May 2, 2022 at 05:19AM

■■■□□ Russia Ukraine Cyber-War: Notorious REvil ransomware operation has returned amidst rising tensions between Russia and the USA, with new infrastructure and a modified encryptor allowing for more targeted attacks. This information came after an Avast researcher found the malware in the wild. https://mobile.twitter.com/JakubKroustek/status/1520135975262957568 https://t.me/cKure/11286

May 2, 2022 at 03:32AM

■■■■■ The Open Source Security Foundation (OpenSSF), a Linux Foundation-backed initiative has released its first prototype version of the ‘Package Analysis’ tool that aims to catch and counter malicious attacks on open source registries. the open source tool released on GitHub was able to identify over 200 malicious npm and PyPI packages. https://github.com/ossf/package-analysis https://www.bleepingcomputer.com/news/security/open-source-package-analysis-tool-finds-malicious-npm-pypi-packages/ https://t.me/cKure/11285

April 30, 2022 at 08:24PM

■■■■□ Unconfirmed: “The Indian government has issued new directives requiring organizations to report cybersecurity incidents to CERT-IN within six hours, even if those incidents are port or vulnerability scans of computer systems.” https://t.me/cKure/11283

April 30, 2022 at 04:40PM

■■■■□ SMB Relay: This page deals with gaining code execution relaying NTLMv1/2 hashes in a very effective manner. https://aas-s3curity.gitbook.io/cheatsheet/internalpentest/active-directory/exploitation/exploit-without-account/smb-relay https://t.me/cKure/11281

April 29, 2022 at 11:49PM

■□□□ India gives local techies 60 days to hit 6-hour deadline for infosec incident reporting. https://go.theregister.com/feed/www.theregister.com/2022/04/29/cert_in_directive/ https://t.me/cKure/11279

April 29, 2022 at 11:48PM

■■■□□ Cyber-War on Romania The Romanian national cyber security and incident response team, DNSC, has issued a statement about a series of distributed denial-of-service (DDoS) attacks targeting several public websites managed by the state entities. https://www.sri.ro/articole/atacuri-cibernetice-asupra-site-urilor-unor-institutii-publice-si-financiar-bancare.html https://t.me/cKure/11278

April 29, 2022 at 11:47PM

● OSINT: Newly released video shows two 9/11 hijackers at a party in San Diego in 2000 with alleged Saudi intelligence operative, Omar al-Bayoumi. A newly declassified FBI report from 2017 reveals that Omar al-Bayoumi was a “cooptee” of Saudi intelligence and was paid monthly by then Saudi Ambassador Prince Bandar. Al-Bayoumi spied on persons…