September 4, 2021 at 06:12PM

■■■□□ Norwegian student tracks Bluetooth headset wearers by wardriving around Oslo on a bicycle. https://go.theregister.com/feed/www.theregister.com/2021/09/04/bluetooth_headphones_tracking_oslo/ https://t.me/cKure/9183

September 4, 2021 at 06:09PM

■■■■■ Zuthaka – An Open Source Application Designed To Assist Red-Teaming Efforts, By Simplifying The Task Of Managing Different APTs And Other Post-Exploitation Tools https://github.com/pucarasec/zuthaka https://t.me/cKure/9182

September 4, 2021 at 06:07PM

■■■□□ FIN7 cybercrime gang used weaponized Windows 11 Alpha-themed Word documents to drop malicious payloads, including a JavaScript backdoor. https://securityaffairs.co/wordpress/121839/cyber-crime/fin7-cybercrime-gang.html https://t.me/cKure/9181

September 3, 2021 at 11:25PM

■■■■■ Capture Credentials with our new SMB Server. Metasploit now captures NTLM hashes from any recent Windows release using SMBv2 and SMBv3, even with encrypted SMB traffic. Plus, twitter.com/chompie1337’s eBPF exploit lands, along with modules for Git LFS and Geutebruck IP cameras. CVE-2021-21300 https://www.rapid7.com/blog/post/2021/09/03/metasploit-wrap-up-128/ https://t.me/cKure/9177

September 3, 2021 at 05:50PM

■□□□□ As per United States CyberCom statement: Mass exploitation of Atlassian Confluence CVE-2021-26084 is ongoing and expected to accelerate. Please patch immediately if you haven’t already— this cannot wait until after the weekend. https://twitter.com/CNMF_CyberAlert/status/1433787671785185283 https://t.me/cKure/9173