01/05

Russian Hackers Had Covert Access to Ukraine's Telecom Giant for Months

https://thehackernews.com/2024/01/russian-hackers-had-covert-access-to.html
Russian Hackers Had Covert Access to Ukraine's Telecom Giant for Months

GTFONow: Automatic privilege escalation for misconfigured capabilities, sudo and suid binaries

https://securityonline.info/gtfonow-automatic-privilege-escalation-for-misconfigured-capabilities-sudo-and-suid-binaries/
GTFONow: Automatic privilege escalation for misconfigured capabilities, sudo and suid binaries

New Bandook RAT Variant Resurfaces, Targeting Windows Machines

https://thehackernews.com/2024/01/new-bandook-rat-variant-resurfaces.html
New Bandook RAT Variant Resurfaces, Targeting Windows Machines

SpectralBlur: New macOS Backdoor Threat from North Korean Hackers

https://thehackernews.com/2024/01/spectralblur-new-macos-backdoor-threat.html
SpectralBlur: New macOS Backdoor Threat from North Korean Hackers

JSAC2024 - Time Table -

https://jsac.jpcert.or.jp/timetable.html
JSAC2024 - Time Table -

Crypto wallet founder loses $125,000 to fake airdrop website

https://www.bleepingcomputer.com/news/security/crypto-wallet-founder-loses-125-000-to-fake-airdrop-website/
Crypto wallet founder loses $125,000 to fake airdrop website

Alert: Ivanti Releases Patch for Critical Vulnerability in Endpoint Manager Solution

https://thehackernews.com/2024/01/alert-ivanti-releases-patch-for.html
Alert: Ivanti Releases Patch for Critical Vulnerability in Endpoint Manager Solution

Russian hackers wiped thousands of systems in KyivStar attack

https://www.bleepingcomputer.com/news/security/russian-hackers-wiped-thousands-of-systems-in-kyivstar-attack/
Russian hackers wiped thousands of systems in KyivStar attack

Ransomchats Viewer

http://ransomch.at
Ransomchats Viewer

Internal All The Things

https://swisskyrepo.github.io/InternalAllTheThings/
Internal All The Things

Orange Spain Faces BGP Traffic Hijack After RIPE Account Hacked by Malware

https://thehackernews.com/2024/01/orange-spain-faces-bgp-traffic-hijack.html
Orange Spain Faces BGP Traffic Hijack After RIPE Account Hacked by Malware

BreachForums admin jailed again for using a VPN, unmonitored PC

https://www.bleepingcomputer.com/news/security/breachforums-admin-jailed-again-for-using-a-vpn-unmonitored-pc/
BreachForums admin jailed again for using a VPN, unmonitored PC

Memorial University recovers from cyberattack, delays semester start

https://www.bleepingcomputer.com/news/security/memorial-university-recovers-from-cyberattack-delays-semester-start/
Memorial University recovers from cyberattack, delays semester start

Web3 security firm CertiK's X account hacked to push crypto drainer

https://www.bleepingcomputer.com/news/security/web3-security-firm-certiks-x-account-hacked-to-push-crypto-drainer/
Web3 security firm CertiK's X account hacked to push crypto drainer

US charged 19 suspects linked to xDedic cybercrime marketplace

https://www.bleepingcomputer.com/news/security/us-charged-19-suspects-linked-to-xdedic-cybercrime-marketplace/
US charged 19 suspects linked to xDedic cybercrime marketplace

Russia Hacked Residential Cameras in Ukraine to Spy on Air Defense, Critical Infrastructure - SecurityWeek

https://www.securityweek.com/russia-hacked-residential-cameras-in-ukraine-to-spy-on-air-defense-critical-infrastructure/
Russia Hacked Residential Cameras in Ukraine to Spy on Air Defense, Critical Infrastructure - SecurityWeek

Hackers target Apache RocketMQ servers vulnerable to RCE attacks

https://www.bleepingcomputer.com/news/security/hackers-target-apache-rocketmq-servers-vulnerable-to-rce-attacks/
Hackers target Apache RocketMQ servers vulnerable to RCE attacks

MyEstatePoint Property Search Android app leaks user passwords

https://securityaffairs.com/156939/security/myestatepoint-property-search-android-app-leaks-user-passwords.html
MyEstatePoint Property Search Android app leaks user passwords

GitHub - tothi/pwn-hisilicon-dvr at 42d8325e68fdb075fe27df8a269932f9fa9601a6

https://github.com/tothi/pwn-hisilicon-dvr/tree/42d8325e68fdb075fe27df8a269932f9fa9601a6
GitHub - tothi/pwn-hisilicon-dvr at 42d8325e68fdb075fe27df8a269932f9fa9601a6

Danny Adamitis on an 'unkillable' router botnet used by Chinese .gov hackers - Security Conversations

https://securityconversations.com/episode/danny-adamitis-on-an-unkillable-router-botnet-used-by-chinese-gov-hackers/
Danny Adamitis on an 'unkillable' router botnet used by Chinese .gov hackers - Security Conversations

PoC released for Microsoft WordPad CVE-2023-36563 flaw exploited in attacks

https://securityonline.info/poc-released-for-microsoft-wordpad-cve-2023-36563-flaw-exploited-in-attacks/
PoC released for Microsoft WordPad CVE-2023-36563 flaw exploited in attacks

Ivanti Patches Critical Vulnerability in Endpoint Manager - SecurityWeek

https://www.securityweek.com/ivanti-patches-critical-vulnerability-in-endpoint-manager/
Ivanti Patches Critical Vulnerability in Endpoint Manager - SecurityWeek

VirusTotal - File - 15ce7d3c879975ca81777cf58f47409283e34ec1fe8e966fde608bc7eda16646

https://www.virustotal.com/gui/file/15ce7d3c879975ca81777cf58f47409283e34ec1fe8e966fde608bc7eda16646
VirusTotal - File - 15ce7d3c879975ca81777cf58f47409283e34ec1fe8e966fde608bc7eda16646

Same-Origin Cross-Context Scripting - Speaker Deck

https://speakerdeck.com/shhnjk/same-origin-cross-context-scripting
Same-Origin Cross-Context Scripting - Speaker Deck

Technical Details of CVE-2023-30990 - Unauthenticated RCE in IBM i DDM Service - Silent Signal Techblog

https://blog.silentsignal.eu/2023/07/03/ibm-i-dde-vulnerability-cve-2023-30990/
Technical Details of CVE-2023-30990 - Unauthenticated RCE in IBM i DDM Service - Silent Signal Techblog

Nigerian Arrested, Charged in $7.5 Million BEC Scheme Targeting US Charities - SecurityWeek

https://www.securityweek.com/nigerian-arrested-charged-in-7-5-million-bec-scheme-targeting-us-charities/
Nigerian Arrested, Charged in $7.5 Million BEC Scheme Targeting US Charities - SecurityWeek

US Says 19 People Charged Following 2019 Takedown of xDedic Cybercrime Marketplace - SecurityWeek

https://www.securityweek.com/us-says-19-people-charged-following-2019-takedown-of-xdedic-cybercrime-marketplace/
US Says 19 People Charged Following 2019 Takedown of xDedic Cybercrime Marketplace - SecurityWeek

Ivanti warns critical EPM bug lets hackers hijack enrolled devices

https://www.bleepingcomputer.com/news/security/ivanti-warns-critical-epm-bug-lets-hackers-hijack-enrolled-devices/
Ivanti warns critical EPM bug lets hackers hijack enrolled devices

New 'SpectralBlur' macOS Backdoor Linked to North Korea - SecurityWeek

https://www.securityweek.com/new-spectralblur-macos-backdoor-linked-to-north-korea/
New 'SpectralBlur' macOS Backdoor Linked to North Korea - SecurityWeek

The Week in Ransomware - January 5th 2024 - Secret decryptors

https://www.bleepingcomputer.com/news/security/the-week-in-ransomware-january-5th-2024-secret-decryptors/
The Week in Ransomware - January 5th 2024 - Secret decryptors