Offensive AI Researcher, X-Force Adversary Services - US | IBM
https://careers.ibm.com/job/20939619/offensive-ai-researcher-x-force-adversary-services-remote/?codes=WEB_SEARCH_NA
Chinese APT Abuses VSCode to Target Government in Asia
https://unit42.paloaltonetworks.com/stately-taurus-abuses-vscode-southeast-asian-espionage/
The Art of Exploiting Active Directory from Linux | Zavier
https://gatari.dev/posts/the-art-of-exploiting-ad-from-linux/
Payment gateway data breach affects 1.7 million credit card owners
https://www.bleepingcomputer.com/news/security/payment-gateway-data-breach-affects-17-million-credit-card-owners/
Chinese Hackers Exploit Visual Studio Code in Southeast Asian Cyberattacks
https://thehackernews.com/2024/09/chinese-hackers-exploit-visual-studio.html
One Million US Kaspersky Customers Transferred to Pango's UltraAV - SecurityWeek
https://www.securityweek.com/one-million-us-kaspersky-customers-transferred-to-pangos-ultraav/
Meta fixes easily bypassed WhatsApp ‘View Once’ privacy feature
https://www.bleepingcomputer.com/news/security/meta-fixes-easily-bypassed-whatsapp-view-once-privacy-feature/
Progress Software fixed a maximum severity flaw in LoadMaster
https://securityaffairs.com/168192/uncategorized/progress-software-emergency-loadmaster-flaw.html
Predator Spyware Resurfaces With Fresh Infrastructure - SecurityWeek
https://www.securityweek.com/predator-spyware-resurfaces-with-fresh-infrastructure/
TIDRONE APT targets drone manufacturers in Taiwan
https://securityaffairs.com/168210/apt/tidrone-targets-organizations-taiwan.html
GitHub - dadevel/impacket-zsh-integration: ZSH integration for Impacket
https://github.com/dadevel/impacket-zsh-integration
U.S. Offers $10 Million for Info on Russian Cadet Blizzard Hackers Behind Major Attacks
https://thehackernews.com/2024/09/us-offers-10-million-for-info-on.html
The (Anti-)EDR Compendium
https://blog.deeb.ch/posts/how-edr-works/
Veeam Backup & Response - RCE With Auth, But Mostly Without Auth (CVE-2024-40711)
https://labs.watchtowr.com/veeam-backup-response-rce-with-auth-but-mostly-without-auth-cve-2024-40711-2/
New Android SpyAgent Malware Uses OCR to Steal Crypto Wallet Recovery Keys
https://thehackernews.com/2024/09/new-android-spyagent-malware-uses-ocr.html
Remote Desktop Application vs MSTSC Forensics: RDP Artifacts You Might Be Missing | ZeroFox
https://www.zerofox.com/blog/remote-desktop-application-vs-mstsc-forensics-the-rdp-artifacts-you-might-be-missing/
Arlo: I'm watching you
https://synacktiv.com/en/publications/arlo-im-watching-you
Two Indicted in US for Running Dark Web Marketplaces Offering Stolen Information - SecurityWeek
https://www.securityweek.com/two-indicted-in-us-for-running-dark-web-marketplaces-offering-stolen-information/
GitHub - Meckazin/ChromeKatz: Dump cookies directly from Chrome process memory
https://github.com/Meckazin/ChromeKatz
A half-hour to learn Rust
https://fasterthanli.me/articles/a-half-hour-to-learn-rust
GitHub - The-Viper-One/PsMapExec: A PowerShell tool that takes strong inspiration from CrackMapExec.
https://github.com/The-Viper-One/PsMapExec
Critical SonicWall Vulnerability Possibly Exploited in Ransomware Attacks - SecurityWeek
https://www.securityweek.com/critical-sonicwall-vulnerability-possibly-exploited-in-ransomware-attacks/
MalwareBazaar | SHA256 915bc4d4e2670ce3cdb8833379578b2e6ade1446e5935d21d12ff25d9b496165
https://bazaar.abuse.ch/sample/915bc4d4e2670ce3cdb8833379578b2e6ade1446e5935d21d12ff25d9b496165/
MalwareBazaar | COVERTCATCH
https://bazaar.abuse.ch/browse/tag/COVERTCATCH/
Windows DWM Core Library Elevation of Privilege Vulnerability (CVE-2024-30051)
https://www.coresecurity.com/core-labs/articles/windows-dwm-core-library-elevation-privilege-vulnerability-cve-2024-30051
New RAMBO Attack Uses RAM Radio Signals to Steal Data from Air-Gapped Networks
https://thehackernews.com/2024/09/new-rambo-attack-uses-ram-radio-signals.html
Red Team Initial Access with Michael Allen - Antisyphon Training
https://initial-access.com/
New RAMBO Attack Allows Air-Gapped Data Theft via RAM Radio Signals - SecurityWeek
https://www.securityweek.com/new-rambo-attack-allows-air-gapped-data-theft-via-ram-radio-signals/