Cyber Morning Call - #573 - 28/06/2024
Listen now
Description
[Referências do Episódio] Kimsuky deploys TRANSLATEXT to target South Korean academia - https://www.zscaler.com/blogs/security-research/kimsuky-deploys-translatext-target-south-korean-academia  MerkSpy: Exploiting CVE-2021-40444 to Infiltrate Systems - https://www.fortinet.com/blog/threat-research/merkspy-exploiting-cve-2021-40444-to-infiltrate-systems  TeamViewer IT security update - https://www.teamviewer.com/en/resources/trust-center/statement/  GitLab Critical Patch Release: 17.1.1, 17.0.3, 16.11.5 - https://about.gitlab.com/releases/2024/06/26/patch-release-gitlab-17-1-1-released/#run-pipelines-as-any-user  New InnoSetup Malware Created Upon Each Download Attempt - https://asec.ahnlab.com/en/67502/  Unfurling Hemlock: New threat group uses cluster bomb campaign to distribute malware - https://outpost24.com/blog/unfurling-hemlock-cluster-bomb-campaign/  Examining Water Sigbin's Infection Routine Leading to an XMRig Cryptominer - https://www.trendmicro.com/en_us/research/24/f/water-sigbin-xmrig.html  Roteiro e apresentação: Carlos Cabral e Bianca Oliveira Edição de áudio: Paulo Arruzzo Narração de encerramento: Bianca Garcia
More Episodes
[Referências do Episódio] Auth. Bypass In (Un)Limited Scenarios - Progress MOVEit Transfer (CVE-2024-5806) - https://labs.watchtowr.com/auth-bypass-in-un-limited-scenarios-progress-moveit-transfer-cve-2024-5806/  Fortra FileCatalyst Workflow Unauthenticated SQLi -...
Published 06/27/24
Published 06/27/24
[Referências do Episódio] From Dormant to Dangerous: P2Pinfect Evolves to Deploy New Ransomware and Cryptominer - https://www.cadosecurity.com/blog/from-dormant-to-dangerous-p2pinfect-evolves-to-deploy-new-ransomware-and-cryptominer  New attack uses MSC files and Windows XSS flaw to breach...
Published 06/26/24