04/08

Exploit available for critical bug in VM2 JavaScript sandbox library

https://www.bleepingcomputer.com/news/security/exploit-available-for-critical-bug-in-vm2-javascript-sandbox-library/
Exploit available for critical bug in VM2 JavaScript sandbox library

Iran-Based Hackers Caught Carrying Out Destructive Attacks Under Ransomware Guise

https://thehackernews.com/2023/04/iran-based-hackers-caught-carrying-out.html
Iran-Based Hackers Caught Carrying Out Destructive Attacks Under Ransomware Guise

MERCURY and DEV-1084: Destructive attack on hybrid environment - Microsoft Security Blog

https://www.microsoft.com/en-us/security/blog/2023/04/07/mercury-and-dev-1084-destructive-attack-on-hybrid-environment/
MERCURY and DEV-1084: Destructive attack on hybrid environment - Microsoft Security Blog

Proof-of-concepts/CVE-2022-46697 at main · antoniozekic/Proof-of-concepts · GitHub

https://github.com/antoniozekic/Proof-of-concepts/tree/main/CVE-2022-46697
Proof-of-concepts/CVE-2022-46697 at main · antoniozekic/Proof-of-concepts · GitHub

MSI Confirms Breach as Ransomware Gang Claims Responsibility | PCMag

https://www.pcmag.com/news/msi-confirms-breach-as-ransomware-gang-claims-responsibility
MSI Confirms Breach as Ransomware Gang Claims Responsibility | PCMag

Dissecting and Exploiting TCP/IP RCE Vulnerability “EvilESP”

https://securityintelligence.com/posts/dissecting-exploiting-tcp-ip-rce-vulnerability-evilesp/
Dissecting and Exploiting TCP/IP RCE Vulnerability “EvilESP”

Dcrat - Manual De-obfuscation of .NET malware

https://embee-research.ghost.io/dcrat-manual-de-obfuscation/
Dcrat - Manual De-obfuscation of .NET malware

Breached shutdown sparks migration to ARES data leak forums

https://www.bleepingcomputer.com/news/security/breached-shutdown-sparks-migration-to-ares-data-leak-forums/
Breached shutdown sparks migration to ARES data leak forums

A Tale of .Net Deobfuscation - VirtualGuard Basics

https://mrt4ntr4.github.io/VirtualGuard-P1/
A Tale of .Net Deobfuscation - VirtualGuard Basics

Researchers Discover Critical Remote Code Execution Flaw in vm2 Sandbox Library

https://thehackernews.com/2023/04/researchers-discover-critical-remote.html
Researchers Discover Critical Remote Code Execution Flaw in vm2 Sandbox Library

Rule Writing for CodeQL and Semgrep | Spaceraccoon's Blog

https://spaceraccoon.dev/comparing-rule-syntax-codeql-semgrep/
Rule Writing for CodeQL and Semgrep | Spaceraccoon's Blog

WindowSpy - A Cobalt Strike Beacon Object File Meant For Targetted User Surveillance

https://www.kitploit.com/2023/04/windowspy-cobalt-strike-beacon-object.html
WindowSpy - A Cobalt Strike Beacon Object File Meant For Targetted User Surveillance

A Tale of .Net Deobfuscation - VirtualGuard Devirtualization

https://mrt4ntr4.github.io/VirtualGuard-P2/
A Tale of .Net Deobfuscation - VirtualGuard Devirtualization

Writing your own RDI /sRDI loader using C and ASM

https://blog.malicious.group/writing-your-own-rdi-srdi-loader-using-c-and-asm/
Writing your own RDI /sRDI loader using C and ASM

Flangvik - Twitch

https://www.twitch.tv/flangvik
Flangvik - Twitch

Escaping Adobe Sandbox: Exploiting an Integer Overflow in Microsoft Windows Crypto Provider - Exodus Intelligence

https://blog.exodusintel.com/2023/04/06/escaping-adobe-sandbox-exploiting-an-integer-overflow-in-microsoft-windows/
Escaping Adobe Sandbox: Exploiting an Integer Overflow in Microsoft Windows Crypto Provider - Exodus Intelligence

Jason Haddix on Twitter: "https://t.co/nkkCVZ55Fv" / Twitter

https://twitter.com/jhaddix/status/1644486986957467649
Jason Haddix on Twitter: "https://t.co/nkkCVZ55Fv" / Twitter

Apple fixes two zero-days exploited to hack iPhones and Macs

https://www.bleepingcomputer.com/news/apple/apple-fixes-two-zero-days-exploited-to-hack-iphones-and-macs/
Apple fixes two zero-days exploited to hack iPhones and Macs

Apple Releases Updates to Address Zero-Day Flaws in iOS, iPadOS, macOS, and Safari

https://thehackernews.com/2023/04/apple-releases-updates-to-address-zero.html
Apple Releases Updates to Address Zero-Day Flaws in iOS, iPadOS, macOS, and Safari

CISA orders agencies to patch Backup Exec bugs used by ransomware gang

https://www.bleepingcomputer.com/news/security/cisa-orders-agencies-to-patch-backup-exec-bugs-used-by-ransomware-gang/
CISA orders agencies to patch Backup Exec bugs used by ransomware gang

Start to Finish: Configuring an Android Phone for Pentesting - Black Hills Information Security

https://www.blackhillsinfosec.com/start-to-finish-configuring-an-android-phone-for-pentesting/
Start to Finish: Configuring an Android Phone for Pentesting - Black Hills Information Security

64 Methods For Execute Mimikatz(RTC0003) | RedTeamRecipe

https://redteamrecipe.com/64-Methods-For-Execute-Mimikatz/
64 Methods For Execute Mimikatz(RTC0003) | RedTeamRecipe

Flipper Zero banned by Amazon for being a ‘card skimming device’

https://www.bleepingcomputer.com/news/technology/flipper-zero-banned-by-amazon-for-being-a-card-skimming-device-/
Flipper Zero banned by Amazon for being a ‘card skimming device’

[QuickNote] Uncovering Suspected Malware Distributed By Individuals from Vietnam | 0day in {REA_TEAM}

https://kienmanowar.wordpress.com/2023/04/08/quicknote-uncovering-suspected-malware-distributed-by-individuals-from-vietnam/
[QuickNote] Uncovering Suspected Malware Distributed By Individuals from Vietnam | 0day in {REA_TEAM}

FBI warns of companies exploiting sextortion victims for profit

https://www.bleepingcomputer.com/news/security/fbi-warns-of-companies-exploiting-sextortion-victims-for-profit/
FBI warns of companies exploiting sextortion victims for profit

There’s a new form of keyless car theft that works in under 2 minutes | Ars Technica

https://arstechnica.com/information-technology/2023/04/crooks-are-stealing-cars-using-previously-unknown-keyless-can-injection-attacks/
There’s a new form of keyless car theft that works in under 2 minutes | Ars Technica

Apple Ships Urgent iOS Patch for Newly Exploited Zero-Days - SecurityWeek

https://www.securityweek.com/apple-ships-urgent-ios-patch-for-newly-exploited-zero-days/
Apple Ships Urgent iOS Patch for Newly Exploited Zero-Days - SecurityWeek

Arbitrary Code Execution Over Radio | Hackaday

https://hackaday.com/2023/04/07/arbitrary-code-execution-over-radio/
Arbitrary Code Execution Over Radio | Hackaday