Hacker Trends
08/27
08/28
08/29
Statistic
01/15 22:57 (UTC)
08/27
08/28
08/29
9 Posts
Release v0.7.0 · VirusTotal/yara-x · GitHub
https://
github.com
/VirusTotal/yara-x/releases/tag/v0.7.0
8 Posts
奇安信威胁情报中心
https://
ti.qianxin.com
/blog/articles/operation-deviltiger-0day-vulnerability-techniques-and-tactics-used-by-apt-q-12-disclosed-en/
5 Posts
DICK’s shuts down email, locks employee accounts after cyberattack
https://
www.bleepingcomputer.com
/news/security/dicks-sporting-goods-says-confidential-data-exposed-in-cyberattack/
5 Posts
Taking the Crossroads: The Versa Director Zero-Day Exploitation - Lumen
https://
blog.lumen.com
/taking-the-crossroads-the-versa-director-zero-day-exploitation/
5 Posts
GitHub - ynwarcs/CVE-2024-38063: poc for CVE-2024-38063 (RCE in tcpip.sys)
https://
github.com
/ynwarcs/CVE-2024-38063
4 Posts
WPS Office Zero-Day Exploited by South Korea-Linked Cyberspies - SecurityWeek
https://
www.securityweek.com
/wps-office-zero-day-exploited-by-south-korea-linked-cyberspies/
4 Posts
Google's spyware hunters track state-sponsored malware
https://
www.nzz.ch
/english/googles-spyware-hunters-track-state-sponsored-malware-ld.1845068
4 Posts
Hacking LLMs 101 : Attention is all I need ? | by Mehdi Zehani | Medium
https://
medium.com
/@zehanimehdi49/hacking-llms-101-attention-is-all-i-need-407fa25c1796
4 Posts
APT-C-60 Group Exploit WPS Office Flaw to Deploy SpyGlace Backdoor
https://
thehackernews.com
/2024/08/apt-c-60-group-exploit-wps-office-flaw.html
4 Posts
Censys Finds Hundreds of Exposed Servers as Volt Typhoon APT Targets Service Providers - SecurityWeek
https://
www.securityweek.com
/censys-finds-hundreds-of-exposed-servers-as-volt-typhoon-apt-targets-isps-msps/
4 Posts
Advanced Persistent Threat Targeting Vietnamese Human Rights Defenders | Huntress
https://
www.huntress.com
/blog/advanced-persistent-threat-targeting-vietnamese-human-rights-defenders
3 Posts
Dodging the Guardian: How Malware Evades EDR Detections | by Iglenson Security | Medium
https://
medium.com
/@IglensonSecurity/dodging-the-guardian-how-malware-evades-edr-detections-72ed61896406
3 Posts
Ep9: The blurring lines between nation-state APTs and the ransomware epidemic - Security Conversations
https://
securityconversations.com
/episode/ep9-the-blurring-lines-between-nation-state-apts-and-the-ransomware-epidemic/
3 Posts
Second Apache OFBiz Vulnerability Exploited in Attacks - SecurityWeek
https://
www.securityweek.com
/second-apache-ofbiz-vulnerability-exploited-in-attacks/
3 Posts
Decompiler Explorer
http://
dogbolt.org
3 Posts
US offers $2.5M reward for Belarusian man involved in mass malware distribution
https://
securityaffairs.com
/167684/cyber-crime/belarusian-man-mass-malware-distribution.html
3 Posts
BlackSuit ransomware stole data of 950,000 from software vendor
https://
www.bleepingcomputer.com
/news/security/blacksuit-ransomware-stole-data-of-950-000-from-software-vendor/
3 Posts
Employee arrested for locking Windows admins out of 254 servers in extortion plot
https://
www.bleepingcomputer.com
/news/security/employee-arrested-for-locking-windows-admins-out-of-254-servers-in-extortion-plot/
3 Posts
Inside Xerox WorkCentre: Two Unauthenticated RCEs – PT SWARM
https://
swarm.ptsecurity.com
/inside-xerox-workcentre-two-unauthenticated-rces/
3 Posts
Google increases Chrome bug bounty rewards up to $250,000
https://
www.bleepingcomputer.com
/news/google/google-increases-chrome-bug-bounty-rewards-up-to-250-000/
3 Posts
PoorTry Windows driver evolves into a full-featured EDR wiper
https://
www.bleepingcomputer.com
/news/security/poortry-windows-driver-evolves-into-a-full-featured-edr-wiper/
3 Posts
LinkedIn Hires Former Twitter Security Chief Lea Kissner as New CISO - SecurityWeek
https://
www.securityweek.com
/linkedin-hires-former-twitter-security-chief-lea-kissner-as-new-ciso/
3 Posts
GitHub - xv0nfers/V8-sbx-bypass-collection
https://
github.com
/xv0nfers/V8-sbx-bypass-collection
3 Posts
Compiler Explorer
http://
godbolt.org
3 Posts
New QR Code Phishing Campaign Exploits Microsoft Sway to Steal Credentials
https://
thehackernews.com
/2024/08/new-qr-code-phishing-campaign-exploits.html
3 Posts
MalwareBazaar | RobotDropper
https://
bazaar.abuse.ch
/browse/tag/RobotDropper/
3 Posts
Fortra Issues Patch for High-Risk FileCatalyst Workflow Security Vulnerability
https://
thehackernews.com
/2024/08/fortra-issues-patch-for-high-risk.html
3 Posts
950,000 Impacted by Young Consulting Data Breach - SecurityWeek
https://
www.securityweek.com
/950000-impacted-by-young-consulting-data-breach/
3 Posts
Peach Sandstorm deploys new custom Tickler malware in long-running intelligence gathering operations | Microsoft Security Blog
https://
www.microsoft.com
/en-us/security/blog/2024/08/28/peach-sandstorm-deploys-new-custom-tickler-malware-in-long-running-intelligence-gathering-operations/
3 Posts
New Tickler malware used to backdoor US govt, defense orgs
https://
www.bleepingcomputer.com
/news/security/new-tickler-malware-used-to-backdoor-us-govt-defense-orgs/
3 Posts
Security BSides Ahmedabad
https://
konfhub.com
/security-bsides-ahmedabad
3 Posts
Iranian hackers work with ransomware gangs to extort breached orgs
https://
www.bleepingcomputer.com
/news/security/iranian-hackers-work-with-ransomware-gangs-to-extort-breached-orgs/
3 Posts
BlackByte Ransomware Exploits VMware ESXi Flaw in Latest Attack Wave
https://
thehackernews.com
/2024/08/blackbyte-ransomware-exploits-vmware.html
3 Posts
Critical WPML Plugin Flaw Exposes WordPress Sites to Remote Code Execution
https://
thehackernews.com
/2024/08/critical-wpml-plugin-flaw-exposes.html
3 Posts
Malware Delivered via Malicious Pidgin Plugin, Signal Fork - SecurityWeek
https://
www.securityweek.com
/malware-delivered-via-malicious-pidgin-plugin-signal-fork/
3 Posts
Shielder - Vtiger CRM (<= 8.1.0) Broken Access Control in Migration module
https://
www.shielder.com
/advisories/vtiger-migration-bac/
3 Posts
Iran-based Cyber Actors Enabling Ransomware Attacks on US Organizations | CISA
https://
www.cisa.gov
/news-events/cybersecurity-advisories/aa24-241a
3 Posts
CVE-2024-38063 - Remotely Exploiting The Kernel Via IPv6
https://
malwaretech.com
/2024/08/exploiting-CVE-2024-38063.html
3 Posts
Fortra fixes critical FileCatalyst Workflow hardcoded password issue
https://
www.bleepingcomputer.com
/news/security/fortra-fixes-critical-filecatalyst-workflow-hardcoded-password-issue/