10/01

Customer Guidance for Reported Zero-day Vulnerabilities in Microsoft Exchange Server – Microsoft Security Response Center

https://msrc-blog.microsoft.com/2022/09/29/customer-guidance-for-reported-zero-day-vulnerabilities-in-microsoft-exchange-server/
Customer Guidance for Reported Zero-day Vulnerabilities in Microsoft Exchange Server – Microsoft Security Response Center

The Thorny Problem of Keeping the Internet’s Time | The New Yorker

https://www.newyorker.com/tech/annals-of-technology/the-thorny-problem-of-keeping-the-internets-time
The Thorny Problem of Keeping the Internet’s Time | The New Yorker

EOMTv2 - Microsoft - CSS-Exchange

https://microsoft.github.io/CSS-Exchange/Security/EOMTv2/
EOMTv2 - Microsoft - CSS-Exchange

H4CK1NG G00GL3

http://H4CK1NG.GOOGLE
H4CK1NG G00GL3

Analyzing attacks using the Exchange vulnerabilities CVE-2022-41040 and CVE-2022-41082 - Microsoft Security Blog

https://www.microsoft.com/security/blog/2022/09/30/analyzing-attacks-using-the-exchange-vulnerabilities-cve-2022-41040-and-cve-2022-41082/
Analyzing attacks using the Exchange vulnerabilities CVE-2022-41040 and CVE-2022-41082 - Microsoft Security Blog

State-Sponsored Hackers Likely Exploited MS Exchange 0-Days Against ~10 Organizations

https://thehackernews.com/2022/10/state-sponsored-hackers-likely.html
State-Sponsored Hackers Likely Exploited MS Exchange 0-Days Against ~10 Organizations

sigma/file_event_win_exchange_webshell_drop.yml at master · SigmaHQ/sigma · GitHub

https://github.com/SigmaHQ/sigma/blob/master/rules/windows/file_event/file_event_win_exchange_webshell_drop.yml
sigma/file_event_win_exchange_webshell_drop.yml at master · SigmaHQ/sigma · GitHub

Skidaddle Skideldi - I just pwnd your PKI – LuemmelSec – Just an admin on someone else´s computer

https://luemmelsec.github.io/Skidaddle-Skideldi-I-just-pwnd-your-PKI/
Skidaddle Skideldi - I just pwnd your PKI – LuemmelSec – Just an admin on someone else´s computer

EP001: Threat Analysis Group | HACKING GOOGLE - YouTube

https://www.youtube.com/watch?v=N7N4EC20-cM
EP001: Threat Analysis Group | HACKING GOOGLE - YouTube

Lazarus hackers abuse Dell driver bug using new FudModule rootkit

https://www.bleepingcomputer.com/news/security/lazarus-hackers-abuse-dell-driver-bug-using-new-fudmodule-rootkit/
Lazarus hackers abuse Dell driver bug using new FudModule rootkit

Unmasking WindTape - Speaker Deck

https://speakerdeck.com/patrickwardle/unmasking-windtape
Unmasking WindTape - Speaker Deck

sigma/proc_creation_win_webshell_chopper.yml at master · SigmaHQ/sigma · GitHub

https://github.com/SigmaHQ/sigma/blob/master/rules/windows/process_creation/proc_creation_win_webshell_chopper.yml
sigma/proc_creation_win_webshell_chopper.yml at master · SigmaHQ/sigma · GitHub