10/25

Stranger Strings: An exploitable flaw in SQLite | Trail of Bits Blog

https://blog.trailofbits.com/2022/10/25/sqlite-vulnerability-july-2022-library-api/
Stranger Strings: An exploitable flaw in SQLite | Trail of Bits Blog

Forthcoming OpenSSL Releases

https://mta.openssl.org/pipermail/openssl-announce/2022-October/000238.html
Forthcoming OpenSSL Releases

Chapter 1 — From Gozi to ISFB: The history of a mythical malware family. | by Benoit ANCEL | CSIS TechBlog | Oct, 2022 | Medium

https://medium.com/csis-techblog/chapter-1-from-gozi-to-isfb-the-history-of-a-mythical-malware-family-82e592577fef
Chapter 1 — From Gozi to ISFB: The history of a mythical malware family. | by Benoit ANCEL | CSIS TechBlog | Oct, 2022 | Medium

Apple Releases Patch for New Actively Exploited iOS and iPadOS Zero-Day Vulnerability

https://thehackernews.com/2022/10/apple-releases-patch-for-new-actively.html
Apple Releases Patch for New Actively Exploited iOS and iPadOS Zero-Day Vulnerability

22-Year-Old Vulnerability Reported in Widely Used SQLite Database Library

https://thehackernews.com/2022/10/22-year-old-vulnerability-reported-in.html
22-Year-Old Vulnerability Reported in Widely Used SQLite Database Library

Frog Guy Rants | Ring0VBA - Getting Ring0 Using a Goddamn Word Document

https://disrel.com/posts/Ring0VBA-Getting-Ring0-Using-a-Goddamn-Word-Document/
Frog Guy Rants | Ring0VBA - Getting Ring0 Using a Goddamn Word Document

Microsoft SharePoint Server Post-Authentication Server-Side Request Forgery vulnerability | STAR Labs

https://starlabs.sg/blog/2022/10-sharepoint-post-authenticated-ssrf-vulnerability/
Microsoft SharePoint Server Post-Authentication Server-Side Request Forgery vulnerability | STAR Labs

Cybercriminals Used Two PoS Malware to Steal Details of Over 167,000 Credit Cards

https://thehackernews.com/2022/10/cybercriminals-used-two-pos-malware-to.html
Cybercriminals Used Two PoS Malware to Steal Details of Over 167,000 Credit Cards

Qakbot/Qakbot_BB04_25.10.2022.txt at main · pr0xylife/Qakbot · GitHub

https://github.com/pr0xylife/Qakbot/blob/main/Qakbot_BB04_25.10.2022.txt
Qakbot/Qakbot_BB04_25.10.2022.txt at main · pr0xylife/Qakbot · GitHub

VB2022-Exploit-archaeology-a-forensic-history-of-in-the-wild-NSO-Group-exploits.pdf

https://www.virusbulletin.com/uploads/pdf/conference/vb2022/papers/VB2022-Exploit-archaeology-a-forensic-history-of-in-the-wild-NSO-Group-exploits.pdf
VB2022-Exploit-archaeology-a-forensic-history-of-in-the-wild-NSO-Group-exploits.pdf

503 Backend unavailable, connection timeout

https://bazaar.abuse.ch/sample/0ec25b0db6bd1466458d898121de430e110ff3bcb870afac634240de027ab43a/
503 Backend unavailable, connection timeout

Apple fixes new zero-day used in attacks against iPhones, iPads

https://www.bleepingcomputer.com/news/apple/apple-fixes-new-zero-day-used-in-attacks-against-iphones-ipads/
Apple fixes new zero-day used in attacks against iPhones, iPads

503 Resource temporarily unavailable

https://bazaar.abuse.ch/sample/921600eb0acfef3f864f018616a6a5a8de6cd18ffedd36d3a649a71dc627aedc/
503 Resource temporarily unavailable

Hive Ransomware Hackers Begin Leaking Data Stolen from Tata Power Energy Company

https://thehackernews.com/2022/10/hive-ransomware-hackers-begin-leaking.html
Hive Ransomware Hackers Begin Leaking Data Stolen from Tata Power Energy Company

MalwareBazaar | Browse Checking your browser

https://bazaar.abuse.ch/sample/6e7c6b22cb9ae14cb1df2f30bd6984dd7d7c042316540aa86a86f0cb2adfdc46/
MalwareBazaar | Browse Checking your browser

Advanced Microsoft Authenticator security features are now generally available! - Microsoft Community Hub

https://techcommunity.microsoft.com/t5/microsoft-entra-azure-ad-blog/advanced-microsoft-authenticator-security-features-are-now/ba-p/2365673
Advanced Microsoft Authenticator security features are now generally available! - Microsoft Community Hub

Qakbot/Qakbot_obama216_25.10.2022.txt at main · pr0xylife/Qakbot · GitHub

https://github.com/pr0xylife/Qakbot/blob/main/Qakbot_obama216_25.10.2022.txt
Qakbot/Qakbot_obama216_25.10.2022.txt at main · pr0xylife/Qakbot · GitHub

Hive claims ransomware attack on Tata Power, begins leaking data

https://www.bleepingcomputer.com/news/security/hive-claims-ransomware-attack-on-tata-power-begins-leaking-data/
Hive claims ransomware attack on Tata Power, begins leaking data

Raccoon Infostealer Disclosure

https://raccoon.ic3.gov/home
Raccoon Infostealer Disclosure

German cyber agency warns threat situation is ‘higher than ever’ - The Record by Recorded Future

https://therecord.media/german-cyber-agency-warns-threat-situation-is-higher-than-ever/
German cyber agency warns threat situation is ‘higher than ever’ - The Record by Recorded Future