ื ืชืงืืชื ืืืืื ืดืืืืจืืืด ืื ืืขืืืืืช ืืกืืืืจ ืืืื ืขื ืืื ื ืืืชื, ืืคื ื ืฉืื ืขืกืงืชื ืืืืกื ืฆืืืืจ ืืคื ื ืฉืืืขืชื ืืงืกืคืจืกืงื. ืืฉืืืื ืืช ืืืฉืืืื ืืื ืื ืื ืชื ืืจืืฉ ืืืืื ืืืขืชื ืขื ืื ืืืืืจ ืืืืื ืืืชื ืืืืื ืชืืืก ืื ืื ืืืืจ.
ืื ืดืืืืจืืืด ืื ืืขืืื ืืืืืื ืืืื ืืขืฆื ืืืืจ ืขื ืืจื ืืืื ื/ืืืคืืืืื ืขื ืืืื ื ืืกืืืืช. ืืขืืื ืฉื ืืืกื ืืฆืืืืจ ืืื ืืืืจ ืืฉืื ืืืื ืคืฉืื - ืดืฉืืื ืืชืืื ื ืืืืื, ืื ื ืคืืกืช ืขืืชืื ืืช ืืฉืืืข ืืื, ืืืืื ืืืืขืื ืขืืื ืืื ืืกืืจ ืืื ืืคืฆืืช ืืืื ืขื ืืืื ืฉืกืืื, ืืืืืชื ืืื ืืฉืขื ืฉืกืืืื ืชืคืจืกืื ืืืชื ืืขืืชืื ืฉืืืืด.
ืืคืฉืจ ืืืืื ืฉืืขืืื ืืืกื ืืฆืืืืจ ืืืืจืื ืืื ืกืื ืฉื ืืืื ื ืจืืคืช ืืดืืืขืืืืชืด, ืืืืืืช ืฉืขืื ืขืฆืจ ืขืืืจ ืคืจืกืื ืืืืขื.
ืื ืดืืืืจืืืด ืื ืืขืืื ืืืืืื ืืืื ืืขืฆื ืืืืจ ืขื ืืจื ืืืื ื/ืืืคืืืืื ืขื ืืืื ื ืืกืืืืช. ืืขืืื ืฉื ืืืกื ืืฆืืืืจ ืืื ืืืืจ ืืฉืื ืืืื ืคืฉืื - ืดืฉืืื ืืชืืื ื ืืืืื, ืื ื ืคืืกืช ืขืืชืื ืืช ืืฉืืืข ืืื, ืืืืื ืืืืขืื ืขืืื ืืื ืืกืืจ ืืื ืืคืฆืืช ืืืื ืขื ืืืื ืฉืกืืื, ืืืืืชื ืืื ืืฉืขื ืฉืกืืืื ืชืคืจืกืื ืืืชื ืืขืืชืื ืฉืืืืด.
ืืคืฉืจ ืืืืื ืฉืืขืืื ืืืกื ืืฆืืืืจ ืืืืจืื ืืื ืกืื ืฉื ืืืื ื ืจืืคืช ืืดืืืขืืืืชืด, ืืืืืืช ืฉืขืื ืขืฆืจ ืขืืืจ ืคืจืกืื ืืืืขื.
ืืื ืฉืขืืืื ืื ืฉืืข - @AttacKit (ืกืืจ ืืืืื) ืคืืชื ืงืืจืก ืืืงืื ื ืืฉืืื ืืื ืืืื ืฉืืฉ - Zero 2 Hero.
ืื ืฉืืขืชื ื ืืื, ืื ืขื 0 (!!) ื ืืกืืื.
ืืจืฉืื ืืืืฆืืค 0549088896
ืืขืืจ ืืื, ืืจืืืช ืืกืืจ ืฉืงืืื ืชืคืงืื ืืืฉ:
Head of Penetration Testing
ื- Security Joes. ืกืืจ ืื ืื ืืช ืื ืืคืจืืืงืืื ืืืฆืืืช ืงืฆื ืืงืฆื ืืืื ืฉืืืจ ืจืืืชื, ืื ื ืืื ืืืื ืืขืจืืช ืฉืืื ืื ืืืื ืคืจืืืงืืื ืฉื ืืืืงื ืืืืจืืช (ืืืืื!)
ืืืืื ืชืืจืฉืื!
ืื ืฉืืขืชื ื ืืื, ืื ืขื 0 (!!) ื ืืกืืื.
ืืจืฉืื ืืืืฆืืค 0549088896
ืืขืืจ ืืื, ืืจืืืช ืืกืืจ ืฉืงืืื ืชืคืงืื ืืืฉ:
Head of Penetration Testing
ื- Security Joes. ืกืืจ ืื ืื ืืช ืื ืืคืจืืืงืืื ืืืฆืืืช ืงืฆื ืืงืฆื ืืืื ืฉืืืจ ืจืืืชื, ืื ื ืืื ืืืื ืืขืจืืช ืฉืืื ืื ืืืื ืคืจืืืงืืื ืฉื ืืืืงื ืืืืจืืช (ืืืืื!)
ืืืืื ืชืืจืฉืื!
ืืืืงืจืื ืฉื Pay2Key ืืืื ืืจืฉืช ืืืืืื ืฉื ืดbad packetsโ. ืืกืจืืงื ืืืืชื ืขืืืจ ืืืคืืฉ ืฉื ืชืืื ืช SolarWinds ืคืชืืื ืืจืฉืช ืืืจืกื ืืคืืืขื...
https://twitter.com/bad_packets/status/1345833868151070721?s=21
https://twitter.com/bad_packets/status/1345833868151070721?s=21
Twitter
Bad Packets
Mass scanning activity detected from 45.156.185.42 (๐ฎ๐ท) checking for SolarWinds Orion hosts vulnerable to CVE-2020-10148 (https://t.co/bHE4zUHYEc). #threatintel
2020 ืืืืชื ืฉื ื ืงืฉืืื. ืคืืฉื ื ืื ืืขื ืืชืงืคืืช ืืืฆืืืชืื ืฉืื ื ืขืฉื ืืืืืช ืืืืื ืืื ืืขืืื ืืืชื ืื ืืื ืืืชืงืคืืช ืืืชืช ืืืงืืืืช ืฉืื ื ืืช ืืฉืืจืืช ืืืื ืืืืชืจ.
ืืืืื ืืืช ืืืืจืืข ืฉืื ืขืืื ื ืคื ืื ืื ืคื ืื ืขื ืงืืืฆืช ืชืืงืคืื ืืืืื ืช ืืืื ื ืืคืืจืืช ืืืืงืจ ืขื APT27. ืื ื ืืืืงืจ ืืืื:
https://shared-public-reports.s3-eu-west-1.amazonaws.com/APT27+turns+to+ransomware.pdf
ืืืืื ืืืช ืืืืจืืข ืฉืื ืขืืื ื ืคื ืื ืื ืคื ืื ืขื ืงืืืฆืช ืชืืงืคืื ืืืืื ืช ืืืื ื ืืคืืจืืช ืืืืงืจ ืขื APT27. ืื ื ืืืืงืจ ืืืื:
https://shared-public-reports.s3-eu-west-1.amazonaws.com/APT27+turns+to+ransomware.pdf
ืืืืื ืื ืืงืจืื ืื ืืขืืจืืช:
https://m.ynet.co.il/articles/58691520
#SecurityJoes #Profero
https://m.ynet.co.il/articles/58691520
#SecurityJoes #Profero
m.ynet.co.il
ืกืื ืชืืื ืืืชืงืคืืช ืกืืืืจ ืขื ืืืจืืช ืืืืืจืื
ืื"ื ืืฉืจืืื ืืืฉ ืฉืืชืคืจืกื ืืืื ืืืืื ืขื ืืืฉ ืชืงืืคืช ืืืคืจ ืืืืงืฃ ืืกืคื ืฉื ืืืชืจ ื-100 ืืืืืื ืืืืจ, ืืชืืืืช ืืืฉืืช ืกืื. ืืืืืจ ืืชืืคืขื ืืืฉื ืืืืืืื: ืืืฉืืช ืกืื ืชืืืืช ืืืชืงืคืืช ืกืืืืจ ืขื ืืืจืืช ืคืจืืืืช ืืขืืื ืืืขืจืื. ืืืืจื ืืื"ื ืืืขื ืื ืื ืื ืืืฉืืช ืจืืกืื ืชืืืืช ืืชืงืืคืืช ืกืืืืจ ืฉืโฆ
ืืืงืจ ืืื ืืื ืงืืืฆืืช ืืชืงืืคื,
ืคืจืก ืืจืืฉืื ืฉืืขืื ืชืืื ื ืฉื ืืืชืื ืขื ืืืืงืจ ืฉืื ื (APT27) ืื ืื ืืืจืง ืืืืืก (ืืขืืชืื ืืืืืคืก) ๐ค
ืคืจืก ืืจืืฉืื ืฉืืขืื ืชืืื ื ืฉื ืืืชืื ืขื ืืืืงืจ ืฉืื ื (APT27) ืื ืื ืืืจืง ืืืืืก (ืืขืืชืื ืืืืืคืก) ๐ค
ื ืชืืงืฉืชื ืืืฆืืจืฃ ืืงืืืืช ืืืืืจืื ืฉื ืืืืืื ืืืื ืื ืืืืืื ืฉืื ืืืื ืืืื. ืืขืื ืื ืืืืืื ืืื ืืื ืืงืื ืืืืื ืืืืื ืืืืชืคืชื ืื ืืื ื ืืืืืฅ ืืืืคื ืกืคืฆืืคื ืขื ืืคืงืืืื ืืืืขื ืืืืฉื.
https://lp.vp4.me/cocf
https://lp.vp4.me/cocf
ืชืืื ืจืื ืืขืืจื ืืืืื ืืืืจืช Profero ืืขืืืช ืกืจืคืจ ืืืืื ืืืืจืช Guardicore ืฉืืืืช ืืช ืืืืงืจ ๐ค ืืืืื ืืืืจ ืืื ๐ค๐ป
ืืืฉื ืขื ืืืฆืืืช ืฉื ืดืืืืืจ ืื ืืืกืืก ืขื ืืืงืจ ืกืื ืืจืืืด ืืืืฉื ืืืื ืืก ืดืืคืกืงืืชืด ืืืืืจ ืืืืืืื ืืื ืืขืืืจ ืขื ืืงืืจืืช ืฉื ืืืง ืืืืชืงืคืืช / ืืืืฉืืช ืฉืฉืื ื ืืช ืืขืืื. ืื ืืืืชื ืืืืืฆืื? (ืื ืื ื ืืฆื ืชืืกืืคื ืืชืืืืืช)
Final Results
2%
ShadowHammer
35%
WannaCry
7%
NotPetya
1%
Olympic Destroyer
2%
Duqu 2.0
3%
Zeus GameOver
35%
Stuxnet
12%
SunBurst
0%
StoneDrill
2%
ZeroCleare
ืืื ืืืืื ืฉืื ื ืืืชืจ ืืืื. ืื ืืื ืขืืืื ืื ืืืจืกื ื ืฉืืื, ืขืืฉืื ืื ืืืื:
https://twitter.com/ochsenmeier/status/1346543763070586880?s=21
https://twitter.com/ochsenmeier/status/1346543763070586880?s=21
Twitter
marc ochsenmeier
#pestudio also finds executable file(s) hidden outside the resources of #Malware #DFIR
ืืฉืชืืฉ admin ืขื ืกืืกืื admin ืขื ืฉืจืชื ืงืื ืฉื ืืฆืจื ืืช ืืจืืืื ื ืืกืื... ๐คฆ๐ปโโ๏ธ
ืืืืคื ืฉืชืืื ืืืืคื ืฉื exploits ืขื ืืขืจืืช ืืจืื
https://www.zdnet.com/google-amp/article/nissan-source-code-leaked-online-after-git-repo-misconfiguration/?fbclid=IwAR2ggYIg9qBnor4aj_LfdY3g8uAQWVF1WHmUs9qhu50KVWU4lQx68miLCKg
ืืืืคื ืฉืชืืื ืืืืคื ืฉื exploits ืขื ืืขืจืืช ืืจืื
https://www.zdnet.com/google-amp/article/nissan-source-code-leaked-online-after-git-repo-misconfiguration/?fbclid=IwAR2ggYIg9qBnor4aj_LfdY3g8uAQWVF1WHmUs9qhu50KVWU4lQx68miLCKg
ZDNet
Nissan source code leaked online after Git repo misconfiguration
Nissan was allegedly running a Bitbucket Git server with the default credentials of admin/admin.
ืืชืจ ืืืฉ ืCIA ืืืืจืืงืื. ืื ืืืฉืื ืืืคืฉ ืขืืืื ๐
#ืืจืืืจืชืกืืืช
https://www.cia.gov/
#ืืจืืืจืชืกืืืช
https://www.cia.gov/
ืืื ืฉื ืืช ื ืืกืืื ืืฉ ืืื ืืชืืื ืืกืืืืจ?
Anonymous Poll
30%
ืืื ืื ืืื ืืื ืื ืคื
17%
ืขืืืื ืกืืืื ื, ืื ื ืืฉื?
9%
ืืฆืืชื ืืฉืืง
19%
ืืขืจื 3 ืฉื ืื
9%
ืืฉ ืื ืืืืื ืฉื ืืืืื
2%
ืื ื ืืื ืืื ืฉืืืืขื ืชืืื ืืช ืืืคืจ
3%
ืืงืจืชื ืืช ืกืืืงืกื ื
8%
ืงืืืืืืจ64 ืืชื ืืืืจ?
3%
30 ืฉื ื ืื ืชืืืืจ
ืืืงืจ ืืื,
ืฉืคืฉืคื ืขืื ืืื ืื ืืืื ืืืื ืืืืืช ืืขื ืืื. ืืืืจืื ืืช SolarWinds? ืื ืืกืชืืจ ืฉืืฉ ืกืืืื ืฉืืชืืงืคืื ืื ืคืจืฆื ืืืืื ืืืฉื ืืจืฉืืืืช ืืืจืืดื, ืืื ืคืจืฆื ืงืืื ืืืืจืช ืชืืื ื ืืฉื JetBrains ืืฉืจ ืื ืืืจืช SolarWinds ืืฉืชืืฉืช ืืืืืช ื ืืืื ืคืจืืืงืื ืคืืชืื ืงืื.
ืื ืฉื ืงืจื - ืดืื ื ืืงื ืืืื supply chain ืขื ืื ืืชืืกืคืืช ืืืงืฉืืด (ืคืืืื)
https://www.zdnet.com/article/jetbrains-denies-being-involved-in-solarwinds-hack/
ืฉืคืฉืคื ืขืื ืืื ืื ืืืื ืืืื ืืืืืช ืืขื ืืื. ืืืืจืื ืืช SolarWinds? ืื ืืกืชืืจ ืฉืืฉ ืกืืืื ืฉืืชืืงืคืื ืื ืคืจืฆื ืืืืื ืืืฉื ืืจืฉืืืืช ืืืจืืดื, ืืื ืคืจืฆื ืงืืื ืืืืจืช ืชืืื ื ืืฉื JetBrains ืืฉืจ ืื ืืืจืช SolarWinds ืืฉืชืืฉืช ืืืืืช ื ืืืื ืคืจืืืงืื ืคืืชืื ืงืื.
ืื ืฉื ืงืจื - ืดืื ื ืืงื ืืืื supply chain ืขื ืื ืืชืืกืคืืช ืืืงืฉืืด (ืคืืืื)
https://www.zdnet.com/article/jetbrains-denies-being-involved-in-solarwinds-hack/
ZDNET
JetBrains denies being involved in SolarWinds hack
JetBrains denies reports that is being under investigation and somehow related to the SolarWinds breach.
ืืฉืืืืื ืื ืืืื, ืื ืืฉื ื ืืืืคื... ืื ืืืืขืื. ืื ืืื ืจืฆืื ืืช, ืืืืื ืฉื ืืืืื ืก ืฉื ืืืื ืืื ืืฉืืืืื ืฉืื, ืืืื ืืจืื ืืืืื, ืืืื ืืจืืืืืื ืืื ืืคืื ืืืืืงืื. https://twitter.com/GutmanYotam/status/1347135249650745345?s=20
Twitter
Yotam Gutman
ืืืื ืขื ืืืืื https://t.co/RrNHqacyan
ืืืงืื, 2021 ืืชืืืื...!
ืืืืืจ ืืื https://lnkd.in/djqKSmf ืคื ืืืืืืืจ ืืฆืืื ืืืชืื ืงืื ืฉืืขืืืจ ืืช ืืคืจืืืืงืื SMB ืืจื ืืืคืืคื. ืื ืขืงืืชื ืืืจื ืืคืืกืืื ืฉืื ืืคืืืกืืืง, ืืชืืชื ืืขืืจ ืขื ืืคืจืืืืงืื ืืืขืืืชืื.
ืืืจืื ืืคืื ืฉืื ืจืื ื ืจืื ืืงืจืื ืื ืฉืืืืืื ืืื ืืืืฉืืช ืืชืจื ืืื ืืจื ื ืืื XSS ืืืื ืืืืฉืืช ืืื ZeroLogon ืืืฉื.
ืืื ืืื ืื ืฆื ืกืืคืฉ ืืื ืืืืืง ืืช ืืกืืคืืจ.
ืืืืฉ
ืืืืืจ ืืื https://lnkd.in/djqKSmf ืคื ืืืืืืืจ ืืฆืืื ืืืชืื ืงืื ืฉืืขืืืจ ืืช ืืคืจืืืืงืื SMB ืืจื ืืืคืืคื. ืื ืขืงืืชื ืืืจื ืืคืืกืืื ืฉืื ืืคืืืกืืืง, ืืชืืชื ืืขืืจ ืขื ืืคืจืืืืงืื ืืืขืืืชืื.
ืืืจืื ืืคืื ืฉืื ืจืื ื ืจืื ืืงืจืื ืื ืฉืืืืืื ืืื ืืืืฉืืช ืืชืจื ืืื ืืจื ื ืืื XSS ืืืื ืืืืฉืืช ืืื ZeroLogon ืืืฉื.
ืืื ืืื ืื ืฆื ืกืืคืฉ ืืื ืืืืืง ืืช ืืกืืคืืจ.
ืืืืฉ
Twitter
SkelSec
I waited 2 years for this, rewrote impacket for this, asked cryptographers to remake algos in python for this, spent enormous time of my life to make this happen. and it's finally here this finally works and I can't find the words to express my satisfaction.
ืืืงืจ ืืื ืืืืืืื,
ืืืื ืฉืืช. ืืืืืฅ ืืื ืืืืจืฉื ืืืจ ืืืจืฆืื ืฉื ืงืืกืืื ืจืืื ืขื SolarWinds:
https://twitter.com/akspedro/status/1347567742665306114?s=21
ืื ื ื ืจืฉืืชื
ืืืื ืฉืืช. ืืืืืฅ ืืื ืืืืจืฉื ืืืจ ืืืจืฆืื ืฉื ืงืืกืืื ืจืืื ืขื SolarWinds:
https://twitter.com/akspedro/status/1347567742665306114?s=21
ืื ื ื ืจืฉืืชื
Twitter
Pedro
The Centre for Cybersecurity Belgium (CCB) presents its third online Quarterly Cyber Threat Report event (QCTR). https://t.co/xZiHGTqs8B