11/16

Stealing passwords from infosec Mastodon - without bypassing CSP | PortSwigger Research

https://portswigger.net/research/stealing-passwords-from-infosec-mastodon-without-bypassing-csp
Stealing passwords from infosec Mastodon - without bypassing CSP | PortSwigger Research

US govt: Iranian hackers breached federal agency using Log4Shell exploit

https://www.bleepingcomputer.com/news/security/us-govt-iranian-hackers-breached-federal-agency-using-log4shell-exploit/
US govt: Iranian hackers breached federal agency using Log4Shell exploit

Bypassing AV/EDR Hooks via Vectored Syscall - POC

https://www.cyberwarfare.live/blog/vectored-syscall-poc
Bypassing AV/EDR Hooks via Vectored Syscall - POC

GitHub - ufrisk/MemProcFS: MemProcFS

https://github.com/ufrisk/MemProcFS
GitHub - ufrisk/MemProcFS: MemProcFS

Zero Day Initiative — Control Your Types or Get Pwned: Remote Code Execution in Exchange PowerShell Backend

https://www.zerodayinitiative.com/blog/2022/11/14/control-your-types-or-get-pwned-remote-code-execution-in-exchange-powershell-backend
Zero Day Initiative — Control Your Types or Get Pwned: Remote Code Execution in Exchange PowerShell Backend

A Comprehensive Look at Emotet’s Fall 2022 Return | Proofpoint US

https://www.proofpoint.com/us/blog/threat-insight/comprehensive-look-emotets-fall-2022-return
A Comprehensive Look at Emotet’s Fall 2022 Return | Proofpoint US

Researchers Discover Hundreds of Amazon RDS Instances Leaking Users' Personal Data

https://thehackernews.com/2022/11/researchers-discover-hundreds-of-amazon.html
Researchers Discover Hundreds of Amazon RDS Instances Leaking Users' Personal Data

BFS Hiring Challenge | Bluefrostsecurity

https://labs.bluefrostsecurity.de/blog.html/2022/03/01/bfs-hiring-challenge/
BFS Hiring Challenge | Bluefrostsecurity

Magento stores targeted in massive surge of TrojanOrders attacks

https://www.bleepingcomputer.com/news/security/magento-stores-targeted-in-massive-surge-of-trojanorders-attacks/
Magento stores targeted in massive surge of TrojanOrders attacks

Alleged Zeus cybercrime leader arrested in Geneva, to be extradited to US - The Record by Recorded Future

https://therecord.media/alleged-zeus-cybercrime-leader-arrested-in-geneva-to-be-extradited-to-us/
Alleged Zeus cybercrime leader arrested in Geneva, to be extradited to US - The Record by Recorded Future

Writeups/BFS-hiring-challenge-2022 at master · tykawaii98/Writeups · GitHub

https://github.com/tykawaii98/Writeups/tree/master/BFS-hiring-challenge-2022
Writeups/BFS-hiring-challenge-2022 at master · tykawaii98/Writeups · GitHub

Token tactics: How to prevent, detect, and respond to cloud token theft - Microsoft Security Blog

https://www.microsoft.com/en-us/security/blog/2022/11/16/token-tactics-how-to-prevent-detect-and-respond-to-cloud-token-theft/
Token tactics: How to prevent, detect, and respond to cloud token theft - Microsoft Security Blog

North Korean hackers target European orgs with updated malware

https://www.bleepingcomputer.com/news/security/north-korean-hackers-target-european-orgs-with-updated-malware/
North Korean hackers target European orgs with updated malware

BATLOADER: The Evasive Downloader Malware - VMware Security Blog - VMware

https://blogs.vmware.com/security/2022/11/batloader-the-evasive-downloader-malware.html
BATLOADER: The Evasive Downloader Malware - VMware Security Blog - VMware

CVE-2022-41622 and CVE-2022-41800 (FIXED): F5 BIG-IP and iControl REST Vulnerabilities and Exposures | Rapid7 Blog

https://www.rapid7.com/blog/post/2022/11/16/cve-2022-41622-and-cve-2022-41800-fixed-f5-big-ip-and-icontrol-rest-vulnerabilities-and-exposures/
CVE-2022-41622 and CVE-2022-41800 (FIXED): F5 BIG-IP and iControl REST Vulnerabilities and Exposures | Rapid7 Blog

Ukrainian Analysis Identifies Western Supply Chain Behind Iran’s Drones - WSJ

https://www.wsj.com/articles/ukrainian-analysis-identifies-western-supply-chain-behind-irans-drones-11668575332
Ukrainian Analysis Identifies Western Supply Chain Behind Iran’s Drones - WSJ

DuckDuckGo now lets all Android users block trackers in their apps

https://www.bleepingcomputer.com/news/security/duckduckgo-now-lets-all-android-users-block-trackers-in-their-apps/
DuckDuckGo now lets all Android users block trackers in their apps

Billbug: State-sponsored Actor Targets Cert Authority, Government Agencies in Multiple Asian Countries | Symantec Enterprise Blogs

https://symantec-enterprise-blogs.security.com/blogs/threat-intelligence/espionage-asia-governments-cert-authority
Billbug: State-sponsored Actor Targets Cert Authority, Government Agencies in Multiple Asian Countries | Symantec Enterprise Blogs

It’s all in the details: The curious case of an lsass dumper gone undetected

https://dec0ne.github.io/research/2022-11-14-Undetected-Lsass-Dump-Workflow/
It’s all in the details: The curious case of an lsass dumper gone undetected

Senior Offensive Security Engineer - Red Team

https://zoom.wd5.myworkdayjobs.com/Zoom/job/Remote--CA---Southern-California/Senior-Security-Engineer---Red-Team_R11080
Senior Offensive Security Engineer - Red Team

Triage | Behavioral Report

https://tria.ge/221116-epb5msha98/behavioral4
Triage | Behavioral Report

Slides_PDF - Google ドライブ

https://drive.google.com/drive/folders/15f9TyvY4unrQOICKqVhyCNUDZkulM68P
Slides_PDF - Google ドライブ