10/26

Autodial(DLL)ing Your Way - MDSec

https://www.mdsec.co.uk/2022/10/autodialdlling-your-way/
Autodial(DLL)ing Your Way - MDSec

Stranger Strings: An exploitable flaw in SQLite | Trail of Bits Blog

https://blog.trailofbits.com/2022/10/25/sqlite-vulnerability-july-2022-library-api/
Stranger Strings: An exploitable flaw in SQLite | Trail of Bits Blog

Eat What You Kill :: Pre-authenticated Remote Code Execution in VMWare NSX Manager

https://srcincite.io/blog/2022/10/25/eat-what-you-kill-pre-authenticated-rce-in-vmware-nsx-manager.html
Eat What You Kill :: Pre-authenticated Remote Code Execution in VMWare NSX Manager

Inside TheTruthSpy, the stalkerware network spying on thousands | TechCrunch

https://techcrunch.com/2022/10/26/inside-thetruthspy-stalkerware/
Inside TheTruthSpy, the stalkerware network spying on thousands | TechCrunch

Forthcoming OpenSSL Releases

https://mta.openssl.org/pipermail/openssl-announce/2022-October/000238.html
Forthcoming OpenSSL Releases

Black Hat | Webinar: Backdooring and Hijacking Azure AD Accounts by Abusing External Identities

https://www.blackhat.com/html/webcast/11102022-backdooring-and-hijacking-azure-ad-accounts.html
Black Hat | Webinar: Backdooring and Hijacking Azure AD Accounts by Abusing External Identities

Frog Guy Rants | Ring0VBA - Getting Ring0 Using a Goddamn Word Document

https://disrel.com/posts/Ring0VBA-Getting-Ring0-Using-a-Goddamn-Word-Document/
Frog Guy Rants | Ring0VBA - Getting Ring0 Using a Goddamn Word Document

Recovering Cleared Browser History - Chrome Forensics

https://www.inversecos.com/2022/10/recovering-cleared-browser-history.html
Recovering Cleared Browser History - Chrome Forensics

Hackers Actively Exploiting Cisco AnyConnect and GIGABYTE Drivers Vulnerabilities

https://thehackernews.com/2022/10/hackers-actively-exploiting-cisco.html
Hackers Actively Exploiting Cisco AnyConnect and GIGABYTE Drivers Vulnerabilities

DEV-0832 (Vice Society) opportunistic ransomware campaigns impacting US education sector - Microsoft Security Blog

https://www.microsoft.com/en-us/security/blog/2022/10/25/dev-0832-vice-society-opportunistic-ransomware-campaigns-impacting-us-education-sector/
DEV-0832 (Vice Society) opportunistic ransomware campaigns impacting US education sector - Microsoft Security Blog

LV Ransomware Exploits ProxyShell in Attack on a Jordan-based Company

https://www.trendmicro.com/en_us/research/22/j/lv-ransomware-exploits-proxyshell-in-attack.html
LV Ransomware Exploits ProxyShell in Attack on a Jordan-based Company

SockFuzzer/third_party/concurrence at main · googleprojectzero/SockFuzzer · GitHub

https://github.com/googleprojectzero/SockFuzzer/tree/main/third_party/concurrence
SockFuzzer/third_party/concurrence at main · googleprojectzero/SockFuzzer · GitHub

Triage | Behavioral Report

https://tria.ge/221026-w9ngvagfar/behavioral3
Triage | Behavioral Report

MalwareBazaar | Browse Checking your browser

https://bazaar.abuse.ch/sample/776b237d7f628da88ec34601f23df387d7cbbd89267661be45f3dbee847a8b2e/
MalwareBazaar | Browse Checking your browser

Advanced Microsoft Authenticator security features are now generally available! - Microsoft Community Hub

https://techcommunity.microsoft.com/t5/microsoft-entra-azure-ad-blog/advanced-microsoft-authenticator-security-features-are-now/ba-p/2365673
Advanced Microsoft Authenticator security features are now generally available! - Microsoft Community Hub

Microsoft fixes Windows vulnerable driver blocklist sync issue

https://www.bleepingcomputer.com/news/microsoft/microsoft-fixes-windows-vulnerable-driver-blocklist-sync-issue/
Microsoft fixes Windows vulnerable driver blocklist sync issue

Unveil the evolution of Kimsuky targeting Android devices with newly discovered mobile malware | by S2W | S2W BLOG | Oct, 2022 | Medium

https://medium.com/s2wblog/unveil-the-evolution-of-kimsuky-targeting-android-devices-with-newly-discovered-mobile-malware-280dae5a650f
Unveil the evolution of Kimsuky targeting Android devices with newly discovered mobile malware | by S2W | S2W BLOG | Oct, 2022 | Medium