September 10, 2021 at 01:53PM

■■■□□ ANALYSIS OF A PARALLELS DESKTOP STACK CLASH VULNERABILITY AND VARIANT HUNTING USING BINARY NINJA https://www.zerodayinitiative.com/blog/2021/9/9/analysis-of-a-parallels-desktop-stack-clash-vulnerability-and-variant-hunting-using-binary-ninja https://t.me/cKure/9269

September 10, 2021 at 01:52PM

■□□□□ Tool: JSPanda JSpanda is a client-side prototype pollution vulnerability scanner. It has two key features, scanning vulnerability the supplied URLs and analyzing the JavaScript libraries’ source code. However, JSpanda cannot detect advanced prototype pollution vulnerabilities. https://github.com/RedSection/jspanda https://t.me/cKure/9268

September 10, 2021 at 01:16PM

■■□□□ United States 🇺🇸: A previously undocumented backdoor that was recently found targeting an unnamed computer retail company based in the U.S. has been linked to a longstanding Chinese espionage operation dubbed Grayfly | China 🇨🇳 https://thehackernews.com/2021/09/experts-link-sidewalk-malware-attacks.html https://t.me/cKure/9265

September 10, 2021 at 10:34AM

■■□□□ AT&T Alien Labs has discovered a new campaign by threat group TeamTNT that is targeting multiple operating systems and applications.  https://cybersecurity.att.com/blogs/labs-research/teamtnt-with-new-campaign-aka-chimaera https://t.me/cKure/9263

September 10, 2021 at 10:02AM

■■□□□ Data-Leak: Actor claims to have hacked a private entity in UAE exploiting a CMS bug and dumping documents which include IDs and passports. ● The claim could not be independently be verified by us as neither exploit nor any sample has been shared by the attacker. However, we may receive samples. https://t.me/cKure/9262