10/12

Analysing LastPass, Part 1 - MDSec

https://www.mdsec.co.uk/2022/10/analysing-lastpass-part-1/
Analysing LastPass, Part 1 - MDSec

GitHub - embee-research/Yara

https://github.com/embee-research/Yara
GitHub - embee-research/Yara

akamai-security-research/rpc_toolkit at main · akamai/akamai-security-research · GitHub

https://github.com/akamai/akamai-security-research/tree/main/rpc_toolkit
akamai-security-research/rpc_toolkit at main · akamai/akamai-security-research · GitHub

All Windows versions can now block admin brute-force attacks

https://www.bleepingcomputer.com/news/microsoft/all-windows-versions-can-now-block-admin-brute-force-attacks/
All Windows versions can now block admin brute-force attacks

IcedID_10_12_2022.txt · GitHub

https://gist.github.com/myrtus0x0/30eeaeb9cd051ba9250600cf69eff36f
IcedID_10_12_2022.txt · GitHub

(ENG) TTPs #8: Operation GWISIN - Analysis on Fully Customized Ransomware Attack Strategies

https://thorcert.notion.site/ENG-TTPs-8-Operation-GWISIN-Analysis-on-Fully-Customized-Ransomware-Attack-Strategies-d17281d2de6143b18aa070e424122ef5
(ENG) TTPs #8: Operation GWISIN - Analysis on Fully Customized Ransomware Attack Strategies

Signature bypass via multiple root elements · Advisory · node-saml/passport-saml · GitHub

https://github.com/node-saml/passport-saml/security/advisories/GHSA-m974-647v-whv7
Signature bypass via multiple root elements · Advisory · node-saml/passport-saml · GitHub

Pwning ManageEngine — From Endpoint to Exploit | by Erik Wynter | Oct, 2022 | Medium

https://medium.com/@erik.wynter/pwning-manageengine-from-endpoint-to-exploit-bc5793836fd
Pwning ManageEngine — From Endpoint to Exploit | by Erik Wynter | Oct, 2022 | Medium

Android leaks some traffic even when 'Always-on VPN' is enabled

https://www.bleepingcomputer.com/news/google/android-leaks-some-traffic-even-when-always-on-vpn-is-enabled/
Android leaks some traffic even when 'Always-on VPN' is enabled

Hello World under the microscope - gynvael.coldwind//vx.log

https://gynvael.coldwind.pl/?lang=en&id=754
Hello World under the microscope - gynvael.coldwind//vx.log

postMessage Braindump

https://rhynorater.github.io/postMessage-Braindump
postMessage Braindump

Hello World Under the Microscope - New Article Published

https://asawicki.info/news_1762_hello_world_under_the_microscope_-_new_article_published
Hello World Under the Microscope - New Article Published

MalwareBazaar | Browse Checking your browser

https://bazaar.abuse.ch/sample/15a77fd313dbdd0982a838fc2359ae6d480b1dc7bc824566818e54e40c1b46fc/
MalwareBazaar | Browse Checking your browser

Critical Bug in Siemens SIMATIC PLCs Could Let Attackers Steal Cryptographic Keys

https://thehackernews.com/2022/10/critical-bug-in-siemens-simatic-plcs.html
Critical Bug in Siemens SIMATIC PLCs Could Let Attackers Steal Cryptographic Keys

persistence-info.github.io/rdpwdstartupprograms.md at main · persistence-info/persistence-info.github.io · GitHub

https://github.com/persistence-info/persistence-info.github.io/blob/main/Data/rdpwdstartupprograms.md
persistence-info.github.io/rdpwdstartupprograms.md at main · persistence-info/persistence-info.github.io · GitHub

Hackers Using Vishing to Trick Victims into Installing Android Banking Malware

https://thehackernews.com/2022/10/hackers-using-vishing-tactics-to-trick.html
Hackers Using Vishing to Trick Victims into Installing Android Banking Malware

Google Rolling Out Passkey Passwordless Login Support to Android and Chrome

https://thehackernews.com/2022/10/google-rolling-out-passkey-passwordless.html
Google Rolling Out Passkey Passwordless Login Support to Android and Chrome

CVE-2022-34689 - Security Update Guide - Microsoft - Windows CryptoAPI Spoofing Vulnerability

https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2022-34689
CVE-2022-34689 - Security Update Guide - Microsoft - Windows CryptoAPI Spoofing Vulnerability

Black Basta Ransomware Gang Infiltrates networks via QAKBOT, Brute Ratel, and Cobalt Strike

https://www.trendmicro.com/en_us/research/22/j/black-basta-infiltrates-networks-via-qakbot-brute-ratel-and-coba.html
Black Basta Ransomware Gang Infiltrates networks via QAKBOT, Brute Ratel, and Cobalt Strike

White House to unveil ambitious cybersecurity labeling effort modeled after Energy Star - CyberScoop

https://www.cyberscoop.com/white-house-to-unveil-internet-of-things-labeling/
White House to unveil ambitious cybersecurity labeling effort modeled after Energy Star - CyberScoop