Stranger Strings: An exploitable flaw in SQLite | Trail of Bits Blog
https://blog.trailofbits.com/2022/10/25/sqlite-vulnerability-july-2022-library-api/
Forthcoming OpenSSL Releases
https://mta.openssl.org/pipermail/openssl-announce/2022-October/000238.html
Chapter 1 — From Gozi to ISFB: The history of a mythical malware family. | by Benoit ANCEL | CSIS TechBlog | Oct, 2022 | Medium
https://medium.com/csis-techblog/chapter-1-from-gozi-to-isfb-the-history-of-a-mythical-malware-family-82e592577fef
Apple Releases Patch for New Actively Exploited iOS and iPadOS Zero-Day Vulnerability
https://thehackernews.com/2022/10/apple-releases-patch-for-new-actively.html
#HITB2022SIN EDR Evasion Primer For Red Teamers - Jorge Gimenez & Karsten Nohl - YouTube
https://www.youtube.com/watch?v=CKfjLnEMfvI
22-Year-Old Vulnerability Reported in Widely Used SQLite Database Library
https://thehackernews.com/2022/10/22-year-old-vulnerability-reported-in.html
Mark J Cox on Twitter: "OpenSSL 3.0.7 update to fix Critical CVE out next Tuesday 1300-1700UTC. Does not affect versions before 3.0. https://t.co/jIRQhx0nCr" / Twitter
https://twitter.com/iamamoose/status/1584908434855628800
Frog Guy Rants | Ring0VBA - Getting Ring0 Using a Goddamn Word Document
https://disrel.com/posts/Ring0VBA-Getting-Ring0-Using-a-Goddamn-Word-Document/
Microsoft SharePoint Server Post-Authentication Server-Side Request Forgery vulnerability | STAR Labs
https://starlabs.sg/blog/2022/10-sharepoint-post-authenticated-ssrf-vulnerability/
Cybercriminals Used Two PoS Malware to Steal Details of Over 167,000 Credit Cards
https://thehackernews.com/2022/10/cybercriminals-used-two-pos-malware-to.html
Qakbot/Qakbot_BB04_25.10.2022.txt at main · pr0xylife/Qakbot · GitHub
https://github.com/pr0xylife/Qakbot/blob/main/Qakbot_BB04_25.10.2022.txt
VB2022-Exploit-archaeology-a-forensic-history-of-in-the-wild-NSO-Group-exploits.pdf
https://www.virusbulletin.com/uploads/pdf/conference/vb2022/papers/VB2022-Exploit-archaeology-a-forensic-history-of-in-the-wild-NSO-Group-exploits.pdf
503 Backend unavailable, connection timeout
https://bazaar.abuse.ch/sample/0ec25b0db6bd1466458d898121de430e110ff3bcb870afac634240de027ab43a/
Triage | Malware sandboxing report by Hatching Triage
https://tria.ge/221025-nlkr2scef5
Apple fixes new zero-day used in attacks against iPhones, iPads
https://www.bleepingcomputer.com/news/apple/apple-fixes-new-zero-day-used-in-attacks-against-iphones-ipads/
503 Resource temporarily unavailable
https://bazaar.abuse.ch/sample/921600eb0acfef3f864f018616a6a5a8de6cd18ffedd36d3a649a71dc627aedc/
Hive Ransomware Hackers Begin Leaking Data Stolen from Tata Power Energy Company
https://thehackernews.com/2022/10/hive-ransomware-hackers-begin-leaking.html
MalwareBazaar | Browse Checking your browser
https://bazaar.abuse.ch/sample/6e7c6b22cb9ae14cb1df2f30bd6984dd7d7c042316540aa86a86f0cb2adfdc46/
Advanced Microsoft Authenticator security features are now generally available! - Microsoft Community Hub
https://techcommunity.microsoft.com/t5/microsoft-entra-azure-ad-blog/advanced-microsoft-authenticator-security-features-are-now/ba-p/2365673
Nat on Twitter: "Using Office VBA Macro to exploit a vulnerable driver (zam64.sys) using DeviceIoControl, to get NT AUTHORITY\SYSTEM TL;DR - Ring 0 using Office Doc} Blogpost incoming soon lol Thanks to @Coldzer0x0 @kasua02 for the encouragement and help. https://t.co/psplpgvNuU" / Twitter
https://twitter.com/0xDISREL/status/1544482838279585794
Chrome Browser Exploitation, Part 1: Introduction to V8 and JavaScript Internals - Jack Hacks
https://jhalon.github.io/chrome-browser-exploitation-1/
Qakbot/Qakbot_obama216_25.10.2022.txt at main · pr0xylife/Qakbot · GitHub
https://github.com/pr0xylife/Qakbot/blob/main/Qakbot_obama216_25.10.2022.txt
Hive claims ransomware attack on Tata Power, begins leaking data
https://www.bleepingcomputer.com/news/security/hive-claims-ransomware-attack-on-tata-power-begins-leaking-data/
Raccoon Infostealer Disclosure
https://raccoon.ic3.gov/home
German cyber agency warns threat situation is ‘higher than ever’ - The Record by Recorded Future
https://therecord.media/german-cyber-agency-warns-threat-situation-is-higher-than-ever/
Dwayne Johnson on Twitter: "I mean my tweet back to you kinda deserves to be on the Kennedy family wall no? 😂 You might be sleeping on the couch tonight 🤣👊🏾 #BlackAdam @ProjectRock" / Twitter
https://twitter.com/TheRock/status/1584744442795528192