EDR killer tool uses signed kernel driver from forensic software
https://www.bleepingcomputer.com/news/security/edr-killer-tool-uses-signed-kernel-driver-from-forensic-software/
Log in to X / X
https://x.com/bhaggs
APT28: Geofencing as a Targeting Signal (CVE-2026-21509 Campaign) - Synaptic Security Blog
https://blog.synapticsystems.de/apt28-geofencing-as-a-targeting-signal-cve-2026-21509/
Hackers Exfiltrating NTDS.dit File to Gain Complete of Active Directory
https://cybersecuritynews.com/hackers-exfiltrating-ntds-dit-file/
Notepad++ supply chain attack breakdown | Securelist
https://securelist.com/notepad-supply-chain-attack/118708/
CISA: VMware ESXi flaw now exploited in ransomware attacks
https://www.bleepingcomputer.com/news/security/cisa-vmware-esxi-flaw-now-exploited-in-ransomware-attacks/
Devlog ⚡ Zig Programming Language
https://ziglang.org/devlog/2026/#2026-02-03
Malicious Script Delivering More Maliciousness - SANS ISC
https://isc.sans.edu/diary/32682
Coinbase confirms insider breach linked to leaked support tool screenshots
https://www.bleepingcomputer.com/news/security/coinbase-confirms-insider-breach-linked-to-leaked-support-tool-screenshots/
Abusing Microsoft Warbird for Shellcode Execution - cirosec
https://cirosec.de/en/news/abusing-microsoft-warbird-for-shellcode-execution/
Microsoft rolls out native Sysmon monitoring in Windows 11
https://www.bleepingcomputer.com/news/microsoft/microsoft-rolls-out-native-windows-11-sysmon-security-monitoring/