April 14, 2021 at 05:39PM

■■■■□ Adfsbrute – A Script To Test Credentials Against Active Directory Federation Services (ADFS), Allowing Password Spraying Or Bruteforce Attacks. https://github.com/ricardojoserf/adfsbrute https://t.me/cKure/7601

April 14, 2021 at 08:19AM

■■■■■ Microsoft today issued fixes for 114 vulnerabilities as part of its monthly security update release, which this month addressed 19 critical flaws, four critical Microsoft Exchange Server bugs found by the National Security Agency (NSA), and one zero-day bug in Desktop Window Manager.   CVE-2021-28310, a Win32k elevation of privilege vulnerability, is the only CVE…

April 14, 2021 at 08:16AM

■■■■□ United States : A court-approved FBI operation was conducted to remove web shells from compromised US-based Microsoft Exchange servers without first notifying the servers’ owners. https://www.bleepingcomputer.com/news/security/fbi-nuked-web-shells-from-hacked-exchange-servers-without-telling-owners/ https://t.me/cKure/7595

April 14, 2021 at 08:03AM

■■■■□ Over 100,000 web pages hosted by Google for business form searches overrun with backdoor RATs. eSentire warns of remote-access trojans masquerading as PDFs https://go.theregister.com/feed/www.theregister.com/2021/04/14/google_sites_malware/ https://t.me/cKure/7594

April 13, 2021 at 07:33PM

■■□□□ Back in a Bit: Attacker Use of the Windows Background Intelligent Transfer Service. https://www.fireeye.com/blog/threat-research/2021/03/attacker-use-of-windows-background-intelligent-transfer-service.html https://t.me/cKure/7593