06/23

Binary Golf

https://binary.golf/
Binary Golf

Microsoft Teams bug allows malware delivery from external accounts

https://www.bleepingcomputer.com/news/security/microsoft-teams-bug-allows-malware-delivery-from-external-accounts/
Microsoft Teams bug allows malware delivery from external accounts

Rule Info MAL_MSIL_NET_DuckTail_Stealer_Loader - Valhalla

https://valhalla.nextron-systems.com/info/rule/MAL_MSIL_NET_DuckTail_Stealer_Loader
Rule Info MAL_MSIL_NET_DuckTail_Stealer_Loader - Valhalla

PindOS: New JavaScript Dropper Delivering Bumblebee and IcedID | Deep Instinct

https://www.deepinstinct.com/blog/pindos-new-javascript-dropper-delivering-bumblebee-and-icedid
PindOS: New JavaScript Dropper Delivering Bumblebee and IcedID | Deep Instinct

NSA Releases Guide to Combat Powerful BlackLotus Bootkit Targeting Windows Systems

https://thehackernews.com/2023/06/nsa-releases-guide-to-combat-powerful.html
NSA Releases Guide to Combat Powerful BlackLotus Bootkit Targeting Windows Systems

Cybercrime Group 'Muddled Libra' Targets BPO Sector with Advanced Social Engineering

https://thehackernews.com/2023/06/cybercrime-group-muddled-libra-targets.html
Cybercrime Group 'Muddled Libra' Targets BPO Sector with Advanced Social Engineering

Powerful JavaScript Dropper PindOS Distributes Bumblebee and IcedID Malware

https://thehackernews.com/2023/06/powerful-javascript-dropper-pindos.html
Powerful JavaScript Dropper PindOS Distributes Bumblebee and IcedID Malware

New Cryptocurrency Mining Campaign Targets Linux Systems and IoT Devices

https://thehackernews.com/2023/06/new-cryptocurrency-mining-campaign.html
New Cryptocurrency Mining Campaign Targets Linux Systems and IoT Devices

Beyond the Horizon: Traveling the World on Camaro Dragon’s USB Flash Drives - Check Point Research

https://research.checkpoint.com/2023/beyond-the-horizon-traveling-the-world-on-camaro-dragons-usb-flash-drives/
Beyond the Horizon: Traveling the World on Camaro Dragon’s USB Flash Drives - Check Point Research

FBI seizes BreachForums after arresting its owner Pompompurin in March

https://www.bleepingcomputer.com/news/security/fbi-seizes-breachforums-after-arresting-its-owner-pompompurin-in-march/
FBI seizes BreachForums after arresting its owner Pompompurin in March

MOVEIt breach impacts GenWorth, CalPERS as data for 3.2 million exposed

https://www.bleepingcomputer.com/news/security/moveit-breach-impacts-genworth-calpers-as-data-for-32-million-exposed/
MOVEIt breach impacts GenWorth, CalPERS as data for 3.2 million exposed

Fortinet fixes critical FortiNAC remote command execution flaw

https://www.bleepingcomputer.com/news/security/fortinet-fixes-critical-fortinac-remote-command-execution-flaw/
Fortinet fixes critical FortiNAC remote command execution flaw

VirusTotal - File - 1d3b5c650533d13c81e325972a912e3ff8776e36e18bca966dae50735f8ab296

https://www.virustotal.com/gui/file/1d3b5c650533d13c81e325972a912e3ff8776e36e18bca966dae50735f8ab296
VirusTotal - File - 1d3b5c650533d13c81e325972a912e3ff8776e36e18bca966dae50735f8ab296

Malware-Traffic-Analysis.net - 30 days of Formbook: Day 18, Thursday 2023-06-22 - "k2l0"

https://www.malware-traffic-analysis.net/2023/06/22/index2.html
Malware-Traffic-Analysis.net - 30 days of Formbook: Day 18, Thursday 2023-06-22 - "k2l0"

CISA orders agencies to patch iPhone bugs abused in spyware attacks

https://www.bleepingcomputer.com/news/security/cisa-orders-agencies-to-patch-iphone-bugs-abused-in-spyware-attacks/
CISA orders agencies to patch iPhone bugs abused in spyware attacks

DC31 RTV "Pip-Boy" | Red Team Village

https://redteamvillage.square.site/product/dc31badge/2
DC31 RTV "Pip-Boy" | Red Team Village

IoT devices and Linux-based systems targeted by OpenSSH trojan campaign | Microsoft Security Blog

https://www.microsoft.com/en-us/security/blog/2023/06/22/iot-devices-and-linux-based-systems-targeted-by-openssh-trojan-campaign/
IoT devices and Linux-based systems targeted by OpenSSH trojan campaign | Microsoft Security Blog

The Power of Browser Fingerprinting: Personalized UX, Fraud Detection, and Secure Logins

https://thehackernews.com/2023/06/the-power-of-browser-fingerprinting.html
The Power of Browser Fingerprinting: Personalized UX, Fraud Detection, and Secure Logins

SMS Phishers Harvested Phone Numbers, Shipment Data from UPS Tracking Tool – Krebs on Security

https://krebsonsecurity.com/2023/06/sms-phishers-harvested-phone-numbers-shipment-data-from-ups-tracking-tool/
SMS Phishers Harvested Phone Numbers, Shipment Data from UPS Tracking Tool – Krebs on Security

UPS warns customers of phishing attempts after data accessed

https://www.malwarebytes.com/blog/news/2023/06/ups-warns-customers-of-phishing-attempts-after-data-accessed
UPS warns customers of phishing attempts after data accessed