03/06

Apple fixes two new iOS zero-days exploited in attacks on iPhones

https://www.bleepingcomputer.com/news/apple/apple-fixes-two-new-ios-zero-days-exploited-in-attacks-on-iphones/
Apple fixes two new iOS zero-days exploited in attacks on iPhones

Hijacking & Spoofing Context Menu Options | mr.d0x

https://mrd0x.com/sentinelone-persistence-via-menu-context/
Hijacking & Spoofing Context Menu Options | mr.d0x

NSA shares zero-trust guidance to limit adversaries on the network

https://www.bleepingcomputer.com/news/security/nsa-shares-zero-trust-guidance-to-limit-adversaries-on-the-network/
NSA shares zero-trust guidance to limit adversaries on the network

CVE-2024-27198 and CVE-2024-27199: JetBrains TeamCity Multiple Authentication Bypass Vulnerabilities (FIXED) | Rapid7 Blog

https://www.rapid7.com/blog/post/2024/03/04/etr-cve-2024-27198-and-cve-2024-27199-jetbrains-teamcity-multiple-authentication-bypass-vulnerabilities-fixed/
CVE-2024-27198 and CVE-2024-27199: JetBrains TeamCity Multiple Authentication Bypass Vulnerabilities (FIXED) | Rapid7 Blog

Delving into Dalvik: A Look Into DEX Files | Mandiant

https://www.mandiant.com/resources/blog/dalvik-look-into-dex-files
Delving into Dalvik: A Look Into DEX Files | Mandiant

Update your iPhones and iPads now: Apple patches security vulnerabilities in iOS and iPadOS | Malwarebytes

https://www.malwarebytes.com/blog/news/2024/03/update-your-iphones-and-ipads-now-apple-patches-security-vulnerabilities-in-ios-and-ipados
Update your iPhones and iPads now: Apple patches security vulnerabilities in iOS and iPadOS | Malwarebytes

New APT Group 'Lotus Bane' Behind Recent Attacks on Vietnam's Financial Entities

https://thehackernews.com/2024/03/new-apt-group-lotus-bane-behind-recent.html
New APT Group 'Lotus Bane' Behind Recent Attacks on Vietnam's Financial Entities

VMware Patches Critical ESXi Sandbox Escape Flaws - SecurityWeek

https://www.securityweek.com/vmware-patches-critical-esxi-sandbox-escape-flaws/
VMware Patches Critical ESXi Sandbox Escape Flaws - SecurityWeek

Duvel says it has "more than enough" beer after ransomware attack

https://www.bleepingcomputer.com/news/security/duvel-says-it-has-more-than-enough-beer-after-ransomware-attack/
Duvel says it has "more than enough" beer after ransomware attack

Hackers impersonate U.S. government agencies in BEC attacks

https://www.bleepingcomputer.com/news/security/hackers-impersonate-us-government-agencies-in-bec-attacks/
Hackers impersonate U.S. government agencies in BEC attacks

Active Directory - Pyt... | HideAndSec

https://hideandsec.sh/books/cheatsheets-82c/page/active-directory-python-edition
Active Directory - Pyt... | HideAndSec

HHS Aiding Organizations Hit by Change Healthcare Cyberattack - SecurityWeek

https://www.securityweek.com/hhs-aiding-organizations-hit-by-change-healthcare-cyberattack/
HHS Aiding Organizations Hit by Change Healthcare Cyberattack - SecurityWeek

Hackers Exploit Misconfigured YARN, Docker, Confluence, Redis Servers for Crypto Mining

https://thehackernews.com/2024/03/hackers-exploit-misconfigured-yarn.html
Hackers Exploit Misconfigured YARN, Docker, Confluence, Redis Servers for Crypto Mining

American Express Data Breach Exposed Customer Data - SecurityWeek

https://www.securityweek.com/american-express-discloses-data-breach/
American Express Data Breach Exposed Customer Data - SecurityWeek

Exit Scam: BlackCat Ransomware Group Vanishes After $22 Million Payout

https://thehackernews.com/2024/03/exit-scam-blackcat-ransomware-group.html
Exit Scam: BlackCat Ransomware Group Vanishes After $22 Million Payout

LockBit 3.0’s Bungled Comeback Highlights the Undying Risk of Torrent-Based (P2P) Data Leakage

https://securityaffairs.com/160054/cyber-crime/lockbit-3-0s-comeback-torrent-based-p2p-data-leakage.html
LockBit 3.0’s Bungled Comeback Highlights the Undying Risk of Torrent-Based (P2P) Data Leakage

Urgent: Apple Issues Critical Updates for Actively Exploited Zero-Day Flaws

https://thehackernews.com/2024/03/urgent-apple-issues-critical-updates.html
Urgent: Apple Issues Critical Updates for Actively Exploited Zero-Day Flaws

Watch out, GhostSec and Stourmous groups jointly conducting ransomware attacks

https://securityaffairs.com/160066/cyber-crime/ghostsec-stourmous-ransomware.html
Watch out, GhostSec and Stourmous groups jointly conducting ransomware attacks

Hackers abuse QEMU to covertly tunnel network traffic in cyberattacks

https://www.bleepingcomputer.com/news/security/hackers-abuse-qemu-to-covertly-tunnel-network-traffic-in-cyberattacks/
Hackers abuse QEMU to covertly tunnel network traffic in cyberattacks

BlackCat Ransomware Group Implodes After Apparent $22M Payment by Change Healthcare – Krebs on Security

https://krebsonsecurity.com/2024/03/blackcat-ransomware-group-implodes-after-apparent-22m-ransom-payment-by-change-healthcare/
BlackCat Ransomware Group Implodes After Apparent $22M Payment by Change Healthcare – Krebs on Security

Analysing Windows Malware on Apple Mac M1/M2 ( Windows 11 ARM ) - Part I

https://int0xcc.svbtle.com/apple-m2-or-windows-arm-for-malware-analysis
Analysing Windows Malware on Apple Mac M1/M2 ( Windows 11 ARM ) - Part I

Hacked WordPress sites use visitors' browsers to hack other sites

https://www.bleepingcomputer.com/news/security/hacked-wordpress-sites-use-visitors-browsers-to-hack-other-sites/
Hacked WordPress sites use visitors' browsers to hack other sites

Hackers target Docker, Hadoop, Redis, Confluence with new Golang malware

https://www.bleepingcomputer.com/news/security/hackers-target-docker-hadoop-redis-confluence-with-new-golang-malware/
Hackers target Docker, Hadoop, Redis, Confluence with new Golang malware

Active Directory | HideAndSec

https://hideandsec.sh/books/cheatsheets-82c/page/active-directory
Active Directory | HideAndSec

Canada's anti-money laundering agency offline after cyberattack

https://www.bleepingcomputer.com/news/security/canadas-anti-money-laundering-agency-offline-after-cyberattack/
Canada's anti-money laundering agency offline after cyberattack

VMware Issues Security Patches for ESXi, Workstation, and Fusion Flaws

https://thehackernews.com/2024/03/vmware-issues-security-patches-for-esxi.html
VMware Issues Security Patches for ESXi, Workstation, and Fusion Flaws