10/04

Dissect 3.2-1-gca63b48 documentation

https://docs.dissect.tools
Dissect 3.2-1-gca63b48 documentation

Fake Microsoft Exchange ProxyNotShell exploits for sale on GitHub

https://www.bleepingcomputer.com/news/security/fake-microsoft-exchange-proxynotshell-exploits-for-sale-on-github/
Fake Microsoft Exchange ProxyNotShell exploits for sale on GitHub

NSA, CISA, FBI Warn of Custom Exfiltration Tools Being Used Against Defense Industrial Base Organization > National Security Agency/Central Security Service > Article

https://www.nsa.gov/Press-Room/News-Highlights/Article/Article/3178468/nsa-cisa-fbi-warn-of-custom-exfiltration-tools-being-used-against-defense-indus/
NSA, CISA, FBI Warn of Custom Exfiltration Tools Being Used Against Defense Industrial Base Organization > National Security Agency/Central Security Service > Article

Popular YouTube Channel Caught Distributing Malicious Tor Browser Installer

https://thehackernews.com/2022/10/popular-youtube-channel-caught.html
Popular YouTube Channel Caught Distributing Malicious Tor Browser Installer

Implement ExplorationMutator · googleprojectzero/fuzzilli@62a5c80 · GitHub

https://github.com/googleprojectzero/fuzzilli/commit/62a5c802d255c055da8836d85ec815dc3db71926
Implement ExplorationMutator · googleprojectzero/fuzzilli@62a5c80 · GitHub

The dread, sincerity and comedy of Cybersecurity Awareness Month - The Washington Post

https://www.washingtonpost.com/politics/2022/10/04/dread-sincerity-comedy-cybersecurity-awareness-month/
The dread, sincerity and comedy of Cybersecurity Awareness Month - The Washington Post

Aurora Agent - Nextron Systems

https://www.nextron-systems.com/aurora/
Aurora Agent - Nextron Systems

sigma/file_event_win_exchange_webshell_drop_suspicious.yml at master · SigmaHQ/sigma · GitHub

https://github.com/SigmaHQ/sigma/blob/master/rules/windows/file_event/file_event_win_exchange_webshell_drop_suspicious.yml
sigma/file_event_win_exchange_webshell_drop_suspicious.yml at master · SigmaHQ/sigma · GitHub

Bumblebee: increasing its capacity and evolving its TTPs - Check Point Research

https://research.checkpoint.com/2022/bumblebee-increasing-its-capacity-and-evolving-its-ttps/
Bumblebee: increasing its capacity and evolving its TTPs - Check Point Research

sysmon-config/sysmonconfig-export.xml at master · Neo23x0/sysmon-config · GitHub

https://github.com/Neo23x0/sysmon-config/blob/master/sysmonconfig-export.xml
sysmon-config/sysmonconfig-export.xml at master · Neo23x0/sysmon-config · GitHub

Researchers Link Cheerscrypt Linux-Based Ransomware to Chinese Hackers

https://thehackernews.com/2022/10/researchers-link-cheerscrypt-linux.html
Researchers Link Cheerscrypt Linux-Based Ransomware to Chinese Hackers

Binding Operational Directive 23-01 | CISA

https://www.cisa.gov/binding-operational-directive-23-01
Binding Operational Directive 23-01 | CISA

Added simple command to test CVE_2022_33679. · tyranid/Rubeus@3092e1f · GitHub

https://github.com/tyranid/Rubeus/commit/3092e1f11164bf379708b815a05061783653e834
Added simple command to test CVE_2022_33679. · tyranid/Rubeus@3092e1f · GitHub

URLhaus | Qakbot

https://urlhaus.abuse.ch/browse/tag/Qakbot/
URLhaus | Qakbot