November 24, 2024
November 24, 2024
#SpyNews - week 47 (November 17-23):
โ Spy Collection (@SpyCollection1) November 24, 2024
A summary of 77 espionage-related stories from week 47 coming from ๐บ๐ธ๐ธ๐ฌ๐บ๐ฆ๐ท๐บ๐ฌ๐ง๐จ๐ฆ๐ฉ๐ช๐ฆ๐บ๐ซ๐ฎ๐ซ๐ท๐ฎ๐ฑ๐ธ๐พ๐ฆ๐ท๐ณ๐ฟ๐จ๐ณ๐จ๐ญ๐ฑ๐น๐ธ๐ช๐ฎ๐ท๐ฐ๐ท๐ฐ๐ต๐น๐ท๐ต๐ธ๐ช๐ธ๐ต๐ญ๐ฎ๐น๐ต๐ฑ๐ฉ๐ฐ๐ณ๐ฑ๐ฎ๐ถ๐ฑ๐ง๐ฆ๐ช๐น๐ฏ๐ฐ๐ฌ๐น๐ฒ๐ฐ๐ฟ๐ณ๐ด๐ฎ๐ณ๐ต๐ฐ๐ต๐ฆ๐ฉ๐ฟ๐ฆ๐ซ๐ง๐พ๐ฆ๐ฒ๐ฑ๐พ๐ธ๐ธ https://t.co/EZtvj2Yuwo#OSINT #HUMINT #SIGINT #espionage #spy
SPY NEWS: 2024 โ Week 47. Summary of the espionage-related newsโฆ | by The Spy Collection | Nov, 2024 | Medium
Summary of the espionage-related news stories for the Week 47 (November 17โ23) of 2024.
AV/EDR Lab environment setup references to help in Malware development https://t.co/lUeAefxgJW
โ Panos Gkatziroulis ๐ฆ (@netbiosX) November 23, 2024
Cool to see that the same techniques still work after twenty years.https://t.co/UTjSvs1rQZ https://t.co/YQd5tmw2Pc
โ thaddeus e. grugq (@thegrugq) November 24, 2024
Spoofing Call Stacks To Confuse EDRs | WithSecureโข Labs
Call stacks are an understated yet often important source of telemetry for EDR products.
Everything old is new again.
https://phrack.org/issues/62/5.html#article
perfect infosec aphorism
Old tricks with new dogs ๐
โ Christopher Burgess (@burgessct) November 24, 2024
Introduction to Windows kernel exploitation
โ 0xor0ne (@0xor0ne) November 24, 2024
Part 1: https://t.co/nNTKqtgmA4
Part 2: https://t.co/QwbNVNNyt2
Part 3: https://t.co/f1hRv93yrB
Part 4: https://t.co/vS1SUVUF0c
Part 5: https://t.co/2aDetUK8g1#infosec #windows pic.twitter.com/JBZzC5BOHn
"He is also expected to single-out Russia's Unit 29155, which the government says has carried out a number of attacks in the UK and Europe".https://t.co/y6pIC5MR6m
โ Dr. Dan Lomas (@Sandbagger_01) November 24, 2024
Alternate take:
UK minister warns that Russia may increase cyberattacks on the UK. The minister spreads fear about cyberattacks turning off electricity and highlights largely symbolic hacktivist activities with no impact, perhaps except propaganda. https://t.co/55K7SusyEJ
โ Lukasz Olejnik (@lukOlejnik) November 23, 2024
@shashj.bsky.social on Bluesky
Donโt know which department pre-briefed this speech by Pat Macfadden but top lines are back to old days of cyber hysteria, crossing the line from encouraging preparedness to doing Russiaโs job for it by painting UK power grid and CNI as defenceless. https://www.telegraph.co.uk/politics/2024/11/23/putin-ready-to-cripple-britain-in-cyber-war/
Iโm officially spending a bit more time on Bluesky now, since there seems to be a community forming up.
@filippo.abyssdomain.expert on Bluesky
Optimist: The cup is half full Pessimist: The cup is half empty Cryptography Engineer: The cup matches the test vectors in the specification [contains quote post or other embedded content]
(This is mostly an experiment to see how Bluesky nested quotes are treated)
Seems like there's some focus on static binary instrumentation for kernel again recently. Therefore I decide to public my toy for fuzzing Windows kernel drivers with coverage. Wrote this last year and it works for MS released drivers on Windows 11.https://t.co/g9Onnz5e2P
โ chiefpie (@cplearns2h4ck) November 23, 2024