11/29

Threat Hunting with VirusTotal ~ VirusTotal Blog

https://blog.virustotal.com/2022/11/threat-hunting-with-virustotal.html
Threat Hunting with VirusTotal ~ VirusTotal Blog

Emotet Strikes Again - Lnk File Leads to Domain Wide Ransomware - The DFIR Report

https://thedfirreport.com/2022/11/28/emotet-strikes-again-lnk-file-leads-to-domain-wide-ransomware/
Emotet Strikes Again - Lnk File Leads to Domain Wide Ransomware - The DFIR Report

Sign in to GitHub · GitHub

http://cs.github.com
Sign in to GitHub · GitHub

Hijacking service workers via DOM Clobbering | PortSwigger Research

https://portswigger.net/research/hijacking-service-workers-via-dom-clobbering
Hijacking service workers via DOM Clobbering | PortSwigger Research

Get started with insider risk management forensic evidence (preview) - Microsoft Purview (compliance) | Microsoft Learn

https://learn.microsoft.com/en-us/microsoft-365/compliance/insider-risk-management-forensic-evidence-configure?WT.mc_id=EM-MVP-5003929&view=o365-worldwide
Get started with insider risk management forensic evidence (preview) - Microsoft Purview (compliance) | Microsoft Learn

The Anatomy of a Threat Hunting Hypothesis — Lauren Proehl

https://www.laurenproehl.com/blog/2022/11/28/the-anatomy-of-a-threat-hunting-hypothesis
The Anatomy of a Threat Hunting Hypothesis — Lauren Proehl

Linux Kernel: UAF in Bluetooth L2CAP Handshake · Advisory · google/security-research · GitHub

https://github.com/google/security-research/security/advisories/GHSA-pf87-6c9q-jvm4
Linux Kernel: UAF in Bluetooth L2CAP Handshake · Advisory · google/security-research · GitHub

Linux Kernel: Infoleak in Bluetooth L2CAP Handling · Advisory · google/security-research · GitHub

https://github.com/google/security-research/security/advisories/GHSA-vccx-8h74-2357
Linux Kernel: Infoleak in Bluetooth L2CAP Handling · Advisory · google/security-research · GitHub

CISA Warns of Actively Exploited Critical Oracle Fusion Middleware Vulnerability

https://thehackernews.com/2022/11/cisa-warns-of-actively-exploited.html
CISA Warns of Actively Exploited Critical Oracle Fusion Middleware Vulnerability

APT_REPORT/Threat Hunting with VirusTotal.pdf at master · blackorbird/APT_REPORT · GitHub

https://github.com/blackorbird/APT_REPORT/blob/master/APT-hunting/Threat%20Hunting%20with%20VirusTotal.pdf
APT_REPORT/Threat Hunting with VirusTotal.pdf at master · blackorbird/APT_REPORT · GitHub

Always Another Secret: Lifting the Haze on China-nexus Espionage in Southeast Asia | Mandiant

https://www.mandiant.com/resources/blog/china-nexus-espionage-southeast-asia
Always Another Secret: Lifting the Haze on China-nexus Espionage in Southeast Asia | Mandiant

Acer fixes UEFI bugs that can be used to disable Secure Boot

https://www.bleepingcomputer.com/news/security/acer-fixes-uefi-bugs-that-can-be-used-to-disable-secure-boot/
Acer fixes UEFI bugs that can be used to disable Secure Boot