05/28

Mark Your Calendar: APT41 Innovative Tactics | Google Cloud Blog

https://cloud.google.com/blog/topics/threat-intelligence/apt41-innovative-tactics
Mark Your Calendar: APT41 Innovative Tactics | Google Cloud Blog

Project Zero: The Windows Registry Adventure #8: Practical exploitation of hive memory corruption

https://googleprojectzero.blogspot.com/2025/05/the-windows-registry-adventure-8-exploitation.html
Project Zero: The Windows Registry Adventure #8: Practical exploitation of hive memory corruption

Interlock ransomware gang deploys new NodeSnake RAT on universities

https://www.bleepingcomputer.com/news/security/interlock-ransomware-gang-deploys-new-nodesnake-rat-on-universities/
Interlock ransomware gang deploys new NodeSnake RAT on universities

Czechia blames China for Ministry of Foreign Affairs cyberattack

https://www.bleepingcomputer.com/news/security/czechia-blames-china-for-ministry-of-foreign-affairs-cyberattack/
Czechia blames China for Ministry of Foreign Affairs cyberattack

Czech Republic Blames China-Linked APT31 Hackers for 2022 Cyberattack

https://thehackernews.com/2025/05/czech-republic-blames-china-linked.html
Czech Republic Blames China-Linked APT31 Hackers for 2022 Cyberattack

Microsoft wants Windows to update all software on your PC

https://www.bleepingcomputer.com/news/microsoft/microsoft-wants-windows-to-update-all-software-on-your-pc/
Microsoft wants Windows to update all software on your PC

Apple blocked over $9 billion in App Store fraud in five years

https://www.bleepingcomputer.com/news/apple/apple-blocked-over-9-billion-in-apap-store-fraud-since-2020/
Apple blocked over $9 billion in App Store fraud in five years

Microsoft introduces new Windows backup tool for businesses

https://www.bleepingcomputer.com/news/microsoft/microsoft-introduces-new-windows-backup-tool-for-businesses/
Microsoft introduces new Windows backup tool for businesses

MalwareBazaar | AgidCert

https://bazaar.abuse.ch/browse/tag/AgidCert/
MalwareBazaar | AgidCert

251 Amazon-Hosted IPs Used in Exploit Scan Targeting ColdFusion, Struts, and Elasticsearch

https://thehackernews.com/2025/05/251-amazon-hosted-ips-used-in-exploit.html
251 Amazon-Hosted IPs Used in Exploit Scan Targeting ColdFusion, Struts, and Elasticsearch

A walk down the learning curve - Google スライド

https://docs.google.com/presentation/d/1_3Iu74UijAjfSLHzqWDkDEaIwoB6WBSo9-mY5e0u0HM/edit?usp=drivesdk
A walk down the learning curve - Google スライド

奇安信威胁情报中心

https://ti.qianxin.com/blog/articles/operation-run-the-cyber-carnival-of-offshore-patriots-en/
奇安信威胁情报中心

From Infection to Access: A 24-Hour Timeline of a Modern Stealer Campaign

https://thehackernews.com/2025/05/from-infection-to-access-24-hour.html
From Infection to Access: A 24-Hour Timeline of a Modern Stealer Campaign

ThreatBook

https://threatbook.io/domain/24hrkpop.com
ThreatBook

Microsoft OneDrive File Picker Flaw Grants Apps Full Cloud Access — Even When Uploading Just One File

https://thehackernews.com/2025/05/microsoft-onedrive-file-picker-flaw.html
Microsoft OneDrive File Picker Flaw Grants Apps Full Cloud Access — Even When Uploading Just One File

Mimo Hackers Exploit CVE-2025-32432 in Craft CMS to Deploy Cryptominer and Proxyware

https://thehackernews.com/2025/05/mimo-hackers-exploit-cve-2025-32432-in.html
Mimo Hackers Exploit CVE-2025-32432 in Craft CMS to Deploy Cryptominer and Proxyware

Botnet hacks 9,000+ ASUS routers to add persistent SSH backdoor

https://www.bleepingcomputer.com/news/security/botnet-hacks-9-000-plus-asus-routers-to-add-persistent-ssh-backdoor/
Botnet hacks 9,000+ ASUS routers to add persistent SSH backdoor

Dark Partners cybercrime gang fuels large-scale crypto heists

https://www.bleepingcomputer.com/news/security/dark-partners-cybercrime-gang-fuels-large-scale-crypto-heists/
Dark Partners cybercrime gang fuels large-scale crypto heists

New Russia-affiliated actor Void Blizzard targets critical sectors for espionage | Microsoft Security Blog

https://www.microsoft.com/en-us/security/blog/2025/05/27/new-russia-affiliated-actor-void-blizzard-targets-critical-sectors-for-espionage/
New Russia-affiliated actor Void Blizzard targets critical sectors for espionage | Microsoft Security Blog