03/26

https://voidstarsec.com/csw-2024/

https://voidstarsec.com/csw-2024/

Malware-IOCs/2024-03-25 Mystery JAR malware IOCs at main · executemalware/Malware-IOCs · GitHub

https://github.com/executemalware/Malware-IOCs/blob/main/2024-03-25%20Mystery%20JAR%20malware%20IOCs
Malware-IOCs/2024-03-25 Mystery JAR malware IOCs at main · executemalware/Malware-IOCs · GitHub

New MFA-bypassing phishing kit targets Microsoft 365, Gmail accounts

https://www.bleepingcomputer.com/news/security/new-mfa-bypassing-phishing-kit-targets-microsoft-365-gmail-accounts/
New MFA-bypassing phishing kit targets Microsoft 365, Gmail accounts

Recent ‘MFA Bombing’ Attacks Targeting Apple Users – Krebs on Security

https://krebsonsecurity.com/2024/03/recent-mfa-bombing-attacks-targeting-apple-users/
Recent ‘MFA Bombing’ Attacks Targeting Apple Users – Krebs on Security

Malware-IOCs/2024-03-26 DarkGate IOCs at main · executemalware/Malware-IOCs · GitHub

https://github.com/executemalware/Malware-IOCs/blob/main/2024-03-26%20DarkGate%20IOCs
Malware-IOCs/2024-03-26 DarkGate IOCs at main · executemalware/Malware-IOCs · GitHub

CODE WHITE - Finest Hacking

https://code-white.com/blog/leaking-objrefs-to-exploit-http-dotnet-remoting/
CODE WHITE - Finest Hacking

zenhammer_sec24.pdf

https://comsec.ethz.ch/wp-content/files/zenhammer_sec24.pdf
zenhammer_sec24.pdf

$700 cybercrime software turns Raspberry Pi into an evasive fraud tool

https://www.bleepingcomputer.com/news/security/700-cybercrime-software-turns-raspberry-pi-into-an-evasive-fraud-tool/
$700 cybercrime software turns Raspberry Pi into an evasive fraud tool

Hackers exploit Ray framework flaw to breach servers, hijack resources

https://www.bleepingcomputer.com/news/security/hackers-exploit-ray-framework-flaw-to-breach-servers-hijack-resources/
Hackers exploit Ray framework flaw to breach servers, hijack resources

Writing x86 SIMD using x86inc.asm | Ronald S. Bultje

https://blogs.gnome.org/rbultje/2017/07/14/writing-x86-simd-using-x86inc-asm/
Writing x86 SIMD using x86inc.asm | Ronald S. Bultje

CVE-2023-42931: macOS Flaw Exposed Systems to Easy Privilege Escalation – Patch Now!

https://securityonline.info/cve-2023-42931-macos-flaw-exposed-systems-to-easy-privilege-escalation-patch-now/
CVE-2023-42931: macOS Flaw Exposed Systems to Easy Privilege Escalation – Patch Now!

YouTube ordered to reveal the identities of video viewers | Malwarebytes

https://www.malwarebytes.com/blog/news/2024/03/youtube-ordered-to-reveal-the-identities-of-video-viewers
YouTube ordered to reveal the identities of video viewers | Malwarebytes

Free VPN apps on Google Play turned Android phones into proxies

https://www.bleepingcomputer.com/news/security/free-vpn-apps-on-google-play-turned-android-phones-into-proxies/
Free VPN apps on Google Play turned Android phones into proxies

U.S. Sanctions 3 Cryptocurrency Exchanges for Helping Russia Evade Sanctions

https://thehackernews.com/2024/03/us-sanctions-3-cryptocurrency-exchanges.html
U.S. Sanctions 3 Cryptocurrency Exchanges for Helping Russia Evade Sanctions

Malware-IOCs/2024-03-25 Lokibot IOCs at main · executemalware/Malware-IOCs · GitHub

https://github.com/executemalware/Malware-IOCs/blob/main/2024-03-25%20Lokibot%20IOCs
Malware-IOCs/2024-03-25 Lokibot IOCs at main · executemalware/Malware-IOCs · GitHub

Suspicious NuGet Package Harvesting Information From Industrial Systems - SecurityWeek

https://www.securityweek.com/suspicious-nuget-package-harvesting-information-from-industrial-systems/
Suspicious NuGet Package Harvesting Information From Industrial Systems - SecurityWeek

Recent Fortinet FortiClient EMS Vulnerability Exploited in Attacks - SecurityWeek

https://www.securityweek.com/recent-fortinet-forticlient-ems-vulnerability-exploited-in-attacks/
Recent Fortinet FortiClient EMS Vulnerability Exploited in Attacks - SecurityWeek

Uncle Sam has had enough of SQL injection vulnerabilities • The Register

https://go.theregister.com/feed/www.theregister.com/2024/03/26/fbi_cisa_sql_injection/
Uncle Sam has had enough of SQL injection vulnerabilities • The Register

Germany warns of 17K vulnerable Microsoft Exchange servers exposed online

https://www.bleepingcomputer.com/news/security/germany-warns-of-17k-vulnerable-microsoft-exchange-servers-exposed-online/
Germany warns of 17K vulnerable Microsoft Exchange servers exposed online

Blaze's Security Blog: Analyse, hunt and classify malware using .NET metadata

https://bartblaze.blogspot.com/2024/03/analyse-hunt-and-classify-malware-using.html
Blaze's Security Blog: Analyse, hunt and classify malware using .NET metadata

U.S. Charges 7 Chinese Nationals in Major 14-Year Cyber Espionage Operation

https://thehackernews.com/2024/03/us-charges-7-chinese-nationals-in-major.html
U.S. Charges 7 Chinese Nationals in Major 14-Year Cyber Espionage Operation

Apple Patches Code Execution Vulnerability in iOS, macOS - SecurityWeek

https://www.securityweek.com/apple-patches-code-execution-vulnerability-in-ios-macos/
Apple Patches Code Execution Vulnerability in iOS, macOS - SecurityWeek

Crafting Shields: Defending Minecraft Servers Against DDoS Attacks

https://thehackernews.com/2024/03/crafting-shields-defending-minecraft.html
Crafting Shields: Defending Minecraft Servers Against DDoS Attacks

TheMoon malware infects 6,000 ASUS routers in 72 hours for proxy service

https://www.bleepingcomputer.com/news/security/themoon-malware-infects-6-000-asus-routers-in-72-hours-for-proxy-service/
TheMoon malware infects 6,000 ASUS routers in 72 hours for proxy service

Windows Kernel Programming 1

https://training.trainsec.net/windows-kernel-programming-1?coupon=24HOURSONLY
Windows Kernel Programming 1