11/27

Guidelines-for-secure-AI-system-development.pdf

https://www.ncsc.gov.uk/files/Guidelines-for-secure-AI-system-development.pdf
Guidelines-for-secure-AI-system-development.pdf

Slovenia's largest power provider HSE hit by ransomware attack

https://www.bleepingcomputer.com/news/security/slovenias-largest-power-provider-hse-hit-by-ransomware-attack/
Slovenia's largest power provider HSE hit by ransomware attack

PowerToys/src/common/utils/elevation.h at a090558aad7065b2cfb2892922048e74cb5f546d · microsoft/PowerToys · GitHub

https://github.com/microsoft/PowerToys/blob/a090558aad7065b2cfb2892922048e74cb5f546d/src/common/utils/elevation.h#L355
PowerToys/src/common/utils/elevation.h at a090558aad7065b2cfb2892922048e74cb5f546d · microsoft/PowerToys · GitHub

Call for Papers – ShmooCon

https://www.shmoocon.org/call-for-papers/
Call for Papers – ShmooCon

Experts Uncover Passive Method to Extract Private RSA Keys from SSH Connections

https://thehackernews.com/2023/11/experts-uncover-passive-method-to.html
Experts Uncover Passive Method to Extract Private RSA Keys from SSH Connections

TBHM live

http://tbhmlive.com
TBHM live

Microsoft deprecates Defender Application Guard for Office

https://www.bleepingcomputer.com/news/microsoft/microsoft-deprecates-defender-application-guard-for-office/
Microsoft deprecates Defender Application Guard for Office

VirusTotal - File - 33a57eed92fa4acf1be788ce387d0f6f3804aab316d04bcfe8b43cccaf08bdbf

https://www.virustotal.com/gui/file/33a57eed92fa4acf1be788ce387d0f6f3804aab316d04bcfe8b43cccaf08bdbf
VirusTotal - File - 33a57eed92fa4acf1be788ce387d0f6f3804aab316d04bcfe8b43cccaf08bdbf

Google Drive users angry over losing months of stored data

https://www.bleepingcomputer.com/news/google/google-drive-users-angry-over-losing-months-of-stored-data/
Google Drive users angry over losing months of stored data

U.S., U.K., and Global Partners Release Secure AI System Development Guidelines

https://thehackernews.com/2023/11/us-uk-and-global-partners-release.html
U.S., U.K., and Global Partners Release Secure AI System Development Guidelines

Hackers Hijack Industrial Control System at US Water Utility  - SecurityWeek

https://www.securityweek.com/hackers-hijack-industrial-control-system-at-us-water-utility/
Hackers Hijack Industrial Control System at US Water Utility  - SecurityWeek

MalwareBazaar | SHA256 7b7947d7fd8c49b4d0232c644489f1537dced71858a9fe22b8e4dc171b28b822

https://bazaar.abuse.ch/sample/7b7947d7fd8c49b4d0232c644489f1537dced71858a9fe22b8e4dc171b28b822/
MalwareBazaar | SHA256 7b7947d7fd8c49b4d0232c644489f1537dced71858a9fe22b8e4dc171b28b822

Ardent hospital ERs disrupted in 6 states after ransomware attack

https://www.bleepingcomputer.com/news/security/ardent-hospital-ers-disrupted-in-6-states-after-ransomware-attack/
Ardent hospital ERs disrupted in 6 states after ransomware attack

Insomni'hack 2024 :: pretalx

https://cfp.insomnihack.ch/inso24/cfp
Insomni'hack 2024 :: pretalx

PoC for Splunk Enterprise RCE flaw released (CVE-2023-46214) - Help Net Security

https://www.helpnetsecurity.com/2023/11/27/cve-2023-46214-poc/
PoC for Splunk Enterprise RCE flaw released (CVE-2023-46214) - Help Net Security

Ransomware ‘catastrophe’ at Fidelity National Financial causes panic with homeowners and buyers | TechCrunch

https://techcrunch.com/2023/11/27/ransomware-catastrophe-at-fidelity-national-financial-causes-panic-with-homeowners-and-buyers/
Ransomware ‘catastrophe’ at Fidelity National Financial causes panic with homeowners and buyers | TechCrunch

Ukraine says it hacked Russian aviation agency, leaks data

https://www.bleepingcomputer.com/news/security/ukraine-says-it-hacked-russian-aviation-agency-leaks-data/
Ukraine says it hacked Russian aviation agency, leaks data

The hack of MSP provider CTS potentially impacted hundreds of UK law firms

https://securityaffairs.com/154807/hacking/cts-suffered-cyber-attack.html
The hack of MSP provider CTS potentially impacted hundreds of UK law firms

Vulnerability disclosure: Legal risks and ethical considerations for researchers - Help Net Security

https://www.helpnetsecurity.com/2023/11/27/eddie-zhang-project-black-vulnerability-disclosure/
Vulnerability disclosure: Legal risks and ethical considerations for researchers - Help Net Security

Browsers' cache smuggling // WhiteFlag

https://blog.whiteflag.io/blog/browser-cache-smuggling/
Browsers' cache smuggling // WhiteFlag

UK, Korea Warn of DPRK Supply Chain Attacks Involving Zero-Day Flaws - SecurityWeek

https://www.securityweek.com/uk-korea-warn-of-dprk-supply-chain-attacks-involving-zero-day-flaws/
UK, Korea Warn of DPRK Supply Chain Attacks Involving Zero-Day Flaws - SecurityWeek

TrustedSec Impede

https://impede.ai
TrustedSec Impede

New Rust-based SysJoker backdoor linked to Hamas hackers

https://www.bleepingcomputer.com/news/security/new-rust-based-sysjoker-backdoor-linked-to-hamas-hackers/
New Rust-based SysJoker backdoor linked to Hamas hackers

Pentagon’s AI Initiatives Accelerate Hard Decisions on Lethal Autonomous Weapons - SecurityWeek

https://www.securityweek.com/pentagons-ai-initiatives-accelerate-hard-decisions-on-lethal-autonomous-weapons/
Pentagon’s AI Initiatives Accelerate Hard Decisions on Lethal Autonomous Weapons - SecurityWeek