06/30

https://www.defconparties.com/

https://www.defconparties.com/

Falcon Complete MDR Thwarts VANGUARD PANDA Tradecraft

https://www.crowdstrike.com/blog/falcon-complete-thwarts-vanguard-panda-tradecraft/
Falcon Complete MDR Thwarts VANGUARD PANDA Tradecraft

Kimsuky Attack Group Abusing Chrome Remote Desktop - ASEC BLOG

https://asec-ahnlab-com.translate.goog/ko/54804/?_x_tr_sl=auto&_x_tr_tl=en&_x_tr_hl=en&_x_tr_pto=wapp
Kimsuky Attack Group Abusing Chrome Remote Desktop - ASEC BLOG

Hunting Ducks - A Threat Hunters Take on Ducktail Stealer - Nextron Systems

https://www.nextron-systems.com/2023/06/29/hunting-ducks-a-threat-hunters-take-on-ducktail-stealer/
Hunting Ducks - A Threat Hunters Take on Ducktail Stealer - Nextron Systems

Free Akira ransomware decryptor helps recover your files

https://www.bleepingcomputer.com/news/security/free-akira-ransomware-decryptor-helps-recover-your-files/
Free Akira ransomware decryptor helps recover your files

Twitter now forces you to sign in to view tweets

https://www.bleepingcomputer.com/news/technology/twitter-now-forces-you-to-sign-in-to-view-tweets/
Twitter now forces you to sign in to view tweets

Cybercriminals Hijacking Vulnerable SSH Servers in New Proxyjacking Campaign

https://thehackernews.com/2023/06/cybercriminals-hijacking-vulnerable-ssh.html
Cybercriminals Hijacking Vulnerable SSH Servers in New Proxyjacking Campaign

GCHQ reveals British government was hacked by foreign cyber spies 20 years ago

https://therecord.media/britain-gchq-2003-hack-espionage-revealed
GCHQ reveals British government was hacked by foreign cyber spies 20 years ago

MITRE Unveils Top 25 Most Dangerous Software Weaknesses of 2023: Are You at Risk?

https://thehackernews.com/2023/06/mitre-unveils-top-25-most-dangerous.html
MITRE Unveils Top 25 Most Dangerous Software Weaknesses of 2023: Are You at Risk?

WhatsApp Upgrades Proxy Feature Against Internet Shutdowns

https://thehackernews.com/2023/06/whatsapp-upgrades-proxy-feature-against.html
WhatsApp Upgrades Proxy Feature Against Internet Shutdowns

Decrypted: Akira Ransomware - Avast Threat Labs

https://decoded.avast.io/threatresearch/decrypted-akira-ransomware/
Decrypted: Akira Ransomware - Avast Threat Labs

Hackers exploit zero-day in Ultimate Member WordPress plugin with 200K installs

https://www.bleepingcomputer.com/news/security/hackers-exploit-zero-day-in-ultimate-member-wordpress-plugin-with-200k-installs/
Hackers exploit zero-day in Ultimate Member WordPress plugin with 200K installs

YouTube tests restricting ad blocker users to 3 video views

https://www.bleepingcomputer.com/news/technology/youtube-tests-restricting-ad-blocker-users-to-3-video-views/
YouTube tests restricting ad blocker users to 3 video views

TSMC denies LockBit hack as ransomware gang demands $70 million

https://www.bleepingcomputer.com/news/security/tsmc-denies-lockbit-hack-as-ransomware-gang-demands-70-million/
TSMC denies LockBit hack as ransomware gang demands $70 million

CISA issues DDoS warning after attacks hit multiple US orgs

https://www.bleepingcomputer.com/news/security/cisa-issues-ddos-warning-after-attacks-hit-multiple-us-orgs/
CISA issues DDoS warning after attacks hit multiple US orgs

CWE - 2023 CWE Top 25 Most Dangerous Software Weaknesses

https://cwe.mitre.org/top25/archive/2023/2023_top25_list.html
CWE - 2023 CWE Top 25 Most Dangerous Software Weaknesses

Iran-linked Charming Kitten APT enhanced its POWERSTAR BackdoorSecurity Affairs

https://securityaffairs.com/147995/apt/charming-kitten-powerstar-backdoor.html
Iran-linked Charming Kitten APT enhanced its POWERSTAR BackdoorSecurity Affairs

Log in to Twitter / Twitter

https://twitter.com/i/broadcasts/1ZkKzXbBoYoJv
Log in to Twitter / Twitter

PhoenixC2: free & open-source C2 framework for Red Teams

https://securityonline.info/phoenixc2-free-open-source-c2-framework-for-red-teams/
PhoenixC2: free & open-source C2 framework for Red Teams

Protecting Microsoft 365 from on-premises attacks - Microsoft Entra | Microsoft Learn

https://learn.microsoft.com/en-us/azure/active-directory/fundamentals/protect-m365-from-on-premises-attacks
Protecting Microsoft 365 from on-premises attacks - Microsoft Entra | Microsoft Learn

Researchers Detail 4 SAP Bugs, Including Flaw in ABAP Kernel

https://www.darkreading.com/application-security/researchers-release-technical-details-pocs-for-4-sap-bugs
Researchers Detail 4 SAP Bugs, Including Flaw in ABAP Kernel

Writing a simple rootkit for linux - Malware - 0x00sec - The Home of the Hacker

https://0x00sec.org/t/writing-a-simple-rootkit-for-linux/29034
Writing a simple rootkit for linux - Malware - 0x00sec - The Home of the Hacker

TSMC Says Supplier Hacked After Ransomware Group Claims Attack on Chip Giant - SecurityWeek

https://www.securityweek.com/tsmc-says-supplier-hacked-after-ransomware-group-claims-attack-on-chip-giant/
TSMC Says Supplier Hacked After Ransomware Group Claims Attack on Chip Giant - SecurityWeek

New proxyjacking attacks monetize hacked SSH servers’ bandwidth

https://www.bleepingcomputer.com/news/security/new-proxyjacking-attacks-monetize-hacked-ssh-servers-bandwidth/
New proxyjacking attacks monetize hacked SSH servers’ bandwidth

Reversing Citrix Gateway for XSS – Assetnote

https://blog.assetnote.io/2023/06/29/binary-reversing-citrix-xss/
Reversing Citrix Gateway for XSS – Assetnote

File:Seitengröße PDF 7.svg - Wikimedia Commons

https://commons.m.wikimedia.org/wiki/File:Seitengr%C3%B6%C3%9Fe_PDF_7.svg
File:Seitengröße PDF 7.svg - Wikimedia Commons

CYBERWARCON - YouTube

https://youtube.com/@cyberwarcon
CYBERWARCON - YouTube

miniOrange’s WordPress Social Login and Register plugin affected by a critical auth bypassSecurity Affairs

https://securityaffairs.com/147981/hacking/wordpress-social-login-and-register-plugin-auth-bypass.html
miniOrange’s WordPress Social Login and Register plugin affected by a critical auth bypassSecurity Affairs

MITRE releases new list of top 25 most dangerous software bugs

https://www.bleepingcomputer.com/news/security/mitre-releases-new-list-of-top-25-most-dangerous-software-bugs/
MITRE releases new list of top 25 most dangerous software bugs

Iranian Hackers Charming Kitten Utilize POWERSTAR Backdoor in Targeted Espionage Attacks

https://thehackernews.com/2023/06/iranian-hackers-charming-kitten-utilize.html
Iranian Hackers Charming Kitten Utilize POWERSTAR Backdoor in Targeted Espionage Attacks

200,000 WordPress Sites Exposed to Attacks Exploiting Flaw in 'Ultimate Member' Plugin - SecurityWeek

https://www.securityweek.com/200000-wordpress-sites-exposed-to-attacks-exploiting-flaw-in-ultimate-member-plugin/
200,000 WordPress Sites Exposed to Attacks Exploiting Flaw in 'Ultimate Member' Plugin - SecurityWeek

PPTs-CONs/2023/EuskalHack/EuskalHack_Offensive_Logon_Sessions.pdf at main · MrSquid25/PPTs-CONs · GitHub

https://github.com/MrSquid25/PPTs-CONs/blob/main/2023/EuskalHack/EuskalHack_Offensive_Logon_Sessions.pdf
PPTs-CONs/2023/EuskalHack/EuskalHack_Offensive_Logon_Sessions.pdf at main · MrSquid25/PPTs-CONs · GitHub

Formula E team caught using RFID scanner that could grab live tire data from other cars - The Verge

https://www.theverge.com/2023/6/24/23772725/formula-e-ds-penske-rfid-tire-data-wireless-scanner
Formula E team caught using RFID scanner that could grab live tire data from other cars - The Verge