🇫🇷 Besoin d'aide ou d'un renseignement ?
Brigade Numérique, c'est une équipe de gendarmes disponibles 24h/24 et 7j7 via #Internet.
En cas d'urgence, composer le 17 ou le 112
GrimAgent Analysis
The reversing tale of GrimAgent malware used by #Ryuk
idahunt is a framework to analyze binaries with IDA Pro and hunt for things in IDA Pro.
Glances - Monitoring system for GNU/Linux, BSD, Mac OS & Windows
Analyse de l'aggrégat de données concernant les 700 millions de comptes LinkedIn qui ont été proposé à la vente le 22 juin 2021.
CVE-2021-1675
Disabling spooler on just your DC's is not enough.
PrintNightmare uses the MS-RPRN RpcAddPrinterDriverEx function while SharpPrintNightmare uses the Win32 AddPrinterDriverEx function and they both operate in a different way. With the Win32 API we can add drivers as domain users to servers that we couldn't do with MS-RPRN
( @cube0x0 )
CVE-2021-1675 - Detection Info
Google Chrome is more exposed than before, just months after the revelation that it captures more user data than rival browsers, linking everything back to personal identities. 2.6 billion Chrome users are left with a serious privacy dilemma. Will this problem ever be resolved? No. Google's business model relies on data. That's all.
#Google Assistant records audio even when you're not using it, company reportedly admitted to Indian government. Representatives from Google admitted to the Parliamentary Standing Committee on Information Technology of India that Assistant records audio even when products featuring it are not being used. Even without saying the word « OK Google » the AI Assistant still listens to your conversations discreetly.
https://www.techtimes.com/articles/262271/20210701/google-ai-assistant-records-company-admits.htm
VMHook READQ/DW/B VMProtect 2 Virtual Instructions To Bypass All Virtualized Integrity Checks 👁️
Le Canada face à plusieurs millions d'attaques informatiques par jour mais tarde à se doter d'outils nécessaires pour y faire face.
Ransomware attack before holiday leaves companies scrambling
Resources for DFIR Professionals Responding to the REvil Ransomware Kaseya Supply Chain Attack.
https://github.com/cado-security/DFIR_Resources_REvil_Kaseya/
Victimes d'une attaque informatique, la chaîne suédoise de supermarchés baisse le rideau. En Suède, ce sont plus de 800 supermarchés Coop qui ont été contraints de fermer leurs portes suite à la défaillance de leur système de paiement.
https://www.presse-citron.net/les-magasins-coop-victimes-dune-cyberattaque-ils-baissent-le-rideau/
Revisiting a Framework on #Military Takedowns Against Cyber Criminals « #Cyber #threats do not align to stovepipe mission sets, much like what the U.S. learned about #terrorism after 9/11. »
http://www.lawfareblog.com/revisiting-framework-military-takedowns-against-cybercriminals
A massive ransomware attack on the software supply chain has impacted more than 1,000 businesses so far, and the number may continue to grow.
sc(r)apy | full metal packets
> We Are the Borg
> You Will be Assimilated
> Resistance is Futile