cKure Red
2.5K subscribers
71 photos
46 videos
21 files
458 links
The director's cut on critical feeds from InfoSec world ๐ŸŒŽ

Main Channel: @cKure

โ˜•๏ธ or queries email us
๐Ÿ“จ i@ckure.org
Download Telegram
Exclusive | Zero-Day: A high severity EoP bug has been identified by a fellow researcher in SolarWinds Orion platform.

โ— The bug is not patched and latest version of the software is vulnerable. We (ckure) have confirmed the bug with the researcher and will disclose once researcher and SolarWinds release a stable patch or a workaround.
Google Researchers Detail 5-Year-Old Apple Safari Vulnerability Exploited in the Wild.

The issue, tracked as CVE-2022-22620 (CVSS score: 8.8), concerns a case of a use-after-free vulnerability in the WebKit component that could be exploited by a piece of specially crafted web content to gain arbitrary code execution.

https://googleprojectzero.blogspot.com/2022/06/an-autopsy-on-zombie-in-wild-0-day.html
LockBit ransomeware group sets up its bug-bounty program.
This media is not supported in your browser
VIEW IN TELEGRAM
Cyber-War: Lithuania ๐Ÿ‡ฑ๐Ÿ‡น has been hit by cyber-attacks after an ultimatum from Russian ๐Ÿ‡ท๐Ÿ‡บ Killnet hackers.

โ— Pasted 'ckure' emoji at bottom right of the video to obscure profanity.
Cyber-War: Iran ๐Ÿ‡ฎ๐Ÿ‡ท has been hit with a strong SCADA based cyber-attack as multiple organisations capitulate under the physical damages that have been caused.

Please note that this is 1-sided information by the threat actor who did not contact us directly.

In their message; they said, "Today, we, "Gonjeshke Darande", carried out cyberattacks against Iran's steel industry which affiliated with the IRGC and the Basij: the Khouzestan Steel Company (KSC), the Mobarakeh Steel Company (Isfahan) (MSC) and the Hormozgan Steel Company (HOSCO). These companies are subject to international sanctions and continue their operations despite the restrictions. These cyberattacks, being carried out carefully so to protect innocent individuals, are in response to the aggression of the Islamic Republic.

As you can see in attached video, these cyberattacks have been carried out carefully so to protect innocent individuals. We also expose here evidence of our access to these companies."
cKure Red pinned a photo
cKure Red
Video
โ— Ckure is able to confirm the cyber-attack on Iran ๐Ÿ‡ฎ๐Ÿ‡ท to be authentic.
OSINT: IntelTechniques Search Tools.

https://inteltechniques.com/tools/
Massive ayber-attack launched by 'DragonForce Malaysia' ๐Ÿ‡ฒ๐Ÿ‡พ and 'Hacktivist Indonesia' ๐Ÿ‡ฎ๐Ÿ‡ฉ on India ๐Ÿ‡ฎ๐Ÿ‡ณ as a revenge amid remarks by ruling party (BJP) spokesperson Nupur Sharma on the prophet (Islam).

Around 2K websites were taken down (data stolen and defaced). These include a vast variety of governed sites.

As per source, details of Nupur Sharma were leaked including contact details and location.

As of now the attack has not stopped and over a dozen hackers participated in the onslaught.

India has cited help from Interpol and help from authorities in Malaysia ๐Ÿ‡ฒ๐Ÿ‡พ and Indonesia ๐Ÿ‡ฎ๐Ÿ‡ฉ
โ— Leaked Indian data. Data blurred for pricacy resons.