11/04

LOLAD

https://lolad-project.github.io/
LOLAD

Cisco says DevHub site leak won’t enable future breaches

https://www.bleepingcomputer.com/news/security/cisco-says-devhub-site-leak-wont-enable-future-breaches/
Cisco says DevHub site leak won’t enable future breaches

New FakeCall Malware Variant Hijacks Android Devices for Fraudulent Banking Calls

https://thehackernews.com/2024/11/new-fakecall-malware-variant-hijacks.html
New FakeCall Malware Variant Hijacks Android Devices for Fraudulent Banking Calls

APT37 위협 배후의 사이버 정찰 활동 분석

https://www.genians.co.kr/blog/threat_intelligence/apt37_recon
APT37 위협 배후의 사이버 정찰 활동 분석

H.I.G. Capital and Thoma Bravo to Acquire CompTIA Brand and Products

https://www.prnewswire.com/news-releases/hig-capital-and-thoma-bravo-to-acquire-comptia-brand-and-products-302294943.html
H.I.G. Capital and Thoma Bravo to Acquire CompTIA Brand and Products

Malware Development Part 8 : Reverse Shell Via Dll Hijacking | by RED TEAM | Medium

https://sid4hack.medium.com/malware-development-part-8-reverse-shell-via-dll-hijacking-ce48f5ebbafe
Malware Development Part 8 : Reverse Shell Via Dll Hijacking | by RED TEAM | Medium

2 more Russian disinformation videos targeting U.S. election are circulating online, sources say - CBS News

https://www.cbsnews.com/news/2-more-russian-disinformation-videos-targeting-u-s-election-circulating-online/
2 more Russian disinformation videos targeting U.S. election are circulating online, sources say - CBS News

Meet Interlock — The new ransomware targeting FreeBSD servers

https://www.bleepingcomputer.com/news/security/meet-interlock-the-new-ransomware-targeting-freebsd-servers/
Meet Interlock — The new ransomware targeting FreeBSD servers

Google's AI Tool Big Sleep Finds Zero-Day Vulnerability in SQLite Database Engine

https://thehackernews.com/2024/11/googles-ai-tool-big-sleep-finds-zero.html
Google's AI Tool Big Sleep Finds Zero-Day Vulnerability in SQLite Database Engine

DocuSign's Envelopes API abused to send realistic fake invoices

https://www.bleepingcomputer.com/news/security/docusigns-envelopes-api-abused-to-send-realistic-fake-invoices/
DocuSign's Envelopes API abused to send realistic fake invoices

Detecting Microsoft Entra ID Primary Refresh Token Abuse with Next-Gen SIEM

https://www.crowdstrike.com/en-us/blog/detecting-microsoft-entra-id-primary-refresh-token-abuse-next-gen-siem/
Detecting Microsoft Entra ID Primary Refresh Token Abuse with Next-Gen SIEM

Technical documentation | Microsoft Learn

https://learn.microsoft.com/en-us/docs/
Technical documentation | Microsoft Learn

International law enforcement operation shut down DDoS-for-hire platform Dstat.cc

https://securityaffairs.com/170540/cyber-crime/german-police-shut-down-ddos-for-hire-platform-dstat-cc.html
International law enforcement operation shut down DDoS-for-hire platform Dstat.cc

BSides Lisbon

https://bsideslisbon.org/2024/schedule/
BSides Lisbon

Schneider Electric confirms dev platform breach after hacker steals data

https://www.bleepingcomputer.com/news/security/schneider-electric-confirms-dev-platform-breach-after-hacker-steals-data/
Schneider Electric confirms dev platform breach after hacker steals data

Microsoft confirms Windows Server 2025 blue screen, install issues

https://www.bleepingcomputer.com/news/microsoft/microsoft-confirms-windows-server-2025-blue-screen-install-issues/
Microsoft confirms Windows Server 2025 blue screen, install issues

The Art of Mac Malware, Volume 2 | No Starch Press

https://nostarch.com/art-mac-malware-v2
The Art of Mac Malware, Volume 2 | No Starch Press