10/31

infosec-presentations/Bluehat/2024/DCOM Research for Everyone!.pdf at master · tyranid/infosec-presentations · GitHub

https://github.com/tyranid/infosec-presentations/blob/master/Bluehat/2024/DCOM%20Research%20for%20Everyone!.pdf
infosec-presentations/Bluehat/2024/DCOM Research for Everyone!.pdf at master · tyranid/infosec-presentations · GitHub

Hackers target critical zero-day vulnerability in PTZ cameras

https://www.bleepingcomputer.com/news/security/hackers-target-critical-zero-day-vulnerability-in-ptz-cameras/
Hackers target critical zero-day vulnerability in PTZ cameras

binwalk - crates.io: Rust Package Registry

https://crates.io/crates/binwalk
binwalk - crates.io: Rust Package Registry

Microsoft delays Windows Recall again, now by December

https://www.bleepingcomputer.com/news/microsoft/microsoft-delays-windows-recall-again-now-by-december/
Microsoft delays Windows Recall again, now by December

Release Binwalk v3.1.0 · ReFirmLabs/binwalk · GitHub

https://github.com/ReFirmLabs/binwalk/releases/tag/v3.1.0
Release Binwalk v3.1.0 · ReFirmLabs/binwalk · GitHub

LiteSpeed Cache WordPress plugin bug lets hackers get admin access

https://www.bleepingcomputer.com/news/security/litespeed-cache-wordpress-plugin-bug-lets-hackers-get-admin-access/
LiteSpeed Cache WordPress plugin bug lets hackers get admin access

New version of Android malware FakeCall redirects bank calls to scammers

https://securityaffairs.com/170410/malware/fakecall-malware-intercepts-outgoing-bank-calls.html
New version of Android malware FakeCall redirects bank calls to scammers

Over a thousand online shops hacked to show fake product listings

https://www.bleepingcomputer.com/news/security/over-a-thousand-online-shops-hacked-to-show-fake-product-listings/
Over a thousand online shops hacked to show fake product listings

Yahoo Discloses NetIQ iManager Flaws Allowing Remote Code Execution - SecurityWeek

https://www.securityweek.com/yahoo-discloses-netiq-imanager-flaws-allowing-remote-code-execution/
Yahoo Discloses NetIQ iManager Flaws Allowing Remote Code Execution - SecurityWeek

Threat actor says Interbank refused to pay the ransom after a two-week negotiation

https://securityaffairs.com/170431/data-breach/interbank-refused-to-pay-the-ransom.html
Threat actor says Interbank refused to pay the ransom after a two-week negotiation

Windows 11 Task Manager bug shows wrong number of running processes

https://www.bleepingcomputer.com/news/microsoft/windows-11-task-manager-says-no-apps-are-active-after-preview-update/
Windows 11 Task Manager bug shows wrong number of running processes

BSides London 2024 Tickets, Sat 14 Dec 2024 at 08:30 | Eventbrite

https://www.eventbrite.co.uk/e/bsides-london-2024-tickets-1001295711427
BSides London 2024 Tickets, Sat 14 Dec 2024 at 08:30 | Eventbrite

Microsoft wants $30 if you want to delay Windows 11 switch

https://www.bleepingcomputer.com/news/microsoft/microsoft-wants-30-if-you-want-to-delay-windows-11-switch/
Microsoft wants $30 if you want to delay Windows 11 switch

qBittorrent fixes flaw exposing users to MitM attacks for 14 years

https://www.bleepingcomputer.com/news/security/qbittorrent-fixes-flaw-exposing-users-to-mitm-attacks-for-14-years/
qBittorrent fixes flaw exposing users to MitM attacks for 14 years

Microsoft: Chinese hackers use Quad7 botnet to steal credentials

https://www.bleepingcomputer.com/news/security/microsoft-chinese-hackers-use-quad7-botnet-to-steal-credentials/
Microsoft: Chinese hackers use Quad7 botnet to steal credentials

Midnight Blizzard conducts large-scale spear-phishing campaign using RDP files | Microsoft Security Blog

https://www.microsoft.com/en-us/security/blog/2024/10/29/midnight-blizzard-conducts-large-scale-spear-phishing-campaign-using-rdp-files/
Midnight Blizzard conducts large-scale spear-phishing campaign using RDP files | Microsoft Security Blog

Honeypot Surprise: Researchers Catch Attackers Exposing 15,000 Stolen Credentials in S3 Bucket - SecurityWeek

https://www.securityweek.com/honeypot-surprise-researchers-catch-attackers-exposing-15000-stolen-credentials-in-s3-bucket/
Honeypot Surprise: Researchers Catch Attackers Exposing 15,000 Stolen Credentials in S3 Bucket - SecurityWeek

MalwareBazaar | 94-159-113-82--8888

https://bazaar.abuse.ch/browse/tag/94-159-113-82--8888/
MalwareBazaar | 94-159-113-82--8888

Using AFL++ on bug bounty programs: an example with Gnome libsoup - Almond Offensive Security Blog

https://offsec.almond.consulting/using-aflplusplus-on-bug-bounty-programs-an-example-with-gnome-libsoup.html
Using AFL++ on bug bounty programs: an example with Gnome libsoup - Almond Offensive Security Blog

Jumpy Pisces Engages in Play Ransomware

https://unit42.paloaltonetworks.com/north-korean-threat-group-play-ransomware/
Jumpy Pisces Engages in Play Ransomware

Sophos Used Custom Implants to Surveil Chinese Hackers Targeting Firewall Zero-Days - SecurityWeek

https://www.securityweek.com/sophos-used-custom-implants-to-surveil-chinese-hackers-targeting-firewall-zero-days/
Sophos Used Custom Implants to Surveil Chinese Hackers Targeting Firewall Zero-Days - SecurityWeek

DnlibLoader AsyncRAT | 401f183d5553 | VMRay Platform Report

https://www.vmray.com/analyses/_vt/401f183d5553/report/overview.html
DnlibLoader AsyncRAT | 401f183d5553 | VMRay Platform Report

Mystic Valley Elder Services Data Breach Impacts 87,000 People - SecurityWeek

https://www.securityweek.com/mystic-valley-elder-services-data-breach-impacts-87000-people/
Mystic Valley Elder Services Data Breach Impacts 87,000 People - SecurityWeek

LottieFiles hacked in supply chain attack to steal users’ crypto

https://www.bleepingcomputer.com/news/security/lottiefiles-hit-in-npm-supply-chain-attack-targeting-users-crypto/
LottieFiles hacked in supply chain attack to steal users’ crypto

Microsoft Entra "security defaults" to make MFA setup mandatory

https://www.bleepingcomputer.com/news/microsoft/microsoft-entra-security-defaults-to-make-mfa-setup-mandatory/
Microsoft Entra "security defaults" to make MFA setup mandatory