01/02

PoC Exploit Released for Zero-Click Vulnerability CVE-2024-49112 in Windows

https://securityonline.info/poc-exploit-released-for-zero-click-vulnerability-cve-2024-49112-in-windows/
PoC Exploit Released for Zero-Click Vulnerability CVE-2024-49112 in Windows

LDAPNightmare: SafeBreach Publishes First PoC Exploit (CVE-2024-49113)

https://www.safebreach.com/blog/ldapnightmare-safebreach-labs-publishes-first-proof-of-concept-exploit-for-cve-2024-49112/
LDAPNightmare: SafeBreach Publishes First PoC Exploit (CVE-2024-49113)

December 2, 2024 - Exodus Intelligence

https://blog.exodusintel.com/2024/12/02/
December 2, 2024 - Exodus Intelligence

The (Anti-)EDR Compendium

https://blog.deeb.ch/posts/how-edr-works/
The (Anti-)EDR Compendium

An unexpected journey into Microsoft Defender's signature World — retooling_

https://retooling.io/blog/an-unexpected-journey-into-microsoft-defenders-signature-world
An unexpected journey into Microsoft Defender's signature World — retooling_

Over 3 million mail servers without encryption exposed to sniffing attacks

https://www.bleepingcomputer.com/news/security/over-3-million-mail-servers-without-encryption-exposed-to-sniffing-attacks/
Over 3 million mail servers without encryption exposed to sniffing attacks

Pentest-Tools-Collection/tools/Azure/AzurePwn.ps1 at main · LuemmelSec/Pentest-Tools-Collection · GitHub

https://github.com/LuemmelSec/Pentest-Tools-Collection/blob/main/tools/Azure/AzurePwn.ps1
Pentest-Tools-Collection/tools/Azure/AzurePwn.ps1 at main · LuemmelSec/Pentest-Tools-Collection · GitHub

Severe Security Flaws Patched in Microsoft Dynamics 365 and Power Apps Web API

https://thehackernews.com/2025/01/severe-security-flaws-patched-in.html
Severe Security Flaws Patched in Microsoft Dynamics 365 and Power Apps Web API

DOOM® CAPTCHA

http://doom-captcha.vercel.app
DOOM® CAPTCHA

Malicious Obfuscated NPM Package Disguised as an Ethereum Tool Deploys Quasar RAT

https://thehackernews.com/2025/01/malicious-obfuscated-npm-package.html
Malicious Obfuscated NPM Package Disguised as an Ethereum Tool Deploys Quasar RAT

Chinese hackers targeted sanctions office in Treasury attack

https://www.bleepingcomputer.com/news/security/chinese-hackers-targeted-sanctions-office-in-treasury-attack/
Chinese hackers targeted sanctions office in Treasury attack

Elon Musk Uses Cybertruck Explosion to Show Tesla Can Remotely Unlock and Monitor Vehicles

https://www.404media.co/elon-musk-uses-cybertruck-explosion-to-show-tesla-can-remotely-unlock-and-monitor-vehicles/
Elon Musk Uses Cybertruck Explosion to Show Tesla Can Remotely Unlock and Monitor Vehicles

Goodware Hash Sets - SANS Internet Storm Center

https://isc.sans.edu/diary/31556
Goodware Hash Sets - SANS Internet Storm Center