One of the world's largest crypto payment processors CoinsPaid loses $37M in hack https://x.com/bitcoinnewscom/status/1690809194146897920
Google details 0-click bug in Pixel 6 modem: Advises users to disable 2G https://www.scmagazine.com/news/google-details-0-click-bug-in-pixel-6-modem-advises-users-to-disable-2g
SandBlaster: Reversing the Apple sandbox from Cellubrite Labs https://github.com/cellebrite-labs/sandblaster
CoFuzz: Coordinated hybrid fuzzing framework with advanced coordination mode https://github.com/Tricker-z/CoFuzz
VS Code’s Token Security: Keeping Your Secrets… Not So Secretly https://cycode.com/blog/exposing-vscode-secrets/
Chimera - Automated DLL Sideloading Tool With EDR Evasion Capabilities https://www.kitploit.com/2023/08/chimera-automated-dll-sideloading-tool.html?m=1
Maker of Chrome extension with 300,000+ users tells of constant pressure to sell out https://www.theregister.com/2023/08/11/chrome_extension_developer_pressure/
How To Dump Lsass Without Mimikatz https://reconshell.com/how-to-dump-lsass-without-mimikatz/
Report: Potential NYT lawsuit could force OpenAI to wipe ChatGPT and start over https://arstechnica.com/tech-policy/2023/08/report-potential-nyt-lawsuit-could-force-openai-to-wipe-chatgpt-and-start-over/
TunnelCrack is a combination of two widespread security vulnerabilities in VPNs https://tunnelcrack.mathyvanhoef.com/
DavRelayUp - a universal no-fix local privilege escalation in domain-joined windows workstations where LDAP signing is not enforced https://github.com/ShorSec/DavRelayUp
Flax Typhoon using legitimate software to quietly access Taiwanese organizations https://www.microsoft.com/en-us/security/blog/2023/08/24/flax-typhoon-using-legitimate-software-to-quietly-access-taiwanese-organizations/
Iraq shuts down Telegram over privacy concerns https://www.techradar.com/computing/cyber-security/iraq-shuts-down-telegram-over-privacy-concerns
Abusing nvidia driver (nvoclock.sys) for physical/virtual memory and control register manipulation. https://github.com/zer0condition/NVDrv
Exclusive: DHS Used Clearview AI Facial Recognition In Thousands Of Child Exploitation Cold Cases https://www.forbes.com/sites/thomasbrewster/2023/08/07/dhs-ai-facial-recognition-solving-child-exploitation-cold-cases/?sh=3cbffbf57682
General Device Manager 2.5.2.2 - Buffer Overflow (SEH) Exploit https://0day.today/exploit/description/38921
Censorship Industrial Complex: Using GPT-4 for content moderation https://openai.com/blog/using-gpt-4-for-content-moderation
Introducing Python in Excel: The Best of Both Worlds for Data Analysis and Visualization https://techcommunity.microsoft.com/t5/microsoft-365-blog/introducing-python-in-excel-the-best-of-both-worlds-for-data/ba-p/3905482
Offensive Tool Development - The Shellcode Compiler Was Right There All Along... (Part 1) https://sh3llsp4wn.github.io/Shellcode-With-The-Default-Linux-Toolchain/
Ford SYNC 3 infotainment vulnerable to drive-by Wi-Fi hijacking https://www.theregister.com/2023/08/14/ford_sync_vulnerability/