10/09

Palo Alto Networks warns of firewall hijack bugs with public exploit

https://www.bleepingcomputer.com/news/security/palo-alto-networks-warns-of-firewall-hijack-bugs-with-public-exploit/
Palo Alto Networks warns of firewall hijack bugs with public exploit

TrustedSec | EKUwu: Not just another AD CS ESC

https://trustedsec.com/blog/ekuwu-not-just-another-ad-cs-esc
TrustedSec | EKUwu: Not just another AD CS ESC

Internet Archive hacked, data breach impacts 31 million users

https://www.bleepingcomputer.com/news/security/internet-archive-hacked-data-breach-impacts-31-million-users/
Internet Archive hacked, data breach impacts 31 million users

influence-and-cyber-operations-an-update_October-2024.pdf

https://cdn.openai.com/threat-intelligence-reports/influence-and-cyber-operations-an-update_October-2024.pdf
influence-and-cyber-operations-an-update_October-2024.pdf

security-research/pocs/linux/kernelctf/CVE-2023-52447_cos/docs/exploit.md at master · google/security-research · GitHub

https://github.com/google/security-research/blob/master/pocs/linux/kernelctf/CVE-2023-52447_cos/docs/exploit.md
security-research/pocs/linux/kernelctf/CVE-2023-52447_cos/docs/exploit.md at master · google/security-research · GitHub

Can You Get Root With Only a Cigarette Lighter? | Blog

https://www.da.vidbuchanan.co.uk/blog/dram-emfi.html
Can You Get Root With Only a Cigarette Lighter? | Blog

Mozilla fixes Firefox zero-day actively exploited in attacks

https://www.bleepingcomputer.com/news/security/mozilla-fixes-firefox-zero-day-actively-exploited-in-attacks/
Mozilla fixes Firefox zero-day actively exploited in attacks

European govt air-gapped systems breached using custom malware

https://www.bleepingcomputer.com/news/security/hackers-breach-european-air-gapped-govt-systems-with-custom-malware/
European govt air-gapped systems breached using custom malware

Dutch police arrest admin of 'Bohemia/Cannabia' dark web market

https://www.bleepingcomputer.com/news/legal/dutch-police-arrest-admin-of-bohemia-cannabia-dark-web-market/
Dutch police arrest admin of 'Bohemia/Cannabia' dark web market

File hosting services misused for identity phishing | Microsoft Security Blog

https://www.microsoft.com/en-us/security/blog/2024/10/08/file-hosting-services-misused-for-identity-phishing/
File hosting services misused for identity phishing | Microsoft Security Blog

Microsoft Issues Security Update Fixing 118 Flaws, Two Actively Exploited in the Wild

https://thehackernews.com/2024/10/microsoft-issues-security-update-fixing.html
Microsoft Issues Security Update Fixing 118 Flaws, Two Actively Exploited in the Wild

Mind the (air) gap: GoldenJackal gooses government guardrails

https://www.welivesecurity.com/en/eset-research/mind-air-gap-goldenjackal-gooses-government-guardrails/
Mind the (air) gap: GoldenJackal gooses government guardrails

Microsoft Detects Growing Use of File Hosting Services in Business Email Compromise Attacks

https://thehackernews.com/2024/10/microsoft-detects-growing-use-of-file.html
Microsoft Detects Growing Use of File Hosting Services in Business Email Compromise Attacks

Discord blocked in Russia and Turkey for spreading illegal content

https://www.bleepingcomputer.com/news/government/discord-blocked-in-russia-and-turkey-for-spreading-illegal-content/
Discord blocked in Russia and Turkey for spreading illegal content

Recent Dr.Web cyberattack claimed by pro-Ukrainian hacktivists

https://www.bleepingcomputer.com/news/security/recent-drweb-breach-claimed-by-dumpforums-pro-ukrainian-hacktivists/
Recent Dr.Web cyberattack claimed by pro-Ukrainian hacktivists

Palo Alto Expedition: From N-Day to Full Compromise – Horizon3.ai

https://www.horizon3.ai/attack-research/palo-alto-expedition-from-n-day-to-full-compromise/
Palo Alto Expedition: From N-Day to Full Compromise – Horizon3.ai

Why I don't write exploits* · Addison Crump

https://addisoncrump.info/important-information/why-i-dont-write-exploits/
Why I don't write exploits* · Addison Crump

N. Korean Hackers Use Fake Interviews to Infect Developers with Cross-Platform Malware

https://thehackernews.com/2024/10/n-korean-hackers-use-fake-interviews-to.html
N. Korean Hackers Use Fake Interviews to Infect Developers with Cross-Platform Malware

Researchers Uncover Major Security Vulnerabilities in Industrial MMS Protocol Libraries

https://thehackernews.com/2024/10/researchers-uncover-major-security.html
Researchers Uncover Major Security Vulnerabilities in Industrial MMS Protocol Libraries

OffSec Exam HTB Lists | 0xdf hacks stuff

https://0xdf.gitlab.io/cheatsheets/offsec
OffSec Exam HTB Lists | 0xdf hacks stuff

DumpForums Claim 10TB Data Breach at Russian Cybersecurity Firm Dr.Web

https://hackread.com/dumpforums-russian-cybersecurity-firm-dr-web-data-breach/
DumpForums Claim 10TB Data Breach at Russian Cybersecurity Firm Dr.Web