Jumpy Pisces Engages in Play Ransomware
https://unit42.paloaltonetworks.com/north-korean-threat-group-play-ransomware/
BOFHound: AD CS Integration. TL;DR: BOFHound can now parse Active… | by Matt Creel | Oct, 2024 | Posts By SpecterOps Team Members
https://posts.specterops.io/bofhound-ad-cs-integration-91b706bc7958
Security Strategist, SURGe - Remote | Splunk
https://www.splunk.com/en_us/careers/jobs/security-strategist-surge-remote-31215.html
[Cracking Windows Kernel with HEVD] Chapter 0: Where do I start?
https://mdanilor.github.io/posts/hevd-0/![[Cracking Windows Kernel with HEVD] Chapter 0: Where do I start?](/image/screenshot/33b8b0f2b5b6444ed4feac257967bd94.png)
Hackers steal 15,000 cloud credentials from exposed Git config files
https://www.bleepingcomputer.com/news/security/hackers-steal-15-000-cloud-credentials-from-exposed-git-config-files/
Malvertising Campaign Hijacks Facebook Accounts to Spread SYS01stealer Malware
https://thehackernews.com/2024/10/malvertising-campaign-hijacks-facebook.html
Android malware "FakeCall" now reroutes bank calls to attackers
https://www.bleepingcomputer.com/news/security/android-malware-fakecall-now-reroutes-bank-calls-to-attackers/
MalwareBazaar | Mekotio
https://bazaar.abuse.ch/browse/tag/Mekotio/
Midnight Blizzard conducts large-scale spear-phishing campaign using RDP files | Microsoft Security Blog
https://www.microsoft.com/en-us/security/blog/2024/10/29/midnight-blizzard-conducts-large-scale-spear-phishing-campaign-using-rdp-files/
Researchers Uncover Python Package Targeting Crypto Wallets with Malicious Code
https://thehackernews.com/2024/10/researchers-uncover-python-package.html
WhiteRabbitNeo: High-Powered Potential of Uncensored AI Pentesting for Attackers and Defenders - SecurityWeek
https://www.securityweek.com/whiterabbitneo-high-powered-potential-of-uncensored-ai-pentesting-for-attackers-and-defenders/
North Korean govt hackers linked to Play ransomware attack
https://www.bleepingcomputer.com/news/security/north-korean-govt-hackers-linked-to-play-ransomware-attack/
Microsoft Warns of Russian Spear-Phishing Attacks Targeting Over 100 Organizations - SecurityWeek
https://www.securityweek.com/microsoft-warns-of-russian-spear-phishing-attacks-targeting-over-100-organizations/
Google fixed a critical vulnerability in Chrome browser
https://securityaffairs.com/170395/security/google-fixed-critical-chrome-flaw.html
GitHub - balazsgerlei/AndroidSecurityEvolution: Significant security enchancements of recent major Android versions.
https://github.com/balazsgerlei/AndroidSecurityEvolution
Here’s the paper no one read before declaring the demise of modern cryptography - Ars Technica
https://arstechnica.com/information-technology/2024/10/the-sad-bizarre-tale-of-hype-fueling-fears-that-modern-cryptography-is-dead/
New tool bypasses Google Chrome’s new cookie encryption system
https://www.bleepingcomputer.com/news/security/new-tool-bypasses-google-chromes-new-cookie-encryption-system/
North Korean Group Collaborates with Play Ransomware in Significant Cyber Attack
https://thehackernews.com/2024/10/north-korean-group-collaborates-with.html
Opera Browser Fixes Big Security Hole That Could Have Exposed Your Information
https://thehackernews.com/2024/10/opera-browser-fixes-big-security-hole.html
Database Updates
https://search.maldevacademy.com/updates
Canada Says Chinese Reconnaissance Scans Targeting Government Organizations - SecurityWeek
https://www.securityweek.com/canada-says-chinese-reconnaissance-scans-targeting-government-organizations/
QNAP fixed NAS backup zero-day demonstrated at Pwn2Own Ireland 2024
https://securityaffairs.com/170386/uncategorized/qnap-fixed-zero-day-cve-2024-50388-pwn2own-ireland-2024.html
Pwning LLaMA.cpp RPC Server
https://pwner.gg/2024/10/03/llama-cpp-cves/
Russia-linked Midnight Blizzard APT targeted 100+ organizations with a spear-phishing campaign using RDP files
https://securityaffairs.com/170398/apt/midnight-blizzard-apt-targeted-100-organizations.html
MalwareBazaar | 91-149-232-112
https://bazaar.abuse.ch/browse/tag/91-149-232-112/
Can't trust any VPN these days - Orhun's Blog
https://blog.orhun.dev/cant-trust-any-vpn/
1-click Exploit in South Korea's biggest mobile chat app | stulle123's Blog
https://stulle123.github.io/posts/kakaotalk-account-takeover/
しばらくお待ちください...
http://Takeaway.com