? The Privacy, Security, & OSINT Magazine. • This month, the fifth issue of the magazine "UNREDACTED Magazine", authored by Michael Bazzell, appeared online.
Symantec researchers report details about the activities of a cybercrime group they track as Bluebottle, revealing significant similarities to the TTP gang OPERA1ER. As the researchers found out, Bluebottle hackers used a signed Windows driver to attack banks in French-speaking countries. At the same time, the actions and goals correspond to the OPERA1ER profile, which were attributed to at least
? Social Engineering. MFA-fatigue (MFA Fatigue). • MFA Fatigue is one of the social engineering methods used by attackers to bypass multi—factor authentication, causing an endless stream of push requests sent to the account owner's mobile device. If the victim accepts the request, the attacker will successfully complete the authorization.
A tool for in-depth search query on sites DirAttack is a tool that allows you to search for a file and directory on a website by keywords. Open source code,
Watch out for Internet blockages! To date, it is desirable to be able to track the blocking of various sites, since you never know when your favorite Internet resource will be blocked.
? OSINT. Search for a target by username. • You've probably already encountered a service for finding a target using the username "whatsmyname", and if you haven't, be sure to pay attention. Recently, this resource has been updated and now we can search for information on the username on 576 popular sites. There is also an opportunity to search through the list of usernames, rather than
Telegram has added an option to hide the list of chat participants (for chats involving more than 100 users). Previously, this feature was only available to community administrators. It was enabled in the chat settings. It is believed that this will prevent the identification of users of messengers, as well as owners of Telegram channels.