August 6, 2022 at 10:27PM

Zero-Day used to access 5.4M user data from Twitter (confirmed by company). https://hackerone.com/reports/1439026 Twitter confirms zero-day used to access data of 5.4 million accounts https://restoreprivacy.com/twitter-vulnerability-exposes-5-million-accounts/ https://t.me/cKure/11678

August 5, 2022 at 04:35PM

Zero-Day: Paracosme (CVE-2022-33318) is the zero-click remote code execution memory corruption exploit to compromise ICONICS Genesis64 on stage at Pwn2Own2022 Miami. https://www.zerodayinitiative.com/advisories/ZDI-22-1041/ https://t.me/cKure/11677

August 5, 2022 at 04:35PM

Zero-Day: Paracosme (CVE-2022-33318) is the zero-click remote code execution memory corruption exploit to compromise ICONICS Genesis64 on stage at Pwn2Own2022 Miami. https://www.zerodayinitiative.com/advisories/ZDI-22-1041/ https://t.me/cKure/11676

August 5, 2022 at 04:35PM

Zero-Day: Paracosme (CVE-2022-33318) is the zero-click remote code execution memory corruption exploit to compromise ICONICS Genesis64 on stage at Pwn2Own2022 Miami. https://www.zerodayinitiative.com/advisories/ZDI-22-1041/ https://t.me/cKure/11675

August 4, 2022 at 09:29PM

■■■■■ Zero-Day in VMware product line. Peter Viet: I have found vulnerabilities CVE-2022-31656 and CVE-2022-31659 leading to unauthenticated remote code execution affecting many #VMware products, such as Workspace ONE. Technical writeup and POC soon to follow. https://t.me/cKure/11673

August 4, 2022 at 06:29PM

Data-Leak: 4TB of proprietary data from Israel based Cellebrite (Cellebrite Mobilogy & Cellebrite TFS backup) leaked by anonymous source. Notably, Cellebrite Mobilogy shares code with Cellebrite Universal Forensics Extraction Device or Cellebrite UFED, used by law enforcement agencies. Source: Soufiane. https://t.me/cKure/11670

August 1, 2022 at 11:39AM

■■■■■ Data-Leak: Threat actors that go online with the moniker Adrastea claim to have hacked the multinational manufacturer of missiles MBDA. https://securityaffairs.co/wordpress/133881/data-breach/mbda-alleged-data-breach.html https://t.me/cKure/11669

August 1, 2022 at 11:38AM

■■■■□ A vulnerability, tracked as CVE-2022-30563, impacting Dahua IP Camera can allow attackers to seize control of IP cameras https://securityaffairs.co/wordpress/133877/hacking/dahua-severe-flaw.html https://t.me/cKure/11668

July 30, 2022 at 01:04PM

Cyber-Attack amid Cyber-War by Russia as apparently for about 12 hours Rostelecom hijacked part of the traffic destinated to Apple https://www.manrs.org/2022/07/for-12-hours-was-part-of-apple-engineerings-network-hijacked-by-russias-rostelecom/ https://t.me/cKure/11667

July 26, 2022 at 03:31PM

■■■■□ SSD Advisory – Microsoft SharePoint Server WizardConnectToDataStep4 Deserialization Of Untrusted Data RCE. https://ssd-disclosure.com/ssd-advisory-microsoft-sharepoint-server-wizardconnecttodatastep4-deserialization-of-untrusted-data-rce/ https://t.me/cKure/11666