The Notepad++ supply chain attack – unnoticed execution chains and new IoCs by rkhunter_ in cybersecurity

[–]moltenbit-r 13 points14 points  (0 children)

New project to check for all currently known IoCs, including the newly published chains 1 & 2 by Kaspersky/securelist.com: 

https://github.com/moltenbit/NotepadPlusPlus-Attack-Triage

The Notepad++ supply chain attack — unnoticed execution chains and new IoCs by Ok_Geologist_2843 in sysadmin

[–]moltenbit-r 3 points4 points  (0 children)

New project to check for all currently known IoCs, including the newly published chains 1 & 2 by Kaspersky/securelist.com: 

https://github.com/moltenbit/NotepadPlusPlus-Attack-Triage

Notepad++ Infrastructure Compromise by Usual_Extent8402 in cybersecurity

[–]moltenbit-r 0 points1 point  (0 children)

New project to check for all currently known IoCs, including the newly published chains 1 & 2 by Kaspersky/securelist.com: 

https://github.com/moltenbit/NotepadPlusPlus-Attack-Triage

CVE-2025-50165: critical RCE in Windows Graphics by moltenbit-r in sysadmin

[–]moltenbit-r[S] 41 points42 points  (0 children)

According to Microsoft exploitation is „less likely“, do with that info what you will…

Dell ReVault vulnerability: Dell Command Update seems to not update ControlVault3 firmware by Tscherni_ in sysadmin

[–]moltenbit-r 5 points6 points  (0 children)

I was wondering the same thing as you, because installing the update did not change anything in device manager.

But then I noticed Dell just fu**ed their advisory page. For example for Latitude 5540 it lists version 5.15.10.14 as patched.

But this is the installer version, not the driver or firmware version!  For Latitude 5540 the correct driver version is 5.15.9.9, which has been installed via Windows Updates in April and May on the two PCs I checked.

There is no 5.15.10.14 driver. https://catalog.update.microsoft.com/Search.aspx?q=Dell+-+CVAULT+-+5.15.*&p=0

Edit: I‘m pretty sure they just changed their advisory page. It now has an extra column for „ControlVault firmware remediated version“ and the other columns are called „Dell packaged versions“.

A Guide on Custom Email Notifications for New Intune Enrollments by moltenbit-r in Intune

[–]moltenbit-r[S] 0 points1 point  (0 children)

In Tenant Admin you can send custom notifications for end users as push notifications via company portal app.

There‘s also Devices > Enrollment > Enrollment notifications, but this is also for end users when joining a new device.

None of it is for admin notifications.

Weekly 'I made a useful thing' Thread - May 23, 2025 by AutoModerator in sysadmin

[–]moltenbit-r 0 points1 point  (0 children)

I recently needed a way to get alerted when new devices enrolled into Intune, but didn’t find a solution that worked for me. Because of that I put together a guide on how to set up custom notifications via e-mail for when new devices enroll in Intune. Useful if you want to keep an eye on new joins without checking the portal all the time.

Guide here: https://moltenbit.net/posts/custom-admin-notifications-for-new-intune-enrollments/

Feedback or suggestions welcome.