Exploit released for new Windows Server "WinReg" NTLM Relay attack
https://www.bleepingcomputer.com/news/security/exploit-released-for-new-windows-server-winreg-ntlm-relay-attack/
Samsung zero-day flaw actively exploited in the wild
https://securityaffairs.com/170119/security/samsung-zero-day-activey-exploited.html
GitHub - g0h4n/RustHound-CE: Active Directory data ingestor for BloodHound Community Edition written in Rust. 🦀
https://github.com/g0h4n/RustHound-CE
wisec2023_tuan.pdf
https://syssec.kaist.ac.kr/pub/2023/wisec2023_tuan.pdf
GitHub - SysSec-KAIST/LTESniffer: An Open-source LTE Downlink/Uplink Eavesdropper
https://github.com/SysSec-KAIST/LTESniffer
http://weakpass.com
http://weakpass.com
Cisco Confirms Security Incident After Hacker Offers to Sell Data - SecurityWeek
https://www.securityweek.com/cisco-confirms-security-incident-after-hacker-offers-to-sell-data/
Upload a video selfie to get your Facebook or Instagram account back | Malwarebytes
https://www.malwarebytes.com/blog/news/2024/10/upload-a-video-selfie-to-get-your-facebook-or-instagram-account-back
AWS, Azure auth keys found in Android and iOS apps used by millions
https://www.bleepingcomputer.com/news/security/aws-azure-auth-keys-found-in-android-and-ios-apps-used-by-millions/
DEF CON 32 - Top War Stories from a TryHard Bug Bounty Hunter -Justin Rhynorater Gardner - YouTube
https://www.youtube.com/watch?v=TqKb7h8VFcA
Security Flaw in Styra's OPA Exposes NTLM Hashes to Remote Attackers
https://thehackernews.com/2024/10/security-flaw-in-styras-opa-exposes.html
Google Warns of Samsung Zero-Day Exploited in the Wild - SecurityWeek
https://www.securityweek.com/google-warns-of-samsung-zero-day-exploited-in-the-wild/
Palo Alto Networks Adds New Capabilities to OT Security Solution - SecurityWeek
https://www.securityweek.com/palo-alto-networks-adds-new-capabilities-to-ot-security-solution/
Over 6,000 WordPress hacked to install plugins pushing infostealers
https://www.bleepingcomputer.com/news/security/over-6-000-wordpress-hacked-to-install-plugins-pushing-infostealers/
Bumblebee and Latrodectus Malware Return with Sophisticated Phishing Strategies
https://thehackernews.com/2024/10/bumblebee-and-latrodectus-malware.html
SEC charges tech companies for downplaying SolarWinds breaches
https://www.bleepingcomputer.com/news/security/sec-charges-tech-companies-for-downplaying-solarwinds-breaches/

Latrodectus: A year in the making - VMRay
https://www.vmray.com/latrodectus-a-year-in-the-making/
Malicious npm Packages Target Developers' Ethereum Wallets with SSH Backdoor
https://thehackernews.com/2024/10/malicious-npm-packages-target.html
GitHub - kpcyrd/sniffglue: Secure multithreaded packet sniffer
https://github.com/kpcyrd/sniffglue
Cybercriminals Exploiting Docker API Servers for SRBMiner Crypto Mining Attacks
https://thehackernews.com/2024/10/cybercriminals-exploiting-docker-api.html
securityaffairs.com | 522: Connection timed out
https://securityaffairs.com/170096/security/vmware-failed-to-fix-rce-vcenter-server-cve-2024-38812.html
DEF CON 32 Main Stage Talks - YouTube
https://www.youtube.com/playlist?list=PL9fPq3eQfaaB2scbXRczwvjVH0ckX4bwt