■□□□□ School District’s Files Leaked in $40m Ransomware Attack.
https://www.infosecurity-magazine.com:443/news/broward-files-leaked-ransomware/
https://www.infosecurity-magazine.com:443/news/broward-files-leaked-ransomware/
Infosecurity Magazine
School District’s Files Leaked in $40m Ransomware Attack
Hackers leak Florida school district’s files online when their ransom demand isn’t met
■□□□□ Over 750,000 Users Downloaded New Billing Fraud Apps From Google Play Store.
https://thehackernews.com/2021/04/over-750000-users-download-new-billing.html
https://thehackernews.com/2021/04/over-750000-users-download-new-billing.html
■■■■■ Hacker (Unkn0wX) hacks a live website and posts his name in as text file as proof.
Asks hackers / pentesters to try to hack a he did.
PoC for hack: http://www.supply.su.ac.th/notice/log.txt
The website hacked belongs to Silpakorn University, Thailand 🇹🇭: https://wikipedia.org/wiki/Silpakorn_University
Asks hackers / pentesters to try to hack a he did.
PoC for hack: http://www.supply.su.ac.th/notice/log.txt
The website hacked belongs to Silpakorn University, Thailand 🇹🇭: https://wikipedia.org/wiki/Silpakorn_University
■■■□□ BetterXencrypt - A Better Version Of Xencrypt - Xencrypt It Self Is A Powershell Runtime Crypter Designed To Evade AVs.
https://github.com/GetRektBoy724/BetterXencrypt
https://github.com/GetRektBoy724/BetterXencrypt
GitHub
GitHub - GetRektBoy724/BetterXencrypt: A better version of Xencrypt.Xencrypt it self is a Powershell runtime crypter designed to…
A better version of Xencrypt.Xencrypt it self is a Powershell runtime crypter designed to evade AVs. - GetRektBoy724/BetterXencrypt
■■■■□ Zero-Day Exploits in SonicWall Email Security Lead to Enterprise Compromise.
http://www.fireeye.com/blog/threat-research/2021/04/zero-day-exploits-in-sonicwall-email-security-lead-to-compromise.html
CVE-2021-20021
CVSS: 9.4
Unauthorized administrative account creation
CVE-2021-20022
CVSS: 6.7
Post-authentication arbitrary file upload
CVE-2021-20023
CVSS: 6.7
Post-authentication arbitrary file read
http://www.fireeye.com/blog/threat-research/2021/04/zero-day-exploits-in-sonicwall-email-security-lead-to-compromise.html
CVE-2021-20021
CVSS: 9.4
Unauthorized administrative account creation
CVE-2021-20022
CVSS: 6.7
Post-authentication arbitrary file upload
CVE-2021-20023
CVSS: 6.7
Post-authentication arbitrary file read
Google Cloud
Mandiant Cybersecurity Consulting
Transform cyber defense with Mandiant. Engage frontline experts for incident response, threat intelligence services, and cyber risk management.
■■□□□ Data-Leak: Men's social networking website and online dating application Manhunt has suffered a data breach.
According to a security notice filed with the office of the Washington attorney general on April 1, the 20-year-old site was compromised in a cyber-attack that took place in February 2021.
https://www.documentcloud.org/documents/20615089-mhnextllc2021-04-01
According to a security notice filed with the office of the Washington attorney general on April 1, the 20-year-old site was compromised in a cyber-attack that took place in February 2021.
https://www.documentcloud.org/documents/20615089-mhnextllc2021-04-01
■■■■■ Mozilla Fixes Firefox Flaw That Allowed Spoofing of HTTPS Browser Padlock.
https://www.mozilla.org/en-US/security/advisories/mfsa2021-16/#CVE-2021-23998
https://threatpost.com/mozilla-fixes-firefox-flaw/165501/
https://www.mozilla.org/en-US/security/advisories/mfsa2021-16/#CVE-2021-23998
https://threatpost.com/mozilla-fixes-firefox-flaw/165501/
Mozilla
Security Vulnerabilities fixed in Firefox 88
cKure
■□□□□ 📢 A file with interesting name is circulating on darknet. @ckure has obtained the file. It contains images of apparent blueprints. We are investigating the credibility and data classification.
■■■■■ Data-Leak of Apple 🍎 via Quanta (supplier).
REvil ransomware group hits Apple supplier Quanta; warns of data leak.
https://www.hackread.com/revil-ransomware-gang-hits-apple-supplier-quanta/
● The information about this leak was shared initially at https://t.me/cKure/7679 and data was checked by us for authenticity.
REvil ransomware group hits Apple supplier Quanta; warns of data leak.
https://www.hackread.com/revil-ransomware-gang-hits-apple-supplier-quanta/
● The information about this leak was shared initially at https://t.me/cKure/7679 and data was checked by us for authenticity.
Hackread
REvil ransomware gang hits Apple supplier Quanta; warns of data leak
Like us on Facebook @ /HackRead
cKure
■■■□□ Pulse Secure VPN zero-day used to hack defense firms, govt organisations. https://www.bleepingcomputer.com/news/security/pulse-secure-vpn-zero-day-used-to-hack-defense-firms-govt-orgs/
■■□□□ Zero-Day: SA44784 - 2021-04: Out-of-Cycle Advisory: Pulse Connect Secure RCE Vulnerability (CVE-2021-22893)
https://kb.pulsesecure.net/pkb_mobile#article/l:en_US/SA44784/s
https://www.fireeye.com/blog/threat-research/2021/04/suspected-apt-actors-leverage-bypass-techniques-pulse-secure-zero-day.html
https://kb.pulsesecure.net/pkb_mobile#article/l:en_US/SA44784/s
https://www.fireeye.com/blog/threat-research/2021/04/suspected-apt-actors-leverage-bypass-techniques-pulse-secure-zero-day.html
Google Cloud
Mandiant Cybersecurity Consulting
Transform cyber defense with Mandiant. Engage frontline experts for incident response, threat intelligence services, and cyber risk management.
■□□□□ 📢 Japan 🇯🇵 accuses Chinese 🇨🇳 military of cyber-attacks on its space agency. China
■■□□□ Data-Leak: Data pertaining to click.org is leaked online.
In December 2020, the click tracking, link tracking and link cloaking software website click.org suffered a data breach.
Mail count exceeds 459000 in "lookup"
Compromised data: emails, session ids, real names, addresses, payment ID's, IP addresses, Passwords, usernames
Data includes: Full user table (83K), Payment logs, 27.4GiB Statistics, and more (raw DB)
@ckure acquired the copy.
In December 2020, the click tracking, link tracking and link cloaking software website click.org suffered a data breach.
Mail count exceeds 459000 in "lookup"
Compromised data: emails, session ids, real names, addresses, payment ID's, IP addresses, Passwords, usernames
Data includes: Full user table (83K), Payment logs, 27.4GiB Statistics, and more (raw DB)
@ckure acquired the copy.
cKure
■■□□□ Zero-Day: SA44784 - 2021-04: Out-of-Cycle Advisory: Pulse Connect Secure RCE Vulnerability (CVE-2021-22893) https://kb.pulsesecure.net/pkb_mobile#article/l:en_US/SA44784/s https://www.fireeye.com/blog/threat-research/2021/04/suspected-apt-actors-leverage…
■□□□□ 📢 United States 🇺🇸
At least one China 🇨🇳 linked APT group exploited a new zero-day flaw in Pulse Secure VPN equipment to break into the networks of US defense contractors.
At least one China 🇨🇳 linked APT group exploited a new zero-day flaw in Pulse Secure VPN equipment to break into the networks of US defense contractors.
● One of the top messaging app in security sense. Definitely not with the best UI or features list.
https://www.surespot.me/
https://www.surespot.me/
M88 Tanpa Blokir
M88 Link Alternatif Tanpa Blokir, M88 Alternatif Link Terbaru 2026
M88 semakin menonjol berkat inovasi tiada henti lewat permainan terbaik dengan RTP tinggi dan promosi yang kian melimpah, di link terbaru M88.
■■□□□ Overlord - Overlord - Red Teaming Infrastructure Automation.
https://github.com/qsecure-labs/overlord
https://github.com/qsecure-labs/overlord
GitHub
GitHub - qsecure-labs/overlord: Overlord - Red Teaming Infrastructure Automation
Overlord - Red Teaming Infrastructure Automation. Contribute to qsecure-labs/overlord development by creating an account on GitHub.
■■■□□ Data-Leak: SQLi successfully exploited in data.gov.me and leaked online in a 23KB text file.
■□□□□ Data-Leak: SQLi successfully exploited in data.gov.me and leaked online in a 23KB text file.
cKure
■■■■■ Data-Leak of Apple 🍎 via Quanta (supplier). REvil ransomware group hits Apple supplier Quanta; warns of data leak. https://www.hackread.com/revil-ransomware-gang-hits-apple-supplier-quanta/ ● The information about this leak was shared initially at…
■■■□□ Hackers (REvil group) threaten to leak stolen Apple blueprints if $50 million ransom isn't paid.
■□□□□ Turkey 🇹🇷 | Data-Leak: INONU University data is leaked online with 35K records.