01/10

GitHub - DissectMalware/yaradbg-frontend

https://github.com/DissectMalware/yaradbg-frontend
GitHub - DissectMalware/yaradbg-frontend

Microsoft's January 2024 Windows Update Patches 48 New Vulnerabilities

https://thehackernews.com/2024/01/microsofts-january-2024-windows-update.html
Microsoft's January 2024 Windows Update Patches 48 New Vulnerabilities

Free Decryptor Released for Black Basta and Babuk's Tortilla Ransomware Victims

https://thehackernews.com/2024/01/free-decryptor-released-for-black-basta.html
Free Decryptor Released for Black Basta and Babuk's Tortilla Ransomware Victims

NoaBot: Latest Mirai-Based Botnet Targeting SSH Servers for Crypto Mining

https://thehackernews.com/2024/01/noabot-latest-mirai-based-botnet.html
NoaBot: Latest Mirai-Based Botnet Targeting SSH Servers for Crypto Mining

Ivanti warns of Connect Secure zero-days exploited in attacks

https://www.bleepingcomputer.com/news/security/ivanti-warns-of-connect-secure-zero-days-exploited-in-attacks/
Ivanti warns of Connect Secure zero-days exploited in attacks

FTC Bans Outlogic (X-Mode) From Selling Sensitive Location Data

https://thehackernews.com/2024/01/ftc-bans-outlogic-x-mode-from-selling.html
FTC Bans Outlogic (X-Mode) From Selling Sensitive Location Data

China claims it cracked Apple's AirDrop to find numbers, email addresses

https://www.bleepingcomputer.com/news/security/china-claims-it-cracked-apples-airdrop-to-find-numbers-email-addresses/
China claims it cracked Apple's AirDrop to find numbers, email addresses

Unauthenticated RCE in Adobe Coldfusion - CVE-2023-26360

https://blog.securelayer7.net/unauthorized-rce-in-adobe-coldfusion/
Unauthenticated RCE in Adobe Coldfusion - CVE-2023-26360

Windows Internals for Security Engineers | OffensiveCon

https://www.offensivecon.org/trainings/2024/windows-internals-for-security-engineers.html
Windows Internals for Security Engineers | OffensiveCon

Full Stack Web Attack (Java and C# Edition) | OffensiveCon

https://www.offensivecon.org/trainings/2024/full-stack-web-attack-java-edition.html
Full Stack Web Attack (Java and C# Edition) | OffensiveCon

Det. Eng. Weekly #53 - 🏃 Run it back

https://www.detectionengineering.net/p/det-eng-weekly-53-run-it-back
Det. Eng. Weekly #53 - 🏃 Run it back

OffensiveCon24 :: pretalx

https://cfp.offensivecon.org/offensivecon24/cfp
OffensiveCon24 :: pretalx

CVE-2023-41056: Redis Remote Code Execution Vulnerability

https://securityonline.info/cve-2023-41056-redis-remote-code-execution-vulnerability/
CVE-2023-41056: Redis Remote Code Execution Vulnerability

Entire population of Brazil possibly exposed in massive data leak

https://securityaffairs.com/157203/security/entire-population-of-brazil-possibly-exposed-in-massive-data-leak.html
Entire population of Brazil possibly exposed in massive data leak

Cisco says critical Unity Connection bug lets attackers get root

https://www.bleepingcomputer.com/news/security/cisco-says-critical-unity-connection-bug-lets-attackers-get-root/
Cisco says critical Unity Connection bug lets attackers get root

Decryptor for Tortilla variant of Babuk ransomware released

https://securityaffairs.com/157214/cyber-crime/tortilla-variant-babuk-ransomware-decryptor.html
Decryptor for Tortilla variant of Babuk ransomware released

Hackers target Microsoft SQL servers in Mimic ransomware attacks

https://www.bleepingcomputer.com/news/security/hackers-target-microsoft-sql-servers-in-mimic-ransomware-attacks/
Hackers target Microsoft SQL servers in Mimic ransomware attacks

Kyocera Device Manager Vulnerability Exposes Enterprise Credentials - SecurityWeek

https://www.securityweek.com/kyocera-device-manager-vulnerability-exposes-enterprise-credentials/
Kyocera Device Manager Vulnerability Exposes Enterprise Credentials - SecurityWeek

US SEC’s X account hacked to announce fake Bitcoin ETF approval

https://www.bleepingcomputer.com/news/security/us-secs-x-account-hacked-to-announce-fake-bitcoin-etf-approval/
US SEC’s X account hacked to announce fake Bitcoin ETF approval

Here’s Some Bitcoin: Oh, and You’ve Been Served! – Krebs on Security

https://krebsonsecurity.com/2024/01/heres-some-bitcoin-oh-and-youve-been-served/
Here’s Some Bitcoin: Oh, and You’ve Been Served! – Krebs on Security

Android's January 2024 Security Update Patches 58 Vulnerabilities - SecurityWeek

https://www.securityweek.com/androids-january-2024-security-update-patches-58-vulnerabilities/
Android's January 2024 Security Update Patches 58 Vulnerabilities - SecurityWeek

Stealing the Bitlocker key from a TPM – Systems Research

https://astralvx.com/stealing-the-bitlocker-key-from-a-tpm/
Stealing the Bitlocker key from a TPM – Systems Research

司法鉴定:司法鉴定揭开“隔空投送”匿名传输的神秘面纱

https://sfj.beijing.gov.cn/sfj/sfdt/ywdt82/flfw93/436331732/index.html
司法鉴定:司法鉴定揭开“隔空投送”匿名传输的神秘面纱

SAP's First Patches of 2024 Resolve Critical Vulnerabilities - SecurityWeek

https://www.securityweek.com/saps-first-patches-of-2024-resolve-critical-vulnerabilities/
SAP's First Patches of 2024 Resolve Critical Vulnerabilities - SecurityWeek

Ransomware victims targeted by fake hack-back offers

https://www.bleepingcomputer.com/news/security/ransomware-victims-targeted-by-fake-hack-back-offers/
Ransomware victims targeted by fake hack-back offers