03/20

presentations/SO-CON 2024 at master · SpecterOps/presentations · GitHub

https://github.com/SpecterOps/presentations/tree/master/SO-CON%202024
presentations/SO-CON 2024 at master · SpecterOps/presentations · GitHub

Introduction to x64 Linux Binary Exploitation (Part 1) | by +Ch0pin🕷️ | Medium

https://valsamaras.medium.com/introduction-to-x64-linux-binary-exploitation-part-1-14ad4a27aeef
Introduction to x64 Linux Binary Exploitation (Part 1) | by +Ch0pin🕷️ | Medium

Misconfigured Firebase instances leaked 19 million plaintext passwords

https://www.bleepingcomputer.com/news/security/misconfigured-firebase-instances-leaked-19-million-plaintext-passwords/
Misconfigured Firebase instances leaked 19 million plaintext passwords

MCTTP 2023 | Talk by Jimmy Bayne - YouTube

https://www.youtube.com/watch?v=xdc2ka3qtnM
MCTTP 2023 | Talk by Jimmy Bayne - YouTube

Ivanti fixes critical Standalone Sentry bug reported by NATO

https://www.bleepingcomputer.com/news/security/ivanti-fixes-critical-standalone-sentry-bug-reported-by-nato/
Ivanti fixes critical Standalone Sentry bug reported by NATO

New Windows Server updates cause domain controller crashes, reboots

https://www.bleepingcomputer.com/news/microsoft/new-windows-server-updates-cause-domain-controller-crashes-reboots/
New Windows Server updates cause domain controller crashes, reboots

Flipper Zero makers respond to Canada’s ‘harmful’ ban proposal

https://www.bleepingcomputer.com/news/security/flipper-zero-makers-respond-to-canadas-harmful-ban-proposal/
Flipper Zero makers respond to Canada’s ‘harmful’ ban proposal

UK bakery Greggs is latest victim of recent POS system outages

https://www.bleepingcomputer.com/news/technology/uk-bakery-greggs-is-latest-victim-of-recent-pos-system-outages/
UK bakery Greggs is latest victim of recent POS system outages

Zero Day Initiative — Pwn2Own Vancouver 2024 - Day One Results

https://www.zerodayinitiative.com/blog/2024/3/20/pwn2own-vancouver-2024-day-one-results
Zero Day Initiative — Pwn2Own Vancouver 2024 - Day One Results

Our Response to the Canadian Government

https://blog.flipper.net/response-to-canadian-government/
Our Response to the Canadian Government

300,000 Systems Vulnerable to New Loop DoS Attack - SecurityWeek

https://www.securityweek.com/300000-systems-vulnerable-to-new-loop-dos-attack/
300,000 Systems Vulnerable to New Loop DoS Attack - SecurityWeek

Human 1 - sqlmap 0: defeating automation through manual exploitation - hackcommander.github.io

https://hackcommander.github.io/posts/2024/03/19/human-1-sqlmap-0-defeating-automation-through-manual-exploitation/
Human 1 - sqlmap 0: defeating automation through manual exploitation - hackcommander.github.io

Lisa Forte on LinkedIn: How accurately do you perceive and assess risk? Maybe you think you are… | 38 comments

https://www.linkedin.com/posts/lisa-forte_how-accurately-do-you-perceive-and-assess-activity-7176155555097366529-mM59
Lisa Forte on LinkedIn: How accurately do you perceive and assess risk? Maybe you think you are… | 38 comments

The 'AT&T breach'—what you need to know | Malwarebytes

https://www.malwarebytes.com/blog/news/2024/03/the-att-breach-what-you-need-to-know
The 'AT&T breach'—what you need to know | Malwarebytes

TeamCity Flaw Leads to Surge in Ransomware, Cryptomining, and RAT Attacks

https://thehackernews.com/2024/03/teamcity-flaw-leads-to-surge-in.html
TeamCity Flaw Leads to Surge in Ransomware, Cryptomining, and RAT Attacks

New 'Loop DoS' Attack Impacts Hundreds of Thousands of Systems

https://thehackernews.com/2024/03/new-loop-dos-attack-impacts-hundreds-of.html
New 'Loop DoS' Attack Impacts Hundreds of Thousands of Systems

U.S. EPA Forms Task Force to Protect Water Systems from Cyberattacks

https://thehackernews.com/2024/03/us-epa-forms-task-force-to-protect.html
U.S. EPA Forms Task Force to Protect Water Systems from Cyberattacks

Former telecom manager admits to doing SIM swaps for $1,000

https://www.bleepingcomputer.com/news/security/former-telecom-manager-admits-to-doing-sim-swaps-for-1-000/
Former telecom manager admits to doing SIM swaps for $1,000

Aggressive scanning in bug bounty (and how to avoid it) - Intigriti

https://blog.intigriti.com/2024/03/18/aggressive-scanning-in-bug-bounty-and-how-to-avoid-it/
Aggressive scanning in bug bounty (and how to avoid it) - Intigriti

naively bypassing new memory scanning POCs | sillywa.re

https://sillywa.re/posts/flower-da-flowin-shc/
naively bypassing new memory scanning POCs | sillywa.re

New BunnyLoader Malware Variant Surfaces with Modular Attack Features

https://thehackernews.com/2024/03/new-bunnyloader-malware-variant.html
New BunnyLoader Malware Variant Surfaces with Modular Attack Features

BunnyLoader 3.0 surfaces in the threat landscape - Security Affairs

https://securityaffairs.com/160795/hacking/bunnyloader-3-0-malware.html
BunnyLoader 3.0 surfaces in the threat landscape - Security Affairs

PoC Exploit Available for CVE-2024-1212 (CVSS 10): Patch Kemp LoadMaster Now

https://securityonline.info/poc-exploit-available-for-cve-2024-1212-cvss-10-patch-kemp-loadmaster-now/
PoC Exploit Available for CVE-2024-1212 (CVSS 10): Patch Kemp LoadMaster Now

Making desync attacks easy with TRACE | PortSwigger Research

https://portswigger.net/research/trace-desync-attack
Making desync attacks easy with TRACE | PortSwigger Research

Five Eyes Agencies Issue New Alert on Chinese APT Volt Typhoon - SecurityWeek

https://www.securityweek.com/five-eyes-agencies-issue-new-alert-on-chinese-apt-volt-typhoon/
Five Eyes Agencies Issue New Alert on Chinese APT Volt Typhoon - SecurityWeek

GitHub’s new AI-powered tool auto-fixes vulnerabilities in your code

https://www.bleepingcomputer.com/news/security/githubs-new-ai-powered-tool-auto-fixes-vulnerabilities-in-your-code/
GitHub’s new AI-powered tool auto-fixes vulnerabilities in your code

Threat actors actively exploit JetBrains TeamCity flaws to deliver malware

https://securityaffairs.com/160823/breaking-news/jetbrains-teamcity-flaws-actively-exploited.html
Threat actors actively exploit JetBrains TeamCity flaws to deliver malware

Chrome 123, Firefox 124 Patch Serious Vulnerabilities - SecurityWeek

https://www.securityweek.com/chrome-123-firefox-124-patch-serious-vulnerabilities/
Chrome 123, Firefox 124 Patch Serious Vulnerabilities - SecurityWeek