10/10

Internet Archive hacked, data breach impacts 31 million users

https://www.bleepingcomputer.com/news/security/internet-archive-hacked-data-breach-impacts-31-million-users/
Internet Archive hacked, data breach impacts 31 million users

Mozilla issued an urgent Firefox update to fix actively exploited flaw

https://securityaffairs.com/169590/security/mozilla-firefox-actively-exploited-flaw.html
Mozilla issued an urgent Firefox update to fix actively exploited flaw

Fidelity Investments says data breach affects over 77,000 people

https://www.bleepingcomputer.com/news/security/fidelity-investments-says-data-breach-affects-over-77-000-people/
Fidelity Investments says data breach affects over 77,000 people

Aw, Sugar. Critical Vulnerabilities in SugarWOD – n00py Blog

https://www.n00py.io/2024/10/critical-vulnerabilities-in-sugarwod/
Aw, Sugar. Critical Vulnerabilities in SugarWOD – n00py Blog

CISA says critical Fortinet RCE flaw now exploited in attacks

https://www.bleepingcomputer.com/news/security/cisa-says-critical-fortinet-rce-flaw-now-exploited-in-attacks/
CISA says critical Fortinet RCE flaw now exploited in attacks

Fixing a bug in donut - winternl

https://winternl.com/fixing-a-bug-in-donut/
Fixing a bug in donut - winternl

E-skimming campaign uses Unicode obfuscation to hide the Mongolian Skimmer

https://securityaffairs.com/169632/malware/skimming-campaign-mongolian-skimmer.html
E-skimming campaign uses Unicode obfuscation to hide the Mongolian Skimmer

Palo Alto Networks warns of firewall hijack bugs with public exploit

https://www.bleepingcomputer.com/news/security/palo-alto-networks-warns-of-firewall-hijack-bugs-with-public-exploit/
Palo Alto Networks warns of firewall hijack bugs with public exploit

GitLab warns of critical arbitrary branch pipeline execution flaw

https://www.bleepingcomputer.com/news/security/gitlab-warns-of-critical-arbitrary-branch-pipeline-execution-flaw/
GitLab warns of critical arbitrary branch pipeline execution flaw

Hackers Hide Remcos RAT in GitHub Repository Comments

https://www.darkreading.com/vulnerabilities-threats/hackers-hide-remcos-rat-github-comments
Hackers Hide Remcos RAT in GitHub Repository Comments

Measuring Detection Coverage – Purple Team

https://ipurple.team/2024/10/10/measuring-detection-coverage/
Measuring Detection Coverage – Purple Team

Exploiting Microsoft Teams on macOS during a Purple Team engagement - Quarkslab's blog

https://blog.quarkslab.com/exploiting-microsoft-teams-on-macos-during-a-purple-team-engagement.html
Exploiting Microsoft Teams on macOS during a Purple Team engagement - Quarkslab's blog

OpenAI Blocks 20 Global Malicious Campaigns Using AI for Cybercrime and Disinformation

https://thehackernews.com/2024/10/openai-blocks-20-global-malicious.html
OpenAI Blocks 20 Global Malicious Campaigns Using AI for Cybercrime and Disinformation

How does the Linux Kernel start a Process

https://iq.thc.org/how-does-linux-start-a-process
How does the Linux Kernel start a Process

Experts Warn of Critical Unpatched Vulnerability in Linear eMerge E3 Systems

https://thehackernews.com/2024/10/experts-warn-of-critical-unpatched.html
Experts Warn of Critical Unpatched Vulnerability in Linear eMerge E3 Systems

Palo Alto Expedition: From N-Day to Full Compromise – Horizon3.ai

https://www.horizon3.ai/attack-research/palo-alto-expedition-from-n-day-to-full-compromise/
Palo Alto Expedition: From N-Day to Full Compromise – Horizon3.ai

Microsoft Outlook bug blocks email logins, causes app crashes

https://www.bleepingcomputer.com/news/microsoft/microsoft-outlook-bug-blocks-email-logins-causes-app-crashes/
Microsoft Outlook bug blocks email logins, causes app crashes

Cybercriminals Use Unicode to Hide Mongolian Skimmer in E-Commerce Platforms

https://thehackernews.com/2024/10/cybercriminals-use-unicode-to-hide.html
Cybercriminals Use Unicode to Hide Mongolian Skimmer in E-Commerce Platforms

Organizations Warned of Exploited Fortinet FortiOS Vulnerability - SecurityWeek

https://www.securityweek.com/organizations-warned-of-exploited-fortinet-fortios-vulnerability/
Organizations Warned of Exploited Fortinet FortiOS Vulnerability - SecurityWeek

Underground ransomware claims attack on Casio, leaks stolen data

https://www.bleepingcomputer.com/news/security/underground-ransomware-claims-attack-on-casio-leaks-stolen-data/
Underground ransomware claims attack on Casio, leaks stolen data

Discord

http://discord.gg/onlymalware
Discord

Can You Get Root With Only a Cigarette Lighter? | Blog

https://www.da.vidbuchanan.co.uk/blog/dram-emfi.html#can-you-get-root-with-only-a-cigarette-lighter
Can You Get Root With Only a Cigarette Lighter? | Blog