06/24

CoinStats says North Korean hackers breached 1,590 crypto wallets

https://www.bleepingcomputer.com/news/cryptocurrency/coinstats-says-north-korean-hackers-breached-1-590-crypto-wallets/
CoinStats says North Korean hackers breached 1,590 crypto wallets

Execute commands by sending JSON? Learn how unsafe deserialization vulnerabilities work in Ruby projects - The GitHub Blog

https://github.blog/2024-06-20-execute-commands-by-sending-json-learn-how-unsafe-deserialization-vulnerabilities-work-in-ruby-projects/
Execute commands by sending JSON? Learn how unsafe deserialization vulnerabilities work in Ruby projects - The GitHub Blog

https://pathonproject.com/zb/?edc3d4b0e2c8d22b=#RT18aktjXeI8eNkSLYpLPhEFovT4vmiNZwG1mCovw78=

https://pathonproject.com/zb/?edc3d4b0e2c8d22b=#RT18aktjXeI8eNkSLYpLPhEFovT4vmiNZwG1mCovw78=

Next.js and cache poisoning: a quest for the black hole - zhero_web_security

https://zhero-web-sec.github.io/research-and-things/nextjs-and-cache-poisoning-a-quest-for-the-black-hole
Next.js and cache poisoning: a quest for the black hole - zhero_web_security

Chinese State-Sponsored RedJuliett Intensifies Taiwanese Cyber Espionage via Network Perimeter Exploitation | Recorded Future

https://www.recordedfuture.com/redjuliett-intensifies-taiwanese-cyber-espionage-via-network-perimeter
Chinese State-Sponsored RedJuliett Intensifies Taiwanese Cyber Espionage via Network Perimeter Exploitation | Recorded Future

Critical RCE Vulnerability Discovered in Ollama AI Infrastructure Tool

https://thehackernews.com/2024/06/critical-rce-vulnerability-discovered.html
Critical RCE Vulnerability Discovered in Ollama AI Infrastructure Tool

MongoDB NoSQL Injection with Aggregation Pipelines | Soroush Dalili (@irsdl) Blog

https://soroush.me/blog/2024/06/mongodb-nosql-injection-with-aggregation-pipelines/
MongoDB NoSQL Injection with Aggregation Pipelines | Soroush Dalili (@irsdl) Blog

Facebook PrestaShop module exploited to steal credit cards

https://www.bleepingcomputer.com/news/security/facebook-prestashop-module-exploited-to-steal-credit-cards/
Facebook PrestaShop module exploited to steal credit cards

Four FIN9 hackers indicted for cyberattacks causing $71M in losses

https://www.bleepingcomputer.com/news/security/four-fin9-hackers-indicted-for-cyberattacks-causing-71m-in-losses/
Four FIN9 hackers indicted for cyberattacks causing $71M in losses

Ultimate Guide to Prototype Pollution

https://www.netspi.com/blog/technical-blog/web-application-pentesting/ultimate-guide-to-prototype-pollution/
Ultimate Guide to Prototype Pollution

Experts observed approximately 120 malicious campaigns using the Rafel RAT - Security Affairs

https://securityaffairs.com/164844/cyber-crime/multiple-threat-actors-used-rafel-rat.html
Experts observed approximately 120 malicious campaigns using the Rafel RAT - Security Affairs

TRICON

https://bit.ly/TriConCFP
TRICON

US Sanctions 12 Kaspersky Executives  - SecurityWeek

https://www.securityweek.com/us-sanctions-12-kaspersky-executives/
US Sanctions 12 Kaspersky Executives  - SecurityWeek

DNS Deep Diving with Serena DiPenti - YouTube

https://www.youtube.com/live/p0Ar6eincE0?si=9L5drLjRRlpv_rVc
DNS Deep Diving with Serena DiPenti - YouTube

RedJuliett Cyber Espionage Campaign Hits 75 Taiwanese Organizations

https://thehackernews.com/2024/06/redjuliett-cyber-espionage-campaign.html
RedJuliett Cyber Espionage Campaign Hits 75 Taiwanese Organizations

AVTOKYO -no drink, no hack.- - AVTOKYO2024

https://www.avtokyo.org/avtokyo2024
AVTOKYO -no drink, no hack.- - AVTOKYO2024

VirusTotal - File - c16cdce72822bd40a5769811c36768147a3090438b1511fa01c68f7c51bd65c6

https://www.virustotal.com/gui/file/c16cdce72822bd40a5769811c36768147a3090438b1511fa01c68f7c51bd65c6
VirusTotal - File - c16cdce72822bd40a5769811c36768147a3090438b1511fa01c68f7c51bd65c6

TrustedSec Tech Brief - June 2024 Week 3 - YouTube

https://www.youtube.com/watch?v=zIaM7LFUP_0
TrustedSec Tech Brief - June 2024 Week 3 - YouTube