02/05

Reversing UK mobile rail tickets

https://eta.st/2023/01/31/rail-tickets.html
Reversing UK mobile rail tickets

Massive ESXiArgs ransomware attack targets VMware ESXi servers worldwide

https://www.bleepingcomputer.com/news/security/massive-esxiargs-ransomware-attack-targets-vmware-esxi-servers-worldwide/
Massive ESXiArgs ransomware attack targets VMware ESXi servers worldwide

Linux version of Royal Ransomware targets VMware ESXi servers

https://www.bleepingcomputer.com/news/security/linux-version-of-royal-ransomware-targets-vmware-esxi-servers/
Linux version of Royal Ransomware targets VMware ESXi servers

OALabsLive - Twitch

https://www.twitch.tv/oalabslive
OALabsLive - Twitch

Mindmap/Crackmapexec at main · Ignitetechnologies/Mindmap · GitHub

https://github.com/Ignitetechnologies/Mindmap/tree/main/Crackmapexec
Mindmap/Crackmapexec at main · Ignitetechnologies/Mindmap · GitHub

Software Security Austerity - Software security debt in modern software development eBook : Whitehouse, Ollie, Vaughan, James: Amazon.co.uk: Kindle Store

https://www.amazon.co.uk/Software-Security-Austerity-security-development-ebook/dp/B007H76ABC?ref=d6k_applink_bb_dls&dplnkId=79a6ea31-128c-410c-b271-1b0c051016d5
Software Security Austerity - Software security debt in modern software development eBook : Whitehouse, Ollie, Vaughan, James: Amazon.co.uk: Kindle Store

NY attorney general forces spyware vendor to alert victims

https://www.bleepingcomputer.com/news/security/ny-attorney-general-forces-spyware-vendor-to-alert-victims/
NY attorney general forces spyware vendor to alert victims

Analysing A Sample Of Arechclient2 | dr4k0nia

https://dr4k0nia.github.io/posts/Analysing-a-sample-of-ArechClient2/
Analysing A Sample Of Arechclient2 | dr4k0nia

Building a Custom Mach-O Memory Loader for macOS - Part 1 - XPN InfoSec Blog

https://blog.xpnsec.com/building-a-mach-o-memory-loader-part-1/
Building a Custom Mach-O Memory Loader for macOS - Part 1 - XPN InfoSec Blog

Antisyphon Summit 2023 - Antisyphon

https://www.antisyphontraining.com/2023-most-offensive-summit/
Antisyphon Summit 2023 - Antisyphon

Joo N/A: "ffuf v2.0 is out! There's a lo…" - Infosec Exchange

https://infosec.exchange/@joohoi/109806822104162973
Joo N/A: "ffuf v2.0 is out! There's a lo…" - Infosec Exchange

New Wave of Ransomware Attacks Exploiting VMware Bug to Target ESXi Servers

https://thehackernews.com/2023/02/new-wave-of-ransomware-attacks.html
New Wave of Ransomware Attacks Exploiting VMware Bug to Target ESXi Servers

KQL-queries/onenote-spwning-mshta at main · cyb3rmik3/KQL-queries · GitHub

https://github.com/cyb3rmik3/KQL-queries/blob/main/onenote-spwning-mshta
KQL-queries/onenote-spwning-mshta at main · cyb3rmik3/KQL-queries · GitHub

Florida hospital takes IT systems offline after cyberattack

https://www.bleepingcomputer.com/news/security/florida-hospital-takes-it-systems-offline-after-cyberattack/
Florida hospital takes IT systems offline after cyberattack

Kremlin-Linked Group Arranged Payments to European Politicians to Support Russia’s Annexation of Crimea - OCCRP

https://www.occrp.org/en/investigations/kremlin-linked-group-arranged-payments-to-european-politicians-to-support-russias-annexation-of-crimea
Kremlin-Linked Group Arranged Payments to European Politicians to Support Russia’s Annexation of Crimea - OCCRP

Week 6 – 2023 – This Week In 4n6

http://thisweekin4n6.com/2023/02/05/week-6-2023/
Week 6 – 2023 – This Week In 4n6

Triage | Behavioral Report

https://tria.ge/230205-ex6n8abe2v/behavioral2
Triage | Behavioral Report

Incident Response in Google Cloud: Forensic Artifacts

https://blog.sygnia.co/incident-response-in-google-cloud-forensic-artifacts
Incident Response in Google Cloud: Forensic Artifacts

SensePost | Linux heap exploitation intro series: riding free on the heap – double free attacks!

https://sensepost.com/blog/2017/linux-heap-exploitation-intro-series-riding-free-on-the-heap-double-free-attacks/
SensePost | Linux heap exploitation intro series: riding free on the heap – double free attacks!

Named Pipe Pass-the-Hash | S3cur3Th1sSh1t

https://s3cur3th1ssh1t.github.io/Named-Pipe-PTH/
Named Pipe Pass-the-Hash | S3cur3Th1sSh1t

Linux Privilege Escalation: DirtyPipe (CVE 2022-0847) - Codelivly

https://www.codelivly.com/linux-privilege-escalation-dirtypipe/
Linux Privilege Escalation: DirtyPipe (CVE 2022-0847) - Codelivly

Instant Checkmate, TruthFinder Data Breach: 20M Accounts Leaked

https://www.hackread.com/instant-checkmate-truthfinder-data-breach/
Instant Checkmate, TruthFinder Data Breach: 20M Accounts Leaked