■□□□□ Securing open-source code supply chains may help prevent the next big cyberattack. https://www.helpnetsecurity.com/2021/11/24/securing-open-source-code-supply-chains/ https://t.me/cKure/10218
All posts by cK-bot
November 24, 2021 at 05:55PM
■■■■□ Anti DDOS | BASH SCRIPT / tool https://github.com/anti-ddos/Anti-DDOS https://t.me/cKure/10217
November 24, 2021 at 05:55PM
■■■■□ CVE-2021-41349 PoC. https://github.com/0x0021h/expbox/blob/main/cve-2021-41349-poc.py https://t.me/cKure/10216
November 23, 2021 at 11:47PM
■□□□□ United States based Apple Inc. sues Israel’s state sponsored Cyber-Crime firm; ‘NSO Group’ for Cyber-Terrorism and espionage. https://t.me/cKure/10215
November 23, 2021 at 03:27PM
■■■■■ Can you trust a file’s digital signature? A new #Zloader campaign abuses CVE-2013-3900 for defense evasion. HTA content appended to a signed Microsoft DLL, without breaking trust MSHTA used to execute the appended script CVE-2013-3900 still unpatched by default https://t.co/5n1AoS6hsl https://t.me/cKure/10214
November 23, 2021 at 03:37AM
Another Microsoft Zero-Day exploit pertaining to bad fix of CVE-2021-41379. https://github.com/klinix5/InstallerFileTakeOver Details: https://www.bleepingcomputer.com/news/microsoft/new-windows-zero-day-with-public-exploit-lets-you-become-an-admin/ https://t.me/cKure/10212
November 23, 2021 at 03:29AM
■□□□□ In August, KrebsOnSecurity warned that scammers were contacting people and asking them to unleash ransomware inside their employer’s network, in exchange for a percentage of any ransom amount paid by the victim company. This week, authorities in Nigeria arrested a suspect in connection with the scheme – a young man who said he was…
November 23, 2021 at 03:01AM
CVE-2021-42321: Proof-of-concept exploit code has been released online over the weekend for an actively exploited high severity vulnerability impacting Microsoft Exchange servers. https://gist.github.com/testanull/0188c1ae847f37a70fe536123d14f398 https://t.me/cKure/10207
November 23, 2021 at 02:57AM
■□□□□ Companies such as GItLab, which today increased its payment for critical bugs by 75%, are raising bounties and bonuses to attract top-notch researchers. https://t.me/cKure/10206
November 23, 2021 at 02:54AM
■□□□□ Fake website for renting a hit-man has been up for over 16 years and is used as a honeypot for potential crimes. https://rentahitman.com/ Details: https://www.washingtonpost.com/nation/2021/11/22/rent-a-hitman-website/ https://t.me/cKure/10205
