Admins of MFA bypass service plead guilty to fraud
https://www.bleepingcomputer.com/news/legal/admins-of-mfa-bypass-service-otp.agency-plead-guilty/
Transport for London discloses ongoing “cyber security incident”
https://www.bleepingcomputer.com/news/security/transport-for-london-discloses-ongoing-cyber-security-incident/
Business services giant CBIZ discloses customer data breach
https://www.bleepingcomputer.com/news/security/business-services-giant-cbiz-discloses-customer-data-breach/
Owners of 1-Time Passcode Theft Service Plead Guilty – Krebs on Security
https://krebsonsecurity.com/2024/09/owners-of-1-time-passcode-theft-service-plead-guilty/
Thread Name-Calling - using Thread Name for offense - Check Point Research
https://research.checkpoint.com/2024/thread-name-calling-using-thread-name-for-offense/
Verkada to pay $2.95M for security failures leading to breaches
https://www.bleepingcomputer.com/news/security/verkada-to-pay-295m-for-security-failures-leading-to-breaches/
Firmware Security: Alcatel-Lucent ALE-DeskPhone | SySS Tech Blog
https://blog.syss.com/posts/voip-deskphone-firmware-security/
mskssrv.sys - CVE-2023–29360 | Researchs
https://seg-fault.gitbook.io/researchs/windows-security-research/exploit-development/mskssrv.sys-cve-2023-29360
Malicious npm Packages Mimicking 'noblox.js' Compromise Roblox Developers' Systems
https://thehackernews.com/2024/09/malicious-npm-packages-mimicking.html
I Became HackerOne's Latest Most Valuable Hacker (h1-702 vlog) - YouTube
https://youtu.be/gPzDJ9BXvgc
The Malware That Must Not Be Named: Suspected Espionage Campaign Delivers “Voldemort” | Proofpoint US
https://www.proofpoint.com/us/blog/threat-insight/malware-must-not-be-named-suspected-espionage-campaign-delivers-voldemort
US24-Sialveras-Bugs-Of-Yore-Wednesday.pdf
https://i.blackhat.com/BH-US-24/Presentations/US24-Sialveras-Bugs-Of-Yore-Wednesday.pdf
Cyber Espionage Campaign Leverages Novel Tactics and “Voldemort” Malware to Target Global Organizations
https://securityonline.info/cyber-espionage-campaign-leverages-novel-tactics-and-voldemort-malware-to-target-global-organizations/
Breaking Down Barriers: Exploiting Pre-Auth SQL Injection in WhatsUp Gold
https://summoning.team/blog/progress-whatsup-gold-sqli-cve-2024-6670/
blog | The public blog of Santander Cyber Security Research
https://santandersecurityresearch.github.io/blog/sshing_the_masses.html
Exploitation of a kernel pool overflow from a restrictive chunk size (CVE-2021-31969) | STAR Labs
https://starlabs.sg/blog/2023/11-exploitation-of-a-kernel-pool-overflow-from-a-restrictive-chunk-size-cve-2021-31969/