02/11

CISA Warns of Active Attacks Exploiting Fortra MFT, TerraMaster NAS, and Intel Driver Flaws

https://thehackernews.com/2023/02/cisa-warns-of-active-attacks-exploiting.html
CISA Warns of Active Attacks Exploiting Fortra MFT, TerraMaster NAS, and Intel Driver Flaws

Configuration_extractors/AsyncRAT_config_extractor.py at main · RussianPanda95/Configuration_extractors · GitHub

https://github.com/RussianPanda95/Configuration_extractors/blob/main/AsyncRAT_config_extractor.py
Configuration_extractors/AsyncRAT_config_extractor.py at main · RussianPanda95/Configuration_extractors · GitHub

Enigma, Vector, and TgToxic: The New Threats to Cryptocurrency Users

https://thehackernews.com/2023/02/enigma-vector-and-tgtoxic-new-threats.html
Enigma, Vector, and TgToxic: The New Threats to Cryptocurrency Users

HackerOne

https://hackerone.com/hackforgood
HackerOne

Just a moment...

https://ahbap.org/disasters-turkey
Just a moment...

Sysmon vs Microsoft Defender for Endpoint, MDE Internals 0x01 | by Olaf Hartong | FalconForce | Medium

https://medium.com/falconforce/sysmon-vs-microsoft-defender-for-endpoint-mde-internals-0x01-1e5663b10347?source=friends_link&sk=b6148438137410527df9c061726eb0be
Sysmon vs Microsoft Defender for Endpoint, MDE Internals 0x01 | by Olaf Hartong | FalconForce | Medium

New ESXiArgs Ransomware Variant Emerges After CISA Releases Decryptor Tool

https://thehackernews.com/2023/02/new-esxiargs-ransomware-variant-emerges.html
New ESXiArgs Ransomware Variant Emerges After CISA Releases Decryptor Tool

Clop ransomware claims it breached 130 orgs using GoAnywhere zero-day

https://www.bleepingcomputer.com/news/security/clop-ransomware-claims-it-breached-130-orgs-using-goanywhere-zero-day/
Clop ransomware claims it breached 130 orgs using GoAnywhere zero-day

Researchers Uncover Obfuscated Malicious Code in PyPI Python Packages

https://thehackernews.com/2023/02/researchers-uncover-obfuscated.html
Researchers Uncover Obfuscated Malicious Code in PyPI Python Packages

Uncle Sow: Dark Caracal in Latin America | Electronic Frontier Foundation

https://www.eff.org/deeplinks/2023/02/uncle-sow-dark-caracal-latin-america
Uncle Sow: Dark Caracal in Latin America | Electronic Frontier Foundation

Microsoft Defender for Endpoint Internals 0x04 — Timeline telemetry | by Olaf Hartong | FalconForce | Feb, 2023 | Medium

https://medium.com/falconforce/microsoft-defender-for-endpoint-internals-0x04-timeline-3f01282839e4
Microsoft Defender for Endpoint Internals 0x04 — Timeline telemetry | by Olaf Hartong | FalconForce | Feb, 2023 | Medium

More than 18,500 ESXi servers still vulnerable to VMware bug behind initial ransomware spree - The Record from Recorded Future News

https://therecord.media/esxiargs-ransomware-vmware-more-than-18500-servers-still-vulnerable/
More than 18,500 ESXi servers still vulnerable to VMware bug behind initial ransomware spree - The Record from Recorded Future News

mast1c0re: Part 2 – Arbitrary PS2 code execution – McCaulay

https://mccaulay.co.uk/mast1c0re-part-2-arbitrary-ps2-code-execution/
mast1c0re: Part 2 – Arbitrary PS2 code execution – McCaulay

https://www.localpotato.com/localpotato_html/LocalPotato.html

https://www.localpotato.com/localpotato_html/LocalPotato.html

Microsoft Defender for Endpoint Internals 0x04 — Timeline telemetry | by Olaf Hartong | FalconForce | Feb, 2023 | Medium

https://medium.com/falconforce/microsoft-defender-for-endpoint-internals-0x04-timeline-3f01282839e4?source=friends_link&sk=78b7f120f56b38535c5115817e329f34
Microsoft Defender for Endpoint Internals 0x04 — Timeline telemetry | by Olaf Hartong | FalconForce | Feb, 2023 | Medium

City of Oakland systems offline after ransomware attack

https://www.bleepingcomputer.com/news/security/city-of-oakland-systems-offline-after-ransomware-attack/
City of Oakland systems offline after ransomware attack

The Week in Ransomware - February 10th 2023 - Clop's Back

https://www.bleepingcomputer.com/news/security/the-week-in-ransomware-february-10th-2023-clops-back/
The Week in Ransomware - February 10th 2023 - Clop's Back

blink/third_party/ltp at master · jart/blink · GitHub

https://github.com/jart/blink/tree/master/third_party/ltp
blink/third_party/ltp at master · jart/blink · GitHub

A10 Networks confirms data breach after Play ransomware attack

https://www.bleepingcomputer.com/news/security/a10-networks-confirms-data-breach-after-play-ransomware-attack/
A10 Networks confirms data breach after Play ransomware attack

MalwareBazaar | Browse Checking your browser

https://bazaar.abuse.ch/browse/tag/207-244-236-205/
MalwareBazaar | Browse Checking your browser