08/29

CVE-2024-38063 - Remotely Exploiting The Kernel Via IPv6

https://malwaretech.com/2024/08/exploiting-CVE-2024-38063.html
CVE-2024-38063 - Remotely Exploiting The Kernel Via IPv6

Analysis of two arbitrary code execution vulnerabilities affecting WPS Office

https://www.welivesecurity.com/en/eset-research/analysis-of-two-arbitrary-code-execution-vulnerabilities-affecting-wps-office/
Analysis of two arbitrary code execution vulnerabilities affecting WPS Office

Malware exploits 5-year-old zero-day to infect end-of-life IP cameras

https://www.bleepingcomputer.com/news/security/malware-exploits-5-year-old-zero-day-to-infect-end-of-life-ip-cameras/
Malware exploits 5-year-old zero-day to infect end-of-life IP cameras

Latrodectus Rapid Evolution Continues With Latest New Payload Features - Netskope

https://www.netskope.com/blog/latrodectus-rapid-evolution-continues-with-latest-new-payload-features
Latrodectus Rapid Evolution Continues With Latest New Payload Features - Netskope

Vietnamese Human Rights Group Targeted in Multi-Year Cyberattack by APT32

https://thehackernews.com/2024/08/vietnamese-human-rights-group-targeted.html
Vietnamese Human Rights Group Targeted in Multi-Year Cyberattack by APT32

FBI: RansomHub ransomware breached 210 victims since February

https://www.bleepingcomputer.com/news/security/fbi-ransomhub-ransomware-breached-210-victims-since-february/
FBI: RansomHub ransomware breached 210 victims since February

Russian APT29 hackers use iOS, Chrome exploits created by spyware vendors

https://www.bleepingcomputer.com/news/security/russian-apt29-hackers-use-ios-chrome-exploits-created-by-spyware-vendors/
Russian APT29 hackers use iOS, Chrome exploits created by spyware vendors

Exploiting Enterprise Backup Software For Privilege Escalation: Part Two

https://northwave-cybersecurity.com/exploiting-enterprise-backup-software-for-privilege-escalation-part-two
Exploiting Enterprise Backup Software For Privilege Escalation: Part Two

Beckhoff TwinCAT/BSD Vulnerabilities Expose PLCs to Tampering, DoS Attacks - SecurityWeek

https://www.securityweek.com/beckhoff-twincat-bsd-vulnerabilities-expose-plcs-to-tampering-dos-attacks/
Beckhoff TwinCAT/BSD Vulnerabilities Expose PLCs to Tampering, DoS Attacks - SecurityWeek

Unpatched AVTECH IP Camera Flaw Exploited by Hackers for Botnet Attacks

https://thehackernews.com/2024/08/unpatched-avtech-ip-camera-flaw.html
Unpatched AVTECH IP Camera Flaw Exploited by Hackers for Botnet Attacks

Ransomware Gang Leaks Data Allegedly Stolen From Microchip Technology - SecurityWeek

https://www.securityweek.com/ransomware-gang-leaks-data-allegedly-stolen-from-microchip-technology/
Ransomware Gang Leaks Data Allegedly Stolen From Microchip Technology - SecurityWeek

Inside Xerox WorkCentre: Two Unauthenticated RCEs – PT SWARM

https://swarm.ptsecurity.com/inside-xerox-workcentre-two-unauthenticated-rces/
Inside Xerox WorkCentre: Two Unauthenticated RCEs – PT SWARM

Russian Hackers Exploit Safari and Chrome Flaws in High-Profile Cyberattack

https://thehackernews.com/2024/08/russian-hackers-exploit-safari-and.html
Russian Hackers Exploit Safari and Chrome Flaws in High-Profile Cyberattack

Iran-linked APT33 adds new Tickler malware to its arsenal

https://securityaffairs.com/167730/apt/apt33-used-new-tickler-malware.html
Iran-linked APT33 adds new Tickler malware to its arsenal

Iranian Hackers Use New Tickler Malware for Intelligence Gathering on Critical Infrastructure - SecurityWeek

https://www.securityweek.com/iranian-hackers-use-new-tickler-malware-to-collect-intel-from-us-uae/
Iranian Hackers Use New Tickler Malware for Intelligence Gathering on Critical Infrastructure - SecurityWeek

US Sees Iranian Hackers Working Closely With Ransomware Groups - SecurityWeek

https://www.securityweek.com/us-sees-iranian-hackers-working-closely-with-ransomware-groups/
US Sees Iranian Hackers Working Closely With Ransomware Groups - SecurityWeek

South Korean hackers exploited WPS Office zero-day to deploy malware

https://www.bleepingcomputer.com/news/security/apt-c-60-hackers-exploited-wps-office-zero-day-to-deploy-spyglace-malware/
South Korean hackers exploited WPS Office zero-day to deploy malware

Cisco Patches Multiple NX-OS Software Vulnerabilities - SecurityWeek

https://www.securityweek.com/cisco-patches-multiple-nx-os-software-vulnerabilities/
Cisco Patches Multiple NX-OS Software Vulnerabilities - SecurityWeek

I Spy With My Little Eye: Uncovering an Iranian Counterintelligence Operation | Google Cloud Blog

https://cloud.google.com/blog/topics/threat-intelligence/uncovering-iranian-counterintelligence-operation
I Spy With My Little Eye: Uncovering an Iranian Counterintelligence Operation | Google Cloud Blog

CVE Hunting Made Easy

https://projectblack.io/blog/cve-hunting-at-scale/
CVE Hunting Made Easy

U.S. Agencies Warn of Iranian Hacking Group's Ongoing Ransomware Attacks

https://thehackernews.com/2024/08/us-agencies-warn-of-iranian-hacking.html
U.S. Agencies Warn of Iranian Hacking Group's Ongoing Ransomware Attacks

$15k RCE Through Monitoring Debug Mode | by 0xold | Aug, 2024 | Medium

https://medium.com/@0xold/15k-rce-through-monitoring-debug-mode-4f474d8549d5
$15k RCE Through Monitoring Debug Mode | by 0xold | Aug, 2024 | Medium