https://dozheiny.net/2024/11/15/Reverse-Engineering-Trojan-Telegram-clone.html
Please open Telegram to view this post
VIEW IN TELEGRAM
Iran's Handala hacking group has hacked Israel's highly secure SSV blockchain network, used by Mossad to manage payments to foreign operatives.
Despite blockchain's reputation for being unhackable, Mossad's $1 million bug bounty challenge was bypassed.
8 TB of sensitive data being stolen, including personal details of their operatives.
Please open Telegram to view this post
VIEW IN TELEGRAM
A hack of a nation state by another nation state amid ongoing genocide by Jews of native indigenous population of Palestine ๐ต๐ธ
https://claroty.com/team82/research/from-exploits-to-forensics-unraveling-the-unitronics-attack
Please open Telegram to view this post
VIEW IN TELEGRAM
ESET researchers analyze the first UEFI bootkit designed for Linux systems.
https://www.welivesecurity.com/en/eset-research/bootkitty-analyzing-first-uefi-bootkit-linux/
https://www.bleepingcomputer.com/news/security/researchers-discover-bootkitty-first-uefi-bootkit-malware-for-linux/
Please open Telegram to view this post
VIEW IN TELEGRAM
Welivesecurity
Bootkitty: Analyzing the first UEFI bootkit for Linux
ESET's discovery of the first UEFI bootkit designed for Linux sendss an important message: UEFI bootkits are no longer confined to Windows systems alone.
๐ฅ2 2โก1๐1๐ฆ1
https://rastamouse.me/udrl-sleepmask-and-beacongate/
Please open Telegram to view this post
VIEW IN TELEGRAM
Rasta Mouse
UDRL, SleepMask, and BeaconGate
I've been looking into Cobalt Strike's UDRL, SleepMask, and BeaconGate features over the last couple of days. It took me some time to understand the relationship between these capabilities, so the aim of this post is to provide a concise overview for thoseโฆ
This media is not supported in the widget
VIEW IN TELEGRAM
๐ฉ8๐4๐1๐คก1
In a message by the hacker group, 'Handala': following statement of threat was made:
๐ Reza Avazeh Operation is coming!
Next Week
Destructive Week
Dr. Reza Avazeh, the former cyber commander of Hezbollah, the commander whose smile in Handala's actions will never be forgotten!
Martyr Reza Avazeh, one of the elites and senior managers of Hezbollah's cyber security, had a Ph.D in computer networks from the University of Tehran, and was martyred on October 20, 2024, along with his wife, engineer Masoume Karbasi, in a drone attack by the Zionist criminal regime in the city of Jounieh!
This cyber security elite was a prominent foundation in the field of Linux and had performed many valuable services in cyber resistance groups! We will never forget your smile! Your revenge is coming!
๐ป Handala-Hack.to
Please open Telegram to view this post
VIEW IN TELEGRAM
https://blog.lumen.com/snowblind-the-invisible-hand-of-secret-blizzard/
https://www.microsoft.com/en-us/security/blog/2024/12/04/frequent-freeloader-part-i-secret-blizzard-compromising-storm-0156-infrastructure-for-espionage/
IoCs:
https://github.com/blacklotuslabs/IOCs/blob/main/Secret_Blizzard_IoCs.txt
Please open Telegram to view this post
VIEW IN TELEGRAM
Lumen Blog
Snowblind: The invisible hand of Secret Blizzard
Find out how Black Lotus Labs uncovered a prolonged espionage campaign by Russian threat group Turla to penetrate Pakistani targets.
๐1
https://cloud.google.com/blog/topics/threat-intelligence/c2-browser-isolation-environments/
Please open Telegram to view this post
VIEW IN TELEGRAM
Google Cloud Blog
(QR) Coding My Way Out of Here: C2 in Browser Isolation Environments | Google Cloud Blog
A technique to circumvent all types of browser isolation for the purpose of controlling a malicious implant via command and control.
๐ฅ2
example.tld/swagger/ index.html?configUrl=https://xss.smarpo.com/test.jsonhttps://blog.vidocsecurity.com/blog/hacking-swagger-ui-from-xss-to-account-takeovers/
Please open Telegram to view this post
VIEW IN TELEGRAM
๐ฅ2
Dual ๐ท๐บ Russian-Israeli ๐ฎ๐ฑ national Rostislav Panev was arrested last August and is facing extradition to the US for playing a critical role in LockBit's RaaS activities, dating back to the ransomware gang's origins.
https://www.darkreading.com/cyberattacks-data-breaches/lockbit-ransomware-developer-arrested-israel.
Please open Telegram to view this post
VIEW IN TELEGRAM
Darkreading
LockBit Ransomware Developer Arrested in Israel
Dual Russian-Israeli national Rostislav Panev was arrested last August and is facing extradition to the US for playing a critical role in LockBit's RaaS activities, dating back to the ransomware gang's origins.
๐3๐ฅ1
https://github.com/h4x0r/parse_sms.db/tree/main
Please open Telegram to view this post
VIEW IN TELEGRAM
GitHub
GitHub - h4x0r/parse_sms.db
Contribute to h4x0r/parse_sms.db development by creating an account on GitHub.
https://ckure.esy.es/rx/tools/exif/
Other Web Utilities: ckure.esy.es/rx
Please open Telegram to view this post
VIEW IN TELEGRAM
๐คฃ1
https://www.404media.co/researcher-turns-insecure-license-plate-cameras-into-open-source-surveillance-tool
https://youtu.be/0dUnY1641WM
Please open Telegram to view this post
VIEW IN TELEGRAM
404 Media
Researcher Turns Insecure License Plate Cameras Into Open Source Surveillance Tool
Privacy advocate draws attention to the fact that hundreds of police surveillance cameras are streaming directly to the open internet.
๐ฅ2๐คฎ1
cKure Red
https://ckure.esy.es/rx/tools/jwt/
To generate tokens, use: https://ckure.esy.es/rx/tools/jwt/gen.php
Please open Telegram to view this post
VIEW IN TELEGRAM
๐ฅ2
CVE-2024-49415: Security flaw impacting Monkey's Audio (APE) decoder on Samsung smartphones that could lead to code execution.Out-of-bounds write in libsaped.so prior to SMR Dec-2024 Release 1 allows remote attackers to execute arbitrary code.
https://security.samsungmobile.com/securityUpdate.smsb
The function saped_rec in libsaped.so writes to a dmabuf allocated by the C2 media service, which always appears to have size 0x120000.
https://project-zero.issues.chromium.org/issues/368695689
https://thehackernews.com/2025/01/google-project-zero-researcher-uncovers.html
Please open Telegram to view this post
VIEW IN TELEGRAM
๐ฅ2๐2 2