10/30

Jumpy Pisces Engages in Play Ransomware

https://unit42.paloaltonetworks.com/north-korean-threat-group-play-ransomware/
Jumpy Pisces Engages in Play Ransomware

Security Strategist, SURGe - Remote | Splunk

https://www.splunk.com/en_us/careers/jobs/security-strategist-surge-remote-31215.html
Security Strategist, SURGe - Remote | Splunk

Hackers steal 15,000 cloud credentials from exposed Git config files

https://www.bleepingcomputer.com/news/security/hackers-steal-15-000-cloud-credentials-from-exposed-git-config-files/
Hackers steal 15,000 cloud credentials from exposed Git config files

Malvertising Campaign Hijacks Facebook Accounts to Spread SYS01stealer Malware

https://thehackernews.com/2024/10/malvertising-campaign-hijacks-facebook.html
Malvertising Campaign Hijacks Facebook Accounts to Spread SYS01stealer Malware

Android malware "FakeCall" now reroutes bank calls to attackers

https://www.bleepingcomputer.com/news/security/android-malware-fakecall-now-reroutes-bank-calls-to-attackers/
Android malware "FakeCall" now reroutes bank calls to attackers

MalwareBazaar | Mekotio

https://bazaar.abuse.ch/browse/tag/Mekotio/
MalwareBazaar | Mekotio

Midnight Blizzard conducts large-scale spear-phishing campaign using RDP files | Microsoft Security Blog

https://www.microsoft.com/en-us/security/blog/2024/10/29/midnight-blizzard-conducts-large-scale-spear-phishing-campaign-using-rdp-files/
Midnight Blizzard conducts large-scale spear-phishing campaign using RDP files | Microsoft Security Blog

Researchers Uncover Python Package Targeting Crypto Wallets with Malicious Code

https://thehackernews.com/2024/10/researchers-uncover-python-package.html
Researchers Uncover Python Package Targeting Crypto Wallets with Malicious Code

WhiteRabbitNeo: High-Powered Potential of Uncensored AI Pentesting for Attackers and Defenders - SecurityWeek

https://www.securityweek.com/whiterabbitneo-high-powered-potential-of-uncensored-ai-pentesting-for-attackers-and-defenders/
WhiteRabbitNeo: High-Powered Potential of Uncensored AI Pentesting for Attackers and Defenders - SecurityWeek

North Korean govt hackers linked to Play ransomware attack

https://www.bleepingcomputer.com/news/security/north-korean-govt-hackers-linked-to-play-ransomware-attack/
North Korean govt hackers linked to Play ransomware attack

Microsoft Warns of Russian Spear-Phishing Attacks Targeting Over 100 Organizations - SecurityWeek

https://www.securityweek.com/microsoft-warns-of-russian-spear-phishing-attacks-targeting-over-100-organizations/
Microsoft Warns of Russian Spear-Phishing Attacks Targeting Over 100 Organizations - SecurityWeek

Google fixed a critical vulnerability in Chrome browser

https://securityaffairs.com/170395/security/google-fixed-critical-chrome-flaw.html
Google fixed a critical vulnerability in Chrome browser

Here’s the paper no one read before declaring the demise of modern cryptography - Ars Technica

https://arstechnica.com/information-technology/2024/10/the-sad-bizarre-tale-of-hype-fueling-fears-that-modern-cryptography-is-dead/
Here’s the paper no one read before declaring the demise of modern cryptography - Ars Technica

New tool bypasses Google Chrome’s new cookie encryption system

https://www.bleepingcomputer.com/news/security/new-tool-bypasses-google-chromes-new-cookie-encryption-system/
New tool bypasses Google Chrome’s new cookie encryption system

North Korean Group Collaborates with Play Ransomware in Significant Cyber Attack

https://thehackernews.com/2024/10/north-korean-group-collaborates-with.html
North Korean Group Collaborates with Play Ransomware in Significant Cyber Attack

Opera Browser Fixes Big Security Hole That Could Have Exposed Your Information

https://thehackernews.com/2024/10/opera-browser-fixes-big-security-hole.html
Opera Browser Fixes Big Security Hole That Could Have Exposed Your Information

Database Updates

https://search.maldevacademy.com/updates
Database Updates

Canada Says Chinese Reconnaissance Scans Targeting Government Organizations - SecurityWeek

https://www.securityweek.com/canada-says-chinese-reconnaissance-scans-targeting-government-organizations/
Canada Says Chinese Reconnaissance Scans Targeting Government Organizations - SecurityWeek

QNAP fixed NAS backup zero-day demonstrated at Pwn2Own Ireland 2024

https://securityaffairs.com/170386/uncategorized/qnap-fixed-zero-day-cve-2024-50388-pwn2own-ireland-2024.html
QNAP fixed NAS backup zero-day demonstrated at Pwn2Own Ireland 2024

Pwning LLaMA.cpp RPC Server

https://pwner.gg/2024/10/03/llama-cpp-cves/
Pwning LLaMA.cpp RPC Server

Russia-linked Midnight Blizzard APT targeted 100+ organizations with a spear-phishing campaign using RDP files

https://securityaffairs.com/170398/apt/midnight-blizzard-apt-targeted-100-organizations.html
Russia-linked Midnight Blizzard APT targeted 100+ organizations with a spear-phishing campaign using RDP files

MalwareBazaar | 91-149-232-112

https://bazaar.abuse.ch/browse/tag/91-149-232-112/
MalwareBazaar | 91-149-232-112

Can't trust any VPN these days - Orhun's Blog

https://blog.orhun.dev/cant-trust-any-vpn/
Can't trust any VPN these days - Orhun's Blog

1-click Exploit in South Korea's biggest mobile chat app | stulle123's Blog

https://stulle123.github.io/posts/kakaotalk-account-takeover/
1-click Exploit in South Korea's biggest mobile chat app | stulle123's Blog