09/06

SonicWall SSLVPN access control flaw is now exploited in attacks

https://www.bleepingcomputer.com/news/security/sonicwall-sslvpn-access-control-flaw-is-now-exploited-in-attacks/
SonicWall SSLVPN access control flaw is now exploited in attacks

GitHub - fortra/CVE-2024-30051

https://github.com/fortra/CVE-2024-30051?tab=readme-ov-file
GitHub - fortra/CVE-2024-30051

BlindEagle Leveraging BlotchyQuasar | ThreatLabz

https://www.zscaler.com/blogs/security-research/blindeagle-targets-colombian-insurance-sector-blotchyquasar
BlindEagle Leveraging BlotchyQuasar | ThreatLabz

Deep Dive into RCU Race Condition: Analysis of TCP-AO UAF (CVE-2024–27394) | by Theori Vulnerability Research | Theori BLOG

https://blog.theori.io/deep-dive-into-rcu-race-condition-analysis-of-tcp-ao-uaf-cve-2024-27394-f40508b84c42?source=social.tw
Deep Dive into RCU Race Condition: Analysis of TCP-AO UAF (CVE-2024–27394) | by Theori Vulnerability Research | Theori BLOG

Hexacon - Conference – Agenda

https://www.hexacon.fr/conference/agenda/
Hexacon - Conference – Agenda

CISA Breaks Silence on Controversial ‘Airport Security Bypass’ Vulnerability  - SecurityWeek

https://www.securityweek.com/cisa-responds-after-disclosure-of-controversial-airport-security-bypass-vulnerability/
CISA Breaks Silence on Controversial ‘Airport Security Bypass’ Vulnerability  - SecurityWeek

Predator Spyware Infrastructure Resurfaces Post-Sanctions – What You Need to Know

https://www.recordedfuture.com/research/predator-spyware-infrastructure-returns-following-exposure-sanctions
Predator Spyware Infrastructure Resurfaces Post-Sanctions – What You Need to Know

The art of overDLLoading | Hexacorn

https://www.hexacorn.com/blog/2024/09/05/the-art-of-overdlloading/
The art of overDLLoading | Hexacorn

Pavel Durov Criticizes Outdated Laws After Arrest Over Telegram Criminal Activity

https://thehackernews.com/2024/09/paul-durov-criticizes-outdated-laws.html
Pavel Durov Criticizes Outdated Laws After Arrest Over Telegram Criminal Activity

LiteSpeed Cache Plugin Vulnerability Exposes Millions of WordPress Sites to Attacks - SecurityWeek

https://www.securityweek.com/litespeed-cache-plugin-vulnerability-exposes-millions-of-wordpress-sites-to-attacks/
LiteSpeed Cache Plugin Vulnerability Exposes Millions of WordPress Sites to Attacks - SecurityWeek

Veeam Patches Critical Vulnerabilities in Enterprise Products - SecurityWeek

https://www.securityweek.com/veeam-patches-critical-vulnerabilities-in-enterprise-products/
Veeam Patches Critical Vulnerabilities in Enterprise Products - SecurityWeek

The (Anti-)EDR Compendium

https://blog.deeb.ch/posts/how-edr-works/
The (Anti-)EDR Compendium

Cybersecurity Tricks for Secret Agent | DataDrivenInvestor

https://medium.datadriveninvestor.com/diy-for-a-spy-cybersecurity-techniques-for-the-secret-agent-43c8722a0422
Cybersecurity Tricks for Secret Agent | DataDrivenInvestor

Russian Military Cyber Actors Target US and Global Critical Infrastructure | CISA

https://www.cisa.gov/news-events/cybersecurity-advisories/aa24-249a
Russian Military Cyber Actors Target US and Global Critical Infrastructure | CISA

Gootloader C2 Sails to New Hoster (and new URL) – ⌛☃❀✵Gootloader Details ✵❀☃⌛

https://gootloader.wordpress.com/2024/09/05/gootloader-c2-sails-to-new-hoster-and-new-url/
Gootloader C2 Sails to New Hoster (and new URL) – ⌛☃❀✵Gootloader Details ✵❀☃⌛

TIDRONE Targets Military and Satellite Industries in Taiwan | Trend Micro (US)

https://www.trendmicro.com/en_us/research/24/i/tidrone-targets-military-and-satellite-industries-in-taiwan.html
TIDRONE Targets Military and Satellite Industries in Taiwan | Trend Micro (US)

Apache Makes Another Attempt at Patching Exploited RCE in OFBiz - SecurityWeek

https://www.securityweek.com/apache-makes-another-attempt-at-patching-exploited-rce-in-ofbiz/
Apache Makes Another Attempt at Patching Exploited RCE in OFBiz - SecurityWeek

MalwareBazaar | Sukhpreet Singh

https://bazaar.abuse.ch/browse/tag/Sukhpreet%20Singh/
MalwareBazaar | Sukhpreet Singh

MalwareBazaar | Siam Computer MD Kamrul Hassan

https://bazaar.abuse.ch/browse/tag/Siam%20Computer%20MD%20Kamrul%20Hassan/
MalwareBazaar | Siam Computer MD Kamrul Hassan

Introducing Java fuzz harness synthesis using LLMs · OSS-Fuzz blog

https://blog.oss-fuzz.com/posts/introducing-java-auto-harnessing/
Introducing Java fuzz harness synthesis using LLMs · OSS-Fuzz blog

ØSecurity (nullsec.us)

http://nullsec.us
ØSecurity (nullsec.us)

CVE Hunting Made Easy

https://projectblack.io/blog/cve-hunting-at-scale/
CVE Hunting Made Easy

https://pathonproject.com/zb/?35a7d0ccea5c0ccf=#24RkZHUKlSmZj1WAiSpa4n041KzWmyfzmM0/NLfyAok=

https://pathonproject.com/zb/?35a7d0ccea5c0ccf=#24RkZHUKlSmZj1WAiSpa4n041KzWmyfzmM0/NLfyAok=

Critical Security Flaw Found in LiteSpeed Cache Plugin for WordPress

https://thehackernews.com/2024/09/critical-security-flaw-found-in.html
Critical Security Flaw Found in LiteSpeed Cache Plugin for WordPress

Log in to X / X

https://twitter.com/nsm
Log in to X / X

Windows Wi-Fi Driver RCE Vulnerability - CVE-2024-30078 - Crowdfense

https://www.crowdfense.com/windows-wi-fi-driver-rce-vulnerability-cve-2024-30078/
Windows Wi-Fi Driver RCE Vulnerability - CVE-2024-30078 - Crowdfense