■■■■■ Wireproxy: A wireguard client that exposes itself as a socks5/http proxy or tunnels. https://github.com/pufferffish/wireproxy https://t.me/cKure/13780
All posts in Uncategorized
April 2, 2024 at 04:31PM
■■■■□ Timeline of the xz open source attack. https://research.swtch.com/xz-timeline https://t.me/cKure/13779
April 2, 2024 at 03:32PM
■■■■■ From OneNote to RansomNote: An Ice Cold Intrusion. https://thedfirreport.com/2024/04/01/from-onenote-to-ransomnote-an-ice-cold-intrusion/ https://t.me/cKure/13778
April 2, 2024 at 05:04AM
■■■■■ Passive DNS For Phishing Link Analysis – Identifying 36 Latrodectus Domains With Historical Records and 302 Redirects. https://embee-research.ghost.io/phishing-domain-analysis-with-passive-dns-latrodectus/ https://t.me/cKure/13774
April 2, 2024 at 05:04AM
■■■■■ CVE-2024-0582: Linux Kernel flaw to gain root access: PoC published in tagged (https://t.me/cKure/13761) message. https://cybersecuritynews.com/linux-kernel-flaw/ https://t.me/cKure/13773
April 1, 2024 at 05:21PM
■■■□□ ProxyLib: Malicious Apps Caught Secretly Turning Android Phones into Proxies for Cybercriminals. https://thehackernews.com/2024/04/malicious-apps-caught-secretly-turning.html https://t.me/cKure/13772
April 1, 2024 at 01:16AM
Running ‘cat’ command to read a script is not safe. As a researcher points out. An interesting thread! https://twitter.com/0xAsm0d3us/status/1774534241084445020 https://t.me/cKure/13770
March 31, 2024 at 11:54PM
Inside the failed attempt to backdoor SSH globally — that got caught by chance. https://doublepulsar.com/inside-the-failed-attempt-to-backdoor-ssh-globally-that-got-caught-by-chance-bbfe628fafdd https://t.me/cKure/13768
March 31, 2024 at 11:53PM
■■■■■ forensictools: A toolkit designed for digital forensics. https://github.com/cristianzsh/forensictools?tab=readme-ov-file#download-and-usage https://securityonline.info/forensictools-a-toolkit-designed-for-digital-forensics https://t.me/cKure/13767
March 31, 2024 at 01:30PM
■■■■□ Supply-Chain attack: Red Hat on Friday released an “urgent security alert” warning that two versions of a popular data compression library called XZ Utils (previously LZMA Utils) have been backdoored with malicious code designed to allow unauthorized remote access. The software supply chain compromise, tracked as CVE-2024-3094, has a CVSS score of 10.0, indicating…
