04/09

LummaC2 BreakDown - 0xToxin Labs

https://0xtoxin-labs.gitbook.io/malware-analysis/malware-analysis/lummac2-breakdown
LummaC2 BreakDown - 0xToxin Labs

From Discord to 4chan: The Improbable Journey of a US Intelligence Leak - bellingcat

https://www.bellingcat.com/news/2023/04/09/from-discord-to-4chan-the-improbable-journey-of-a-us-defence-leak/
From Discord to 4chan: The Improbable Journey of a US Intelligence Leak - bellingcat

Intelligence leak exposes U.S. spying on adversaries and allies - The Washington Post

https://www.washingtonpost.com/national-security/2023/04/08/intelligence-leak-documents-ukraine-pentagon/
Intelligence leak exposes U.S. spying on adversaries and allies - The Washington Post

Spain's most dangerous and elusive hacker now in police custody

https://www.bleepingcomputer.com/news/security/spains-most-dangerous-and-elusive-hacker-now-in-police-custody/
Spain's most dangerous and elusive hacker now in police custody

A Tale of .Net Deobfuscation - VirtualGuard Devirtualization

https://mrt4ntr4.github.io/VirtualGuard-P2/
A Tale of .Net Deobfuscation - VirtualGuard Devirtualization

A Tale of .Net Deobfuscation - VirtualGuard Basics

https://mrt4ntr4.github.io/VirtualGuard-P1/
A Tale of .Net Deobfuscation - VirtualGuard Basics

Inside the international sting operation to catch North Korean crypto hackers | CNN Politics

https://www.cnn.com/2023/04/09/politics/north-korean-crypto-hackers-crackdown/index.html
Inside the international sting operation to catch North Korean crypto hackers | CNN Politics

Taiwanese PC Company MSI Falls Victim to Ransomware Attack

https://thehackernews.com/2023/04/taiwanese-pc-company-msi-falls-victim.html
Taiwanese PC Company MSI Falls Victim to Ransomware Attack

Self-Extracting Archives, Decoy Files and Their Hidden Payloads

https://www.crowdstrike.com/blog/self-extracting-archives-decoy-files-and-their-hidden-payloads/?utm_medium=soc&utm_source=twtr&utm_term=spklr&utm_content=9388227764&utm_campaign=%5Bglobal%5D&utm_activation=corporate+blog
Self-Extracting Archives, Decoy Files and Their Hidden Payloads

Week 15 – 2023 – This Week In 4n6

http://thisweekin4n6.com/2023/04/09/week-15-2023/
Week 15 – 2023 – This Week In 4n6

INSOMNIHACK 2023 - We hacked a box! - YouTube

https://www.youtube.com/watch?v=_IrZcSVIBVE
INSOMNIHACK 2023 - We hacked a box! - YouTube

Breached shutdown sparks migration to ARES data leak forums

https://www.bleepingcomputer.com/news/security/breached-shutdown-sparks-migration-to-ares-data-leak-forums/
Breached shutdown sparks migration to ARES data leak forums

All Dutch govt networks to use RPKI to prevent BGP hijacking

https://www.bleepingcomputer.com/news/security/all-dutch-govt-networks-to-use-rpki-to-prevent-bgp-hijacking/
All Dutch govt networks to use RPKI to prevent BGP hijacking

Dcrat - Manual De-obfuscation of .NET malware

https://embee-research.ghost.io/dcrat-manual-de-obfuscation/
Dcrat - Manual De-obfuscation of .NET malware

GitHub - vu-ls/Crassus

https://github.com/vu-ls/Crassus
GitHub - vu-ls/Crassus

[QuickNote] Uncovering Suspected Malware Distributed By Individuals from Vietnam | 0day in {REA_TEAM}

https://kienmanowar.wordpress.com/2023/04/08/quicknote-uncovering-suspected-malware-distributed-by-individuals-from-vietnam/
[QuickNote] Uncovering Suspected Malware Distributed By Individuals from Vietnam | 0day in {REA_TEAM}

Purpleteam/ThreatHunting.md at main Β· mthcht/Purpleteam Β· GitHub

https://github.com/mthcht/Purpleteam/blob/main/Logging/ThreatHunting.md
Purpleteam/ThreatHunting.md at main Β· mthcht/Purpleteam Β· GitHub

Rule Writing for CodeQL and Semgrep | Spaceraccoon's Blog

https://spaceraccoon.dev/comparing-rule-syntax-codeql-semgrep/
Rule Writing for CodeQL and Semgrep | Spaceraccoon's Blog