12/01

Zero-Day Alert: Apple Rolls Out iOS, macOS, and Safari Patches for 2 Actively Exploited Flaws

https://thehackernews.com/2023/12/zero-day-alert-apple-rolls-out-ios.html
Zero-Day Alert: Apple Rolls Out iOS, macOS, and Safari Patches for 2 Actively Exploited Flaws

LogoFAIL bugs in UEFI code allow planting bootkits via images

https://www.bleepingcomputer.com/news/security/logofail-bugs-in-uefi-code-allow-planting-bootkits-via-images/
LogoFAIL bugs in UEFI code allow planting bootkits via images

Zyxel Releases Patches to Fix 15 Flaws in NAS, Firewall, and AP Devices

https://thehackernews.com/2023/12/zyxel-releases-patches-to-fix-15-flaws.html
Zyxel Releases Patches to Fix 15 Flaws in NAS, Firewall, and AP Devices

Chinese Hackers Using SugarGh0st RAT to Target South Korea and Uzbekistan

https://thehackernews.com/2023/12/chinese-hackers-using-sugargh0st-rat-to.html
Chinese Hackers Using SugarGh0st RAT to Target South Korea and Uzbekistan

exploit_reversing_01-1.pdf

https://exploitreversing.files.wordpress.com/2023/04/exploit_reversing_01-1.pdf
exploit_reversing_01-1.pdf

U.S. Treasury Sanctions North Korean Kimsuky Hackers and 8 Foreign-Based Agents

https://thehackernews.com/2023/12/us-treasury-sanctions-north-korean.html
U.S. Treasury Sanctions North Korean Kimsuky Hackers and 8 Foreign-Based Agents

WhatsApp's New Secret Code Feature Lets Users Protect Private Chats with Password

https://thehackernews.com/2023/12/whatsapps-new-secret-code-feature-lets.html
WhatsApp's New Secret Code Feature Lets Users Protect Private Chats with Password

New FjordPhantom Android Malware Targets Banking Apps in Southeast Asia

https://thehackernews.com/2023/12/new-fjordphantom-android-malware.html
New FjordPhantom Android Malware Targets Banking Apps in Southeast Asia

Hackers use new Agent Raccoon malware to backdoor US targets

https://www.bleepingcomputer.com/news/security/hackers-use-new-agent-raccoon-malware-to-backdoor-us-targets/
Hackers use new Agent Raccoon malware to backdoor US targets

French government recommends against using foreign chat apps

https://www.bleepingcomputer.com/news/security/french-government-recommends-against-using-foreign-chat-apps/
French government recommends against using foreign chat apps

We Hacked Ourselves With DNS Rebinding

https://www.intruder.io/research/we-hacked-ourselves-with-dns-rebinding
We Hacked Ourselves With DNS Rebinding

UEFI exploit ‘worse than BlackLotus’ pwns PCs using images • The Register

https://go.theregister.com/feed/www.theregister.com/2023/12/01/uefi_image_parser_flaws/
UEFI exploit ‘worse than BlackLotus’ pwns PCs using images • The Register

TrickBot malware dev pleads guilty, faces 35 years in prison

https://www.bleepingcomputer.com/news/security/trickbot-malware-dev-pleads-guilty-faces-35-years-in-prison/
TrickBot malware dev pleads guilty, faces 35 years in prison

CVE-2023-49103: Critical Information Disclosure in ownCloud Graph API | Rapid7 Blog

https://www.rapid7.com/blog/post/2023/12/01/etr-cve-2023-49103-critical-information-disclosure-in-owncloud-graph-api/
CVE-2023-49103: Critical Information Disclosure in ownCloud Graph API | Rapid7 Blog