01/15

Malware Analysis Series (MAS): article 10 | Linux – Exploit Reversing

https://exploitreversing.com/2025/01/15/malware-analysis-series-mas-article-10/
Malware Analysis Series (MAS): article 10 | Linux – Exploit Reversing

oss-security - RSYNC: 6 vulnerabilities

https://www.openwall.com/lists/oss-security/2025/01/14/3
oss-security - RSYNC: 6 vulnerabilities

Google Cloud Researchers Uncover Flaws in Rsync File Synchronization Tool

https://thehackernews.com/2025/01/google-cloud-researchers-uncover-flaws.html
Google Cloud Researchers Uncover Flaws in Rsync File Synchronization Tool

Register | OffensiveCon

https://www.offensivecon.org/register.html
Register | OffensiveCon

IntelBroker Unmasked: KELA’s In-Depth Analysis of a Cybercrime Leader • KELA Cyber Threat Intelligence

https://www.kelacyber.com/blog/intelbroker-unmasked-kelas-in-depth-analysis-of-a-cybercrime-leader/
IntelBroker Unmasked: KELA’s In-Depth Analysis of a Cybercrime Leader • KELA Cyber Threat Intelligence

North Korean IT Worker Fraud Linked to 2016 Crowdfunding Scam and Fake Domains

https://thehackernews.com/2025/01/north-korean-it-worker-fraud-linked-to.html
North Korean IT Worker Fraud Linked to 2016 Crowdfunding Scam and Fake Domains

http://WP3.XYZ

http://WP3.XYZ

Microsoft fixes exploited Hyper-V privilege escalation flaws • The Register

https://go.theregister.com/feed/www.theregister.com/2025/01/15/patch_tuesday_january_2025/
Microsoft fixes exploited Hyper-V privilege escalation flaws • The Register

From arbitrary pointer dereference to arbitrary read/write in latest Windows 11 - hn security

https://security.humanativaspa.it/from-arbitrary-pointer-dereference-to-arbitrary-read-write-in-latest-windows-11/
From arbitrary pointer dereference to arbitrary read/write in latest Windows 11 - hn security

Lazarus Group Targets Web3 Developers with Fake LinkedIn Profiles in Operation 99

https://thehackernews.com/2025/01/lazarus-group-targets-web3-developers.html
Lazarus Group Targets Web3 Developers with Fake LinkedIn Profiles in Operation 99

Millions of Accounts Vulnerable due to Google’s OAuth Flaw ◆ Truffle Security Co.

https://trufflesecurity.com/blog/millions-at-risk-due-to-google-s-oauth-flaw
Millions of Accounts Vulnerable due to Google’s OAuth Flaw ◆ Truffle Security Co.

Critical SimpleHelp Flaws Allow File Theft, Privilege Escalation, and RCE Attacks

https://thehackernews.com/2025/01/critical-simplehelp-flaws-allow-file.html
Critical SimpleHelp Flaws Allow File Theft, Privilege Escalation, and RCE Attacks

Over 660,000 Rsync servers exposed to code execution attacks

https://www.bleepingcomputer.com/news/security/over-660-000-rsync-servers-exposed-to-code-execution-attacks/
Over 660,000 Rsync servers exposed to code execution attacks

RE//verse Training - Windows Internals for Security Engineers with Yar – Vector 35

https://shop.binary.ninja/products/re-verse-training-windows-internals
RE//verse Training - Windows Internals for Security Engineers with Yar – Vector 35

Windows BitLocker bug triggers warnings on devices with TPMs

https://www.bleepingcomputer.com/news/microsoft/windows-bitlocker-bug-triggers-warnings-on-devices-with-tpms/
Windows BitLocker bug triggers warnings on devices with TPMs

Hackers use FastHTTP in new high-speed Microsoft 365 password attacks

https://www.bleepingcomputer.com/news/security/hackers-use-fasthttp-in-new-high-speed-microsoft-365-password-attacks/
Hackers use FastHTTP in new high-speed Microsoft 365 password attacks