07/01

https://www.qualys.com/2024/07/01/cve-2024-6387/regresshion.txt

https://www.qualys.com/2024/07/01/cve-2024-6387/regresshion.txt

regreSSHion: Remote Unauthenticated Code Execution Vulnerability in OpenSSH server | Qualys Security Blog

https://blog.qualys.com/vulnerabilities-threat-research/2024/07/01/regresshion-remote-unauthenticated-code-execution-vulnerability-in-openssh-server
regreSSHion: Remote Unauthenticated Code Execution Vulnerability in OpenSSH server | Qualys Security Blog

io (@iok) / X

https://twitter.com/iok
io (@iok) / X

Router maker's support portal hacked, replies with MetaMask phishing

https://www.bleepingcomputer.com/news/security/router-makers-support-portal-responds-with-metamask-phishing/
Router maker's support portal hacked, replies with MetaMask phishing

New OpenSSH Vulnerability Could Lead to RCE as Root on Linux Systems

https://thehackernews.com/2024/07/new-openssh-vulnerability-could-lead-to.html
New OpenSSH Vulnerability Could Lead to RCE as Root on Linux Systems

CVE-2024-6387: Critical OpenSSH Unauthenticated RCE Flaw 'regreSSHion' Exposes Millions of Linux Systems

https://securityonline.info/cve-2024-6387-critical-openssh-unauthenticated-rce-flaw-regresshion-exposes-millions-of-linux-systems/
CVE-2024-6387: Critical OpenSSH Unauthenticated RCE Flaw 'regreSSHion' Exposes Millions of Linux Systems

CapraRAT Spyware Disguised as Popular Apps Threatens Android Users

https://thehackernews.com/2024/07/caprarat-spyware-disguised-as-popular.html
CapraRAT Spyware Disguised as Popular Apps Threatens Android Users

Latest Intel CPUs impacted by new Indirector side-channel attack

https://www.bleepingcomputer.com/news/security/latest-intel-cpus-impacted-by-new-indirector-side-channel-attack/
Latest Intel CPUs impacted by new Indirector side-channel attack

New regreSSHion OpenSSH RCE bug gives root on Linux servers

https://www.bleepingcomputer.com/news/security/new-regresshion-openssh-rce-bug-gives-root-on-linux-servers/
New regreSSHion OpenSSH RCE bug gives root on Linux servers

Release v0.5.0 · VirusTotal/yara-x · GitHub

https://github.com/VirusTotal/yara-x/releases/tag/v0.5.0
Release v0.5.0 · VirusTotal/yara-x · GitHub

Cisco warns of NX-OS zero-day exploited to deploy custom malware

https://www.bleepingcomputer.com/news/security/cisco-warns-of-nx-os-zero-day-exploited-to-deploy-custom-malware/
Cisco warns of NX-OS zero-day exploited to deploy custom malware

TeamViewer Hack Officially Attributed to Russian Cyberspies - SecurityWeek

https://www.securityweek.com/teamviewer-hack-officially-attributed-to-russian-cyberspies/
TeamViewer Hack Officially Attributed to Russian Cyberspies - SecurityWeek

A Detection Engineer’s Guide to SCCM Misconfiguration Abuse | by Trenton Tait | Jun, 2024 | SnapAttack

https://blog.snapattack.com/a-detection-engineers-guide-to-sccm-misconfiguration-abuse-50fa059a446e
A Detection Engineer’s Guide to SCCM Misconfiguration Abuse | by Trenton Tait | Jun, 2024 | SnapAttack

Microsoft tells more customers their emails have been stolen • The Register

https://go.theregister.com/feed/www.theregister.com/2024/07/01/infosec_in_brief/
Microsoft tells more customers their emails have been stolen • The Register

CDK Global says all dealers will be back online by Thursday

https://www.bleepingcomputer.com/news/security/cdk-global-says-all-dealers-will-be-back-online-by-thursday/
CDK Global says all dealers will be back online by Thursday

Police allege ‘evil twin’ in-flight Wi-Fi used to steal info • The Register

https://go.theregister.com/feed/www.theregister.com/2024/07/01/australia_evil_twin_wifi_airline_attack/
Police allege ‘evil twin’ in-flight Wi-Fi used to steal info • The Register

Securely design your applications and protect your sensitive data with VBS enclaves - Microsoft Community Hub

https://techcommunity.microsoft.com/t5/windows-os-platform-blog/securely-design-your-applications-and-protect-your-sensitive/ba-p/4179543
Securely design your applications and protect your sensitive data with VBS enclaves - Microsoft Community Hub

Critical Flaws in CocoaPods Expose iOS and macOS Apps to Supply Chain Attacks

https://thehackernews.com/2024/07/critical-flaws-in-cocoapods-expose-ios.html
Critical Flaws in CocoaPods Expose iOS and macOS Apps to Supply Chain Attacks

TrustedSec Tech Brief - June 2024 Week 4 - YouTube

https://www.youtube.com/watch?v=hBDfCnvY4XU
TrustedSec Tech Brief - June 2024 Week 4 - YouTube

https://www.openssh.com/txt/release-9.8

https://www.openssh.com/txt/release-9.8

oss-security - CVE-2024-6387: RCE in OpenSSH's server, on glibc-based Linux systems

https://www.openwall.com/lists/oss-security/2024/07/01/3
oss-security - CVE-2024-6387: RCE in OpenSSH's server, on glibc-based Linux systems

Google Offering $250,000 for Full VM Escape in New KVM Bug Bounty Program - SecurityWeek

https://www.securityweek.com/google-offering-250000-for-full-vm-escape-in-new-kvm-bug-bounty-program/
Google Offering $250,000 for Full VM Escape in New KVM Bug Bounty Program - SecurityWeek

Creating a Rootkit to Learn C - The Human Machine Interface

https://h0mbre.github.io/Learn-C-By-Creating-A-Rootkit/
Creating a Rootkit to Learn C - The Human Machine Interface

Millions of OpenSSH Servers Potentially Vulnerable to Remote regreSSHion Attack - SecurityWeek

https://www.securityweek.com/millions-of-openssh-servers-potentially-vulnerable-to-remote-regresshion-attack/
Millions of OpenSSH Servers Potentially Vulnerable to Remote regreSSHion Attack - SecurityWeek

Australian charged for ‘Evil Twin’ WiFi attack on plane

https://www.bleepingcomputer.com/news/security/australian-charged-for-evil-twin-wifi-attack-on-plane/
Australian charged for ‘Evil Twin’ WiFi attack on plane

Reversing Windows Container, episode II: Silo to Server Silo - Quarkslab's blog

https://blog.quarkslab.com/reversing-windows-container-part-ii-silo-to-server-silo.html
Reversing Windows Container, episode II: Silo to Server Silo - Quarkslab's blog

Indian Software Firm's Products Hacked to Spread Data-Stealing Malware

https://thehackernews.com/2024/07/indian-software-firms-products-hacked.html
Indian Software Firm's Products Hacked to Spread Data-Stealing Malware

Juniper Networks Releases Critical Security Update for Routers

https://thehackernews.com/2024/07/juniper-networks-releases-critical.html
Juniper Networks Releases Critical Security Update for Routers

Prudential Financial Data Breach Impacts 2.5 Million - SecurityWeek

https://www.securityweek.com/prudential-financial-data-breach-impacts-2-5-million/
Prudential Financial Data Breach Impacts 2.5 Million - SecurityWeek

RomHack - Buy Tickets

https://romhack.io/tickets
RomHack - Buy Tickets

Kimsuky Deploys TRANSLATEXT Chrome Extension |ThreatLabz

https://www.zscaler.com/blogs/security-research/kimsuky-deploys-translatext-target-south-korean-academia
Kimsuky Deploys TRANSLATEXT Chrome Extension |ThreatLabz