11/14

Firefox Animation CVE-2024-9680 – Dimitri Fourny

https://dimitrifourny.github.io/2024/11/14/firefox-animation-cve-2024-9680.html
Firefox Animation CVE-2024-9680 – Dimitri Fourny

Hackers use macOS extended file attributes to hide malicious code

https://www.bleepingcomputer.com/news/security/hackers-use-macos-extended-file-attributes-to-hide-malicious-code/
Hackers use macOS extended file attributes to hide malicious code

POC2025 - We Trust a Power Of Community

https://powerofcommunity.net/2024.htm
POC2025 - We Trust a Power Of Community

Stealthy Attributes of APT Lazarus | Group-IB Blog

https://www.group-ib.com/blog/stealthy-attributes-of-apt-lazarus/
Stealthy Attributes of APT Lazarus | Group-IB Blog

Update · community-scripts/ProxmoxVE · Discussion #237 · GitHub

https://github.com/community-scripts/ProxmoxVE/discussions/237
Update · community-scripts/ProxmoxVE · Discussion #237 · GitHub

Experts Uncover 70,000 Hijacked Domains in Widespread 'Sitting Ducks' Attack Scheme

https://thehackernews.com/2024/11/experts-uncover-70000-hijacked-domains.html
Experts Uncover 70,000 Hijacked Domains in Widespread 'Sitting Ducks' Attack Scheme

US govt officials’ communications compromised in recent telecom hack

https://www.bleepingcomputer.com/news/security/chinese-hackers-compromised-us-government-officials-private-communications-in-recent-telecom-breach/
US govt officials’ communications compromised in recent telecom hack

Piloting Edge Copilot - Speaker Deck

https://speakerdeck.com/shhnjk/piloting-edge-copilot
Piloting Edge Copilot - Speaker Deck

Hacker gets 10 years in prison for extorting US healthcare provider

https://www.bleepingcomputer.com/news/legal/hacker-gets-10-years-in-prison-for-extorting-us-healthcare-provider/
Hacker gets 10 years in prison for extorting US healthcare provider

BeaconGate, Sleepmask... customizing Cobalt Strike after 4.10 | RWXStoned

https://rwxstoned.github.io/2024-11-13-Cobalt-Strike-customization/
BeaconGate, Sleepmask... customizing Cobalt Strike after 4.10 | RWXStoned

nytimes.com

https://www.nytimes.com/2024/11/14/business/media/alex-jones-infowars-the-onion.html
nytimes.com

Microsoft patches Windows zero-day exploited in attacks on Ukraine

https://www.bleepingcomputer.com/news/security/microsoft-patches-windows-zero-day-exploited-in-attacks-on-ukraine/
Microsoft patches Windows zero-day exploited in attacks on Ukraine

CISA, FBI Confirm China Hacked Telecoms Providers for Spying - SecurityWeek

https://www.securityweek.com/cisa-fbi-confirm-china-hacked-telecoms-providers-for-spying/
CISA, FBI Confirm China Hacked Telecoms Providers for Spying - SecurityWeek

Pregnancy Tracking App ‘What to Expect’ Refuses to Fix Issue that Allows Full Account Takeover

https://www.404media.co/pregnancy-tracking-app-what-to-expect-refuses-to-fix-issue-that-allows-full-account-takeover-2/
Pregnancy Tracking App ‘What to Expect’ Refuses to Fix Issue that Allows Full Account Takeover

Microsoft Power Pages Leak Millions of Private Records

https://www.darkreading.com/cybersecurity-operations/microsoft-power-pages-millions-private-records
Microsoft Power Pages Leak Millions of Private Records

NIST Explains Why It Failed to Clear CVE Backlog - SecurityWeek

https://www.securityweek.com/nist-explains-why-it-failed-to-clear-cve-backlog/
NIST Explains Why It Failed to Clear CVE Backlog - SecurityWeek

New Glove infostealer malware bypasses Chrome’s cookie encryption

https://www.bleepingcomputer.com/news/security/new-glove-stealer-malware-bypasses-chromes-cookie-encryption/
New Glove infostealer malware bypasses Chrome’s cookie encryption

APT_REPORT/Exploit/Zero-day-cve-2024-4351-report.pdf at master · blackorbird/APT_REPORT · GitHub

https://github.com/blackorbird/APT_REPORT/blob/master/Exploit/Zero-day-cve-2024-4351-report.pdf
APT_REPORT/Exploit/Zero-day-cve-2024-4351-report.pdf at master · blackorbird/APT_REPORT · GitHub

Two Men Charged For Hacking US Tax Preparation Firms - SecurityWeek

https://www.securityweek.com/two-men-charged-for-hacking-us-tax-preparation-firms/
Two Men Charged For Hacking US Tax Preparation Firms - SecurityWeek

Russian Hackers Exploit New NTLM Flaw to Deploy RAT Malware via Phishing Emails

https://thehackernews.com/2024/11/russian-hackers-exploit-new-ntlm-flaw.html
Russian Hackers Exploit New NTLM Flaw to Deploy RAT Malware via Phishing Emails

Crimeware and financial predictions for 2025 | Securelist

https://securelist.com/ksb-financial-and-crimeware-predictions-2025/114565/
Crimeware and financial predictions for 2025 | Securelist

Google Warns of Rising Cloaking Scams, AI-Driven Fraud, and Crypto Schemes

https://thehackernews.com/2024/11/google-warns-of-rising-cloaking-scams.html
Google Warns of Rising Cloaking Scams, AI-Driven Fraud, and Crypto Schemes

LOLRMM - Atera

https://lolrmm.io/tools/atera
LOLRMM - Atera

Leaked info of 122 million linked to B2B data aggregator breach

https://www.bleepingcomputer.com/news/security/leaked-info-of-122-million-linked-to-b2b-data-aggregator-breach/
Leaked info of 122 million linked to B2B data aggregator breach