March 31, 2022 at 03:28PM

■■□□□ Mysterious disclosure of a zero-day RCE flaw Spring4Shell in Spring. An unauthenticated zero-day RCE vulnerability in the Spring Core Java framework called ‘Spring4Shell’ has been publicly disclosed. https://securityaffairs.co/wordpress/129644/hacking/spring-java-framework-rce-zero-day.html https://t.me/cKure/11089

March 31, 2022 at 11:59AM

■■□□□ The Morphisec Labs researchers analyzed a new malware, tracked as Mars stealer, which is based on the older Oski Stealer. https://securityaffairs.co/wordpress/129639/cyber-crime/mars-stealer-operation.html https://t.me/cKure/11088

March 31, 2022 at 11:42AM

■■■■■ Zero-Day: Unpatched Java Spring Framework 0-Day RCE Bug Threatens Enterprise Web Apps Security. https://thehackernews.com/2022/03/unpatched-java-spring-framework-0-day.html https://t.me/cKure/11085

March 30, 2022 at 02:45PM

■■■□□ Cyber-Attack: A new campaign from the hacking group tracked as APT36, aka ‘Transparent Tribe’ or’ Mythic Leopard,’ has been discovered using new custom malware and entry vectors in attacks against the Indian government. https://www.bleepingcomputer.com/news/security/hackers-use-modified-mfa-tool-against-indian-govt-employees/ https://t.me/cKure/11081

March 30, 2022 at 02:44PM

■■□□□ Ten notorious ransomware strains put to the encryption speed test. https://www.bleepingcomputer.com/news/security/ten-notorious-ransomware-strains-put-to-the-encryption-speed-test/ https://t.me/cKure/11080