10/24

Okta incident and 1Password | 1Password

https://blog.1password.com/okta-incident/
Okta incident and 1Password | 1Password

okta-incident-report.pdf

https://blog.1password.com/files/okta-incident/okta-incident-report.pdf
okta-incident-report.pdf

Citrix Bleed: Leaking Session Tokens with CVE-2023-4966

https://www.assetnote.io/resources/research/citrix-bleed-leaking-session-tokens-with-cve-2023-4966
Citrix Bleed: Leaking Session Tokens with CVE-2023-4966

Microsoft Exchange Server CVE-2023-36745

https://n1k0la-t.github.io/2023/10/24/Microsoft-Exchange-Server-CVE-2023-36745/
Microsoft Exchange Server CVE-2023-36745

Backdoor Implant on Hacked Cisco Devices Modified to Evade Detection

https://thehackernews.com/2023/10/backdoor-implant-on-hacked-cisco.html
Backdoor Implant on Hacked Cisco Devices Modified to Evade Detection

1Password discloses security incident linked to Okta breach

https://www.bleepingcomputer.com/news/security/1password-discloses-security-incident-linked-to-okta-breach/
1Password discloses security incident linked to Okta breach

iOS Zero-Day Attacks: Experts Uncover Deeper Insights into Operation Triangulation

https://thehackernews.com/2023/10/operation-triangulation-experts-uncover.html
iOS Zero-Day Attacks: Experts Uncover Deeper Insights into Operation Triangulation

1Password Detects Suspicious Activity Following Okta Support Breach

https://thehackernews.com/2023/10/1password-detects-suspicious-activity.html
1Password Detects Suspicious Activity Following Okta Support Breach

Ex-NSA Employee Pleads Guilty to Leaking Classified Data to Russia

https://thehackernews.com/2023/10/ex-nsa-employee-pleads-guilty-to.html
Ex-NSA Employee Pleads Guilty to Leaking Classified Data to Russia

34 Cybercriminals Arrested in Spain for Multi-Million Dollar Online Scams

https://thehackernews.com/2023/10/34-cybercriminals-arrested-in-spain-for.html
34 Cybercriminals Arrested in Spain for Multi-Million Dollar Online Scams

MalwareBazaar | SHA256 303ca1ef12fe63d0110a587290fe896e4d49d34b2cb9ae547a3ff71d0facd39b (ArkeiStealer)

https://bazaar.abuse.ch/sample/303ca1ef12fe63d0110a587290fe896e4d49d34b2cb9ae547a3ff71d0facd39b/
MalwareBazaar | SHA256 303ca1ef12fe63d0110a587290fe896e4d49d34b2cb9ae547a3ff71d0facd39b (ArkeiStealer)

eSentire | Exploiting QR Codes: AiTM Phishing with DadSec PhaaS

https://www.esentire.com/blog/exploiting-qr-codes-aitm-phishing-with-dadsec-phaas
eSentire | Exploiting QR Codes: AiTM Phishing with DadSec PhaaS

Shenetworks: Leveraging Content Creation to Build a Career in Cybersecurity by Phillip Wylie Show

https://anchor.fm/phillip-wylie0/episodes/Shenetworks-Leveraging-Content-Creation-to-Build-a-Career-in-Cybersecurity-e2avnt2
Shenetworks: Leveraging Content Creation to Build a Career in Cybersecurity by Phillip Wylie Show

Cyberattack on health services provider impacts 5 Canadian hospitals

https://www.bleepingcomputer.com/news/security/cyberattack-on-digital-health-provider-impacts-5-canadian-hospitals/
Cyberattack on health services provider impacts 5 Canadian hospitals

Make API Management Less Scary for Your Organization

https://thehackernews.com/2023/10/make-api-management-less-scary-for-your.html
Make API Management Less Scary for Your Organization

VMware warns admins of public exploit for vRealize RCE flaw

https://www.bleepingcomputer.com/news/security/vmware-warns-admins-of-public-exploit-for-vrealize-rce-flaw/
VMware warns admins of public exploit for vRealize RCE flaw

GitHub - decoder-it/TokenStealer

https://github.com/decoder-it/TokenStealer
GitHub - decoder-it/TokenStealer

Casio Says Personal Information Accessed in Web Application Server Hack - SecurityWeek

https://www.securityweek.com/casio-says-personal-information-accessed-in-web-application-server-hack/
Casio Says Personal Information Accessed in Web Application Server Hack - SecurityWeek