Hacker Trends
04/01
04/02
04/03
Statistic
11/01 08:30 (UTC)
04/01
04/02
04/03
12 Posts
Bypassing DOMPurify with good old XML - Flatt Security Research
https://
flatt.tech
/research/posts/bypassing-dompurify-with-good-old-xml/
7 Posts
GitHub - amlweems/xzbot: notes, honeypot, and exploit demo for the xz backdoor (CVE-2024-3094)
https://
github.com
/amlweems/xzbot
6 Posts
OffensiveCon24 :: pretalx
https://
cfp.offensivecon.org
/offensivecon24/cfp
5 Posts
research!rsc: Timeline of the xz open source attack
https://
research.swtch.com
/xz-timeline
4 Posts
From OneNote to RansomNote: An Ice Cold Intrusion - The DFIR Report
https://
thedfirreport.com
/2024/04/01/from-onenote-to-ransomnote-an-ice-cold-intrusion/
4 Posts
New Chrome feature aims to stop hackers from using stolen cookies
https://
www.bleepingcomputer.com
/news/security/new-chrome-feature-aims-to-stop-hackers-from-using-stolen-cookies/
4 Posts
Dark Wire by Joseph Cox | Hachette Book Group
https://
www.hachettebookgroup.com
/titles/joseph-cox/dark-wire/9781541702691/#preorder
4 Posts
India rescues 250 citizens enslaved by Cambodian cybercrime gang
https://
www.bleepingcomputer.com
/news/security/india-rescues-250-citizens-enslaved-by-cambodian-cybercrime-gang/
4 Posts
New XZ backdoor scanner detects implant in any Linux binary
https://
www.bleepingcomputer.com
/news/security/new-xz-backdoor-scanner-detects-implant-in-any-linux-binary/
4 Posts
IBIS hotel check-in terminal keypad-code leakage | Pentagrid AG
https://
www.pentagrid.ch
/en/blog/ibis-hotel-check-in-terminal-keypad-code-leakage/
4 Posts
Earth Freybug Uses UNAPIMON for Unhooking Critical APIs | Trend Micro (US)
https://
www.trendmicro.com
/en_us/research/24/d/earth-freybug.html
4 Posts
Microsoft FAQ and guidance for XZ Utils backdoor - Microsoft Community Hub
https://
techcommunity.microsoft.com
/t5/microsoft-defender-vulnerability/microsoft-faq-and-guidance-for-xz-utils-backdoor/ba-p/4101961
4 Posts
PandaBuy data breach allegedly impacted +1.3M customers
https://
securityaffairs.com
/161355/data-breach/pandabuy-data-breach.html
4 Posts
1311_05-08_mickens.pdf
https://
www.usenix.org
/system/files/1311_05-08_mickens.pdf
3 Posts
China-linked Hackers Deploy New 'UNAPIMON' Malware for Stealthy Operations
https://
thehackernews.com
/2024/04/china-linked-hackers-deploy-new.html
3 Posts
Attacking an EDR - Part 3
https://
her0ness.github.io
/2023-11-07-Attacking-an-EDR-Part-3/
3 Posts
Maldev using AI - YouTube
https://
www.youtube.com
/watch?v=syKnjf9iVWk
3 Posts
Massive Phishing Campaign Strikes Latin America: Venom RAT Targeting Multiple Sectors
https://
thehackernews.com
/2024/04/massive-phishing-campaign-strikes-latin.html
3 Posts
ZAP – ZAP Updates - March 2024
https://
www.zaproxy.org
/blog/2024-04-02-zap-updates-march-2024/
3 Posts
Google now blocks spoofed emails for better phishing protection
https://
www.bleepingcomputer.com
/news/google/google-now-blocks-spoofed-emails-for-better-phishing-protection/
3 Posts
AIS247: AI Security Essentials for Business Leaders | SANS Institute
https://
www.sans.org
/u/1ukG
3 Posts
GitHub - caio-ishikawa/netscout: OSINT tool that finds domains, subdomains, directories, endpoints and files for a given seed URL.
https://
github.com
/caio-ishikawa/netscout
3 Posts
GitHub - janhq/jan: Jan is an open source alternative to ChatGPT that runs 100% offline on your computer
https://
github.com
/janhq/jan
3 Posts
Google to delete search data of millions who used 'incognito' mode : NPR
https://
www.npr.org
/2024/04/01/1242019127/google-incognito-mode-settlement-search-history
3 Posts
Russia charges suspects behind theft of 160,000 credit cards
https://
www.bleepingcomputer.com
/news/security/russia-charges-suspects-behind-theft-of-160-000-credit-cards/
3 Posts
OWASP Data Breach Caused by Server Misconfiguration - SecurityWeek
https://
www.securityweek.com
/owasp-data-breach-caused-by-server-misconfiguration/
3 Posts
Bypassing DOMPurify with good old XML - Flatt Security Research
https://
bit.ly
/4amINc3
3 Posts
Matt Johansen: Vulnerability and Mental Health in Cybersecurity. - YouTube
https://
youtu.be
/dOIdeUEqxFc
3 Posts
NVD - CVE-2024-3094
https://
nvd.nist.gov
/vuln/detail/CVE-2024-3094
3 Posts
FTC: Americans lost $1.1 billion to impersonation scams in 2023
https://
www.bleepingcomputer.com
/news/security/ftc-americans-lost-11-billion-to-impersonation-scams-in-2023/
3 Posts
Google to Delete Billions of Browsing Records in 'Incognito Mode' Privacy Lawsuit Settlement
https://
thehackernews.com
/2024/04/google-to-delete-billions-of-browsing.html
3 Posts
TROOPERS24
https://
troopers.de
/students/
3 Posts
INC Ransom claims 'cyber incident' at UK city council • The Register
https://
go.theregister.com
/feed/www.theregister.com/2024/04/02/inc_ransom_leicester_council/