■□□□□ #DataLeak: Japanese 🇯🇵 game developer Koei Tecmo discloses data breach after hacker leaks stolen data.
https://www.bleepingcomputer.com/news/security/koei-tecmo-discloses-data-breach-after-hacker-leaks-stolen-data/ #Japan
https://www.bleepingcomputer.com/news/security/koei-tecmo-discloses-data-breach-after-hacker-leaks-stolen-data/ #Japan
BleepingComputer
Koei Tecmo discloses data breach after hacker leaks stolen data
Japanese game developer Koei Tecmo has disclosed a data breach and taken their European and American websites offline after stolen data was posted to a hacker forum.
■■■□□ SolarWinds has released an updated advisory for the additional SuperNova malware discovered to have been distributed through the company's network management platform.
https://www.bleepingcomputer.com/news/security/solarwinds-releases-updated-advisory-for-new-supernova-malware/
https://www.bleepingcomputer.com/news/security/solarwinds-releases-updated-advisory-for-new-supernova-malware/
BleepingComputer
SolarWinds releases updated advisory for new SUPERNOVA malware
SolarWinds has released an updated advisory for the additional SuperNova malware discovered to have been distributed through the company's network management platform.
■□□□□ 😂 GoDaddy apologized for insensitive phishing email sent to its employees offering a fake bonus.
■■■■□ #BlueTeam: TruKno TTP based Threat Intelligence Platform.
TruKno’s ThreatBoard is a platform that helps security professionals uncover the root causes behind emerging cyber-attacks, Improving proactive defense postures.
https://www.ehackingnews.com/2020/12/trukno-ttp-based-threat-intelligence.html
TruKno’s ThreatBoard is a platform that helps security professionals uncover the root causes behind emerging cyber-attacks, Improving proactive defense postures.
https://www.ehackingnews.com/2020/12/trukno-ttp-based-threat-intelligence.html
■□□□□ Kaspersky Lab and Yandex have detected malicious browser extensions.
https://www.ehackingnews.com/2020/12/kaspersky-lab-and-yandex-have-detected.html
https://www.ehackingnews.com/2020/12/kaspersky-lab-and-yandex-have-detected.html
■■■□□ Webkit Exploitation Tutorial.
https://docs.ioin.in/writeup/www.auxy.xyz/_tutorial_Webkit_Exp_Tutorial_/index.html
https://docs.ioin.in/writeup/www.auxy.xyz/_tutorial_Webkit_Exp_Tutorial_/index.html
■■■□□ #Vietnam 🇻🇳 targeted in complex supply chain attack.
Hackers have inserted malware inside an app offered for download by the Vietnam Government Certification Authority (VGCA).
https://www.zdnet.com/article/vietnam-targeted-in-complex-supply-chain-attack/
Hackers have inserted malware inside an app offered for download by the Vietnam Government Certification Authority (VGCA).
https://www.zdnet.com/article/vietnam-targeted-in-complex-supply-chain-attack/
ZDNET
Vietnam targeted in complex supply chain attack
Hackers have inserted malware inside an app offered for download by the Vietnam Government Certification Authority (VGCA).
■■□□□ Top 20 Most Popular Hacking Tools in 2020.
https://www.kitploit.com/2020/12/top-20-most-popular-hacking-tools-in.html
https://www.kitploit.com/2020/12/top-20-most-popular-hacking-tools-in.html
KitPloit - PenTest & Hacking Tools
Top 20 Most Popular Hacking Tools in 2020
■■■■■ GitHub-based malware calculates Cobalt Strike payload from Imgur pic.
https://www.bleepingcomputer.com/news/security/github-based-malware-calculates-cobalt-strike-payload-from-imgur-pic/
https://www.bleepingcomputer.com/news/security/github-based-malware-calculates-cobalt-strike-payload-from-imgur-pic/
BleepingComputer
GitHub-hosted malware calculates Cobalt Strike payload from Imgur pic
A new strand of malware uses Word files with macros to download a PowerShell script from GitHub. This PowerShell script further downloads a legitimate image file from image hosting service Imgur to decode a Cobalt Strike script.
■■■□□ (s)AINT is a Spyware Generator for Windows systems written in Java.
https://github.com/tiagorlampert/sAINT
https://github.com/tiagorlampert/sAINT
GitHub
GitHub - tiagorlampert/sAINT: :eye: (s)AINT is a Spyware Generator for Windows systems written in Java. [Discontinued]
:eye: (s)AINT is a Spyware Generator for Windows systems written in Java. [Discontinued] - tiagorlampert/sAINT
cKure
■■■□□ #DataLeak: REvil ransomware group, aka Sodinokibi, hacked The Hospital Group and threatens to release before-and-after pictures of celebrity clients. https://securityaffairs.co/wordpress/112637/cyber-crime/the-hospital-group-revil.html
■■■■□ #DataLeak: REvil hackers to leak photos of plastic surgery patients after massive hack.
https://www.hackread.com/revil-hackers-leak-plastic-surgery-patients-photos/
https://www.hackread.com/revil-hackers-leak-plastic-surgery-patients-photos/
Hackread - Latest Cybersecurity, Tech, Crypto & Hacking News
REvil hackers to leak photos of plastic surgery patients after massive hack
Like us on Facebook @ /HackRead
■■■□□ #DataLeak #CyberCrime: Home appliance giant Whirlpool hit in Nefilim ransomware attack.
https://www.bleepingcomputer.com/news/security/home-appliance-giant-whirlpool-hit-in-nefilim-ransomware-attack/
https://www.bleepingcomputer.com/news/security/home-appliance-giant-whirlpool-hit-in-nefilim-ransomware-attack/
BleepingComputer
Home appliance giant Whirlpool hit in Nefilim ransomware attack
Home appliances giant Whirlpool suffered a ransomware attack by the Nefilim ransomware gang who stole data before encrypting devices.
■■□□□ Third edition of US 🇺🇸 Army bug bounty program prepared for deployment.
https://portswigger.net/daily-swig/third-edition-of-us-army-bug-bounty-program-prepared-for-deployment #UnitedStates
https://portswigger.net/daily-swig/third-edition-of-us-army-bug-bounty-program-prepared-for-deployment #UnitedStates
portswigger.net
Web Application Security, Testing, & Scanning - PortSwigger
PortSwigger offers tools for web application security, testing, & scanning. Choose from a range of security tools, & identify the very latest vulnerabilities.
■■□□□ #DataLeak / #Italy 🇮🇹: Threat actor is selling a dump allegedly including 2,5M customers of service provider Ho Mobile.
https://hackademicus.nl/threat-actor-is-selling-a-dump-allegedly-including-25m-customers-of-service-provider-ho-mobile/
https://hackademicus.nl/threat-actor-is-selling-a-dump-allegedly-including-25m-customers-of-service-provider-ho-mobile/
hackademicus.nl
Hackademicus is under construction
it's all about security stupid!