■■■□□ CVE-2022-32276 Grafana PoC and detailed information.
https://github.com/BrotherOfJhonny/grafana/blob/main/README.md
https://github.com/BrotherOfJhonny/grafana/blob/main/README.md
GitHub
grafana/README.md at main · BrotherOfJhonny/grafana
grafana 8.4.3 (b7d2911ca). Contribute to BrotherOfJhonny/grafana development by creating an account on GitHub.
■■■■■ Symbiote: A New, Nearly-Impossible-to-Detect Linux Threat.
https://blogs.blackberry.com/en/author/the-blackberry-research-and-intelligence-team
https://blogs.blackberry.com/en/author/the-blackberry-research-and-intelligence-team
Blackberry
The BlackBerry Research and Intelligence Team
❤1
■■■■■ Cyber-War / Cyber-Attack: China 🇨🇳 has breached telcos and network service providers.
https://securityaffairs.co/wordpress/132042/apt/us-warns-china-linked-threat-actors.html
https://securityaffairs.co/wordpress/132042/apt/us-warns-china-linked-threat-actors.html
Security Affairs
China-linked threat actors have breached telcos and network service providers
China-linked threat actors have breached telecommunications companies and network service providers to spy on the traffic and steal data.
■■■■■ CVE-2022-26937: Microsoft Windows Network File System Nlm Portmap Stack Buffer Overflow.
https://www.zerodayinitiative.com/blog/2022/6/7/cve-2022-26937-microsoft-windows-network-file-system-nlm-portmap-stack-buffer-overflow
https://www.zerodayinitiative.com/blog/2022/6/7/cve-2022-26937-microsoft-windows-network-file-system-nlm-portmap-stack-buffer-overflow
Zero Day Initiative
Zero Day Initiative — CVE-2022-26937: Microsoft Windows Network File System NLM Portmap Stack Buffer Overflow
In this excerpt of a Trend Micro Vulnerability Research Service vulnerability report, Guy Lederfein and Jason McFadyen of the Trend Micro Research Team detail a recently patched code execution vulnerability in the Microsoft Windows operating system. The bug…
■■■■□ Apple M1 chip contains hardware vulnerability that bypasses memory defense.
https://go.theregister.com/feed/www.theregister.com/2022/06/10/apple_m1_pacman_flaw/
https://go.theregister.com/feed/www.theregister.com/2022/06/10/apple_m1_pacman_flaw/
The Register
Apple M1 chip contains hardware vulnerability that bypasses memory defense
MIT CSAIL boffins devise PACMAN attack to let existing exploits avoid pointer authentication
■■■■■ Researchers Disclose Critical Flaws in Industrial Access Control System from Carrier.
As many as eight zero-day vulnerabilities have been disclosed in Carrier's LenelS2 HID Mercury access control system that's used widely in healthcare, education, transportation, and government facilities.
https://thehackernews.com/2022/06/researchers-disclose-critical-flaws-in.html
As many as eight zero-day vulnerabilities have been disclosed in Carrier's LenelS2 HID Mercury access control system that's used widely in healthcare, education, transportation, and government facilities.
https://thehackernews.com/2022/06/researchers-disclose-critical-flaws-in.html
■■■■□ Iran 🇮🇷: The Iranian Lycaeum APT hacking group uses a new .NET-based DNS backdoor to conduct attacks on companies in the energy and telecommunication sectors.
https://www.bleepingcomputer.com/news/security/iranian-hackers-target-energy-sector-with-new-dns-backdoor/
https://www.bleepingcomputer.com/news/security/iranian-hackers-target-energy-sector-with-new-dns-backdoor/
BleepingComputer
Iranian hackers target energy sector with new DNS backdoor
The Iranian Lycaeum APT hacking group uses a new .NET-based DNS backdoor to conduct attacks on companies in the energy and telecommunication sectors.
■■■■■ Metasploit 6.2.0 has been released with 138 new modules, 148 new improvements/features, and 156 bug fixes since version 6.1.0 was released in August 2021.
Metasploit 6.2.0 improves credential theft, SMB support features, more.
https://www.rapid7.com/blog/post/2022/06/09/announcing-metasploit-6-2/
https://www.bleepingcomputer.com/news/security/metasploit-620-improves-credential-theft-smb-support-features-more/
Metasploit 6.2.0 improves credential theft, SMB support features, more.
https://www.rapid7.com/blog/post/2022/06/09/announcing-metasploit-6-2/
https://www.bleepingcomputer.com/news/security/metasploit-620-improves-credential-theft-smb-support-features-more/
Rapid7
Announcing Metasploit 6.2 | Rapid7 Blog
Metasploit 6.2.0 has been released, marking another milestone that includes new modules, features, improvements, and bug fixes.
■■■■□ Follina patch CVE-2022-30190. (msdt.exe) is out.
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2022-30190
https://msrc.microsoft.com/update-guide/en-US/vulnerability/CVE-2022-30190
■□□□□ Funny beaver 🦫 incident in British Colombia, Canada 🇨🇦
https://twitter.com/netblocks/status/1536416663385546756
https://twitter.com/netblocks/status/1536416663385546756
X (formerly Twitter)
NetBlocks (@netblocks) on X
ℹ️ Confirmed: Network data corroborate reports of a disruption to internet access in parts of British Columbia, #Canada, 7 June.
The incident is attributed to the activity of a single beaver, which gnawed through a tree that then fell on fiber cabling 🦫…
The incident is attributed to the activity of a single beaver, which gnawed through a tree that then fell on fiber cabling 🦫…
■■■■■ Interesting thread! #modifiedElephant
https://twitter.com/blackorbird/status/1537689017705111553
https://twitter.com/blackorbird/status/1537689017705111553
Twitter
blackorbird
#ModifiedElephant Attack China ioc: virustotal.com/gui/file/71def… report: mp.weixin.qq.com/s/mC5D8kFaQA-c… mp-weixin-qq-com.translate.goog/s/mC5D8kFaQA-c… twitter.com/blackorbird/st…
cKure
■■■■■ Interesting thread! #modifiedElephant https://twitter.com/blackorbird/status/1537689017705111553
■■■■■ Cyber-Crime by police in India 🇮🇳 as Police Linked to Hacking Campaign to Frame Indian Activists #ModifiedElephant.
New details connect police in India to a plot to plant evidence on victims' computers that led to their arrest.
https://twitter.com/blackorbird/status/1537687091705835521
New details connect police in India to a plot to plant evidence on victims' computers that led to their arrest.
https://twitter.com/blackorbird/status/1537687091705835521
Twitter
blackorbird
Police Linked to Hacking Campaign to Frame Indian Activists #ModifiedElephant New details connect police in India to a plot to plant evidence on victims' computers that led to their arrest. wired.com/story/modified… twitter.com/blackorbird/st…
cKure
■■■■■ Cyber-Crime by police in India 🇮🇳 as Police Linked to Hacking Campaign to Frame Indian Activists #ModifiedElephant. New details connect police in India to a plot to plant evidence on victims' computers that led to their arrest. https://twitter.com…
■■■■■ modifiedElephant campaign report by the researchers showing marks documents targeting human rights activists by government of India 🇮🇳 using primarily spyware created by Israel 🇮🇱
Original: https://mp.weixin.qq.com/s/mC5D8kFaQI'mA-cIcw2rlTgeA
Translated: https://mp-weixin-qq-com.translate.goog/s/mC5D8kFaQA-cIcw2rlTgeA?_x_tr_sl=zh-CN&_x_tr_tl=en&_x_tr_hl=en
Original: https://mp.weixin.qq.com/s/mC5D8kFaQI'mA-cIcw2rlTgeA
Translated: https://mp-weixin-qq-com.translate.goog/s/mC5D8kFaQA-cIcw2rlTgeA?_x_tr_sl=zh-CN&_x_tr_tl=en&_x_tr_hl=en
■■■■□ Sophos Firewall zero-day bug exploited weeks before fix.
https://www.bleepingcomputer.com/news/security/sophos-firewall-zero-day-bug-exploited-weeks-before-fix/
https://www.bleepingcomputer.com/news/security/sophos-firewall-zero-day-bug-exploited-weeks-before-fix/
BleepingComputer
Sophos Firewall zero-day bug exploited weeks before fix
Chinese hackers used a zero-day exploit for a critical-severity vulnerability in Sophos Firewall to compromise a company and breach cloud-hosted web servers operated by the victim.
■■□□□ iCloud cyber-criminal gets 9 years in prison for stealing nude photos.
https://www.bleepingcomputer.com/news/security/icloud-hacker-gets-9-years-in-prison-for-stealing-nude-photos/
https://www.bleepingcomputer.com/news/security/icloud-hacker-gets-9-years-in-prison-for-stealing-nude-photos/
BleepingComputer
iCloud hacker gets 9 years in prison for stealing nude photos
A California man who hacked thousands of Apple iCloud accounts was sentenced to 8 years in prison after pleading guilty to conspiracy and computer fraud in October 2021.
■■■□□ Experts discovered a feature in Microsoft 365 suite that could be abused to encrypt files stored on SharePoint and OneDrive and target cloud infrastructure.
https://securityaffairs.co/wordpress/132353/hacking/microsoft-365-feature-ransomware.html
https://securityaffairs.co/wordpress/132353/hacking/microsoft-365-feature-ransomware.html
Security Affairs
A Microsoft 365 feature can ransom files on SharePoint and OneDriveCould
Experts discovered a feature in Microsoft 365 that could be abused to encrypt files on SharePoint and OneDrive and target cloud infrastructure