December 16, 2022 at 02:40AM

■■■■□ Zero-Day exploitation by China of the flaw, tracked as CVE-2022-27518, affects Citrix ADC, an application delivery controller, and Citrix Gateway, a remote access tool. https://www.citrix.com/blogs/2022/12/13/critical-security-update-now-available-for-citrix-adc-citrix-gateway/ https://techcrunch.com/2022/12/14/nsa-says-chinese-hackers-are-exploiting-a-zero-day-bug-in-popular-networking-gear/ https://t.me/cKure/12014

December 15, 2022 at 05:23PM

■■■■■ Zero-day: Windows SmartScreen Security Feature Bypass Vulnerability CVE-2022-44698. https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2022-44698 Vulnerability was exploited by threat actors to circumvent the Windows SmartScreen security feature and deliver Magniber ransomware and Qbot malware payloads. https://www.bleepingcomputer.com/news/security/microsoft-patches-windows-zero-day-used-to-drop-ransomware/ https://t.me/cKure/12012