Urgent.News

What's breaking now, across thousands of outlets.

Tech

TWINLOOT Abuses SharePoint and Teams to Steal Credentials and Move Across Networks

Cybersecurity researchers have disclosed details of a previously undocumented Python implant framework dubbed TWINLOOT. "TWINLOOT is a modular, PyArmor-hardened Python implant designed to operate its entire command-and-control infrastructure inside trusted Microsoft services," Ontinue said in a technical report shared with The Hacker News. "Tasking flows through SharePoint Online file

TWINLOOT Abuses SharePoint and Teams to Steal Credentials and Move Across Networks

We haven't written up this one. The Hacker News has the full story — the link below goes straight to it.

Read the original at thehackernews.com →

More in Tech

The Most Dangerous File in Your Repo Might Be SECURITY.md

Developers write far more legally consequential prose than they think, and almost none of it is code. It's the SECURITY.md in the repo root. It's the "Security" page someone in marketing asked you to fill in three years ago.

  • Judge rules SolarWinds Security Statement is concrete enough for scrutiny
  • Specific, verifiable claims about access controls and password policies
  • Vague statements can lead to financial repercussions and stock price decline

More from Tuesday 18 August →