10/04

2023 Microsoft Office XSS

https://blog.pksecurity.io/2023/10/04/microsoft-office.html
2023 Microsoft Office XSS

Sony confirms data breach impacting thousands in the U.S.

https://www.bleepingcomputer.com/news/security/sony-confirms-data-breach-impacting-thousands-in-the-us/
Sony confirms data breach impacting thousands in the U.S.

Apple Warns of Newly Exploited iOS 17 Kernel Zero-Day - SecurityWeek

https://www.securityweek.com/apple-warns-of-newly-exploited-ios-17-kernel-zero-day/
Apple Warns of Newly Exploited iOS 17 Kernel Zero-Day - SecurityWeek

Researchers Link DragonEgg Android Spyware to LightSpy iOS Surveillanceware

https://thehackernews.com/2023/10/researchers-link-dragonegg-android.html
Researchers Link DragonEgg Android Spyware to LightSpy iOS Surveillanceware

GitHub - leesh3288/CVE-2023-4911: PoC for CVE-2023-4911

https://github.com/leesh3288/CVE-2023-4911
GitHub - leesh3288/CVE-2023-4911: PoC for CVE-2023-4911

Microsoft Warns of Cyber Attacks Attempting to Breach Cloud via SQL Server Instance

https://thehackernews.com/2023/10/microsoft-warns-of-cyber-attacks.html
Microsoft Warns of Cyber Attacks Attempting to Breach Cloud via SQL Server Instance

Qualcomm Patches 3 Zero-Days Reported by Google - SecurityWeek

https://www.securityweek.com/qualcomm-patches-3-zero-days-reported-by-google/
Qualcomm Patches 3 Zero-Days Reported by Google - SecurityWeek

Looney Tunables: New Linux Flaw Enables Privilege Escalation on Major Distributions

https://thehackernews.com/2023/10/looney-tunables-new-linux-flaw-enables.html
Looney Tunables: New Linux Flaw Enables Privilege Escalation on Major Distributions

Rogue npm Package Deploys Open-Source Rootkit in New Supply Chain Attack

https://thehackernews.com/2023/10/rogue-npm-package-deploys-open-source.html
Rogue npm Package Deploys Open-Source Rootkit in New Supply Chain Attack

CYBERWARCON

https://www.cyberwarcon.com
CYBERWARCON

Atlassian patches critical Confluence zero-day exploited in attacks

https://www.bleepingcomputer.com/news/security/atlassian-patches-critical-confluence-zero-day-exploited-in-attacks/
Atlassian patches critical Confluence zero-day exploited in attacks

New 'Looney Tunables' Linux bug gives root on major distros

https://www.bleepingcomputer.com/news/security/new-looney-tunables-linux-bug-gives-root-on-major-distros/
New 'Looney Tunables' Linux bug gives root on major distros

Cisco fixes hard-coded root credentials in Emergency Responder

https://www.bleepingcomputer.com/news/security/cisco-fixes-hard-coded-root-credentials-in-emergency-responder/
Cisco fixes hard-coded root credentials in Emergency Responder

Hosts Search - Censys

https://search.censys.io/search?resource=hosts&sort=RELEVANCE&per_page=25&virtual_hosts=EXCLUDE&q=services.software.product%3A+poshc2
Hosts Search - Censys

Apple emergency update fixes new zero-day used to hack iPhones

https://www.bleepingcomputer.com/news/apple/apple-emergency-update-fixes-new-zero-day-used-to-hack-iphones/
Apple emergency update fixes new zero-day used to hack iPhones

Microsoft: Hackers target Azure cloud VMs via breached SQL servers

https://www.bleepingcomputer.com/news/security/microsoft-hackers-target-azure-cloud-vms-via-breached-sql-servers/
Microsoft: Hackers target Azure cloud VMs via breached SQL servers

IBM Careers - Find your next job

https://www.ibm.com/careers/us-en/search/?search=x-force&filters=primary_country%3ACA%2Cprimary_country%3AUS
IBM Careers - Find your next job

Atlassian Ships Urgent Patch for Exploited Confluence Zero-Day - SecurityWeek

https://www.securityweek.com/atlassian-ships-urgent-patch-for-exploited-confluence-zero-day/
Atlassian Ships Urgent Patch for Exploited Confluence Zero-Day - SecurityWeek

Researchers warn of 100,000 industrial control systems exposed online

https://www.bleepingcomputer.com/news/security/researchers-warn-of-100-000-industrial-control-systems-exposed-online/
Researchers warn of 100,000 industrial control systems exposed online

Emergency alert on US phones and TVs today — Don’t worry, it’s just a test

https://www.bleepingcomputer.com/news/technology/emergency-alert-on-us-phones-and-tvs-today-dont-worry-its-just-a-test/
Emergency alert on US phones and TVs today — Don’t worry, it’s just a test

Vedavyasan S (ved4vyasan) on LinkedIn: #apple #blind_xss #cybersecurity #bughunting #bugbounty #bugbountytips… | 11 comments

https://www.linkedin.com/posts/vedavyasan-s-ved4vyasan-a9825b228_apple-blindabrxss-cybersecurity-activity-7115175276111659008-Sv29
Vedavyasan S (ved4vyasan) on LinkedIn: #apple #blind_xss #cybersecurity #bughunting #bugbounty #bugbountytips… | 11 comments

The Shadowserver Foundation

http://shadowserver.org
The Shadowserver Foundation

A cyberattack disrupted Lyca Mobile services

https://securityaffairs.com/151945/hacking/cyberattack-hit-lyca-mobile.html
A cyberattack disrupted Lyca Mobile services