11/30

New details on commercial spyware vendor Variston

https://blog.google/threat-analysis-group/new-details-on-commercial-spyware-vendor-variston/
New details on commercial spyware vendor Variston

Outsider Security - Trainings

https://outsidersecurity.nl/trainings/
Outsider Security - Trainings

Crafty threat actor uses 'aged' domains to evade security platforms

https://www.bleepingcomputer.com/news/security/crafty-threat-actor-uses-aged-domains-to-evade-security-platforms/
Crafty threat actor uses 'aged' domains to evade security platforms

Qakbot/Qakbot_obama224_30.11.2022.txt at main · pr0xylife/Qakbot · GitHub

https://github.com/pr0xylife/Qakbot/blob/main/Qakbot_obama224_30.11.2022.txt
Qakbot/Qakbot_obama224_30.11.2022.txt at main · pr0xylife/Qakbot · GitHub

MalwareBazaar | SHA256 ef43ad2327c74d2ac4343209325b004a15f4f858bb68e871adcca5a320573025 (Quakbot)

https://bazaar.abuse.ch/sample/ef43ad2327c74d2ac4343209325b004a15f4f858bb68e871adcca5a320573025/
MalwareBazaar | SHA256 ef43ad2327c74d2ac4343209325b004a15f4f858bb68e871adcca5a320573025 (Quakbot)

Parliament approves Government’s privacy penalty bill | Our ministers – Attorney-General’s portfolio

https://ministers.ag.gov.au/media-centre/parliament-approves-governments-privacy-penalty-bill-28-11-2022
Parliament approves Government’s privacy penalty bill | Our ministers – Attorney-General’s portfolio

Looting Microsoft Configuration Manager | WithSecure™ Labs

https://labs.withsecure.com/publications/looting-microsoft-configuration-manager
Looting Microsoft Configuration Manager | WithSecure™ Labs

Trigona ransomware spotted in increasing attacks worldwide

https://www.bleepingcomputer.com/news/security/trigona-ransomware-spotted-in-increasing-attacks-worldwide/
Trigona ransomware spotted in increasing attacks worldwide

Who’s swimming in South Korean waters? Meet ScarCruft’s Dolphin | WeLiveSecurity

https://www.welivesecurity.com/2022/11/30/whos-swimming-south-korean-waters-meet-scarcrufts-dolphin/
Who’s swimming in South Korean waters? Meet ScarCruft’s Dolphin | WeLiveSecurity

French Electricity Provider Fined for Storing Users' Passwords with Weak MD5 Algorithm

https://thehackernews.com/2022/11/french-electricity-provider-fined-for.html
French Electricity Provider Fined for Storing Users' Passwords with Weak MD5 Algorithm

Flight of the Predator - Lighthouse Reports

https://www.lighthousereports.nl/investigation/flight-of-the-predator/
Flight of the Predator - Lighthouse Reports

Notice of Recent Security Incident - The LastPass Blog

https://blog.lastpass.com/2022/11/notice-of-recent-security-incident/
Notice of Recent Security Incident - The LastPass Blog

Linux Kernel: UAF in Bluetooth L2CAP Handshake · Advisory · google/security-research · GitHub

https://github.com/google/security-research/security/advisories/GHSA-pf87-6c9q-jvm4
Linux Kernel: UAF in Bluetooth L2CAP Handshake · Advisory · google/security-research · GitHub

Threat actors are offering access to corporate networks via unauthorized Fortinet VPN accessSecurity Affairs

https://securityaffairs.co/wordpress/139085/cyber-crime/iabs-offers-access-via-fortinet-products.html
Threat actors are offering access to corporate networks via unauthorized Fortinet VPN accessSecurity Affairs

Linux Kernel: Infoleak in Bluetooth L2CAP Handling · Advisory · google/security-research · GitHub

https://github.com/google/security-research/security/advisories/GHSA-vccx-8h74-2357
Linux Kernel: Infoleak in Bluetooth L2CAP Handling · Advisory · google/security-research · GitHub

Xiongmai IoT Exploitation - Blog - VulnCheck

https://vulncheck.com/blog/xiongmai-iot-exploitation
Xiongmai IoT Exploitation - Blog - VulnCheck

Google discovers Windows exploit framework used to deploy spyware

https://www.bleepingcomputer.com/news/security/google-discovers-windows-exploit-framework-used-to-deploy-spyware/
Google discovers Windows exploit framework used to deploy spyware