12/21

Okta's source code stolen after GitHub repositories hacked

https://www.bleepingcomputer.com/news/security/oktas-source-code-stolen-after-github-repositories-hacked/
Okta's source code stolen after GitHub repositories hacked

OWASSRF: CrowdStrike Identifies New Method for Bypassing ProxyNotShell Mitigations

https://www.crowdstrike.com/blog/owassrf-exploit-analysis-and-recommendations/
OWASSRF: CrowdStrike Identifies New Method for Bypassing ProxyNotShell Mitigations

Guardian hit by serious IT incident believed to be ransomware attack | The Guardian | The Guardian

https://www.theguardian.com/media/2022/dec/21/guardian-hit-by-serious-it-incident-believed-to-be-ransomware-attack
Guardian hit by serious IT incident believed to be ransomware attack | The Guardian | The Guardian

DirtyCred Remastered | LukeGix

https://exploiter.dev/blog/2022/CVE-2022-2602.html
DirtyCred Remastered | LukeGix

Inside the IcedID BackConnect Protocol

https://www.team-cymru.com/post/inside-the-icedid-backconnect-protocol
Inside the IcedID BackConnect Protocol

Deconstructing and Exploiting CVE-2020-6418 | STAR Labs

https://starlabs.sg/blog/2022/12-deconstructing-and-exploiting-cve-2020-6418/
Deconstructing and Exploiting CVE-2020-6418 | STAR Labs

Ransomware gang uses new Microsoft Exchange exploit to breach servers

https://www.bleepingcomputer.com/news/security/ransomware-gang-uses-new-microsoft-exchange-exploit-to-breach-servers/
Ransomware gang uses new Microsoft Exchange exploit to breach servers

Ransomware Hackers Using New Way to Bypass MS Exchange ProxyNotShell Mitigations

https://thehackernews.com/2022/12/ransomware-hackers-using-new-way-to.html
Ransomware Hackers Using New Way to Bypass MS Exchange ProxyNotShell Mitigations

What child is this? | Trail of Bits Blog

https://blog.trailofbits.com/2022/12/20/process-reparenting-microsoft-windows/
What child is this? | Trail of Bits Blog

Okta says its GitHub account hacked, source code stolen

https://www.bleepingcomputer.com/news/security/okta-says-its-github-account-hacked-source-code-stolen/
Okta says its GitHub account hacked, source code stolen

CVE-2022-41076 - Security Update Guide - Microsoft - PowerShell Remote Code Execution Vulnerability

https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2022-41076
CVE-2022-41076 - Security Update Guide - Microsoft - PowerShell Remote Code Execution Vulnerability

Guardian hit by serious IT incident believed to be ransomware attack | The Guardian | The Guardian

https://www.theguardian.com/media/2022/dec/21/guardian-hit-by-serious-it-incident-believed-to-be-ransomware-attack?CMP=twt_gu&utm_source=Twitter&utm_medium#Echobox=1671629085-1
Guardian hit by serious IT incident believed to be ransomware attack | The Guardian | The Guardian

FBI warns of search engine ads pushing malware, phishing

https://www.bleepingcomputer.com/news/security/fbi-warns-of-search-engine-ads-pushing-malware-phishing/
FBI warns of search engine ads pushing malware, phishing

Guardian newspaper hit by suspected ransomware attack, staff told not to come to office - The Record by Recorded Future

https://therecord.media/guardian-newspaper-hit-by-suspected-ransomware-attack-staff-told-not-to-come-to-office/
Guardian newspaper hit by suspected ransomware attack, staff told not to come to office - The Record by Recorded Future