10/07

AT&T, Verizon reportedly hacked to target US govt wiretapping platform

https://www.bleepingcomputer.com/news/security/atandt-verizon-reportedly-hacked-to-target-us-govt-wiretapping-platform/
AT&T, Verizon reportedly hacked to target US govt wiretapping platform

Kyiv's hackers launched an unprecedented cyber attack on Russian state media VGTRK on Putin's birthday

https://securityaffairs.com/169486/cyber-warfare-2/kyivs-hackers-hit-russian-state-media.html
Kyiv's hackers launched an unprecedented cyber attack on Russian state media VGTRK on Putin's birthday

Ruby-SAML / GitLab Authentication Bypass (CVE-2024-45409)

https://blog.projectdiscovery.io/ruby-saml-gitlab-auth-bypass/
Ruby-SAML / GitLab Authentication Bypass (CVE-2024-45409)

VMK extractor for BitLocker with TPM and PIN

https://post-cyberlabs.github.io/Offensive-security-publications/posts/2024_09_tpmandpin/
VMK extractor for BitLocker with TPM and PIN

Qualcomm patches high-severity zero-day exploited in attacks

https://www.bleepingcomputer.com/news/security/qualcomm-patches-high-severity-zero-day-exploited-in-attacks/
Qualcomm patches high-severity zero-day exploited in attacks

Critical Apache Avro SDK Flaw Allows Remote Code Execution in Java Applications

https://thehackernews.com/2024/10/critical-apache-avro-sdk-flaw-allows.html
Critical Apache Avro SDK Flaw Allows Remote Code Execution in Java Applications

Google Blocks Unsafe Android App Sideloading in India for Improved Fraud Protection

https://thehackernews.com/2024/10/google-blocks-unsafe-android-app.html
Google Blocks Unsafe Android App Sideloading in India for Improved Fraud Protection

Critical Vulnerabilities Expose Nearly 1 Million DrayTek Routers Globally

https://hackread.com/1-million-draytek-routers-critical-vulnerabilities/
Critical Vulnerabilities Expose Nearly 1 Million DrayTek Routers Globally

Microsoft: Word deletes some documents instead of saving them

https://www.bleepingcomputer.com/news/microsoft/microsoft-word-for-microsoft-365-deletes-some-documents-instead-of-saving-them/
Microsoft: Word deletes some documents instead of saving them

GitHub - renniepak/CSPBypass

https://github.com/renniepak/CSPBypass
GitHub - renniepak/CSPBypass

New Gorilla Botnet Launches Over 300,000 DDoS Attacks Across 100 Countries

https://thehackernews.com/2024/10/new-gorilla-botnet-launches-over-300000.html
New Gorilla Botnet Launches Over 300,000 DDoS Attacks Across 100 Countries

CSP Bypass Search

http://cspbypass.com
CSP Bypass Search

perfctl: A Stealthy Malware Targeting Millions of Linux Servers

https://www.aquasec.com/blog/perfctl-a-stealthy-malware-targeting-millions-of-linux-servers/
perfctl: A Stealthy Malware Targeting Millions of Linux Servers

PentesterLab Blog: Hiring Your First AppSec Engineer

https://pentesterlab.com/blog/hiring-your-first-appsec-engineer
PentesterLab Blog: Hiring Your First AppSec Engineer

FBCS data breach impacted 238,000 Comcast customers

https://securityaffairs.com/169478/data-breach/fbcs-data-breach-impacted-238000-comcast-customers.html
FBCS data breach impacted 238,000 Comcast customers

E.U. Court Limits Meta's Use of Personal Facebook Data for Targeted Ads

https://thehackernews.com/2024/10/eu-court-limits-metas-use-of-personal.html
E.U. Court Limits Meta's Use of Personal Facebook Data for Targeted Ads

American Water shuts down online services after cyberattack

https://www.bleepingcomputer.com/news/security/american-water-shuts-down-online-services-after-cyberattack/
American Water shuts down online services after cyberattack

MalwareBazaar | Browse malware samples

https://bazaar.abuse.ch/browse.php?search=serial_number%3A026db70f749dc993edb96bd0d65bc394
MalwareBazaar | Browse malware samples

Virus Bulletin 2024 - Day I

https://www.linkedin.com/pulse/virus-bulletin-2024-day-i-veronica-valeros-4y8me
Virus Bulletin 2024 - Day I

Virus Bulletin 2024 - Day II

https://www.linkedin.com/pulse/virus-bulletin-2024-day-ii-veronica-valeros-vl5zf
Virus Bulletin 2024 - Day II

Base64 Beyond Encoding – Steganography and Canonical Form (part 1) - HexArcana

https://hexarcana.ch/b/2024-08-16-base64-beyond-encoding/
Base64 Beyond Encoding – Steganography and Canonical Form (part 1) - HexArcana

Base64 Beyond Encoding – Steganography and Canonical Form (part 2) - HexArcana

https://hexarcana.ch/b/2024-08-19-base64-beyond-encoding-p2/
Base64 Beyond Encoding – Steganography and Canonical Form (part 2) - HexArcana