05/03

ETWHash - "He who listens, shall receive" - Nettitude Labs

https://labs.nettitude.com/blog/etwhash-he-who-listens-shall-receive/
ETWHash - "He who listens, shall receive" - Nettitude Labs

Raspberry Robin: A global USB malware campaign providing access to ransomware operators

https://blog.bushidotoken.net/2023/05/raspberry-robin-global-usb-malware.html
Raspberry Robin: A global USB malware campaign providing access to ransomware operators

Merck’s Insurers On the Hook in $1.4 Billion NotPetya Attack, Court Says - WSJ

https://www.wsj.com/articles/mercks-insurers-on-the-hook-in-1-4-billion-notpetya-attack-court-says-528aeb01
Merck’s Insurers On the Hook in $1.4 Billion NotPetya Attack, Court Says - WSJ

Beyond Banking: IcedID Gets Forked - DISCARDED: Tales From the Threat Research Trenches | Podcast on Spotify

https://open.spotify.com/episode/4MKUamWzUxKw65fBjQ7CH5?si=4c080b0db5a44da6
Beyond Banking: IcedID Gets Forked - DISCARDED: Tales From the Threat Research Trenches | Podcast on Spotify

Exploring Impersonation through the Named Pipe Filesystem Driver | by Jonathan Johnson | May, 2023 | Posts By SpecterOps Team Members

https://posts.specterops.io/exploring-impersonation-through-the-named-pipe-filesystem-driver-15f324dfbaf2
Exploring Impersonation through the Named Pipe Filesystem Driver | by Jonathan Johnson | May, 2023 | Posts By SpecterOps Team Members

Zero Day Initiative — CVE-2023-28231: RCE in the Microsoft Windows DHCPv6 Service

https://www.zerodayinitiative.com/blog/2023/5/1/cve-2023-28231-rce-in-the-microsoft-windows-dhcpv6-service
Zero Day Initiative — CVE-2023-28231: RCE in the Microsoft Windows DHCPv6 Service

SolarWinds: The Untold Story of the Boldest Supply-Chain Hack | WIRED

https://www.wired.com/story/the-untold-story-of-solarwinds-the-boldest-supply-chain-hack-ever/
SolarWinds: The Untold Story of the Boldest Supply-Chain Hack | WIRED

Passkeys: What they are and how to use them

https://blog.google/technology/safety-security/the-beginning-of-the-end-of-the-password/
Passkeys: What they are and how to use them

Google Online Security Blog: So long passwords, thanks for all the phish

http://security.googleblog.com/2023/05/so-long-passwords-thanks-for-all-phish.html
Google Online Security Blog: So long passwords, thanks for all the phish

Brightline data breach impacts 783K pediatric mental health patients

https://www.bleepingcomputer.com/news/security/brightline-data-breach-impacts-783k-pediatric-mental-health-patients/
Brightline data breach impacts 783K pediatric mental health patients