Active North Korean campaign targeting security researchers. https://blog.google/threat-analysis-group/active-north-korean-campaign-targeting-security-researchers/ https://t.me/cKure/12856
All posts in Uncategorized
September 8, 2023 at 01:46PM
■■■■□ An unknown threat actor has been observed weaponizing high-severity security flaws in the MinIO high-performance object storage system to achieve unauthorized code execution on affected servers. https://thehackernews.com/2023/09/hackers-exploit-minio-storage-system.html https://t.me/cKure/12855
September 8, 2023 at 12:27AM
■■■□□ Phishing Campaigns Deliver New SideTwist Backdoor and Agent Tesla Variant. The Iranian threat actor tracked as APT34 has been linked to a new phishing attack that leads to the deployment of a variant of a backdoor called SideTwist. https://thehackernews.com/2023/09/alert-phishing-campaigns-deliver-new.html https://t.me/cKure/12854
September 8, 2023 at 12:01AM
BLASTPASS NSO Group iPhone Zero-Click, Zero-Day Exploit Captured in the Wild. ● Update your Apple devices. https://citizenlab.ca/2023/09/blastpass-nso-group-iphone-zero-click-zero-day-exploit-captured-in-the-wild/ https://t.me/cKure/12851
September 7, 2023 at 11:11PM
■■■□□ Bypassing Defender’s LSASS dump detection and PPL protection In Go. https://tastypepperoni.medium.com/bypassing-defenders-lsass-dump-detection-and-ppl-protection-in-go-7dd85d9a32e6 https://t.me/cKure/12850
September 7, 2023 at 11:48AM
■■■■□ LDAP Relay Scan: Check for LDAP protections regarding the relay of NTLM authentication. https://github.com/zyn3rgy/LdapRelayScan https://t.me/cKure/12849
September 7, 2023 at 11:47AM
■■■□□ PySQLRecon: Offensive MSSQL toolkit written in Python, based off SQLRecon. https://github.com/Tw1sm/PySQLRecon https://t.me/cKure/12848
September 7, 2023 at 11:46AM
■■■■□ Burp Suite Certified Practitioner Exam Study. https://github.com/botesjuan/Burp-Suite-Certified-Practitioner-Exam-Study https://t.me/cKure/12847
September 6, 2023 at 05:46PM
■■■□□ Gpoddity: Exploiting Active Directory Gpos Through Ntlm Relaying, And More. https://www.synacktiv.com/publications/gpoddity-exploiting-active-directory-gpos-through-ntlm-relaying-and-more https://t.me/cKure/12846
September 6, 2023 at 05:14PM
■■■■□ Cyber-War: The Computer Emergency Response Team of Ukraine (CERT-UA) on Tuesday said it thwarted a cyber attack against an unnamed critical energy infrastructure facility in the country by Russia’s APT 28 (aka Fancy Bear ). https://thehackernews.com/2023/09/ukraines-cert-thwarts-apt28s.html https://t.me/cKure/12845
