06/28

Talks

https://aadinternals.com/talks/#2023
Talks

8Base ransomware gang escalates double extortion attacks in June

https://www.bleepingcomputer.com/news/security/8base-ransomware-gang-escalates-double-extortion-attacks-in-june/
8Base ransomware gang escalates double extortion attacks in June

The Password Game

https://neal.fun/password-game/
The Password Game

8Base Ransomware Spikes in Activity, Threatens U.S. and Brazilian Businesses

https://thehackernews.com/2023/06/8base-ransomware-spikes-in-activity.html
8Base Ransomware Spikes in Activity, Threatens U.S. and Brazilian Businesses

CryptosLabs Scam Ring Targets French-Speaking Investors, Rakes in €480 Million

https://thehackernews.com/2023/06/cryptoslabs-scam-ring-targets-french.html
CryptosLabs Scam Ring Targets French-Speaking Investors, Rakes in €480 Million

GHSL-2023-045: LDAP injection in Bounty Castle For Java - CVE-2023-33201 | GitHub Security Lab

https://securitylab.github.com/advisories/GHSL-2023-045_Bouncy_Castle_For_Java/
GHSL-2023-045: LDAP injection in Bounty Castle For Java - CVE-2023-33201 | GitHub Security Lab

CVE-2023-26258 - Remote Code Execution in ArcServe UDP Backup - MDSec

https://www.mdsec.co.uk/2023/06/cve-2023-26258-remote-code-execution-in-arcserve-udp-backup/
CVE-2023-26258 - Remote Code Execution in ArcServe UDP Backup - MDSec

Detection Engineering Weekly #29 - Good Luck, I'm Behind 7 EDRs

https://www.detectionengineering.net/p/detection-engineering-weekly-29-good
Detection Engineering Weekly #29 - Good Luck, I'm Behind 7 EDRs

Critical SQL Injection Flaws Expose Gentoo Soko to Remote Code Execution

https://thehackernews.com/2023/06/critical-sql-injection-flaws-expose.html
Critical SQL Injection Flaws Expose Gentoo Soko to Remote Code Execution

Alert: New Electromagnetic Attacks on Drones Could Let Attackers Take Control

https://thehackernews.com/2023/06/alert-new-electromagnetic-attacks-on.html
Alert: New Electromagnetic Attacks on Drones Could Let Attackers Take Control

Russian General Knew About Prigozhin’s Rebellion Plans, U.S. Officials Say - The New York Times

https://www.nytimes.com/2023/06/27/us/politics/russian-general-prigozhin-rebellion.html
Russian General Knew About Prigozhin’s Rebellion Plans, U.S. Officials Say - The New York Times

Charming Kitten Updates POWERSTAR with an InterPlanetary Twist - Volexity

https://www.volexity.com/blog/2023/06/28/charming-kitten-updates-powerstar-with-an-interplanetary-twist/
Charming Kitten Updates POWERSTAR with an InterPlanetary Twist - Volexity

NPM ecosystem at risk from “Manifest Confusion” attacks

https://www.bleepingcomputer.com/news/security/npm-ecosystem-at-risk-from-manifest-confusion-attacks/
NPM ecosystem at risk from “Manifest Confusion” attacks

H I Sutton - Covert Shores

http://www.hisutton.com/Russian-Navy-Deceptive-Camouflage.html
H I Sutton - Covert Shores

Hackers Hiding DcRAT Malware in Fake OnlyFans Content

https://www.hackread.com/hackers-dcrat-malware-fake-onlyfans-content/
Hackers Hiding DcRAT Malware in Fake OnlyFans Content

Источники в Минобороны сообщают об аресте генерала Суровикина - Русская служба The Moscow Times

https://www.moscowtimes.ru/2023/06/28/istochniki-v-minoboroni-soobschayut-ob-areste-generala-surovikina-a47384
Источники в Минобороны сообщают об аресте генерала Суровикина - Русская служба The Moscow Times

Brave Browser boosts privacy with new local resources restrictions

https://www.bleepingcomputer.com/news/security/brave-browser-boosts-privacy-with-new-local-resources-restrictions/
Brave Browser boosts privacy with new local resources restrictions

Process Mockingjay: Echoing RWX In Userland To Achieve Code Execution

https://www.securityjoes.com/post/process-mockingjay-echoing-rwx-in-userland-to-achieve-code-execution
Process Mockingjay: Echoing RWX In Userland To Achieve Code Execution

Siemens Energy confirms data breach after MOVEit data-theft attack

https://www.bleepingcomputer.com/news/security/siemens-energy-confirms-data-breach-after-moveit-data-theft-attack/
Siemens Energy confirms data breach after MOVEit data-theft attack

Sensitive Information Stolen in LetMeSpy Stalkerware Hack - SecurityWeek

https://www.securityweek.com/sensitive-information-stolen-in-letmespy-stalkerware-hack/
Sensitive Information Stolen in LetMeSpy Stalkerware Hack - SecurityWeek

Emulating APT36's Recent Activities - AttackIQ

https://www.attackiq.com/2023/06/27/emulating-apt36/
Emulating APT36's Recent Activities - AttackIQ

Cyber Command to expand 'canary in the coal mine' unit working with private sector

https://therecord.media/cyber-command-under-advisement-team-cyberthreat-collaboration
Cyber Command to expand 'canary in the coal mine' unit working with private sector

[Release] Some internal detection vectors bypass

https://www.unknowncheats.me/forum/anti-cheat-bypass/286274-internal-detection-vectors-bypass.html
[Release] Some internal detection vectors bypass

Kaspersky crimeware report: Andariel’s mistakes and EasyRat malware | Securelist

https://securelist.com/lazarus-andariel-mistakes-and-easyrat/110119/
Kaspersky crimeware report: Andariel’s mistakes and EasyRat malware | Securelist

Company finds lost SSD—and confidential data—for sale on eBay

https://www.malwarebytes.com/blog/news/2023/06/company-finds-lost-ssd-and-confidential-data-for-sale-on-ebay
Company finds lost SSD—and confidential data—for sale on eBay

Critical SQL Injection flaws in Gentoo Soko can lead to RCESecurity Affairs

https://securityaffairs.com/147911/hacking/gentoo-soko-sqli.html
Critical SQL Injection flaws in Gentoo Soko can lead to RCESecurity Affairs