Last Week in Security (LWiS) - 2025-01-13

A Windows Rootkit (@colehouston44), unholy PDFs (@thomasrinsma), more Ivanti RCE (@SinSinology), macOS exploits (@patch1t + @MsftSecIntel + @wh1te4ever), and more!

Last Week in Security is a summary of the interesting cybersecurity news, techniques, tools and exploits from the past week. This post covers 2025-01-06 to 2025-01-13.

News

Techniques and Write-ups

Tools and Exploits

New to Me and Miscellaneous

This section is for news, techniques, write-ups, tools, and off-topic items that weren't released last week but are new to me. Perhaps you missed them too!

  • Chrome Web Store is a mess - Forcing a restrictive/controlled browser should be required by any business. It's fairly simple to do with Chrome or a mobile device management (MDM) solution.
  • StoneKeeper - an experimental EDR evasion framework for research purposes.
  • Tetris in a PDF - "I learned a bit about PDF's JavaScript API and its implementations and realized there might be just enough I/O possibility there for a simple game." The author went on to create DOOM in a PDF.

Techniques, tools, and exploits linked in this post are not reviewed for quality or safety. Do your own research and testing.

page 1 | older articles »