The self described “Shodan of AWS” is now live! This is an amazing project from @dagrz that helps democratize cloud resource enumeration for the masses. Very excited about this!
https://t.co/tfgpRvl0cY
Since the beginning of September 2024, Microsoft Threat Intelligence has observed a phishing campaign using emails with “eFax” themed lures containing links or QR codes within PDF attachments, leading to a domain controlled by the EvilProxy phishing-as-a-service (PhaaS) platform.
Excited to announce the 🚀 launch of the 🔥 LOLESXi project. It provides valuable insights into adversarial techniques targeting VMWARE ESXi.
https://t.co/MLCSW1Zix1 #threatresearch#lolesxi#dfir
CISA warned federal agencies to patch a VMware ESXi authentication bypass vulnerability exploited by the Black Basta and Akira ransomware gangs.
https://t.co/ksKXwUH3S8
Scoring 12,565/15,400 points over 175 challenges, our 5-person Fleet Cyber Team won the prestigious SANS Netwars International Services Cup!
Bravo Zulu - your capabilities in cyber warfare outperformed 35 teams from 8 countries.
Learn what it takes: https://t.co/jaSWkVUbDN
Microsoft has uncovered a vulnerability in ESXi hypervisors, identified as CVE-2024-37085, being exploited by threat actors to obtain full administrative permissions on domain-joined ESXi hypervisors and encrypt critical servers in ransomware attacks. https://t.co/7NUvHGrzXM
Today, CSE jointly releases a warning and advisory about a Russia-linked, AI-enabled bot farm for foreign malign influence activity.
https://t.co/EuaXdv8Wdo
I recommend unlinking any desktop device from your signal account. A long-known problem (that I was unaware of until today) is that Signal stores your decryption key on desktop in a plain text file, NOT your keychain, making it accessible to any app.
@malwrhunterteam@vxunderground Looks like they all have broken Unicode that references “Namshi discounts”….
There’s other formats … bots obviously, but for what purpose? 🤷♀️
The award-winning Qualys Threat Research Unit (TRU) has discovered a critical vulnerability in OpenSSH, designated CVE-2024-6387 and aptly named "regreSSHion." This Remote Code Execution bug grants full root access, posing a significant exploitation risk. https://t.co/uDHHSuzd5f
@MidOfficer July 1st will be the [more than 5yrs] anniversary of our last and final posting and I can honestly say hearing about BGRS still triggers an anxious rage. I don’t know how posting admin has continued to get worse… but I have to assume it’s related to the contracting.