cKure Red
2.5K subscribers
71 photos
46 videos
21 files
458 links
The director's cut on critical feeds from InfoSec world ๐ŸŒŽ

Main Channel: @cKure

โ˜•๏ธ or queries email us
๐Ÿ“จ i@ckure.org
Download Telegram
DPRK state-sponsored actors are using cryptographically signed MacOS (Apple ๐ŸŽ) executables to impersonate coinbase and lure potential jobseekers in installing their spyware.
Zero-Day: Zero-click LPE exploit (CVE-2022-32893) for iOS 16 Beta 7 currently on sale. Selling price - โ‚ฌ2,500,000.

Source: Yalu Jailbreak
State sponsored and supported Cyber-Crime: Documents appear to show that Israeli ๐Ÿ‡ฎ๐Ÿ‡ฑ spyware company Intellexa sold a full suite of services around a zero-day affecting both Android and iOS ecosystems.

https://twitter.com/vxunderground/status/1562550443712352256

https://www.darkreading.com/vulnerabilities-threats/receipt-8m-ios-zero-day-sale-dark-web
cKure Red pinned ยซState sponsored and supported Cyber-Crime: Documents appear to show that Israeli ๐Ÿ‡ฎ๐Ÿ‡ฑ spyware company Intellexa sold a full suite of services around a zero-day affecting both Android and iOS ecosystems. https://twitter.com/vxunderground/status/1562550443712352256โ€ฆยป
Zero-Day: Thread on CVE-2022-36804 Atlassian Bitbucket Command Injection Vulnerability.

https://twitter.com/_0xf4n9x_/status/1572052954538192901
Tool ๐Ÿ”ง VirusTotalC2: Abusing VirusTotal API to host our C2 traffic, usefull for bypassing blocking firewall rules if VirusTotal is in the target white list.

https://github.com/D1rkMtr/VirusTotalC2
โ— Yet another website: sqlflow.gudusoft.com (Visualizing SQL queries)