11/03

Emotet botnet starts blasting malware again after 5 month break

https://www.bleepingcomputer.com/news/security/emotet-botnet-starts-blasting-malware-again-after-5-month-break/
Emotet botnet starts blasting malware again after 5 month break

Vodafone Italy discloses data breach after reseller hacked

https://www.bleepingcomputer.com/news/security/vodafone-italy-discloses-data-breach-after-reseller-hacked/
Vodafone Italy discloses data breach after reseller hacked

Hundreds of U.S. news sites push malware in supply-chain attack

https://www.bleepingcomputer.com/news/security/hundreds-of-us-news-sites-push-malware-in-supply-chain-attack/
Hundreds of U.S. news sites push malware in supply-chain attack

Black Basta Ransomware | Attacks Deploy Custom EDR Evasion Tools Tied

https://assets.sentinelone.com/sentinellabs22/SentinelLabs-BlackBasta
Black Basta Ransomware | Attacks Deploy Custom EDR Evasion Tools Tied

SANS Difference Makers 2022 - community vote

https://survey.sans.org/jfe/form/SV_eXuwVrkCVdeoKMu
SANS Difference Makers 2022 - community vote

Ghidra

http://ghidra-sre.org
Ghidra

Black Basta ransomware gang linked to the FIN7 hacking group

https://www.bleepingcomputer.com/news/security/black-basta-ransomware-gang-linked-to-the-fin7-hacking-group/
Black Basta ransomware gang linked to the FIN7 hacking group

Project Zero: Gregor Samsa: Exploiting Java's XML Signature Verification

https://googleprojectzero.blogspot.com/2022/11/gregor-samsa-exploiting-java-xml.html
Project Zero: Gregor Samsa: Exploiting Java's XML Signature Verification

Not a dream job: Hunting for malicious job offers from an APT ~ VirusTotal Blog

https://blog.virustotal.com/2022/11/not-dream-job-hunting-for-malicious-job.html
Not a dream job: Hunting for malicious job offers from an APT ~ VirusTotal Blog

TikTok tells European users its staff in China get access to their data | TikTok | The Guardian

https://www.theguardian.com/technology/2022/nov/02/tiktok-tells-european-users-its-staff-in-china-get-access-to-their-data
TikTok tells European users its staff in China get access to their data | TikTok | The Guardian

OPERA1ER: Playing god without permission

https://www.group-ib.com/resources/threat-research/opera1er.html
OPERA1ER: Playing god without permission

Project Zero: RC4 Is Still Considered Harmful

https://googleprojectzero.blogspot.com/2022/10/rc4-is-still-considered-harmful.html
Project Zero: RC4 Is Still Considered Harmful

Release v4.8.1 · emberjs/ember.js · GitHub

https://github.com/emberjs/ember.js/releases/tag/v4.8.1
Release v4.8.1 · emberjs/ember.js · GitHub

North Idaho College recovering from cyberattack that led to network shutdown - The Record by Recorded Future

https://therecord.media/north-idaho-college-recovering-from-cyberattack-that-led-to-network-shutdown/
North Idaho College recovering from cyberattack that led to network shutdown - The Record by Recorded Future

New TikTok Privacy Policy Confirms Chinese Staff Can Access European Users' Data

https://thehackernews.com/2022/11/new-tiktok-privacy-policy-confirms.html
New TikTok Privacy Policy Confirms Chinese Staff Can Access European Users' Data

OPERA1ER APT Hackers Targeted Dozens of Financial Organizations in Africa

https://thehackernews.com/2022/11/researchers-detail-opera1er-apt-attacks.html
OPERA1ER APT Hackers Targeted Dozens of Financial Organizations in Africa