03/10

Stealing the LIGHTSHOW (Part One) — North Korea's UNC2970 | Mandiant

https://www.mandiant.com/resources/blog/lightshow-north-korea-unc2970
Stealing the LIGHTSHOW (Part One) — North Korea's UNC2970 | Mandiant

Making HTTP header injection critical via response queue poisoning | PortSwigger Research

https://portswigger.net/research/making-http-header-injection-critical-via-response-queue-poisoning
Making HTTP header injection critical via response queue poisoning | PortSwigger Research

Apache HTTP Server 2.4 vulnerabilities - The Apache HTTP Server Project

https://httpd.apache.org/security/vulnerabilities_24.html#2.4.56
Apache HTTP Server 2.4 vulnerabilities - The Apache HTTP Server Project

Qakbot/Qakbot_BB18_10.03.2023.txt at main · pr0xylife/Qakbot · GitHub

https://github.com/pr0xylife/Qakbot/blob/main/Qakbot_BB18_10.03.2023.txt
Qakbot/Qakbot_BB18_10.03.2023.txt at main · pr0xylife/Qakbot · GitHub

eSentire | BatLoader Continues to Abuse Google Search Ads to Deliver…

https://www.esentire.com/blog/batloader-continues-to-abuse-google-search-ads-to-deliver-vidar-stealer-and-ursnif
eSentire | BatLoader Continues to Abuse Google Search Ads to Deliver…

Defining the Cobalt Strike Reflective Loader

https://securityintelligence.com/posts/defining-cobalt-strike-reflective-loader/
Defining the Cobalt Strike Reflective Loader

AT&T alerts 9 million customers of data breach after vendor hack

https://www.bleepingcomputer.com/news/security/atandt-alerts-9-million-customers-of-data-breach-after-vendor-hack/
AT&T alerts 9 million customers of data breach after vendor hack

Security researchers targeted with new malware via job offers on LinkedIn

https://www.bleepingcomputer.com/news/security/security-researchers-targeted-with-new-malware-via-job-offers-on-linkedin/
Security researchers targeted with new malware via job offers on LinkedIn

MalwareBazaar | Browse Checking your browser

https://bazaar.abuse.ch/sample/befeb1ab986fae9a54d4761d072bf50fdbff5c6b1b89b66a6790a3f0bfc4243f/
MalwareBazaar | Browse Checking your browser

GitHub - xforcered/Windows_LPE_AFD_CVE-2023-21768: LPE exploit for CVE-2023-21768

https://github.com/xforcered/Windows_LPE_AFD_CVE-2023-21768
GitHub - xforcered/Windows_LPE_AFD_CVE-2023-21768: LPE exploit for CVE-2023-21768

Who’s Behind the NetWire Remote Access Trojan? – Krebs on Security

https://krebsonsecurity.com/2023/03/whos-behind-the-netwire-remote-access-trojan/
Who’s Behind the NetWire Remote Access Trojan? – Krebs on Security

Police seize Netwire RAT malware infrastructure, arrest admin

https://www.bleepingcomputer.com/news/security/police-seize-netwire-rat-malware-infrastructure-arrest-admin/
Police seize Netwire RAT malware infrastructure, arrest admin