Hacker Trends
04/11
04/12
04/13
Statistic
11/02 04:33 (UTC)
04/11
04/12
04/13
17 Posts
CVE-2024-3400 PAN-OS: OS Command Injection Vulnerability in GlobalProtect Gateway
https://
security.paloaltonetworks.com
/CVE-2024-3400
8 Posts
Palo Alto Networks warns of PAN-OS firewall zero-day used in attacks
https://
www.bleepingcomputer.com
/news/security/palo-alto-networks-warns-of-pan-os-firewall-zero-day-used-in-attacks/
7 Posts
Kaspersky analysis of the backdoor in XZ | Securelist
https://
securelist.com
/xz-backdoor-story-part-1/112354/
6 Posts
Threat Brief: Operation MidnightEclipse, Post-Exploitation Activity Related to CVE-2024-3400
https://
unit42.paloaltonetworks.com
/cve-2024-3400/
6 Posts
DLL code for testing CVE-2024-21378 in MS Outlook · GitHub
https://
gist.github.com
/Homer28/7f3559ff993e2598d0ceefbaece1f97f
5 Posts
Zero-Day Exploitation of Unauthenticated Remote Code Execution Vulnerability in GlobalProtect (CVE-2024-3400) | Volexity
https://
www.volexity.com
/blog/2024/04/12/zero-day-exploitation-of-unauthenticated-remote-code-execution-vulnerability-in-globalprotect-cve-2024-3400/
5 Posts
XSS
https://
subdomain1.portswigger-labs.net
/xss/xss.php?x=%3Cscript+src%3D%2F%2F0-a.nl%2Fconf.js%3E%3C%2Fscript%3E&context=html
5 Posts
Fixed python zipapp extension on windows in IsExecutableName by el-garro · Pull Request #27737 · telegramdesktop/tdesktop · GitHub
https://
github.com
/telegramdesktop/tdesktop/pull/27737/commits/effad980f712cd1a4e8cee4fca42193fe5a612de
4 Posts
Roku warns 576,000 accounts hacked in new credential stuffing attacks
https://
www.bleepingcomputer.com
/news/security/roku-warns-576-000-accounts-hacked-in-new-credential-stuffing-attacks/
4 Posts
Exploring Hell's Gate - RedOps - English
https://
redops.at
/en/blog/exploring-hells-gate
4 Posts
Rust-for-Malware-Development/api_hooking.rs at main · Whitecat18/Rust-for-Malware-Development · GitHub
https://
github.com
/Whitecat18/Rust-for-Malware-Development/blob/main/api_hooking.rs
4 Posts
eSentire | The Return of the Bat: FakeBat’s Payk RunPE Arsenal
https://
www.esentire.com
/blog/the-return-of-the-bat-fakebats-payk-runpe-arsenal
4 Posts
https://www.reddit.com/r/iphone/s/EaDRJwGO1u
https://
www.reddit.com
/r/iphone/s/EaDRJwGO1u
3 Posts
Digging into Linux namespaces - part 2
https://
blog.quarkslab.com
/digging-into-linux-namespaces-part-2.html
3 Posts
TA547 targets German organizations with Rhadamanthys malware
https://
securityaffairs.com
/161747/cyber-crime/ta547-targeting-german-orgs.html
3 Posts
LastPass: Hackers targeted employee in failed deepfake CEO call
https://
www.bleepingcomputer.com
/news/security/lastpass-hackers-targeted-employee-in-failed-deepfake-ceo-call/
3 Posts
Metasploit Meterpreter Installed via Redis Server - ASEC BLOG
https://
asec.ahnlab.com
/en/64034/
3 Posts
LastPass employee targeted via audio deepfake call
https://
securityaffairs.com
/161760/cyber-crime/lastpass-employee-targeted-deepfake.html
3 Posts
https://
fangpenlin.com
/posts/2024/04/07/how-i-discovered-a-9-point-8-critical-security-vulnerability-in-zeromq-with-mostly-pure-luck/
3 Posts
Step by Step Complete Beginners guide of iOS penetration testing with corellium | by Sandeep Vishwakarma | Apr, 2024 | InfoSec Write-ups
https://
infosecwriteups.com
/step-by-step-complete-beginners-guide-of-ios-penetration-testing-with-corellium-2b9e9c6382c2?source=rss----7b722bfd1b8d---4
3 Posts
TEDxUKY 2024 - YouTube
https://
www.youtube.com
/live/25xOclDOV_U?feature=shared&t=10388
3 Posts
Zero-Day Alert: Critical Palo Alto Networks PAN-OS Flaw Under Active Attack
https://
thehackernews.com
/2024/04/zero-day-alert-critical-palo-alto.html
3 Posts
Palo Alto Networks Warns of Exploited Firewall Vulnerability - SecurityWeek
https://
www.securityweek.com
/palo-alto-networks-warns-of-exploited-firewall-vulnerability/
3 Posts
Popular Rust Crate liblzma-sys Compromised with XZ Utils Backdoor Files
https://
thehackernews.com
/2024/04/popular-rust-crate-liblzma-sys.html
3 Posts
Ex-Amazon engineer gets 3 years for hacking crypto exchanges
https://
www.bleepingcomputer.com
/news/security/ex-amazon-engineer-gets-3-years-for-hacking-crypto-exchanges/
3 Posts
US-China Competition to Field Military Drone Swarms Could Fuel Global Arms Race - SecurityWeek
https://
www.securityweek.com
/us-china-competition-to-field-military-drone-swarms-could-fuel-global-arms-race/
3 Posts
U.S. Federal Agencies Ordered to Hunt for Signs of Microsoft Breach and Mitigate Risks
https://
thehackernews.com
/2024/04/us-federal-agencies-ordered-to-hunt-for.html
3 Posts
Digging into Linux namespaces - part 1
https://
blog.quarkslab.com
/digging-into-linux-namespaces-part-1.html
3 Posts
Netlas: Comprehensive Internet-Wide Scanning & OSINT Platform
http://
Netlas.io
3 Posts
Sneaky Credit Card Skimmer Disguised as Harmless Facebook Tracker
https://
thehackernews.com
/2024/04/sneaky-credit-card-skimmer-disguised-as.html
3 Posts
How I got RCE in one of Bugcrowd's Public Programs | by Yousef Mohamed | Medium
https://
medium.com
/@yousefmoh15/how-i-got-rce-in-one-of-bugcrowds-public-programs-5725c8dc46ce
3 Posts
FBI warns of massive wave of road toll SMS phishing attacks
https://
www.bleepingcomputer.com
/news/security/fbi-warns-of-massive-wave-of-road-toll-sms-phishing-attacks/
3 Posts
LastPass Employee Targeted With Deepfake Calls - SecurityWeek
https://
www.securityweek.com
/lastpass-employee-targeted-with-deepfake-calls/
3 Posts
Darknet Resources You Need to Use When Doing CTI | Medium
https://
medium.com
/@DarkWebInformer/darknet-resources-you-need-to-use-when-doing-cyber-threat-intelligence-part-1-of-many-9a6c28792d97
3 Posts
GitHub - jsecurity101/MSFT_DriverBlockList: Repository of Microsoft Driver Block Lists based off of OS-builds
https://
github.com
/jsecurity101/MSFT_DriverBlockList