Brief

Brief #34: GitLab Zero-Click Hijack, Ivanti VPN Exploit and More

Explore Mandos Brief #34 for week 2 of 2024: GitLab's account takeover flaw, Ivanti VPN's APT exploitation, SpectralBlur backdoor, and latest ransomware decryptors.

5 min read
mandos brief week 02 of 2024

TL;DR


GitLab Critical Vulnerability Enables Account Takeover Without User Interaction

Ivanti VPN Zero-Day Exploited by Chinese APT to Deploy Custom Malware

Mandos Brief GPT

Analyze any cybersecurity topic 100 times faster by focusing on key takeaways and zero noise.

Try it out!

SpectralBlur is a New Stealthy macOS Backdoor from North Korea

Weaponized YouTube Channels Spreading Lumma Stealer

Decryptors Released for Black Basta and Babuk's Tortilla Ransomware Victims

Share This Post

Check out these related posts

Brief #78: Windows Zero-Day, NVIDIA's AI SOC Analyst, Google's 2025 Cyber Forecast

  • Nikoloz Kokhreidze
by Nikoloz Kokhreidze | | 9 min read

Brief #77: PAN-OS Vulnerability, Google's AI Finds SQLite Bug, AWS Cert Tops Pay List

  • Nikoloz Kokhreidze
by Nikoloz Kokhreidze | | 9 min read

Brief #76: 19M Records Exposed, AI Generates 25% of Code, CrowdStrike Lawsuit

  • Nikoloz Kokhreidze
by Nikoloz Kokhreidze | | 9 min read