October 6, 2023 at 07:33PM

■■■■□ Exim patches three of six zero-day bugs disclosed last week. https://www.bleepingcomputer.com/news/security/exim-patches-three-of-six-zero-day-bugs-disclosed-last-week/ https://t.me/cKure/12960

October 6, 2023 at 10:49AM

● Thought of sharing: There are high changes that I will reject a candidate in an interview, if they are a bug-bounty hunter. Following are some reasons for most and not all the hunters. 1. They are technically not sound. They only have limited information about the bug they identified or they usually identify like…

October 6, 2023 at 10:27AM

■■■■□ How to use Automatic Attack Disruption in Microsoft 365 Defender (BEC, AiTM & HumOR). https://jeffreyappel.nl/how-to-use-automatic-attack-disruption-in-microsoft-365-defender-bec-aitm-humor/ https://t.me/cKure/12957

October 4, 2023 at 10:44AM

■■■■■ Competing in Pwn2Own ICS 2022 Miami: Exploiting a zero click remote memory corruption in ICONICS Genesis64. https://doar-e.github.io/blog/2023/05/05/competing-in-pwn2own-ics-2022-miami-exploiting-a-zero-click-remote-memory-corruption-in-iconics-genesis64/ https://t.me/cKure/12954

October 2, 2023 at 04:11PM

■■■■□ A new Chrome zero-day is sending the Internet into a new chapter of Groundhog Day. https://arstechnica.com/security/2023/09/new-0-day-in-chrome-and-firefox-is-likely-to-plague-other-software/ https://t.me/cKure/12952

October 2, 2023 at 03:07PM

■■■□□ Zero-Day: Discovered by X. B. of the Cisco Advanced Security Initiatives Group (ASIG), this medium-severity security flaw (CVE-2023-20109) stems from inadequate attribute validation within the Group Domain of Interpretation (GDOI) and G-IKEv2 protocols of the GET VPN feature. https://www.bleepingcomputer.com/news/security/cisco-urges-admins-to-fix-ios-software-zero-day-exploited-in-attacks/ https://t.me/cKure/12951