CircleCI security alert: Rotate any secrets stored in CircleCI
https://circleci.com/blog/january-4-2023-security-alert/
Slack's private GitHub code repositories stolen over holidays
https://www.bleepingcomputer.com/news/security/slacks-private-github-code-repositories-stolen-over-holidays/
Turla: A Galaxy of Opportunity | Mandiant
https://www.mandiant.com/resources/blog/turla-galaxy-opportunity
Web Hackers vs. The Auto Industry: Critical Vulnerabilities in Ferrari, BMW, Rolls Royce, Porsche, and More | Sam Curry
https://samcurry.net/web-hackers-vs-the-auto-industry/
Prototype Pollution in Python - Abdulrah33m's Blog
https://blog.abdulrah33m.com/prototype-pollution-in-python/
Unpacking RedLine Stealer | dr4k0nia
https://dr4k0nia.github.io/posts/Unpacking-RedLine-Stealer/
CircleCI security alert: Rotate any secrets stored in CircleCI
https://circleci.com/blog/january-4-2023-security-alert/?utm_campaign=Incident+Storytelling&utm_content=security-alert%2C4jan2023&utm_dest=blog&utm_medium=soc&utm_source=twitter
GitHub - vitoplantamura/BugChecker: SoftICE-like kernel debugger for Windows 11
https://github.com/vitoplantamura/BugChecker
BlindEagle Targeting Ecuador With Sharpened Tools – Check Point Research
https://research.checkpoint.com/2023/blindeagle-targeting-ecuador-with-sharpened-tools/
Offensive Software Exploitation (OSE) Course | exploitation-course
https://exploitation.ashemery.com/
200 million Twitter users’ email addresses allegedly leaked online
https://www.bleepingcomputer.com/news/security/200-million-twitter-users-email-addresses-allegedly-leaked-online/
Fortinet and Zoho Urge Customers to Patch Enterprise Software Vulnerabilities
https://thehackernews.com/2023/01/fortinet-and-zoho-urge-customers-to.html
Ongoing Flipper Zero phishing attacks target infosec community
https://www.bleepingcomputer.com/news/security/ongoing-flipper-zero-phishing-attacks-target-infosec-community/
CircleCI on Twitter: "CircleCI Security Alert [4 Jan. 2023] We strongly recommend all CircleCI customers rotate secrets stored on our system. Read more: https://t.co/fiB4PSXbiH https://t.co/cewxH1Dd8e" / Twitter
https://twitter.com/CircleCI/status/1610828227349463041![CircleCI on Twitter: "CircleCI Security Alert [4 Jan. 2023] We strongly recommend all CircleCI customers rotate secrets stored on our system. Read more: https://t.co/fiB4PSXbiH https://t.co/cewxH1Dd8e" / Twitter](/image/screenshot/fbdb007adfa05443bbd75866fb597007.png)
CircleCI warns of security breach — rotate your secrets!
https://www.bleepingcomputer.com/news/security/circleci-warns-of-security-breach-rotate-your-secrets/
Catch Me If You Can: Deterministic Discovery of Race Conditions with Fuzzing - YouTube
https://www.youtube.com/watch?v=OpQvXGJcH4s
Malware Analysis Series (MAS) – Article 7 – Exploit Reversing
https://exploitreversing.com/2023/01/05/malware-analysis-series-mas-article-7/
New Windows 11 Pro (22H2) Evidence of Execution Artifact! - AboutDFIR - The Definitive Compendium Project
https://aboutdfir.com/new-windows-11-pro-22h2-evidence-of-execution-artifact/
Rackspace confirms Play ransomware was behind recent cyberattack
https://www.bleepingcomputer.com/news/security/rackspace-confirms-play-ransomware-was-behind-recent-cyberattack/