Intune Attack Paths — Part 1
https://posts.specterops.io/intune-attack-paths-part-1-4ad1882c1811
RevivalStone:Winnti Groupによる日本組織を狙った攻撃キャンペーン | LAC WATCH
https://www.lac.co.jp/lacwatch/report/20250213_004283.html
The BadPilot campaign: Seashell Blizzard subgroup conducts multiyear global access operation | Microsoft Security Blog
https://www.microsoft.com/en-us/security/blog/2025/02/12/the-badpilot-campaign-seashell-blizzard-subgroup-conducts-multiyear-global-access-operation/
0patch Blog: Analysis of a Flaw in Microsoft's Patch for "copy2pwn" (CVE-2024-38213)
https://blog.0patch.com/2025/02/analysis-of-flaw-in-microsofts-patch.html
Dutch Police seizes 127 XHost servers, dismantles bulletproof hoster
https://www.bleepingcomputer.com/news/legal/dutch-police-seizes-127-xhost-servers-dismantles-bulletproof-hoster/
Chinese espionage tools deployed in RA World ransomware attack
https://www.bleepingcomputer.com/news/security/chinese-espionage-tools-deployed-in-ra-world-ransomware-attack/
GitHub - iSee857/CVE-2025-0108-PoC: Palo Alto Networks PAN-OS 身份验证绕过漏洞批量检测脚本(CVE-2025-0108)
https://github.com/iSee857/CVE-2025-0108-PoC
Curious case of AD CS ESC15 vulnerable instance and its manual exploitation | Start With Linux | Mannu Linux
https://www.mannulinux.org/2025/02/Curious-case-of-AD-CS-ESC15-vulnerable-instance-and-its-manual-exploitation.html
Living Off the Living Off the Land | LOLOL
http://lolol.farm
"Jeff", COM-only keylogger | vx-api
https://vx-api.gitbook.io/vx-api/my-projects/jeff-com-only-keylogger
China-linked Espionage Tools Used in Ransomware Attacks | Symantec Enterprise Blogs
https://www.security.com/threat-intelligence/chinese-espionage-ransomware
Path masquerading: Hide in plain sight
http://zerosalarium.com/2025/01/path-masquerading-hide-in-plain-sight.html
DeepSeek Exposes Major Cybersecurity Blind Spot - SecurityWeek
https://www.securityweek.com/deepseek-exposes-major-cybersecurity-blind-spot/
Hacker leaks account data of 12 million Zacks Investment users
https://www.bleepingcomputer.com/news/security/hacker-leaks-account-data-of-12-million-zacks-investment-users/
Leaking the email of any YouTube user for $10,000
https://brutecat.com/articles/leaking-youtube-emails
Unpacking Pyarmor v8+ scripts | cyber.wtf
https://cyber.wtf/2025/02/12/unpacking-pyarmor-v8-scripts/
Work | DOGE: Department of Government Efficiency
http://doge.gov