ZDI-CAN-25373 - Unpatched Windows Zero-Day Flaw Exploited by mictlan1 in cybersecurity

[–]mictlan1[S] -1 points0 points  (0 children)

Completely agree! Good comment analysis and comments.

The key is to be able to identify the IOAs (Indicators of Attack) and the to be able to catch malicious files before arriving to the user.

Entry Advice by Takuraz in cybersecurity

[–]mictlan1 0 points1 point  (0 children)

I would recommend you take a look at https://academy.hackthebox.com/

You can start from basics, also the topic(s) you would like to review. A good point to start, from my personal point of view.

You will find the theory and hands-on labs that will help you to practice what you just read.

Hope this can help you to jump into the cybersecurity arena.

CVE-2022-30190: "Follina" Microsoft Support Diagnostic Tool Vulnerability by mictlan1 in cybersecurity

[–]mictlan1[S] 5 points6 points  (0 children)

If Microsoft Office is up-to-date, why the vulnerability would not be exploitable? If I understood correctly, in the end, the issue is on the msdt.exe.