01/26

Midnight Blizzard: Guidance for responders on nation-state attack | Microsoft Security Blog

https://www.microsoft.com/en-us/security/blog/2024/01/25/midnight-blizzard-guidance-for-responders-on-nation-state-attack/
Midnight Blizzard: Guidance for responders on nation-state attack | Microsoft Security Blog

GitHub - binganao/CVE-2024-23897

https://github.com/binganao/CVE-2024-23897
GitHub - binganao/CVE-2024-23897

Binary Defense - Director of Security Research - REMOTE

https://recruiting.paylocity.com/Recruiting/Jobs/Details/2198042
Binary Defense - Director of Security Research - REMOTE

Critical Cisco Flaw Lets Hackers Remotely Take Over Unified Comms Systems

https://thehackernews.com/2024/01/critical-cisco-flaw-lets-hackers.html
Critical Cisco Flaw Lets Hackers Remotely Take Over Unified Comms Systems

23andMe data breach: Hackers stole raw genotype data, health reports

https://www.bleepingcomputer.com/news/security/23andme-data-breach-hackers-stole-raw-genotype-data-health-reports/
23andMe data breach: Hackers stole raw genotype data, health reports

Malicious Ads on Google Target Chinese Users with Fake Messaging Apps

https://thehackernews.com/2024/01/malicious-ads-on-google-target-chinese.html
Malicious Ads on Google Target Chinese Users with Fake Messaging Apps

Microsoft Warns of Widening APT29 Espionage Attacks Targeting Global Orgs

https://thehackernews.com/2024/01/microsoft-warns-of-widening-apt29.html
Microsoft Warns of Widening APT29 Espionage Attacks Targeting Global Orgs

Perfecting the Defense-in-Depth Strategy with Automation

https://thehackernews.com/2024/01/perfecting-defense-in-depth-strategy.html
Perfecting the Defense-in-Depth Strategy with Automation

NSPX30: A sophisticated AitM-enabled implant evolving since 2005

https://www.welivesecurity.com/en/eset-research/nspx30-sophisticated-aitm-enabled-implant-evolving-since-2005/
NSPX30: A sophisticated AitM-enabled implant evolving since 2005

Russian TrickBot Mastermind Gets 5-Year Prison Sentence for Cybercrime Spree

https://thehackernews.com/2024/01/russian-trickbot-mastermind-gets-5-year.html
Russian TrickBot Mastermind Gets 5-Year Prison Sentence for Cybercrime Spree

GitHub - h4x0r-dz/CVE-2024-23897: CVE-2024-23897

https://github.com/h4x0r-dz/CVE-2024-23897
GitHub - h4x0r-dz/CVE-2024-23897: CVE-2024-23897

GitHub - dxxzero/rusty_drivers: BYOVD collection

https://github.com/dxxzero/rusty_drivers
GitHub - dxxzero/rusty_drivers: BYOVD collection

CrowdStrike CEO: Microsoft Explanation For Russia Hack Doesn’t Add Up

https://www.crn.com/news/security/2024/crowdstrike-ceo-microsoft-explanation-for-russia-hack-doesn-t-add-up
CrowdStrike CEO: Microsoft Explanation For Russia Hack Doesn’t Add Up

Longer passwords aren't safe from intensive cracking efforts - Help Net Security

https://www.helpnetsecurity.com/2024/01/26/weak-passwords/
Longer passwords aren't safe from intensive cracking efforts - Help Net Security

Microsoft releases first Windows Server 2025 preview build

https://www.bleepingcomputer.com/news/microsoft/microsoft-releases-first-windows-server-2025-preview-build/
Microsoft releases first Windows Server 2025 preview build

Pwn2Own Automotive: $1.3M for 49 zero-days, Tesla hacked twice

https://www.bleepingcomputer.com/news/security/pwn2own-automotive-13m-for-49-zero-days-tesla-hacked-twice/
Pwn2Own Automotive: $1.3M for 49 zero-days, Tesla hacked twice

Microsoft reveals how hackers breached its Exchange Online accounts

https://www.bleepingcomputer.com/news/security/microsoft-reveals-how-hackers-breached-its-exchange-online-accounts/
Microsoft reveals how hackers breached its Exchange Online accounts

Active Directory Pentesting Lab Setup - Pentestguy

https://pentestguy.com/active-directory-pentesting-lab-setup/
Active Directory Pentesting Lab Setup - Pentestguy

Ukraine: Hack wiped 2 petabytes of data from Russian research center

https://www.bleepingcomputer.com/news/security/ukraine-hack-wiped-2-petabytes-of-data-from-russian-research-center/
Ukraine: Hack wiped 2 petabytes of data from Russian research center

Apple announces changes to iOS, Safari, and the App Store in the European Union - Apple

https://www.apple.com/newsroom/2024/01/apple-announces-changes-to-ios-safari-and-the-app-store-in-the-european-union/
Apple announces changes to iOS, Safari, and the App Store in the European Union - Apple

GitHub - RomanRybachek/CVE-2024-20698: Analysis of the vulnerability

https://github.com/RomanRybachek/CVE-2024-20698
GitHub - RomanRybachek/CVE-2024-20698: Analysis of the vulnerability

Midnight Blizzard APT is targeting orgs worldwide, Microsoft warns

https://securityaffairs.com/158164/apt/midnight-blizzard-apt-cyberespionage.html
Midnight Blizzard APT is targeting orgs worldwide, Microsoft warns

Pwn2Own Automotive 2024 Day 2 - Tesla hacked again

https://securityaffairs.com/158141/hacking/pwn2own-automotive-2024-day-two.html
Pwn2Own Automotive 2024 Day 2 - Tesla hacked again

Malicious ads for restricted messaging applications target Chinese users | Malwarebytes

https://www.malwarebytes.com/blog/threat-intelligence/2024/01/malicious-ads-for-restricted-messaging-applications-target-chinese-users
Malicious ads for restricted messaging applications target Chinese users | Malwarebytes

Microsoft Teams outage causes connection issues, message delays

https://www.bleepingcomputer.com/news/microsoft/microsoft-teams-outage-causes-connection-issues-message-delays/
Microsoft Teams outage causes connection issues, message delays

GitHub - zodiacon/QuickAsm

https://github.com/zodiacon/QuickAsm
GitHub - zodiacon/QuickAsm

https://raw.githubusercontent.com/executemalware/Malware-IOCs/main/2024-01-26%20DarkGate%20IOCs

https://raw.githubusercontent.com/executemalware/Malware-IOCs/main/2024-01-26%20DarkGate%20IOCs