November 15, 2023 at 10:00PM

■■■■■ Zero-Day: VMware discloses critical VCD Appliance auth bypass with no patch. https://www.bleepingcomputer.com/news/security/vmware-discloses-critical-vcd-appliance-auth-bypass-with-no-patch/ https://t.me/cKure/13241

November 15, 2023 at 01:50PM

■■■■□ CVE-2023-23583 (CVSS score: 8.8) allow escalation of privilege and/or information disclosure and/or denial of service via local access. Termed Reptar; the Intel CPU vulnerability impacts multi-tenant virtualized environments. https://thehackernews.com/2023/11/reptar-new-intel-cpu-vulnerability.html https://t.me/cKure/13240

November 15, 2023 at 01:27PM

■■■■□ Russia: Sandworm have breached Danish energy sector companies. Very nice timeline analysis. CVE-2023-28771 + CVE-2023-33009 + CVE-2023-33010 https://github.com/blackorbird/APT_REPORT/blob/master/Sandworm/sektorcert-angrebet-mod-dansk-kritisk-infrastruktur-tlp-clear-en.pdf https://t.me/cKure/13238

November 14, 2023 at 01:41PM

■■■■□ Disinformation: Telegram bot that deletes content from social media which show any content critical of Israel is still functional a month since creation. Their statistics claim to bed up to 60% successful in deleting articles (https://t.me/cKure/13183) Source: https://t.me/cKure/13234 https://t.me/cKure/13235

November 14, 2023 at 12:34PM

■■■□□ Cyber-Attack on UAE based company DP-World as it suffers a major cyber incident on its offshore offices in Australia 🦘 The attack disrupted port services. Up to 40% of the services were halted. Some operations were resume after overnight efforts by tech teams. The Australian government was involved in this incident. https://edition.cnn.com/2023/11/13/tech/australia-dp-world-cyberattack-ports-intl-hnk/index.html https://t.me/cKure/13233