script

Winsage
March 10, 2025
Cisco Talos has reported a series of cyberattacks exploiting a critical vulnerability in PHP (CVE-2024-4577) to target Windows systems, primarily affecting organizations in Japan since January 2025. The vulnerability allows attackers to execute arbitrary PHP code on servers running Apache with PHP-CGI. They use a Python script, “PHP-CGICVE-2024-4577RCE.py,” to send crafted POST requests and confirm exploitation through a specific MD5 hash. After gaining access, attackers deploy a PowerShell injector script to establish a connection with their command and control (C2) server and utilize Cobalt Strike plugins for post-exploitation activities, including modifying registry keys for persistence and clearing event logs to evade detection. They conduct lateral movement using reconnaissance tools and exploit Group Policy Objects to execute malicious scripts, ultimately extracting credentials with Mimikatz. The attackers have access to a pre-configured installer script on their C2 server, suggesting potential for future attacks.
AppWizard
March 9, 2025
David Goldfarb, the director of Battlefield: Bad Company 2, has revealed that he has written initial pages of a script for a potential sequel, Bad Company 3. He shared a detail about a fictional store named "Adiosvidaniya," which reflects current geopolitical issues, particularly regarding Russia. Goldfarb confirmed that the story would continue from the cliffhanger in Bad Company 2, stating, “Russia won and partially took over Alaska.” He also acknowledged a fan theory about reuniting original characters for a mission, responding affirmatively. However, he clarified that his work on the script is a personal project and not a formal plan from DICE, stating that the studio never considered developing Bad Company 3. Goldfarb now leads his own studio, The Outsiders.
Search