Brief

Brief #34: GitLab Zero-Click Hijack, Ivanti VPN Exploit and More

Explore Mandos Brief #34 for week 2 of 2024: GitLab's account takeover flaw, Ivanti VPN's APT exploitation, SpectralBlur backdoor, and latest ransomware decryptors.

5 min read
mandos brief week 02 of 2024

TL;DR


GitLab Critical Vulnerability Enables Account Takeover Without User Interaction

Ivanti VPN Zero-Day Exploited by Chinese APT to Deploy Custom Malware

Mandos Brief GPT

Analyze any cybersecurity topic 100 times faster by focusing on key takeaways and zero noise.

Try it out!

SpectralBlur is a New Stealthy macOS Backdoor from North Korea

Weaponized YouTube Channels Spreading Lumma Stealer

Decryptors Released for Black Basta and Babuk's Tortilla Ransomware Victims

Share This Post

Check out these related posts

Brief #67: 62% of CISOs Would Pay Ransom - Is Your Organization at Risk?

  • Nikoloz Kokhreidze
by Nikoloz Kokhreidze | | 6 min read

Brief #66: AKS Vulnerability Exposes Clusters, Lazarus Exploits Windows Zero-Day, AI Reshapes Developer Roles, Palo Alto Networks' Strong Forecast

  • Nikoloz Kokhreidze
by Nikoloz Kokhreidze | | 10 min read

Brief #65: Critical Windows IPv6 Flaw, Malicious Browser Extensions, EDR-Killing Malware, and AI-Generated Election Influence

  • Nikoloz Kokhreidze
by Nikoloz Kokhreidze | | 10 min read