March 2, 2024 at 01:56PM

■■■■□ Researchers found a zero-click Facebook account takeover A critical vulnerability in Facebook could have allowed threat actors to hijack any Facebook account, researcher warns. https://securityaffairs.com/159782/hacking/zero-click-facebook-account-takeover.html https://t.me/cKure/13582

March 2, 2024 at 01:07PM

■□□□□ SSH3: Faster and rich secure shell using HTTP/3, checkout our article here. https://arxiv.org/abs/2312.08396 https://datatracker.ietf.org/doc/draft-michel-ssh3/ https://t.me/cKure/13581

March 2, 2024 at 01:36AM

■■■■■ Lazarus Group observed exploiting an admin-to-kernel Windows zero-day. https://www.scmagazine.com/news/lazarus-group-observed-exploiting-an-admin-to-kernel-windows-zero-day https://t.me/cKure/13580

March 2, 2024 at 01:19AM

■■■■□ Researchers have disclosed a new attack technique called Silver SAML that can be successful even in cases where mitigations have been applied against Golden SAML attacks. https://thehackernews.com/2024/02/new-silver-saml-attack-evades-golden.html https://t.me/cKure/13579

March 1, 2024 at 11:08PM

■■■■□ Court orders maker of Pegasus spyware to hand over code to WhatsApp. Israeli company NSO Group is accused in lawsuit by Meta’s messaging app of spying on 1,400 users over a two-week period. https://www.theguardian.com/technology/2024/feb/29/pegasus-surveillance-code-whatsapp-meta-lawsuit-nso-group https://t.me/cKure/13578