MalDoc in PDF – Detection bypass by embedding a malicious Word file into a PDF file. https://blogs.jpcert.or.jp/en/2023/08/maldocinpdf.html https://t.me/cKure/12808
All posts in Uncategorized
August 30, 2023 at 02:59PM
■■■■■ 2023-08 Out-of-Cycle Security Bulletin: Junos OS: SRX Series and EX Series: Multiple vulnerabilities in J-Web can be combined to allow a preAuth Remote Code Execution. https://supportportal.juniper.net/s/article/2023-08-Out-of-Cycle-Security-Bulletin-Junos-OS-SRX-Series-and-EX-Series-Multiple-vulnerabilities-in-J-Web-can-be-combined-to-allow-a-preAuth-Remote-Code-Execution https://t.me/cKure/12807
August 30, 2023 at 02:56PM
■■■■■ HTML Smuggling Leads to Domain Wide Ransomware. https://thedfirreport.com/2023/08/28/html-smuggling-leads-to-domain-wide-ransomware/ https://t.me/cKure/12806
August 30, 2023 at 05:28AM
■■■■□ Data-Leak by 5-Hands group as they breach tens of millions of records from government and private entities around the globe ✓ThreatSec ✓GhostSec ✓Stormous ✓Blackforums ✓SiegedSec https://t.me/cKure/12805
August 29, 2023 at 09:52AM
■■■□□ Japan’s cybersecurity agency suffers months-long breach. https://www.ft.com/content/de0042f8-a7ce-4db5-bf7b-aed8ad3a4cfd https://t.me/cKure/12803
August 29, 2023 at 09:50AM
■□□□□ Cyber-Attack: The Indonesian hacktivist group called “VulzSec” has announced that they will carry out an operation named “Operation Japan” related to Japan’s nuclear wastewater release. This operation is scheduled to take place from August 28th to September 5th. They claim to have carried out data breaches on two Japanese ministries as part of this…
August 28, 2023 at 11:05PM
■■■■■ Interesting thread on privacy https://twitter.com/josephfcox/status/1696146372720800197 https://t.me/cKure/12801
August 28, 2023 at 10:08PM
■■■■■ Making the Cloudflare WARP VPN leak DNS requests. https://www.mathyvanhoef.com/2023/08/making-cloudflare-warp-vpn-leak-dns.html https://t.me/cKure/12799
August 28, 2023 at 12:55PM
■■■■■ DebugAmsi is another way to bypass AMSI through the Windows process debugger mechanism. https://github.com/MzHmO/DebugAmsi https://t.me/cKure/12798
August 28, 2023 at 12:55PM
■■■■□ Remote shellcode injector, based on HWSyscalls by ShorSec, leveraging undetectable (currently) indirect native syscalls to inject shellcode into another process, creating a thread and executing it. https://github.com/florylsk/NtRemoteLoad https://t.me/cKure/12797
