Hunting down the HVCI bug in UEFI | Satoshi’s notes
https://tandasat.github.io/blog/2024/01/15/CVE-2024-21305.html
Reversing and Tooling a Signed Request Hash in Obfuscated JavaScript | Brett Buerhaus
https://buer.haus/2024/01/16/reversing-and-tooling-a-signed-request-hash-in-obfuscated-javascript/
GitHub Rotates Keys After High-Severity Vulnerability Exposes Credentials
https://thehackernews.com/2024/01/github-rotates-keys-after-high-severity.html
Malware Analysis - Decoding Powershell Scripts and .NET Malware (Xworm) - YouTube
https://youtu.be/4d1324D0It4?feature=shared
GitHub - jstrosch/malware-samples: Malware samples, analysis exercises and other interesting resources.
https://github.com/jstrosch/malware-samples
Feds Warn of AndroxGh0st Botnet Targeting AWS, Azure, and Office 365 Credentials
https://thehackernews.com/2024/01/feds-warn-of-androxgh0st-botnet.html
New iShutdown Method Exposes Hidden Spyware Like Pegasus on Your iPhone
https://thehackernews.com/2024/01/new-ishutdown-method-exposes-hidden.html
SANS Security East New Orleans 2024 | Cyber Security Training
https://www.sans.org/u/1u9o
PAX PoS Terminal Flaw Could Allow Attackers to Tamper with Transactions
https://thehackernews.com/2024/01/pax-pos-terminal-flaw-could-allow.html
Citrix Warns NetScaler ADC Customers of New Zero-Day Exploitation - SecurityWeek
https://www.securityweek.com/citrix-warns-netscaler-adc-customers-of-new-zero-day-exploitation/
Dark web threats and dark market predictions for 2024 | Securelist
https://securelist.com/darknet-predictions-for-2024/111763/
Zero-Day Alert: Update Chrome Now to Fix New Actively Exploited Vulnerability
https://thehackernews.com/2024/01/zero-day-alert-update-chrome-now-to-fix.html
AMD, Apple, Qualcomm GPUs leak AI data in LeftoverLocals attacks
https://www.bleepingcomputer.com/news/security/amd-apple-qualcomm-gpus-leak-ai-data-in-leftoverlocals-attacks/
Citrix, VMware, and Atlassian Hit with Critical Flaws — Patch ASAP!
https://thehackernews.com/2024/01/citrix-vmware-and-atlassian-hit-with.html
Costin Raiu: The GReAT exit interview - Security Conversations
https://securityconversations.com/episode/costin-raiu-the-great-exit-interview/
GitHub - packetrat/shazhupan: Slides and IoCs from pig butchering research
https://github.com/packetrat/shazhupan
Combating IP Leaks into AI Applications with Free Discovery and Risk Reduction Automation
https://thehackernews.com/2024/01/combating-ip-leaks-into-ai-applications.html
TrustedSec Impede
http://impede.ai
Microsoft: Iranian APT Impersonating Prominent Journalist in Clever Spear-Phishing Attacks - SecurityWeek
https://www.securityweek.com/microsoft-iranian-apt-impersonating-prominent-journalist-in-clever-spear-phishing-attacks/
AI used to fake voices of loved ones in “I’ve been in an accident” scam | Malwarebytes
https://www.malwarebytes.com/blog/news/2024/01/ai-used-to-fake-voices-of-loved-ones-in-ive-been-in-an-accident-scams
Bigpanzi botnet infects 170,000 Android TV boxes with malware
https://www.bleepingcomputer.com/news/security/bigpanzi-botnet-infects-170-000-android-tv-boxes-with-malware/
ShadowRDP - c3r3br4t3
https://red.c3r3br4t3.com/red-team-operations/lateral-movement/shadowrdp
E-Crime Rapper ‘Punchmade Dev’ Debuts Card Shop – Krebs on Security
https://krebsonsecurity.com/2024/01/e-crime-rapper-punchmade-dev-debuts-card-shop/
GitHub Rotates Credentials in Response to Vulnerability - SecurityWeek
https://www.securityweek.com/github-rotates-credentials-in-response-to-vulnerability/
Register for an account - Insomni'hack Teaser
https://teaser.insomnihack.ch/accounts/register/
MacOS info-stealers quickly evolve to evade XProtect detection
https://www.bleepingcomputer.com/news/security/macos-info-stealers-quickly-evolve-to-evade-xprotect-detection/
Oracle Patches 200 Vulnerabilities With January 2024 CPU - SecurityWeek
https://www.securityweek.com/oracle-patches-200-vulnerabilities-with-january-2024-cpu/
Here's How ChatGPT Maker OpenAI Plans to Deter Election Misinformation in 2024 - SecurityWeek
https://www.securityweek.com/heres-how-chatgpt-maker-openai-plans-to-deter-election-misinformation-in-2024/
iShutdown scripts can help detect iOS spyware on your iPhone
https://www.bleepingcomputer.com/news/security/ishutdown-scripts-can-help-detect-ios-spyware-on-your-iphone/