01/12

GitHub - Wh04m1001/CVE-2024-20656

https://github.com/Wh04m1001/CVE-2024-20656
GitHub - Wh04m1001/CVE-2024-20656

CVE-2024-20656 - Local Privilege Escalation in the VSStandardCollectorService150 Service - MDSec

https://www.mdsec.co.uk/2024/01/cve-2024-20656-local-privilege-escalation-in-vsstandardcollectorservice150-service/
CVE-2024-20656 - Local Privilege Escalation in the VSStandardCollectorService150 Service - MDSec

Juniper warns of critical RCE bug in its firewalls and switches

https://www.bleepingcomputer.com/news/security/juniper-warns-of-critical-rce-bug-in-its-firewalls-and-switches/
Juniper warns of critical RCE bug in its firewalls and switches

Cryptominers Targeting Misconfigured Apache Hadoop and Flink with Rootkit in New Attacks

https://thehackernews.com/2024/01/cryptominers-targeting-misconfigured.html
Cryptominers Targeting Misconfigured Apache Hadoop and Flink with Rootkit in New Attacks

Medusa Ransomware on the Rise: From Data Leaks to Multi-Extortion

https://thehackernews.com/2024/01/medusa-ransomware-on-rise-from-data.html
Medusa Ransomware on the Rise: From Data Leaks to Multi-Extortion

Act Now: CISA Flags Active Exploitation of Microsoft SharePoint Vulnerability

https://thehackernews.com/2024/01/act-now-cisa-flags-active-exploitation.html
Act Now: CISA Flags Active Exploitation of Microsoft SharePoint Vulnerability

Malware Used in Ivanti Zero-Day Attacks Shows Hackers Preparing for Patch Rollout - SecurityWeek

https://www.securityweek.com/malware-used-in-ivanti-zero-day-attacks-shows-hackers-preparing-for-patch-rollout/
Malware Used in Ivanti Zero-Day Attacks Shows Hackers Preparing for Patch Rollout - SecurityWeek

yararules/files/crime_noabot.yara at master · craiu/yararules · GitHub

https://github.com/craiu/yararules/blob/master/files/crime_noabot.yara
yararules/files/crime_noabot.yara at master · craiu/yararules · GitHub

Major T-Mobile outage takes down account access, mobile app

https://www.bleepingcomputer.com/news/technology/major-t-mobile-outage-takes-down-account-access-mobile-app/
Major T-Mobile outage takes down account access, mobile app

PSBits/Misc/DPAPI_BLOB.bt at master · gtworek/PSBits · GitHub

https://github.com/gtworek/PSBits/blob/master/Misc/DPAPI_BLOB.bt
PSBits/Misc/DPAPI_BLOB.bt at master · gtworek/PSBits · GitHub

Team Liquid ’s wiki leak exposes 118K users

https://securityaffairs.com/157331/security/team-liquid-s-wiki-leak-exposes-118k-users.html
Team Liquid ’s wiki leak exposes 118K users

CISA: Critical Microsoft SharePoint bug now actively exploited

https://www.bleepingcomputer.com/news/security/cisa-critical-microsoft-sharepoint-bug-now-actively-exploited/
CISA: Critical Microsoft SharePoint bug now actively exploited

Urgent: GitLab Releases Patch for Critical Vulnerabilities - Update ASAP

https://thehackernews.com/2024/01/urgent-gitlab-releases-patch-for.html
Urgent: GitLab Releases Patch for Critical Vulnerabilities - Update ASAP

Experts created a PoC for Apache OFBiz flaw CVE-2023-51467

https://securityaffairs.com/157339/hacking/apache-ofbiz-poc-exploit.html
Experts created a PoC for Apache OFBiz flaw CVE-2023-51467

Nation-State Actors Weaponize Ivanti VPN Zero-Days, Deploying 5 Malware Families

https://thehackernews.com/2024/01/nation-state-actors-weaponize-ivanti.html
Nation-State Actors Weaponize Ivanti VPN Zero-Days, Deploying 5 Malware Families

Security BSides London - YouTube

https://www.youtube.com/@SecuritybsidesOrgUk/playlists
Security BSides London - YouTube

Rimasuta New Variant Switches to ChaCha20 Encryption Algorithm

https://blog.xlab.qianxin.com/rimasuta-new-variant-switches-to-chacha20-encryption-en/
Rimasuta New Variant Switches to ChaCha20 Encryption Algorithm

GitLab Critical Security Release: 16.7.2, 16.6.4, 16.5.6 | GitLab

https://about.gitlab.com/releases/2024/01/11/critical-security-release-gitlab-16-7-2-released/
GitLab Critical Security Release: 16.7.2, 16.6.4, 16.5.6 | GitLab

Streams – ShmooCon

https://www.shmoocon.org/streams
Streams – ShmooCon

Hundreds of Thousands of Dollars Worth of Solana Cryptocurrency Assets Stolen in Recent CLINKSINK Drainer Campaigns | Mandiant

https://www.mandiant.com/resources/blog/solana-cryptocurrency-stolen-clinksink-drainer-campaigns
Hundreds of Thousands of Dollars Worth of Solana Cryptocurrency Assets Stolen in Recent CLINKSINK Drainer Campaigns | Mandiant

Russian Hackers Likely Not Involved in Attacks on Denmark's Critical Infrastructure - SecurityWeek

https://www.securityweek.com/russian-hackers-likely-not-involved-in-attacks-on-denmarks-critical-infrastructure/
Russian Hackers Likely Not Involved in Attacks on Denmark's Critical Infrastructure - SecurityWeek

eSentire | WorkersDevBackdoor Delivered via Malvertising

https://www.esentire.com/blog/workersdevbackdoor-delivered-via-malvertising
eSentire | WorkersDevBackdoor Delivered via Malvertising

Apple Patches Keystroke Injection Vulnerability in Magic Keyboard - SecurityWeek

https://www.securityweek.com/apple-patches-keystroke-injection-vulnerability-in-magic-keyboard/
Apple Patches Keystroke Injection Vulnerability in Magic Keyboard - SecurityWeek

Ivanti Connect Secure zero-days exploited to deploy custom malware

https://www.bleepingcomputer.com/news/security/ivanti-connect-secure-zero-days-exploited-to-deploy-custom-malware/
Ivanti Connect Secure zero-days exploited to deploy custom malware

New Class of CI/CD Attacks Could Have Led to PyTorch Supply Chain Compromise - SecurityWeek

https://www.securityweek.com/new-class-of-ci-cd-attacks-could-have-led-to-pytorch-supply-chain-compromise/
New Class of CI/CD Attacks Could Have Led to PyTorch Supply Chain Compromise - SecurityWeek

Over 150k WordPress sites at takeover risk via vulnerable plugin

https://www.bleepingcomputer.com/news/security/over-150k-wordpress-sites-at-takeover-risk-via-vulnerable-plugin/
Over 150k WordPress sites at takeover risk via vulnerable plugin

GitLab warns of critical zero-click account hijacking vulnerability

https://www.bleepingcomputer.com/news/security/gitlab-warns-of-critical-zero-click-account-hijacking-vulnerability/
GitLab warns of critical zero-click account hijacking vulnerability

Search - urlscan.io

https://urlscan.io/search/#domain:%22ontopothers.com%22
Search - urlscan.io

CISA: Critical SharePoint vuln is under active exploitation • The Register

https://go.theregister.com/feed/www.theregister.com/2024/01/12/microsoft_sharepoint_vuln_exploit/
CISA: Critical SharePoint vuln is under active exploitation • The Register

IPFuscator

https://vysecurity.github.io/
IPFuscator