07/19

CrowdStrike update crashes Windows systems, causes outages worldwide

https://www.bleepingcomputer.com/news/security/crowdstrike-update-crashes-windows-systems-causes-outages-worldwide/
CrowdStrike update crashes Windows systems, causes outages worldwide

xkcd: CrowdStrike

http://xkcd.com/2961
xkcd: CrowdStrike

https://www.reddit.com/r/crowdstrike/comments/1e6vmkf/bsod_error_in_latest_crowdstrike_update/

https://www.reddit.com/r/crowdstrike/comments/1e6vmkf/bsod_error_in_latest_crowdstrike_update/

VirusTotal - File - e50deca54e79c37a0360a6995cc54f8b2371c364e3a56957641cfb54dd50c600

https://www.virustotal.com/gui/file/e50deca54e79c37a0360a6995cc54f8b2371c364e3a56957641cfb54dd50c600/details
VirusTotal - File - e50deca54e79c37a0360a6995cc54f8b2371c364e3a56957641cfb54dd50c600

Major Microsoft 365 outage caused by Azure configuration change

https://www.bleepingcomputer.com/news/microsoft/major-microsoft-365-outage-caused-by-azure-configuration-change/
Major Microsoft 365 outage caused by Azure configuration change

Huge Microsoft Outage Linked to CrowdStrike Takes Down Computers Around the World | WIRED

https://www.wired.com/story/microsoft-windows-outage-crowdstrike-global-it-probems/
Huge Microsoft Outage Linked to CrowdStrike Takes Down Computers Around the World | WIRED

PSBits/Misc/ExtractFVEPasswordsFromNTDS.ps1 at master · gtworek/PSBits · GitHub

https://github.com/gtworek/PSBits/blob/master/Misc/ExtractFVEPasswordsFromNTDS.ps1
PSBits/Misc/ExtractFVEPasswordsFromNTDS.ps1 at master · gtworek/PSBits · GitHub

MediSecure: Ransomware gang stole data of 12.9 million people

https://www.bleepingcomputer.com/news/security/medisecure-ransomware-gang-stole-data-of-129-million-people/
MediSecure: Ransomware gang stole data of 12.9 million people

Bad CrowdStrike Update Linked to Major IT Outages Worldwide - SecurityWeek

https://www.securityweek.com/major-outages-worldwide-linked-to-bsod-caused-by-bad-crowdstrike-update/
Bad CrowdStrike Update Linked to Major IT Outages Worldwide - SecurityWeek

Automated CrowdStrike BSOD Workaround in Safe Mode using Group Policy · GitHub

https://gist.github.com/whichbuffer/7830c73711589dcf9e7a5217797ca617
Automated CrowdStrike BSOD Workaround in Safe Mode using Group Policy · GitHub

Introduction to x64 Linux Binary Exploitation (Part 1) | by +Ch0pin🕷️ | Medium

https://valsamaras.medium.com/introduction-to-x64-linux-binary-exploitation-part-1-14ad4a27aeef
Introduction to x64 Linux Binary Exploitation (Part 1) | by +Ch0pin🕷️ | Medium

SolarWinds fixes 8 critical bugs in access rights audit software

https://www.bleepingcomputer.com/news/security/solarwinds-fixes-8-critical-bugs-in-access-rights-audit-software/
SolarWinds fixes 8 critical bugs in access rights audit software

Introduction to x64 Linux Binary Exploitation (Part 2)—return into libc | by +Ch0pin🕷️ | Medium

https://valsamaras.medium.com/introduction-to-x64-binary-exploitation-part-2-return-into-libc-c325017f465
Introduction to x64 Linux Binary Exploitation (Part 2)—return into libc | by +Ch0pin🕷️ | Medium

Office of Public Affairs | Two Foreign Nationals Plead Guilty to Participating in LockBit Ransomware Group | United States Department of Justice

https://www.justice.gov/opa/pr/two-foreign-nationals-plead-guilty-participating-lockbit-ransomware-group
Office of Public Affairs | Two Foreign Nationals Plead Guilty to Participating in LockBit Ransomware Group | United States Department of Justice

Infosuck – HACK.XXX

https://hack.xxx/collections/infosuck
Infosuck – HACK.XXX

https://pathonproject.com/zb/?4db3cd4711840eeb=#84u97qshwGCoOrDQzgDuB82zPyZik8SNAMd9QgnUm9g=

https://pathonproject.com/zb/?4db3cd4711840eeb=#84u97qshwGCoOrDQzgDuB82zPyZik8SNAMd9QgnUm9g=

Cryptocurrency Traders Beware: New Malware Exploits RDPWrapper and Tailscale

https://securityonline.info/cryptocurrency-traders-beware-new-malware-exploits-rdpwrapper-and-tailscale/
Cryptocurrency Traders Beware: New Malware Exploits RDPWrapper and Tailscale

Pro-Houthi Group Targets Yemen Aid Organizations with Android Spyware

https://thehackernews.com/2024/07/pro-houthi-group-targets-yemen-aid.html
Pro-Houthi Group Targets Yemen Aid Organizations with Android Spyware

APT_REPORT/kimsuky/rapid7-Kimsukys-Phishing-and-Payload-Tactics_wp.pdf at master · blackorbird/APT_REPORT · GitHub

https://github.com/blackorbird/APT_REPORT/blob/master/kimsuky/rapid7-Kimsukys-Phishing-and-Payload-Tactics_wp.pdf
APT_REPORT/kimsuky/rapid7-Kimsukys-Phishing-and-Payload-Tactics_wp.pdf at master · blackorbird/APT_REPORT · GitHub

GitHub - coffinxp/img-payloads

https://github.com/coffinxp/img-payloads
GitHub - coffinxp/img-payloads

Russians plead guilty to involvement in LockBit ransomware attacks

https://www.bleepingcomputer.com/news/security/russians-plead-guilty-to-involvement-in-lockbit-ransomware-attacks/
Russians plead guilty to involvement in LockBit ransomware attacks

MediSecure Data Breach Impacts 12.9 Million Individuals - SecurityWeek

https://www.securityweek.com/medisecure-data-breach-impacts-12-9-million-individuals/
MediSecure Data Breach Impacts 12.9 Million Individuals - SecurityWeek

BSides Las Vegas

http://BSidesLV.org
BSides Las Vegas

Update: Worldwide IT outage due to buggy Crowdstrike update - Help Net Security

https://www.helpnetsecurity.com/2024/07/19/crowdstrike-it-outage-update/
Update: Worldwide IT outage due to buggy Crowdstrike update - Help Net Security

Cisco fixed a critical flaw in Security Email Gateway that could allow attackers to add root users

https://securityaffairs.com/165905/security/cisco-fixed-a-critical-flaw-in-security-email-gateway-that-could-allow-attackers-to-add-root-users.html
Cisco fixed a critical flaw in Security Email Gateway that could allow attackers to add root users

Two Russian Nationals Plead Guilty in LockBit Ransomware Attacks

https://thehackernews.com/2024/07/two-russian-nationals-plead-guilty-in.html
Two Russian Nationals Plead Guilty in LockBit Ransomware Attacks

WazirX Cryptocurrency Exchange Loses $230 Million in Major Security Breach

https://thehackernews.com/2024/07/wazirx-cryptocurrency-exchange-loses.html
WazirX Cryptocurrency Exchange Loses $230 Million in Major Security Breach

CrowdStrike code update bricking PCs around the world • The Register

https://go.theregister.com/feed/www.theregister.com/2024/07/19/crowdstrike_falcon_sensor_bsod_incident/
CrowdStrike code update bricking PCs around the world • The Register

$300,000 Offered for WhatsApp Exploit at Pwn2Own Ireland - SecurityWeek

https://www.securityweek.com/300000-offered-for-whatsapp-exploit-at-pwn2own-ireland/
$300,000 Offered for WhatsApp Exploit at Pwn2Own Ireland - SecurityWeek

Revolver Rabbit gang registers 500,000 domains for malware campaigns

https://www.bleepingcomputer.com/news/security/revolver-rabbit-gang-registers-500-000-domains-for-malware-campaigns/
Revolver Rabbit gang registers 500,000 domains for malware campaigns

@[email protected] (@dhelder) / X

https://twitter.com/dhelder
@dhelder@macaw.social (@dhelder) / X

Recent Adobe Commerce Vulnerability Exploited in Wild - SecurityWeek

https://www.securityweek.com/recent-adobe-commerce-vulnerability-exploited-in-wild/
Recent Adobe Commerce Vulnerability Exploited in Wild - SecurityWeek

APT41 Infiltrates Networks in Italy, Spain, Taiwan, Turkey, and the U.K.

https://thehackernews.com/2024/07/apt41-infiltrates-networks-in-italy.html
APT41 Infiltrates Networks in Italy, Spain, Taiwan, Turkey, and the U.K.

Critical Cisco bug lets hackers add root users on SEG devices

https://www.bleepingcomputer.com/news/security/critical-cisco-bug-lets-hackers-add-root-users-on-seg-devices/
Critical Cisco bug lets hackers add root users on SEG devices