06/05

APT_REPORT/APT28/logpoint-etpr-forest-blizzard.pdf at master · blackorbird/APT_REPORT · GitHub

https://github.com/blackorbird/APT_REPORT/blob/master/APT28/logpoint-etpr-forest-blizzard.pdf
APT_REPORT/APT28/logpoint-etpr-forest-blizzard.pdf at master · blackorbird/APT_REPORT · GitHub

외신 인터뷰 의뢰 사칭 김수키 공격 발견

https://www.genians.co.kr/blog/threat_intelligence/interview
외신 인터뷰 의뢰 사칭 김수키 공격 발견

Kali Linux 2024.2 released with 18 new tools, Y2038 changes

https://www.bleepingcomputer.com/news/linux/kali-linux-20242-released-with-18-new-tools-y2038-changes/
Kali Linux 2024.2 released with 18 new tools, Y2038 changes

Analysis of CVE-2024-2738 Apache HugeGraph

https://blog.securelayer7.net/remote-code-execution-in-apache-hugegraph/
Analysis of CVE-2024-2738 Apache HugeGraph

Celebrity TikTok Accounts Compromised Using Zero-Click Attack via DMs

https://thehackernews.com/2024/06/celebrity-tiktok-accounts-compromised.html
Celebrity TikTok Accounts Compromised Using Zero-Click Attack via DMs

MalwareBazaar | APT37

https://bazaar.abuse.ch/browse/tag/APT37/
MalwareBazaar | APT37

OffensiveCon24 - YouTube

https://www.youtube.com/playlist?list=PLYvhPWR_XYJlg1SfcKdZY6eXUTPPqnh_G
OffensiveCon24 - YouTube

ConferenceTalks/RVASec2024/HackingExchangeFromtheOutsideIn.pdf at main · aahmad097/ConferenceTalks · GitHub

https://github.com/aahmad097/ConferenceTalks/blob/main/RVASec2024/HackingExchangeFromtheOutsideIn.pdf
ConferenceTalks/RVASec2024/HackingExchangeFromtheOutsideIn.pdf at main · aahmad097/ConferenceTalks · GitHub

FBI recovers 7,000 LockBit keys, urges ransomware victims to reach out

https://www.bleepingcomputer.com/news/security/fbi-recovers-7-000-lockbit-keys-urges-ransomware-victims-to-reach-out/
FBI recovers 7,000 LockBit keys, urges ransomware victims to reach out

RansomHub extortion gang linked to now-defunct Knight ransomware

https://www.bleepingcomputer.com/news/security/ransomhub-extortion-gang-linked-to-now-defunct-knight-ransomware/
RansomHub extortion gang linked to now-defunct Knight ransomware

Chinese State-Backed Cyber Espionage Targets Southeast Asian Government

https://thehackernews.com/2024/06/chinese-state-backed-cyber-espionage.html
Chinese State-Backed Cyber Espionage Targets Southeast Asian Government

Qilin ransomware gang linked to attack on London hospitals

https://www.bleepingcomputer.com/news/security/qilin-ransomware-gang-linked-to-attack-on-london-hospitals/
Qilin ransomware gang linked to attack on London hospitals

OffensiveCon24 - Samuel Groß - The V8 Heap Sandbox - YouTube

https://youtu.be/5otAw81AHQ0?si=EvcCZqsSorAxisB1
OffensiveCon24 - Samuel Groß - The V8 Heap Sandbox - YouTube

Cisco addressed Webex flaws used to compromise German government meetings

https://securityaffairs.com/164173/breaking-news/cisco-webex-flaws-german-government-meetings.html
Cisco addressed Webex flaws used to compromise German government meetings

Researchers Show How Malware Could Steal Windows Recall Data - SecurityWeek

https://www.securityweek.com/researchers-show-how-malware-could-steal-windows-recall-data/
Researchers Show How Malware Could Steal Windows Recall Data - SecurityWeek

Risky Biz News: The Linux CNA mess

https://news.risky.biz/risky-biz-news-the-linux-cna-mess/
Risky Biz News: The Linux CNA mess

Cisco Patches Webex Bugs Following Exposure of German Government Meetings - SecurityWeek

https://www.securityweek.com/cisco-patches-webex-bugs-following-exposure-of-german-government-meetings/
Cisco Patches Webex Bugs Following Exposure of German Government Meetings - SecurityWeek

FBI warns of fake remote work ads used for cryptocurrency fraud

https://www.bleepingcomputer.com/news/security/fbi-warns-of-fake-remote-work-ads-used-for-cryptocurrency-fraud/
FBI warns of fake remote work ads used for cryptocurrency fraud

Resolving Stack Strings with Emulation | 0ffset Training Solutions

https://www.0ffset.net/reverse-engineering/capstone-resolving-stack-strings/
Resolving Stack Strings with Emulation | 0ffset Training Solutions

SLE(A)PING Issues: SWAPPALA and Reflective DLL Friends Forever :: Vincenzo — Blog

https://oldboy21.github.io/posts/2024/06/sleaping-issues-swappala-and-reflective-dll-friends-forever/
SLE(A)PING Issues: SWAPPALA and Reflective DLL Friends Forever :: Vincenzo — Blog

How I Hacked my Car Part 2: Making a Backdoor :: Programming With Style

https://programmingwithstyle.com/posts/howihackedmycarpart2/
How I Hacked my Car Part 2: Making a Backdoor :: Programming With Style

javascript://Tab The Blue Link......….%0adocument.body.innerHTML='<br><br><h1 style=font-size:30px;color:red>probably not www.google.com <br><br> Address Bar Spoof';history.replaceState(null,null,'/search?q=www.google.com%27); - Search

http://bing.com/search?q=javascript%3A%2F%2FTab+The+Blue+Link......%E2%80%A6.%250adocument.body.innerHTML%3D%27%3Cbr%3E%3Cbr%3E%3Ch1+style%3Dfont-size%3A30px%3Bcolor%3Ared%3Eprobably+not+www.google.com+%3Cbr%3E%3Cbr%3E+Address+Bar+Spoof%27%3Bhistory.replaceState%28null%2Cnull%2C%27%2Fsearch%3Fq%3Dwww.google.com%2527%29%3B
javascript://Tab The Blue Link......….%0adocument.body.innerHTML='<br><br><h1 style=font-size:30px;color:red>probably not www.google.com <br><br> Address Bar Spoof';history.replaceState(null,null,'/search?q=www.google.com%27); - Search

Add SPF, DMARC, DKIM and MX Records to Evilginx - Cyber Security Services - London

https://fortbridge.co.uk/research/add-spf-dmarc-dkim-mx-records-evilginx/
Add SPF, DMARC, DKIM and MX Records to Evilginx - Cyber Security Services - London

Operation Crimson Palace: A Technical Deep Dive – Sophos News

https://news.sophos.com/en-us/2024/06/05/operation-crimson-palace-a-technical-deep-dive/
Operation Crimson Palace: A Technical Deep Dive – Sophos News

Unmasking Deep Scams, AI-Fueled Fraud Revolution with Mikko Hypponen - Infosecurity Magazine

https://www.infosecurity-magazine.com/interviews/unmasking-deep-scams-mikko
Unmasking Deep Scams, AI-Fueled Fraud Revolution with Mikko Hypponen - Infosecurity Magazine

How I Hacked my Car Part 3: Making Software :: Programming With Style

https://programmingwithstyle.com/posts/howihackedmycarpart3/
How I Hacked my Car Part 3: Making Software :: Programming With Style

Club Penguin fans breached Disney Confluence server, stole 2.5GB of data

https://www.bleepingcomputer.com/news/security/club-penguin-fans-breached-disney-confluence-server-stole-25gb-of-data/
Club Penguin fans breached Disney Confluence server, stole 2.5GB of data

Zyxel Releases Patches for Firmware Vulnerabilities in EoL NAS Models

https://thehackernews.com/2024/06/zyxel-releases-patches-for-firmware.html
Zyxel Releases Patches for Firmware Vulnerabilities in EoL NAS Models

How I Hacked my Car :: Programming With Style

https://programmingwithstyle.com/posts/howihackedmycar/
How I Hacked my Car :: Programming With Style

Home | OnChain Industries

http://OnChain.industries
Home | OnChain Industries

225,000 More Cybersecurity Workers Needed in US: CyberSeek - SecurityWeek

https://www.securityweek.com/225000-more-cybersecurity-workers-needed-in-us-cyberseek/
225,000 More Cybersecurity Workers Needed in US: CyberSeek - SecurityWeek

Rebranded Knight Ransomware Targeting Healthcare and Businesses Worldwide

https://thehackernews.com/2024/06/rebranded-knight-ransomware-targeting.html
Rebranded Knight Ransomware Targeting Healthcare and Businesses Worldwide

CNN, Paris Hilton, and Sony TikTok accounts hacked via DMs

https://securityaffairs.com/164158/hacking/tiktok-accounts-hacked-via-dms.html
CNN, Paris Hilton, and Sony TikTok accounts hacked via DMs

FUZZING'23 Workshop @ ISSTA

https://fuzzingworkshop.github.io/
FUZZING'23 Workshop @ ISSTA