01/24

Malware-IOCs/2023-01-23_TA505_GoogleAds at main · CronUp/Malware-IOCs · GitHub

https://github.com/CronUp/Malware-IOCs/blob/main/2023-01-23_TA505_GoogleAds
Malware-IOCs/2023-01-23_TA505_GoogleAds at main · CronUp/Malware-IOCs · GitHub

CVE-2023-23504: XNU Heap Underwrite in dlil.c - Adam Doupé

https://adamdoupe.com/blog/2023/01/23/cve-2023-23504-xnu-heap-underwrite-in-dlil-dot-c/
CVE-2023-23504: XNU Heap Underwrite in dlil.c - Adam Doupé

FBI Confirms Lazarus Group, APT38 Cyber Actors Responsible for Harmony's Horizon Bridge Currency Theft — FBI

https://www.fbi.gov/news/press-releases/fbi-confirms-lazarus-group-apt38-cyber-actors-responsible-for-harmonys-horizon-bridge-currency-theft
FBI Confirms Lazarus Group, APT38 Cyber Actors Responsible for Harmony's Horizon Bridge Currency Theft — FBI

Ticketmaster says cyberattack disrupted Taylor Swift ticket sales - POLITICO

https://www.politico.com/news/2023/01/23/ticketmaster-cyberattack-taylor-swift-tickets-00079119
Ticketmaster says cyberattack disrupted Taylor Swift ticket sales - POLITICO

Masters of Mimicry: new APT group ChamelGang and its arsenal

https://www.ptsecurity.com/ww-en/analytics/pt-esc-threat-intelligence/new-apt-group-chamelgang/#id3-1
Masters of Mimicry: new APT group ChamelGang and its arsenal

Chinese Hackers Utilize Golang Malware in DragonSpark Attacks to Evade Detection

https://thehackernews.com/2023/01/chinese-hackers-utilize-golang-malware.html
Chinese Hackers Utilize Golang Malware in DragonSpark Attacks to Evade Detection

JSAC2023

https://jsac.jpcert.or.jp/
JSAC2023

Pwning the all Google phone with a non-Google bug | The GitHub Blog

https://github.blog/2023-01-23-pwning-the-all-google-phone-with-a-non-google-bug/
Pwning the all Google phone with a non-Google bug | The GitHub Blog

GoTo says hackers stole customers' backups and encryption key

https://www.bleepingcomputer.com/news/security/goto-says-hackers-stole-customers-backups-and-encryption-key/
GoTo says hackers stole customers' backups and encryption key