09/18

Okta for Red Teamers - TrustedSec

https://www.trustedsec.com/blog/okta-for-red-teamers/
Okta for Red Teamers - TrustedSec

Microsoft leaks 38TB of private data via unsecured Azure storage

https://www.bleepingcomputer.com/news/microsoft/microsoft-leaks-38tb-of-private-data-via-unsecured-azure-storage/
Microsoft leaks 38TB of private data via unsecured Azure storage

38TB of data accidentally exposed by Microsoft AI researchers | Wiz Blog

https://www.wiz.io/blog/38-terabytes-of-private-data-accidentally-exposed-by-microsoft-ai-researchers
38TB of data accidentally exposed by Microsoft AI researchers | Wiz Blog

Bumblebee malware returns in new attacks abusing WebDAV folders

https://www.bleepingcomputer.com/news/security/bumblebee-malware-returns-in-new-attacks-abusing-webdav-folders/
Bumblebee malware returns in new attacks abusing WebDAV folders

New SprySOCKS Linux malware used in cyber espionage attacks

https://www.bleepingcomputer.com/news/security/new-sprysocks-linux-malware-used-in-cyber-espionage-attacks/
New SprySOCKS Linux malware used in cyber espionage attacks

Retool Falls Victim to SMS-Based Phishing Attack Affecting 27 Cloud Clients

https://thehackernews.com/2023/09/retool-falls-victim-to-sms-based.html
Retool Falls Victim to SMS-Based Phishing Attack Affecting 27 Cloud Clients

Hook: New Android Banking Trojan That Expands on ERMAC's Legacy

https://thehackernews.com/2023/09/hook-new-android-banking-trojan-that.html
Hook: New Android Banking Trojan That Expands on ERMAC's Legacy

Fortinet Patches High-Severity Vulnerabilities in FortiOS, FortiProxy, FortiWeb Products - SecurityWeek

https://www.securityweek.com/fortinet-patches-high-severity-vulnerabilities-in-fortios-fortiproxy-fortiweb-products/
Fortinet Patches High-Severity Vulnerabilities in FortiOS, FortiProxy, FortiWeb Products - SecurityWeek

Windows Native API… by Pavel Yosifovich [Leanpub PDF/iPad/Kindle]

https://leanpub.com/windowsnativeapiprogramming
Windows Native API… by Pavel Yosifovich [Leanpub PDF/iPad/Kindle]

New AMBERSQUID Cryptojacking Operation Targets Uncommon AWS Services

https://thehackernews.com/2023/09/new-ambersquid-cryptojacking-operation.html
New AMBERSQUID Cryptojacking Operation Targets Uncommon AWS Services

Fileless Remote Code Execution on Juniper Firewalls - Blog - VulnCheck

https://vulncheck.com/blog/juniper-cve-2023-36845
Fileless Remote Code Execution on Juniper Firewalls - Blog - VulnCheck

New IDC Report:The State of Digital Forensics and Incident Response 2023

https://www.binalyze.com/blog/new-idc-report-the-state-of-digital-forensics-and-incident-report-2023
New IDC Report:The State of Digital Forensics and Incident Response 2023

Comparative Analysis: Reversing Rust and C binaries | by Ahmet Göker | Jun, 2023 | Medium

https://lockpin010.medium.com/comparative-analysis-reversing-rust-and-c-binaries-aa9e4b472539
Comparative Analysis: Reversing Rust and C binaries | by Ahmet Göker | Jun, 2023 | Medium

Canadian Government Targeted With DDoS Attacks by Pro-Russia Group - SecurityWeek

https://www.securityweek.com/canadian-government-targeted-with-ddos-attacks-by-pro-russia-group/
Canadian Government Targeted With DDoS Attacks by Pro-Russia Group - SecurityWeek

German intelligence warns cyberattacks could target liquefied natural gas (LNG) terminals

https://securityaffairs.com/150999/hacking/liquefied-natural-gas-lng-terminals-cyber-attacks.html
German intelligence warns cyberattacks could target liquefied natural gas (LNG) terminals

Microsoft AI Researchers Expose 38TB of Data, Including Keys, Passwords and Internal Messages - SecurityWeek

https://www.securityweek.com/microsoft-ai-researchers-expose-38tb-of-data-including-keys-passwords-and-internal-messages/
Microsoft AI Researchers Expose 38TB of Data, Including Keys, Passwords and Internal Messages - SecurityWeek

Tool Release: Cartographer | NCC Group Research Blog | Making the world safer and more secure

https://research.nccgroup.com/2023/07/20/tool-release-cartographer/
Tool Release: Cartographer | NCC Group Research Blog | Making the world safer and more secure

Thousands of Juniper devices vulnerable to unauthenticated RCE flaw

https://www.bleepingcomputer.com/news/security/thousands-of-juniper-devices-vulnerable-to-unauthenticated-rce-flaw/
Thousands of Juniper devices vulnerable to unauthenticated RCE flaw