/2022/08/analysis-of-emerging-darth-maul-ecrime.html
Analysis of the emerging Darth Maul eCrime Market

Apple Releases Security Updates to Patch Two New Zero-Day Vulnerabilities

https://thehackernews.com/2022/08/apple-releases-security-updates-to.html
Apple Releases Security Updates to Patch Two New Zero-Day Vulnerabilities

Kasablanka(卡萨布兰卡)组织针对中东地区政治团体和公益组织的攻击行动

https://mp-weixin-qq-com.translate.goog/s/mstwBMkS0G3Et4GOji2mwA?_x_tr_sl=zh-CN&_x_tr_tl=en&_x_tr_hl=en
Kasablanka(卡萨布兰卡)组织针对中东地区政治团体和公益组织的攻击行动

PayPal Phishing Scam Uses Invoices Sent Via PayPal – Krebs on Security

https://krebsonsecurity.com/2022/08/paypal-phishing-scam-uses-invoices-sent-via-paypal/
PayPal Phishing Scam Uses Invoices Sent Via PayPal – Krebs on Security

MalwareBazaar | SHA256 01c14f491a773e6a8c6223997318631d8105533a282e6380d94706df5d620d7b

https://bazaar.abuse.ch/sample/01c14f491a773e6a8c6223997318631d8105533a282e6380d94706df5d620d7b/
MalwareBazaar | SHA256 01c14f491a773e6a8c6223997318631d8105533a282e6380d94706df5d620d7b

IcedID/icedID_18.08.2022.txt at main · pr0xylife/IcedID · GitHub

https://github.com/pr0xylife/IcedID/blob/main/icedID_18.08.2022.txt
IcedID/icedID_18.08.2022.txt at main · pr0xylife/IcedID · GitHub

Cobalt Strike 4.7: The 10th Anniversary Edition - Cobalt Strike Research and Development

https://www.cobaltstrike.com/blog/cobalt-strike-4-7-the-10th-anniversary-edition/
Cobalt Strike 4.7: The 10th Anniversary Edition - Cobalt Strike Research and Development

APT41 World Tour 2021 on a tight schedule

https://blog.group-ib.com/apt41-world-tour-2021
APT41 World Tour 2021 on a tight schedule

APT Lazarus Targets Engineers with macOS Malware | Threatpost

https://threatpost.com/apt-lazarus-macos-malware/180426/
APT Lazarus Targets Engineers with macOS Malware | Threatpost

Hackers launch malware posing as Bangladeshi critical service websites | The Daily Star

https://www.thedailystar.net/toggle/news/hackers-launch-targeted-malware-campaign-the-guise-bangladeshi-critical-service-websites-2046413
Hackers launch malware posing as Bangladeshi critical service websites | The Daily Star

Senior Hunt Analyst in Redmond, Washington, United States | Engineering at Microsoft

https://careers.microsoft.com/us/en/job/1446577/Senior-Hunt-Analyst
Senior Hunt Analyst in Redmond, Washington, United States | Engineering at Microsoft

Zero Day Initiative — But You Told Me You Were Safe: Attacking the Mozilla Firefox Renderer (Part 1)

https://www.zerodayinitiative.com/blog/2022/8/17/but-you-told-me-you-were-safe-attacking-the-mozilla-firefox-renderer-part-1
Zero Day Initiative — But You Told Me You Were Safe: Attacking the Mozilla Firefox Renderer (Part 1)

Senior Hunt Analyst in Redmond, Washington, United States | Engineering at Microsoft

https://careers.microsoft.com/us/en/job/1439899/Senior-Hunt-Analyst
Senior Hunt Analyst in Redmond, Washington, United States | Engineering at Microsoft

ipc_kmsg_get_from_kernel - iOS 15.4 | ipc_kmsg_vuln_blogpost

https://saaramar.github.io/ipc_kmsg_vuln_blogpost/
ipc_kmsg_get_from_kernel - iOS 15.4 | ipc_kmsg_vuln_blogpost

Apple security updates - Apple Support

https://support.apple.com/en-us/HT201222
Apple security updates - Apple Support