10/03

Researcher Reveals New Techniques to Bypass Cloudflare's Firewall and DDoS Protection

https://thehackernews.com/2023/10/researcher-reveal-new-technique-to.html
Researcher Reveals New Techniques to Bypass Cloudflare's Firewall and DDoS Protection

KubeHound: Identifying attack paths in Kubernetes clusters | Datadog Security Labs

https://securitylabs.datadoghq.com/articles/kubehound-identify-kubernetes-attack-paths/
KubeHound: Identifying attack paths in Kubernetes clusters | Datadog Security Labs

Qualcomm Releases Patch for 3 new Zero-Days Under Active Exploitation

https://thehackernews.com/2023/10/qualcomm-releases-patch-for-3-new-zero.html
Qualcomm Releases Patch for 3 new Zero-Days Under Active Exploitation

EvilProxy uses indeed.com open redirect for Microsoft 365 phishing

https://www.bleepingcomputer.com/news/security/evilproxy-uses-indeedcom-open-redirect-for-microsoft-365-phishing/
EvilProxy uses indeed.com open redirect for Microsoft 365 phishing

Warning: PyTorch Models Vulnerable to Remote Code Execution via ShellTorch

https://thehackernews.com/2023/10/warning-pytorch-models-vulnerable-to.html
Warning: PyTorch Models Vulnerable to Remote Code Execution via ShellTorch

Over 3 Dozen Data-Stealing Malicious npm Packages Found Targeting Developers

https://thehackernews.com/2023/10/over-3-dozen-data-stealing-malicious.html
Over 3 Dozen Data-Stealing Malicious npm Packages Found Targeting Developers

SANS Cyber Security East: October 2023

https://www.sans.org/u/1sOO
SANS Cyber Security East: October 2023

(Research) Exploiting HTTP Parsers Inconsistencies

https://rafa.hashnode.dev/exploiting-http-parsers-inconsistencies
(Research) Exploiting HTTP Parsers Inconsistencies

ShellTorch flaws expose AI servers to code execution attacks

https://www.bleepingcomputer.com/news/security/shelltorch-flaws-expose-ai-servers-to-code-execution-attacks/
ShellTorch flaws expose AI servers to code execution attacks

Android's October 2023 Security Updates Patch Two Exploited Vulnerabilities - SecurityWeek

https://www.securityweek.com/androids-october-2023-update-patches-two-exploited-vulnerabilities/
Android's October 2023 Security Updates Patch Two Exploited Vulnerabilities - SecurityWeek

MalwareBazaar | SHA256 4c4a5c51dc3e8cf6b2a3f6fd54008593002daa180fe73489e93da5e0d152be4f

https://bazaar.abuse.ch/sample/4c4a5c51dc3e8cf6b2a3f6fd54008593002daa180fe73489e93da5e0d152be4f/
MalwareBazaar | SHA256 4c4a5c51dc3e8cf6b2a3f6fd54008593002daa180fe73489e93da5e0d152be4f

Arm Issues Patch for Mali GPU Kernel Driver Vulnerability Amidst Ongoing Exploitation

https://thehackernews.com/2023/10/arm-issues-patch-for-mali-gpu-kernel.html
Arm Issues Patch for Mali GPU Kernel Driver Vulnerability Amidst Ongoing Exploitation

Exploiting the iPhone 4, Part 1: Gaining Entry | Phillip Tennen

https://axleos.com/exploiting-the-iphone-4-part-1-gaining-entry/
Exploiting the iPhone 4, Part 1: Gaining Entry | Phillip Tennen

Cobalt Strike Aggressor Callbacks – Rasta Mouse

https://rastamouse.me/cobalt-strike-aggressor-callbacks/
Cobalt Strike Aggressor Callbacks – Rasta Mouse

Android October security update fixes zero-days exploited in attacks

https://www.bleepingcomputer.com/news/security/android-october-security-update-fixes-zero-days-exploited-in-attacks/
Android October security update fixes zero-days exploited in attacks

Life expectancy in U.S. is falling amid surges in chronic illness - Washington Post

https://www.washingtonpost.com/health/interactive/2023/american-life-expectancy-dropping/
Life expectancy in U.S. is falling amid surges in chronic illness - Washington Post

Motel One Discloses Ransomware Attack Impacting Customer Data - SecurityWeek

https://www.securityweek.com/motel-one-discloses-ransomware-attack-impacting-customer-data/
Motel One Discloses Ransomware Attack Impacting Customer Data - SecurityWeek

APT34 Deploys Phishing Attack With New Malware

https://www.trendmicro.com/en_us/research/23/i/apt34-deploys-phishing-attack-with-new-malware.html
APT34 Deploys Phishing Attack With New Malware

Microsoft Defender no longer flags Tor Browser as malware

https://www.bleepingcomputer.com/news/security/microsoft-defender-no-longer-flags-tor-browser-as-malware/
Microsoft Defender no longer flags Tor Browser as malware

New 'Looney Tunables' Linux bug gives root on major distros

https://www.bleepingcomputer.com/news/security/new-looney-tunables-linux-bug-gives-root-on-major-distros/
New 'Looney Tunables' Linux bug gives root on major distros

European Telecommunications Standards Institute Discloses Data Breach - SecurityWeek

https://www.securityweek.com/european-telecommunications-standards-institute-discloses-data-breach/
European Telecommunications Standards Institute Discloses Data Breach - SecurityWeek