Dissecting and Exploiting TCP/IP RCE Vulnerability “EvilESP”
https://securityintelligence.com/posts/dissecting-exploiting-tcp-ip-rce-vulnerability-evilesp/
U.S. No Fly List Left on Unprotected Airline Server
https://www.dailydot.com/debug/no-fly-list-us-tsa-unprotected-server-commuteair/
Readout of Office of the National Cyber Director Meetings with Cybersecurity Researchers | ONCD | The White House
https://www.whitehouse.gov/oncd/briefing-room/2023/01/19/readout-of-office-of-the-national-cyber-director-meetings-with-cybersecurity-researchers/
Gamaredon (Ab)uses Telegram to Target Ukrainian Organizations
https://blogs.blackberry.com/en/2023/01/gamaredon-abuses-telegram-to-target-ukrainian-organizations
REcon - Home
https://recon.cx
CVE-2022-47966: Rapid7 Observed Exploitation of Critical ManageEngine Vulnerability | Rapid7 Blog
https://www.rapid7.com/blog/post/2023/01/19/etr-cve-2022-47966-rapid7-observed-exploitation-of-critical-manageengine-vulnerability/
Create CVE-2022-47966.yaml by DhiyaneshGeek · Pull Request #6564 · projectdiscovery/nuclei-templates · GitHub
https://github.com/projectdiscovery/nuclei-templates/pull/6564/files
Suspected Chinese Threat Actors Exploiting FortiOS Vulnerability (CVE-2022-42475) | Mandiant
https://www.mandiant.com/resources/blog/chinese-actors-exploit-fortios-flaw
A difficult decision to set us up for the future
https://blog.google/inside-google/message-ceo/january-update/
CVE-2022-41033: Type confusion in Windows COM+ Event System Service | 0-days In-the-Wild
https://googleprojectzero.github.io/0days-in-the-wild//0day-RCAs/2022/CVE-2022-41033.html
Darth Vidar: The Dark Side of Evolving Threat Infrastructure
https://www.team-cymru.com/post/darth-vidar-the-dark-side-of-evolving-threat-infrastructure
Chinese Hackers Exploited Recent Fortinet Flaw as 0-Day to Drop Malware
https://thehackernews.com/2023/01/new-chinese-malware-spotted-exploiting.html
Malware-IOCs/2023-01-19 GoogleAds_IcedID IOCs at main · executemalware/Malware-IOCs · GitHub
https://github.com/executemalware/Malware-IOCs/blob/main/2023-01-19%20GoogleAds_IcedID%20IOCs
CVE-2022-47966 SAML ShowStopper
https://blog.viettelcybersecurity.com/saml-show-stopper/
J. Burns Koven on Twitter: "After years of back-to-back record-setting ransomware payouts, 2022 stands apart. Our data shows a steep – 40% — drop in ransomware payments. There’s multiple factors to consider: 🧵 https://t.co/cUwYDoA8lR" / Twitter
https://twitter.com/jburnskoven/status/1616088448489635841
The Key to Identify PsExec - AboutDFIR - The Definitive Compendium Project
https://aboutdfir.com/the-key-to-identify-psexec/
IcedID_01_19_2023.txt · GitHub
https://gist.github.com/myrtus0x0/9ea040e1c31b474b4c20464ae31c3b73