07/29

van%20Nielen_MA_EEMCS.pdf

http://essay.utwente.nl/94945/1/van%20Nielen_MA_EEMCS.pdf
van%20Nielen_MA_EEMCS.pdf

CISA: New Submarine malware found on hacked Barracuda ESG appliances

https://www.bleepingcomputer.com/news/security/cisa-new-submarine-malware-found-on-hacked-barracuda-esg-appliances/
CISA: New Submarine malware found on hacked Barracuda ESG appliances

Hackers Deploy "SUBMARINE" Backdoor in Barracuda Email Security Gateway Attacks

https://thehackernews.com/2023/07/hackers-deploy-submarine-backdoor-in.html
Hackers Deploy "SUBMARINE" Backdoor in Barracuda Email Security Gateway Attacks

Ivanti Warns of Another Endpoint Manager Mobile Vulnerability Under Active Attack

https://thehackernews.com/2023/07/ivanti-warns-of-another-endpoint.html
Ivanti Warns of Another Endpoint Manager Mobile Vulnerability Under Active Attack

Apple Sets New Rules for Developers to Prevent Fingerprinting and Data Misuse

https://thehackernews.com/2023/07/apple-sets-new-rules-for-developers-to.html
Apple Sets New Rules for Developers to Prevent Fingerprinting and Data Misuse

New Android Malware CherryBlos Utilizing OCR to Steal Sensitive Data

https://thehackernews.com/2023/07/new-android-malware-cherryblos.html
New Android Malware CherryBlos Utilizing OCR to Steal Sensitive Data

Apple rejects new name 'X' for Twitter iOS app because... rules

https://www.bleepingcomputer.com/news/technology/apple-rejects-new-name-x-for-twitter-ios-app-because-rules/
Apple rejects new name 'X' for Twitter iOS app because... rules

GitHub - datackmy/FallingSkies-CVE-2023-35885: Cloudpanel 0-day Exploit

https://github.com/datackmy/FallingSkies-CVE-2023-35885
GitHub - datackmy/FallingSkies-CVE-2023-35885: Cloudpanel 0-day Exploit

Russian APT BlueBravo targets diplomatic entities with GraphicalProton backdoorSecurity Affairs

https://securityaffairs.com/148920/apt/bluebravo-graphicalproton-backdoor.html
Russian APT BlueBravo targets diplomatic entities with GraphicalProton backdoorSecurity Affairs

Unraveling the Illusion of Trust: The Innovative Attack Methodology Leveraging the "search-ms" URI Protocol Handler

https://www.trellix.com/en-us/about/newsroom/stories/research/beyond-file-search-a-novel-method.html
Unraveling the Illusion of Trust: The Innovative Attack Methodology Leveraging the "search-ms" URI Protocol Handler

Chaining our way to Pre-Auth RCE in Metabase (CVE-2023-38646) – Assetnote

https://blog.assetnote.io/2023/07/22/pre-auth-rce-metabase/
Chaining our way to Pre-Auth RCE in Metabase (CVE-2023-38646) – Assetnote

System Tools - WCX_MSI

http://www.zezula.net/en/tools/wcx_msi.html
System Tools - WCX_MSI

Linux version of Abyss Locker ransomware targets VMware ESXi servers

https://www.bleepingcomputer.com/news/security/linux-version-of-abyss-locker-ransomware-targets-vmware-esxi-servers/
Linux version of Abyss Locker ransomware targets VMware ESXi servers

Now Abyss Locker also targets VMware ESXi serversSecurity Affairs

https://securityaffairs.com/148933/malware/abyss-locker-vmware-esxi.html
Now Abyss Locker also targets VMware ESXi serversSecurity Affairs

Page not found · GitHub · GitHub

https://github.com/owasp-amass/oam-tools@master
Page not found · GitHub · GitHub

LDAP Queries for Offensive and Defensive Operations

https://www.politoinc.com/post/ldap-queries-for-offensive-and-defensive-operations
LDAP Queries for Offensive and Defensive Operations

Browser developers push back on Google's “web DRM” WEI API

https://www.bleepingcomputer.com/news/google/browser-developers-push-back-on-googles-web-drm-wei-api/
Browser developers push back on Google's “web DRM” WEI API