01/20

Dissecting and Exploiting TCP/IP RCE Vulnerability “EvilESP”

https://securityintelligence.com/posts/dissecting-exploiting-tcp-ip-rce-vulnerability-evilesp/
Dissecting and Exploiting TCP/IP RCE Vulnerability “EvilESP”

U.S. No Fly List Left on Unprotected Airline Server

https://www.dailydot.com/debug/no-fly-list-us-tsa-unprotected-server-commuteair/
U.S. No Fly List Left on Unprotected Airline Server

Readout of Office of the National Cyber Director Meetings with Cybersecurity Researchers | ONCD | The White House

https://www.whitehouse.gov/oncd/briefing-room/2023/01/19/readout-of-office-of-the-national-cyber-director-meetings-with-cybersecurity-researchers/
Readout of Office of the National Cyber Director Meetings with Cybersecurity Researchers | ONCD | The White House

Gamaredon (Ab)uses Telegram to Target Ukrainian Organizations

https://blogs.blackberry.com/en/2023/01/gamaredon-abuses-telegram-to-target-ukrainian-organizations
Gamaredon (Ab)uses Telegram to Target Ukrainian Organizations

REcon - Home

https://recon.cx
REcon - Home

CVE-2022-47966: Rapid7 Observed Exploitation of Critical ManageEngine Vulnerability | Rapid7 Blog

https://www.rapid7.com/blog/post/2023/01/19/etr-cve-2022-47966-rapid7-observed-exploitation-of-critical-manageengine-vulnerability/
CVE-2022-47966: Rapid7 Observed Exploitation of Critical ManageEngine Vulnerability | Rapid7 Blog

Suspected Chinese Threat Actors Exploiting FortiOS Vulnerability (CVE-2022-42475) | Mandiant

https://www.mandiant.com/resources/blog/chinese-actors-exploit-fortios-flaw
Suspected Chinese Threat Actors Exploiting FortiOS Vulnerability (CVE-2022-42475) | Mandiant

A difficult decision to set us up for the future

https://blog.google/inside-google/message-ceo/january-update/
A difficult decision to set us up for the future

CVE-2022-41033: Type confusion in Windows COM+ Event System Service | 0-days In-the-Wild

https://googleprojectzero.github.io/0days-in-the-wild//0day-RCAs/2022/CVE-2022-41033.html
CVE-2022-41033: Type confusion in Windows COM+ Event System Service | 0-days In-the-Wild

Darth Vidar: The Dark Side of Evolving Threat Infrastructure

https://www.team-cymru.com/post/darth-vidar-the-dark-side-of-evolving-threat-infrastructure
Darth Vidar: The Dark Side of Evolving Threat Infrastructure

Chinese Hackers Exploited Recent Fortinet Flaw as 0-Day to Drop Malware

https://thehackernews.com/2023/01/new-chinese-malware-spotted-exploiting.html
Chinese Hackers Exploited Recent Fortinet Flaw as 0-Day to Drop Malware

Malware-IOCs/2023-01-19 GoogleAds_IcedID IOCs at main · executemalware/Malware-IOCs · GitHub

https://github.com/executemalware/Malware-IOCs/blob/main/2023-01-19%20GoogleAds_IcedID%20IOCs
Malware-IOCs/2023-01-19 GoogleAds_IcedID IOCs at main · executemalware/Malware-IOCs · GitHub

CVE-2022-47966 SAML ShowStopper

https://blog.viettelcybersecurity.com/saml-show-stopper/
CVE-2022-47966 SAML ShowStopper

IcedID_01_19_2023.txt · GitHub

https://gist.github.com/myrtus0x0/9ea040e1c31b474b4c20464ae31c3b73
IcedID_01_19_2023.txt · GitHub