03/13

Summoning RAGnarok With Your Nemesis | by Will Schroeder | Mar, 2024 | Posts By SpecterOps Team Members

https://posts.specterops.io/summoning-ragnarok-with-your-nemesis-7c4f0577c93b
Summoning RAGnarok With Your Nemesis | by Will Schroeder | Mar, 2024 | Posts By SpecterOps Team Members

PixPirate Android Banking Trojan Using New Evasion Tactic to Target Brazilian Users

https://thehackernews.com/2024/03/pixpirate-android-banking-trojan-using.html
PixPirate Android Banking Trojan Using New Evasion Tactic to Target Brazilian Users

Bitcoin Fog mixer operator convicted for laundering $400 million

https://www.bleepingcomputer.com/news/legal/bitcoin-fog-mixer-operator-convicted-for-laundering-400-million/
Bitcoin Fog mixer operator convicted for laundering $400 million

LockBit ransomware affiliate gets four years in jail, to pay $860k

https://www.bleepingcomputer.com/news/security/lockbit-ransomware-affiliate-gets-four-years-in-jail-to-pay-860k/
LockBit ransomware affiliate gets four years in jail, to pay $860k

Microsoft's March Updates Fix 61 Vulnerabilities, Including Critical Hyper-V Flaws

https://thehackernews.com/2024/03/microsofts-march-updates-fix-61.html
Microsoft's March Updates Fix 61 Vulnerabilities, Including Critical Hyper-V Flaws

RisePro stealer targets Github users in “gitgub” campaign

https://www.gdatasoftware.com/blog/2024/03/37885-risepro-stealer-campaign-github
RisePro stealer targets Github users in “gitgub” campaign

Alert: Cybercriminals Deploying VCURMS and STRRAT Trojans via AWS and GitHub

https://thehackernews.com/2024/03/alert-cybercriminals-deploying-vcurms.html
Alert: Cybercriminals Deploying VCURMS and STRRAT Trojans via AWS and GitHub

Massively Popular Safe Locks Have Secret Backdoor Codes

https://www.404media.co/massively-popular-safe-locks-have-secret-backdoor-codes/
Massively Popular Safe Locks Have Secret Backdoor Codes

Acer Philippines disclosed a data breach

https://securityaffairs.com/160432/data-breach/acer-philippines-data-breach.html
Acer Philippines disclosed a data breach

Fortinet warns of critical RCE bug in endpoint management software

https://www.bleepingcomputer.com/news/security/fortinet-warns-of-critical-rce-bug-in-endpoint-management-software/
Fortinet warns of critical RCE bug in endpoint management software

Kaspersky 2023 report on stalkerware | Securelist

https://securelist.com/state-of-stalkerware-2023/112135/
Kaspersky 2023 report on stalkerware | Securelist

Hardware Hacking to Bypass BIOS Passwords

https://blog.cybercx.co.nz/bypassing-bios-password
Hardware Hacking to Bypass BIOS Passwords

PixPirate Android malware uses new tactic to hide on phones

https://www.bleepingcomputer.com/news/security/pixpirate-android-malware-uses-new-tactic-to-hide-on-phones/
PixPirate Android malware uses new tactic to hide on phones

US Seizes $1.4 Million in Cryptocurrency From Tech Scammers - SecurityWeek

https://www.securityweek.com/us-seizes-1-4-million-in-cryptocurrency-from-tech-scammers/
US Seizes $1.4 Million in Cryptocurrency From Tech Scammers - SecurityWeek

Researchers Highlight Google's Gemini AI Susceptibility to LLM Threats

https://thehackernews.com/2024/03/researchers-highlight-googles-gemini-ai.html
Researchers Highlight Google's Gemini AI Susceptibility to LLM Threats

A case of missing bytes: bruteforcing your way through Jenkins' CVE-2024-23897

https://www.errno.fr/bruteforcing_CVE-2024-23897.html
A case of missing bytes: bruteforcing your way through Jenkins' CVE-2024-23897

Stanford University Data Breach Impacts 27,000 Individuals - SecurityWeek

https://www.securityweek.com/stanford-university-data-breach-impacts-27000-individuals/
Stanford University Data Breach Impacts 27,000 Individuals - SecurityWeek

New Vcurms Malware Targets Popular Browsers for Data Theft

https://www.hackread.com/vcurms-malware-browsers-for-data-theft/
New Vcurms Malware Targets Popular Browsers for Data Theft

비트코인 시세 급등에 따른 해킹 피해 주의보

https://www.genians.co.kr/blog/threat_intelligence/bitcoin
비트코인 시세 급등에 따른 해킹 피해 주의보

Malware Reverse Engineering for Beginners - Part 1: From 0x0 - Intezer

https://intezer.com/blog/malware-analysis/malware-reverse-engineering-beginners/
Malware Reverse Engineering for Beginners - Part 1: From 0x0 - Intezer

HHS to investigate UnitedHealth and ransomware attack on Change Healthcare

https://therecord.media/hhs-investigating-unitedhealth-after-ransomware-attack
HHS to investigate UnitedHealth and ransomware attack on Change Healthcare

Fortinet Patches Critical Vulnerabilities Leading to Code Execution - SecurityWeek

https://www.securityweek.com/fortinet-patches-critical-vulnerabilities-leading-to-code-execution/
Fortinet Patches Critical Vulnerabilities Leading to Code Execution - SecurityWeek

New Facebook photo rule hoax spreads | Malwarebytes

https://www.malwarebytes.com/blog/news/2024/03/new-facebook-photo-rule-hoax-spreads
New Facebook photo rule hoax spreads | Malwarebytes

White House Budget Proposal Seeks Cybersecurity Funding Boost  - SecurityWeek

https://www.securityweek.com/white-house-budget-proposal-seeks-cybersecurity-funding-boost/
White House Budget Proposal Seeks Cybersecurity Funding Boost  - SecurityWeek

ChatGPT Plugin Vulnerabilities Exposed Data, Accounts - SecurityWeek

https://www.securityweek.com/chatgpt-plugin-vulnerabilities-exposed-data-accounts/
ChatGPT Plugin Vulnerabilities Exposed Data, Accounts - SecurityWeek

Europe’s World-First AI Rules Get Final Approval From Lawmakers. Here’s What Happens Next - SecurityWeek

https://www.securityweek.com/europes-world-first-ai-rules-get-final-approval-from-lawmakers-heres-what-happens-next/
Europe’s World-First AI Rules Get Final Approval From Lawmakers. Here’s What Happens Next - SecurityWeek

The Crash Override Open Source Fellowship

https://eu1.hubs.ly/H0849Vf0
The Crash Override Open Source Fellowship

ADCS + PetitPotam NTLM Relay: Obtaining krbtgt Hash with Domain Controller Machine Certificate - Red Team Notes

https://www.ired.team/offensive-security-experiments/active-directory-kerberos-abuse/adcs-+-petitpotam-ntlm-relay-obtaining-krbtgt-hash-with-domain-controller-machine-certificate
ADCS + PetitPotam NTLM Relay: Obtaining krbtgt Hash with Domain Controller Machine Certificate - Red Team Notes

Hackers exploit Windows SmartScreen flaw to drop DarkGate malware

https://www.bleepingcomputer.com/news/security/hackers-abuse-windows-smartscreen-flaw-to-drop-darkgate-malware/
Hackers exploit Windows SmartScreen flaw to drop DarkGate malware

LockBit Ransomware Affiliate Sentenced to Prison in Canada - SecurityWeek

https://www.securityweek.com/lockbit-ransomware-affiliate-sentenced-to-prison-in-canada/
LockBit Ransomware Affiliate Sentenced to Prison in Canada - SecurityWeek

Acer confirms Philippines employee data leaked on hacking forum

https://www.bleepingcomputer.com/news/security/acer-confirms-philippines-employee-data-leaked-on-hacking-forum/
Acer confirms Philippines employee data leaked on hacking forum

Brave: Sharp increase in installs after iOS DMA update in EU

https://www.bleepingcomputer.com/news/technology/brave-sharp-increase-in-installs-after-ios-dma-update-in-eu/
Brave: Sharp increase in installs after iOS DMA update in EU

Chipmaker Patch Tuesday: Intel, AMD Address New Microarchitectural Vulnerabilities - SecurityWeek

https://www.securityweek.com/chipmaker-patch-tuesday-intel-amd-address-new-microarchitectural-vulnerabilities/
Chipmaker Patch Tuesday: Intel, AMD Address New Microarchitectural Vulnerabilities - SecurityWeek

The most concerning risks for 2024 and beyond - Help Net Security

https://www.helpnetsecurity.com/2024/03/13/2024-most-concerning-risks-video/
The most concerning risks for 2024 and beyond - Help Net Security

Andariel Group (MeshAgent) is attacking by abusing domestic asset management solutions - ASEC BLOG

https://asec-ahnlab-com.translate.goog/ko/62771/?_x_tr_sl=auto&_x_tr_tl=en&_x_tr_hl=en&_x_tr_pto=wapp
Andariel Group (MeshAgent) is attacking by abusing domestic asset management solutions - ASEC BLOG