08/22

GroundPeony: Crawling with Malice | @nao_sec

https://nao-sec.org/2023/08/groundpeony-crawling-with-malice.html
GroundPeony: Crawling with Malice | @nao_sec

New Variant of XLoader macOS Malware Disguised as 'OfficeNote' Productivity App

https://thehackernews.com/2023/08/new-variant-of-xloader-macos-malware.html
New Variant of XLoader macOS Malware Disguised as 'OfficeNote' Productivity App

Akira ransomware targets Cisco VPNs to breach organizations

https://www.bleepingcomputer.com/news/security/akira-ransomware-targets-cisco-vpns-to-breach-organizations/
Akira ransomware targets Cisco VPNs to breach organizations

Carderbee hacking group hits Hong Kong orgs in supply chain attack

https://www.bleepingcomputer.com/news/security/carderbee-hacking-group-hits-hong-kong-orgs-in-supply-chain-attack/
Carderbee hacking group hits Hong Kong orgs in supply chain attack

404 Media

http://404media.co
404 Media

Ivanti Warns of Critical Zero-Day Flaw Being Actively Exploited in Sentry Software

https://thehackernews.com/2023/08/ivanti-warns-of-critical-zero-day-flaw.html
Ivanti Warns of Critical Zero-Day Flaw Being Actively Exploited in Sentry Software

Microsoft Excel to let you run Python scripts as formulas

https://www.bleepingcomputer.com/news/microsoft/microsoft-excel-to-let-you-run-python-scripts-as-formulas/
Microsoft Excel to let you run Python scripts as formulas

Critical Adobe ColdFusion Flaw Added to CISA's Exploited Vulnerability Catalog

https://thehackernews.com/2023/08/critical-adobe-coldfusion-flaw-added-to.html
Critical Adobe ColdFusion Flaw Added to CISA's Exploited Vulnerability Catalog

Linux Kernel Exploit (CVE-2022–32250) with mqueue | by Theori Vulnerability Research | Theori BLOG

https://blog.theori.io/linux-kernel-exploit-cve-2022-32250-with-mqueue-a8468f32aab5
Linux Kernel Exploit (CVE-2022–32250) with mqueue | by Theori Vulnerability Research | Theori BLOG