Timothy Wilson  

57 Followers
131 Following
102 Posts
Lab Rat // Techie // Infosec Student
Websitehttps://khemgeek.com
Githubhttps://github.com/khemgeek
Source code for BlackLotus that bypassed Windows Secure Boot, Microsoft Defender, VBS, leaks #Malware https://groups.google.com/g/technical-malware/c/x0983nkbOBM
Source code for BlackLotus that bypassed Windows Secure Boot, Microsoft Defender, VBS, leaks

User opens a malicious email, downloads and opens attachment. AV detects and attempts cleanup. What do you do?
Reimage
22.2%
Investigate
77.8%
It’s fine, AV cleaned it
0%
Poll ended at .

Phishing drops IceXLoader #malware on thousands of home, corporate devices

Apparently IceXLoader is "out of beta" and is "aggressively promoted on the cybercrime underground."

#cybersecurity #opsec #phishing

https://www.bleepingcomputer.com/news/security/phishing-drops-icexloader-malware-on-thousands-of-home-corporate-devices/

Phishing drops IceXLoader malware on thousands of home, corporate devices

A ongoing phishing campaign has infected thousands of home and corporate users with a new version of the 'IceXLoader' malware.

BleepingComputer

CISA Adds Seven Known Exploited Vulnerabilities to Catalog

All of these should have regular updates, so update ASAP.

#cybersecurity

https://www.cisa.gov/uscert/ncas/current-activity/2022/11/08/cisa-adds-seven-known-exploited-vulnerabilities-catalog

The crime ring is estimated to have employed over 2,000 people in its call centers, drawing victims to a network of fake websites posing as cryptocurrency, stocks, bonds, futures, and options investment portals.

https://www.bleepingcomputer.com/news/security/ukraine-arrests-fraud-ring-members-who-made-200-million-per-year/

Ukraine arrests fraud ring members who made €200 million per year

Ukraine's cyber police and Europol have identified and arrested five key members of an international investment fraud ring estimated to have caused losses of over €200 million per year.

BleepingComputer

A ransomware gang that some believe is a relaunch of REvil and others track as BlogXX has claimed responsibility for last month's ransomware attack against Australian health insurance provider Medibank Private Limited.

#cybersecurity #ransomware

https://www.bleepingcomputer.com/news/security/ransomware-gang-threatens-to-release-stolen-medibank-data/

Ransomware gang threatens to release stolen Medibank data

A ransomware gang that some believe is a relaunch of REvil and others track as BlogXX has claimed responsibility for last month's ransomware attack against Australian health insurance provider Medibank Private Limited.

BleepingComputer

RomCom RAT #malware campaign impersonates KeePass, SolarWinds NPM, Veeam

USERS: verify your sources

Verify your files/packages

#cybersecurity

https://www.bleepingcomputer.com/news/security/romcom-rat-malware-campaign-impersonates-keepass-solarwinds-npm-veeam/

RomCom RAT malware campaign impersonates KeePass, SolarWinds NPM, Veeam

The threat actor behind the RomCom RAT (remote access trojan) has refreshed its attack vector and is now abusing well-known software brands for distribution.

BleepingComputer