Zero-Day Alert: Apple Rolls Out iOS, macOS, and Safari Patches for 2 Actively Exploited Flaws
https://thehackernews.com/2023/12/zero-day-alert-apple-rolls-out-ios.html
LogoFAIL bugs in UEFI code allow planting bootkits via images
https://www.bleepingcomputer.com/news/security/logofail-bugs-in-uefi-code-allow-planting-bootkits-via-images/
Zyxel Releases Patches to Fix 15 Flaws in NAS, Firewall, and AP Devices
https://thehackernews.com/2023/12/zyxel-releases-patches-to-fix-15-flaws.html
Chinese Hackers Using SugarGh0st RAT to Target South Korea and Uzbekistan
https://thehackernews.com/2023/12/chinese-hackers-using-sugargh0st-rat-to.html
exploit_reversing_01-1.pdf
https://exploitreversing.files.wordpress.com/2023/04/exploit_reversing_01-1.pdf
U.S. Treasury Sanctions North Korean Kimsuky Hackers and 8 Foreign-Based Agents
https://thehackernews.com/2023/12/us-treasury-sanctions-north-korean.html
Treasury Targets DPRK’s International Agents and Illicit Cyber Intrusion Group | U.S. Department of the Treasury
https://home.treasury.gov/news/press-releases/jy1938
WhatsApp's New Secret Code Feature Lets Users Protect Private Chats with Password
https://thehackernews.com/2023/12/whatsapps-new-secret-code-feature-lets.html
New FjordPhantom Android Malware Targets Banking Apps in Southeast Asia
https://thehackernews.com/2023/12/new-fjordphantom-android-malware.html
Hackers use new Agent Raccoon malware to backdoor US targets
https://www.bleepingcomputer.com/news/security/hackers-use-new-agent-raccoon-malware-to-backdoor-us-targets/
French government recommends against using foreign chat apps
https://www.bleepingcomputer.com/news/security/french-government-recommends-against-using-foreign-chat-apps/
We Hacked Ourselves With DNS Rebinding
https://www.intruder.io/research/we-hacked-ourselves-with-dns-rebinding
GitHub - Sentinel-One/peafl64: Static Binary Instrumentation tool for Windows x64 executables
https://github.com/Sentinel-One/peafl64
UEFI exploit ‘worse than BlackLotus’ pwns PCs using images • The Register
https://go.theregister.com/feed/www.theregister.com/2023/12/01/uefi_image_parser_flaws/
TrickBot malware dev pleads guilty, faces 35 years in prison
https://www.bleepingcomputer.com/news/security/trickbot-malware-dev-pleads-guilty-faces-35-years-in-prison/

CVE-2023-49103: Critical Information Disclosure in ownCloud Graph API | Rapid7 Blog
https://www.rapid7.com/blog/post/2023/12/01/etr-cve-2023-49103-critical-information-disclosure-in-owncloud-graph-api/