12/04

VirusTotal moves to YARA-X

https://virustotal.github.io/yara-x/blog/virustotal-moves-to-yara-x/
VirusTotal moves to YARA-X

MalwareBazaar | SHA256 6782b1a05b867003e5bcfc30375f1770b8fc417e785919d0dfd827113df7c91a

https://bazaar.abuse.ch/sample/6782b1a05b867003e5bcfc30375f1770b8fc417e785919d0dfd827113df7c91a/
MalwareBazaar | SHA256 6782b1a05b867003e5bcfc30375f1770b8fc417e785919d0dfd827113df7c91a

Japan warns of IO-Data zero-day router flaws exploited in attacks

https://www.bleepingcomputer.com/news/security/japan-warns-of-io-data-zero-day-router-flaws-exploited-in-attacks/
Japan warns of IO-Data zero-day router flaws exploited in attacks

Researchers Uncover Backdoor in Solana's Popular Web3.js npm Library

https://thehackernews.com/2024/12/researchers-uncover-backdoor-in-solanas.html
Researchers Uncover Backdoor in Solana's Popular Web3.js npm Library

Russian hackers hijack Pakistani hackers' servers for their own attacks

https://www.bleepingcomputer.com/news/security/russian-turla-hackers-hijack-pakistani-apt-servers-for-cyber-espionage-attacks/
Russian hackers hijack Pakistani hackers' servers for their own attacks

Solana Web3.js library backdoored to steal secret, private keys

https://www.bleepingcomputer.com/news/security/solana-web3js-library-backdoored-to-steal-secret-private-keys/
Solana Web3.js library backdoored to steal secret, private keys

White House: Salt Typhoon hacked telcos in dozens of countries

https://www.bleepingcomputer.com/news/security/white-house-salt-typhoon-hacked-telcos-in-dozens-of-countries/
White House: Salt Typhoon hacked telcos in dozens of countries

Russia-Linked Turla Exploits Pakistani Hackers' Servers to Target Afghan and Indian Entities

https://thehackernews.com/2024/12/russia-linked-turla-exploits-pakistani.html
Russia-Linked Turla Exploits Pakistani Hackers' Servers to Target Afghan and Indian Entities

iDRAC to Domain Admin. Hello all! | by Jevon Davis | Dec, 2024 | InfoSec Write-ups

https://infosecwriteups.com/idrac-to-domain-admin-4acb89391070
iDRAC to Domain Admin. Hello all! | by Jevon Davis | Dec, 2024 | InfoSec Write-ups

OtterRoot: Netfilter Universal Root 1-day

https://osec.io/blog/2024-11-25-netfilter-universal-root-1-day
OtterRoot: Netfilter Universal Root 1-day

Europol Dismantles Criminal Messaging Service MATRIX in Major Global Takedown

https://thehackernews.com/2024/12/europol-dismantles-criminal-messaging.html
Europol Dismantles Criminal Messaging Service MATRIX in Major Global Takedown

MalwareBazaar | SHA256 f29bd9f902ca35718d2afed5f60885e4ac1f57a56dfe5ffcdcdb7c9aa01a4e27 (RemcosRAT)

https://bazaar.abuse.ch/sample/f29bd9f902ca35718d2afed5f60885e4ac1f57a56dfe5ffcdcdb7c9aa01a4e27/
MalwareBazaar | SHA256 f29bd9f902ca35718d2afed5f60885e4ac1f57a56dfe5ffcdcdb7c9aa01a4e27 (RemcosRAT)

New DroidBot Android malware targets 77 banking, crypto apps

https://www.bleepingcomputer.com/news/security/new-droidbot-android-banking-malware-spreads-across-europe/
New DroidBot Android malware targets 77 banking, crypto apps

しばらくお待ちください...

https://thedfirreport.com/2024/12/02/the-curious-case-of-an-egg-cellent-resume/
しばらくお待ちください...

Vodka maker Stoli files for bankruptcy in US after ransomware attack

https://www.bleepingcomputer.com/news/security/vodka-maker-stoli-files-for-bankruptcy-in-us-after-ransomware-attack/
Vodka maker Stoli files for bankruptcy in US after ransomware attack

MalwareBazaar | SHA256 eca20fa3ff5d86db2ac7bd4d964ffa5d0cb3995f327be3afe1aef540219b65ad

https://bazaar.abuse.ch/sample/eca20fa3ff5d86db2ac7bd4d964ffa5d0cb3995f327be3afe1aef540219b65ad/
MalwareBazaar | SHA256 eca20fa3ff5d86db2ac7bd4d964ffa5d0cb3995f327be3afe1aef540219b65ad

US shares tips to block hackers behind recent telecom breaches

https://www.bleepingcomputer.com/news/security/us-shares-tips-to-block-hackers-behind-recent-telecom-breaches/
US shares tips to block hackers behind recent telecom breaches

PROXY.AM Powered by Socks5Systemz Botnet | Bitsight

https://www.bitsight.com/blog/proxyam-powered-socks5systemz-botnet
PROXY.AM Powered by Socks5Systemz Botnet | Bitsight