Today I have posted over 500+ additional domain indicators on a phishing cluster which has targeted organisations across the world utilising CloudFront, Amazon S3, CloudFlare and gCaptcha. The targeting is wide and I recommend all defenders to query their org.
We had a short look at the buffer overflow found by fuzzing `process_browse_data` to determine its exploitability. Conclusion: this bug alone won't give you RCE, or even an info leak.
The FBI recently sent a warning out regarding DPRK activity against the crypto industry. Today, we documented attacks we've seen on macOS. Attacks start with social engineering and deliver a piece of malware that we call ThiefBucket.
https://t.co/9QbC9OoCXn
#malware
🚨 NEW REPORT by @citizenlab in collaboration with @accessnow, @DeptFirst, Arjuna Team and https://t.co/JjT4QPjgGi uncovers a sophisticated and highly-personalized #phishing campaign targeting civil society members in the US and Europe, including Russian opposition in exile, NGOs, and media outlets.
Report led by @jsrailton & @PDXbek with @edok_lotosov and @RonDeibert:
https://t.co/D2W8g2Qz3y