Technical

You’re welcome. :slight_smile:

Microsoft Security Intelligence Report Volume 22 is now available
https://blogs.microsoft.com/microsoftsecure/2017/08/17/microsoft-security-intelligence-report-volume-22-is-now-available/
https://www.microsoft.com/en-us/security/intelligence-report

Reverse Engineering x86 Processor Microcode
http://syssec.rub.de/media/emma/veroeffentlichungen/2017/08/16/usenix17-microcode.pdf

New multi platform malware/adware spreading via Facebook Messenger
https://securelist.com/new-multi-platform-malwareadware-spreading-via-facebook-messenger/81590/

Global Measurement of DNS Manipulation
https://www.usenix.org/system/files/conference/usenixsecurity17/sec17-pearce.pdf

Igexin advertising network put user privacy at risk
https://blog.lookout.com/igexin-malicious-sdk

Defray - New Ransomware Targeting Education and Healthcare Verticals
https://www.proofpoint.com/us/threat-insight/post/defray-new-ransomware-targeting-education-and-healthcare-verticals

Disabling Intel ME 11 via undocumented mode
http://blog.ptsecurity.com/2017/08/disabling-intel-me.html

Why The Internet Is About To Change For The Worse

http://www.cracked.com/blog/why-your-favorite-sites-are-suddenly-asking-money/

Now you know why Avast keeps pushing their upgrade requests. :slight_smile:

From Onliner Spambot to millions of email’s lists and credentials
https://benkowlab.blogspot.com/2017/08/from-onliner-spambot-to-millions-of.html

Malspam pushing Locky ransomware tries HoeflerText notifications for Chrome and FireFox
https://isc.sans.edu/diary/22776

Documentation and Analysis of the Linux Random Number Generator (August 2017)
https://www.bsi.bund.de/SharedDocs/Downloads/DE/BSI/Publikationen/Studien/LinuxRNG/LinuxRNG_EN.pdf?__blob=publicationFile&v=5

SPEAKE(a)R: Turn Speakers to Microphones for Fun and Profit
https://www.usenix.org/system/files/conference/woot17/woot17-paper-guri.pdf

Game of Registrars: An Empirical Analysis of Post-Expiration Domain Name Takeovers
https://www.usenix.org/system/files/conference/usenixsecurity17/sec17-lauinger.pdf

320 Million Hashes Exposed
http://cynosureprime.blogspot.com/2017/08/320-million-hashes-exposed.html

Massive Wave of MongoDB Ransom Attacks Makes 26,000 New Victims
https://www.bleepingcomputer.com/news/security/massive-wave-of-mongodb-ransom-attacks-makes-26-000-new-victims/

PlatPal: Detecting Malicious Documents with Platform Diversity
https://www.usenix.org/system/files/conference/usenixsecurity17/sec17-xu-meng.pdf

BootStomp: On the Security of Bootloaders in Mobile Devices
https://www.usenix.org/system/files/conference/usenixsecurity17/sec17-redini.pdf

Bug in Windows Kernel Could Prevent Security Software From Identifying Malware
https://www.bleepingcomputer.com/news/security/bug-in-windows-kernel-could-prevent-security-software-from-identifying-malware/
https://breakingmalware.com/documentation/windows-pssetloadimagenotifyroutine-callbacks-good-bad-unclear-part-1/