Plus récents

(July 4, 2021 - 10:00 AM EDT) - Updates Regarding VSA Security Incident - 's VSA product has unfortunately been the victim of a sophisticated attack.

kaseya.com/potential-attack-on

🇫🇷 Besoin d'aide ou d'un renseignement ?

Brigade Numérique, c'est une équipe de gendarmes disponibles 24h/24 et 7j7 via .

magendarmerie.fr

En cas d'urgence, composer le 17 ou le 112

idahunt is a framework to analyze binaries with IDA Pro and hunt for things in IDA Pro.

github.com/nccgroup/idahunt

Analyse de l'aggrégat de données concernant les 700 millions de comptes LinkedIn qui ont été proposé à la vente le 22 juin 2021.

podalirius.net/fr/articles/ana

CVE-2021-1675

Disabling spooler on just your DC's is not enough.

PrintNightmare uses the MS-RPRN RpcAddPrinterDriverEx function while SharpPrintNightmare uses the Win32 AddPrinterDriverEx function and they both operate in a different way. With the Win32 API we can add drivers as domain users to servers that we couldn't do with MS-RPRN

( @cube0x0 )

Google Chrome is more exposed than before, just months after the revelation that it captures more user data than rival browsers, linking everything back to personal identities. 2.6 billion Chrome users are left with a serious privacy dilemma. Will this problem ever be resolved? No. Google's business model relies on data. That's all.

forbes.com/sites/zakdoffman/20

Assistant records audio even when you're not using it, company reportedly admitted to Indian government. Representatives from Google admitted to the Parliamentary Standing Committee on Information Technology of India that Assistant records audio even when products featuring it are not being used. Even without saying the word « OK Google » the AI Assistant still listens to your conversations discreetly.

techtimes.com/articles/262271/

VMHook READQ/DW/B VMProtect 2 Virtual Instructions To Bypass All Virtualized Integrity Checks 👁️

githacks.org/_xeroxz/vmhook-ea

Le Canada face à plusieurs millions d'attaques informatiques par jour mais tarde à se doter d'outils nécessaires pour y faire face.

journaldemontreal.com/2021/07/

Resources for DFIR Professionals Responding to the REvil Ransomware Kaseya Supply Chain Attack.

github.com/cado-security/DFIR_

Victimes d'une attaque informatique, la chaîne suédoise de supermarchés baisse le rideau. En Suède, ce sont plus de 800 supermarchés Coop qui ont été contraints de fermer leurs portes suite à la défaillance de leur système de paiement.

presse-citron.net/les-magasins

Revisiting a Framework on Takedowns Against Cyber Criminals « do not align to stovepipe mission sets, much like what the U.S. learned about after 9/11. »

lawfareblog.com/revisiting-fra

A massive ransomware attack on the software supply chain has impacted more than 1,000 businesses so far, and the number may continue to grow.

bloomberg.com/news/articles/20

Plus anciens