04/11

BrianKrebs: "There is something potentially…" - Infosec Exchange

https://infosec.exchange/@briankrebs/112249710611213991
BrianKrebs: "There is something potentially…" - Infosec Exchange

CISA orders agencies impacted by Microsoft hack to mitigate risks

https://www.bleepingcomputer.com/news/security/cisa-orders-agencies-impacted-by-microsoft-hack-to-mitigate-risks/
CISA orders agencies impacted by Microsoft hack to mitigate risks

Re: [RESEND RFC] kernel/ksysfs.c: restrict /sys/kernel/notes to root access - Kees Cook

https://lore.kernel.org/all/202402180028.6DB512C50@keescook/
Re: [RESEND RFC] kernel/ksysfs.c: restrict /sys/kernel/notes to root access - Kees Cook

Active Directory - Certificate Services - Internal All The Things

https://swisskyrepo.github.io/InternalAllTheThings/active-directory/ad-adcs-certificate-services/
Active Directory - Certificate Services - Internal All The Things

Intel and Lenovo servers impacted by 6-year-old BMC flaw

https://www.bleepingcomputer.com/news/security/intel-and-lenovo-servers-impacted-by-6-year-old-bmc-flaw/
Intel and Lenovo servers impacted by 6-year-old BMC flaw

Optics giant Hoya hit with $10 million ransomware demand

https://www.bleepingcomputer.com/news/security/optics-giant-hoya-hit-with-10-million-ransomware-demand/
Optics giant Hoya hit with $10 million ransomware demand

Compromise of Sisense Customer Data | CISA

https://www.cisa.gov/news-events/alerts/2024/04/11/compromise-sisense-customer-data
Compromise of Sisense Customer Data | CISA

Redis Servers Exploited to Deploy Metasploit Meterpreter Backdoor

https://securityonline.info/redis-servers-exploited-to-deploy-metasploit-meterpreter-backdoor/
Redis Servers Exploited to Deploy Metasploit Meterpreter Backdoor

IMF: Financial Firms Lost $12 Billion to Cyberattacks in Two Decades - SecurityWeek

https://www.securityweek.com/imf-financial-firms-lost-12-billion-to-cyberattacks-in-two-decades/
IMF: Financial Firms Lost $12 Billion to Cyberattacks in Two Decades - SecurityWeek

The M365 Battlefield

https://webinars.huntress.com/99/The-M365-Battlefield?bmid=93d9d5f2a96e&bmid=93d9d5f2a96e&bmid_type=member
The M365 Battlefield

Exploring Hell's Gate - RedOps - English

https://redops.at/en/blog/exploring-hells-gate
Exploring Hell's Gate - RedOps - English

Palo Alto Networks fixed multiple DoS bugs in its firewalls

https://securityaffairs.com/161724/security/palo-alto-networks-pan-os-dos-2.html
Palo Alto Networks fixed multiple DoS bugs in its firewalls

Apple Updates Spyware Alert System to Warn Victims of Mercenary Attacks

https://thehackernews.com/2024/04/apple-expands-spyware-alert-system-to.html
Apple Updates Spyware Alert System to Warn Victims of Mercenary Attacks

TA547 Phishing Attack Hits German Firms with Rhadamanthys Stealer

https://thehackernews.com/2024/04/ta547-phishing-attack-hits-german-firms.html
TA547 Phishing Attack Hits German Firms with Rhadamanthys Stealer

Malware-IOCs/2024-04-10 DarkGate IOCs at main · executemalware/Malware-IOCs · GitHub

https://github.com/executemalware/Malware-IOCs/blob/main/2024-04-10%20DarkGate%20IOCs
Malware-IOCs/2024-04-10 DarkGate IOCs at main · executemalware/Malware-IOCs · GitHub

Sisense Data Breach Triggers CISA Alert and Urgent Calls for Credential Resets - SecurityWeek

https://www.securityweek.com/sisense-data-breach-triggers-cisa-alert-and-urgent-calls-for-credential-resets/
Sisense Data Breach Triggers CISA Alert and Urgent Calls for Credential Resets - SecurityWeek

CISA makes its "Malware Next-Gen" analysis system publicly available

https://www.bleepingcomputer.com/news/security/cisa-makes-its-malware-next-gen-analysis-system-publicly-available/
CISA makes its "Malware Next-Gen" analysis system publicly available

Fortinet Rolls Out Critical Security Patches for FortiClientLinux Vulnerability

https://thehackernews.com/2024/04/fortinet-has-released-patches-to.html
Fortinet Rolls Out Critical Security Patches for FortiClientLinux Vulnerability