⤷ Title: AI Uncovers GhostPenguin: Undetectable Linux Backdoor Used RC5-Encrypted UDP for Covert C2
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:50:48 +0000
════════════════════════
⌗ Tags: #Malware #AI_Driven Detection #GhostPenguin #Linux Backdoor #RC5 Encryption #Threat Hunting #UDP C2 #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:50:48 +0000
════════════════════════
⌗ Tags: #Malware #AI_Driven Detection #GhostPenguin #Linux Backdoor #RC5 Encryption #Threat Hunting #UDP C2 #zero_day
Daily CyberSecurity
AI Uncovers GhostPenguin: Undetectable Linux Backdoor Used RC5-Encrypted UDP for Covert C2
A previously undetectable Linux backdoor called GhostPenguin was exposed by AI-driven threat hunting. The C++ malware uses RC5-encrypted UDP for stealthy, multi-threaded C2 operations.
⤷ Title: Shanya Crypter Is the New Ransomware Toolkit: Uses Kernel Driver Abuse to Kill EDR
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:40:01 +0000
════════════════════════
⌗ Tags: #Malware #DLL Doppelganger #EDR Killer #Kernel Abuse #PEB Manipulation #ransomware #Shanya Crypter #Sophos #VX Crypt
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:40:01 +0000
════════════════════════
⌗ Tags: #Malware #DLL Doppelganger #EDR Killer #Kernel Abuse #PEB Manipulation #ransomware #Shanya Crypter #Sophos #VX Crypt
Daily CyberSecurity
Shanya Crypter Is the New Ransomware Toolkit: Uses Kernel Driver Abuse to Kill EDR
The Shanya Crypter (VX Crypt) is a new PaaS used by Akira/Medusa to bypass EDR. It deploys a kernel driver attack to kill security products and uses PEB manipulation for stealth.
⤷ Title: Undetectable Beima Webshell Sold by College Student for Tuition Hijacks 5,200+ Gov/Edu Websites
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:36:29 +0000
════════════════════════
⌗ Tags: #Malware #Beima PHP Webshell #botnet #Cybercrime Freelancing #Education Sites #rce #Undetectable #webshell
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:36:29 +0000
════════════════════════
⌗ Tags: #Malware #Beima PHP Webshell #botnet #Cybercrime Freelancing #Education Sites #rce #Undetectable #webshell
Daily CyberSecurity
Undetectable Beima Webshell Sold by College Student for Tuition Hijacks 5,200+ Gov/Edu Websites
A college student is selling access to 5,200+ gov/edu sites via the undetectable Beima PHP Webshell. The custom backdoor allows full RCE and fuels a growing cybercrime freelancing marketplace.
⤷ Title: Silent Supply Chain Attack: Malicious Go Typosquat Siphoned Data to Pastebin for Four Years Undetected
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:32:24 +0000
════════════════════════
⌗ Tags: #Malware #AES_CFB #backdoor #data exfiltration #dpaste #Go Package #Go Typosquatting #security #Supply Chain
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:32:24 +0000
════════════════════════
⌗ Tags: #Malware #AES_CFB #backdoor #data exfiltration #dpaste #Go Package #Go Typosquatting #security #Supply Chain
Daily CyberSecurity
Silent Supply Chain Attack: Malicious Go Typosquat Siphoned Data to Pastebin for Four Years Undetected
A malicious Go package typosquat (bpoorman/uuid) operated for four years, using a hidden Valid function to silently encrypt and exfiltrate sensitive data to dpaste.com.
⤷ Title: Silver Fox APT Uses Cyrillic False Flag in Teams SEO Poisoning to Deploy ValleyRAT
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:27:32 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT #Cyrillic #False Flag #Microsoft Teams #SEO Poisoning #Silver Fox #Typosquatting #ValleyRAT
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:27:32 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT #Cyrillic #False Flag #Microsoft Teams #SEO Poisoning #Silver Fox #Typosquatting #ValleyRAT
Daily CyberSecurity
Silver Fox APT Uses Cyrillic False Flag in Teams SEO Poisoning to Deploy ValleyRAT
Chinese APT Silver Fox is using a Cyrillic false flag in an SEO poisoning campaign impersonating Microsoft Teams. The attack installs ValleyRAT for espionage and financial fraud.
⤷ Title: Evolved ClayRat Spyware Gains Self-Defense, Using Accessibility Abuse to Block Uninstallation and Steal Keys
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:22:44 +0000
════════════════════════
⌗ Tags: #Malware #Accessibility Services #Android Spyware #ClayRat #dropbox #Keylogger #Lockscreen Bypass #MediaProjection API #Self_Defense
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:22:44 +0000
════════════════════════
⌗ Tags: #Malware #Accessibility Services #Android Spyware #ClayRat #dropbox #Keylogger #Lockscreen Bypass #MediaProjection API #Self_Defense
Daily CyberSecurity
Evolved ClayRat Spyware Gains Self-Defense, Using Accessibility Abuse to Block Uninstallation and Steal Keys
Evolved ClayRat spyware uses Accessibility Services to install a keylogger and lockscreen bypass. It leverages self-defense (blocking uninstallation) and screen recording for comprehensive surveillance.
⤷ Title: New FvncBot Android Trojan Targets mBank Users with HVNC and H.264 Screen Streaming
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:19:40 +0000
════════════════════════
⌗ Tags: #Malware #Android trojan #apk0day #banking malware #FvncBot #H.264 #HVNC #mBank #WebSocket C2
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:19:40 +0000
════════════════════════
⌗ Tags: #Malware #Android trojan #apk0day #banking malware #FvncBot #H.264 #HVNC #mBank #WebSocket C2
Daily CyberSecurity
New FvncBot Android Trojan Targets mBank Users with HVNC and H.264 Screen Streaming
A unique Android banking trojan, FvncBot, targets mBank (Poland) customers. It uses HVNC and H.264 to stream screens and performs web-inject attacks via FCM/WebSocket C2.
⤷ Title: JS#SMUGGLER Malware Evades EDR Using “Junk Code” JavaScript and Fileless PowerShell to Deploy NetSupport RAT
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:14:50 +0000
════════════════════════
⌗ Tags: #Malware #fileless #HTA #JS#SMUGGLER #Junk Code Obfuscation #LOLBins #NetSupport RAT #powershell #Supply Chain
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:14:50 +0000
════════════════════════
⌗ Tags: #Malware #fileless #HTA #JS#SMUGGLER #Junk Code Obfuscation #LOLBins #NetSupport RAT #powershell #Supply Chain
Daily CyberSecurity
JS#SMUGGLER Malware Evades EDR Using "Junk Code" JavaScript and Fileless PowerShell to Deploy NetSupport RAT
The JS#SMUGGLER campaign uses "Junk Code" JavaScript and fileless PowerShell executed via mshta.exe to bypass EDR. This multi-stage attack silently installs the NetSupport RAT.
⤷ Title: Sophisticated CastleRAT Backdoor Uses Steam Community Pages as Covert C2 Resolver for Espionage
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:10:46 +0000
════════════════════════
⌗ Tags: #Malware #CastleRAT #Clipboard Hijacking #rat #rc4 #Remote Access Trojan #Screen Capture #Steam C2 #UAC bypass
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:10:46 +0000
════════════════════════
⌗ Tags: #Malware #CastleRAT #Clipboard Hijacking #rat #rc4 #Remote Access Trojan #Screen Capture #Steam C2 #UAC bypass
Daily CyberSecurity
Sophisticated CastleRAT Backdoor Uses Steam Community Pages as Covert C2 Resolver for Espionage
A new C-compiled RAT, CastleRAT, uses Steam Community pages to hide its C2. The malware deploys advanced features like UAC Bypass, screen capture, and clipboard hijacking for espionage.
⤷ Title: LockBit 5.0 Resurfaces Stronger: New Variant Blinds Defenders by Disabling Windows ETW for Stealth Encryption
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:06:57 +0000
════════════════════════
⌗ Tags: #Malware #anti_forensics #Cross_Platform #Cybercrime #ESXi #ETW Blinding #LockBit 5.0 #Operation Cronos #ransomware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:06:57 +0000
════════════════════════
⌗ Tags: #Malware #anti_forensics #Cross_Platform #Cybercrime #ESXi #ETW Blinding #LockBit 5.0 #Operation Cronos #ransomware
Daily CyberSecurity
LockBit 5.0 Resurfaces Stronger: New Variant Blinds Defenders by Disabling Windows ETW for Stealth Encryption
Despite takedown, LockBit 5.0 resurges as a cross-platform threat. The new variant blinds Windows Event Tracing (ETW), uses Invisible Mode for stealth encryption, and overwrites free disk space.
⤷ Title: AI Clutter Solved? Windows 11 Adds Setting to Disable AI Actions in File Explorer Menu
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:03:54 +0000
════════════════════════
⌗ Tags: #Windows #AI Actions #Context Menu #File Explorer #Microsoft Copilot #UI Clutter #User Feedback #Windows 11 #Windows Build 26220
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:03:54 +0000
════════════════════════
⌗ Tags: #Windows #AI Actions #Context Menu #File Explorer #Microsoft Copilot #UI Clutter #User Feedback #Windows 11 #Windows Build 26220
Daily CyberSecurity
AI Clutter Solved? Windows 11 Adds Setting to Disable AI Actions in File Explorer Menu
Responding to user complaints, Windows 11 Build 26220 adds a setting to disable AI actions in the File Explorer context menu, reducing significant UI clutter.
⤷ Title: Google Antitrust Remedy: Judge Limits Default Search Contracts to One-Year Term
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:00:17 +0000
════════════════════════
⌗ Tags: #Technology #AI services #Antitrust #Apple Contract #Behavioral Remedy #Bing #Default Search #DuckDuckGo #google #Judge Amit Mehta #monopoly
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:00:17 +0000
════════════════════════
⌗ Tags: #Technology #AI services #Antitrust #Apple Contract #Behavioral Remedy #Bing #Default Search #DuckDuckGo #google #Judge Amit Mehta #monopoly
Daily CyberSecurity
Google Antitrust Remedy: Judge Limits Default Search Contracts to One-Year Term
⤷ Title: Bug Bounty Hunting: The Real Playbook for Beginners That Actually Works
════════════════════════
𐀪 Author: Monika sharma
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 01:51:14 GMT
════════════════════════
⌗ Tags: #penetration_testing #technology #bug_bounty #programming #cybersecurity
════════════════════════
𐀪 Author: Monika sharma
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 01:51:14 GMT
════════════════════════
⌗ Tags: #penetration_testing #technology #bug_bounty #programming #cybersecurity
Medium
Bug Bounty Hunting: The Real Playbook for Beginners That Actually Works
The Exact Recon → Bug → Report Flow That Still Pays in 2025
⤷ Title: API8:2023 Security Misconfiguration: Detección, Impacto y Mitigación
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:02:12 GMT
════════════════════════
⌗ Tags: #hacking #api #bug_bounty #cybersecurity #technology
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:02:12 GMT
════════════════════════
⌗ Tags: #hacking #api #bug_bounty #cybersecurity #technology
Medium
API8:2023 Security Misconfiguration: Detección, Impacto y Mitigación
Guía completa sobre la vulnerabilidad API8:2023 (Security Misconfiguration): Ejemplos, metodología de detección y mitigación esencial.
⤷ Title: Subdomain Takeover in 2025 — New Methods + Tools
════════════════════════
𐀪 Author: Vipul Sonule
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 01:41:31 GMT
════════════════════════
⌗ Tags: #hacking #tech #cybersecurity #ai #programming
════════════════════════
𐀪 Author: Vipul Sonule
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 01:41:31 GMT
════════════════════════
⌗ Tags: #hacking #tech #cybersecurity #ai #programming
Medium
Subdomain Takeover in 2025 🌐 — New Methods + Tools
Hi Vipul from The Hacker’s Log here 👋 Today we’re diving into one of the most powerful bug bounty techniques that still works beautifully
⤷ Title: Eleven Devices That Help You Read Environments Like A System
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:57:38 GMT
════════════════════════
⌗ Tags: #hacking #devops #tools #electronics #cybersecurity
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:57:38 GMT
════════════════════════
⌗ Tags: #hacking #devops #tools #electronics #cybersecurity
Medium
Eleven Devices That Help You Read Environments Like A System
There is a point in your life as an operator, builder, or diagnostician where you stop “looking at a place” and start “reading it.” The…
⤷ Title: Terrorism and crime research tools for OSINT investigators
════════════════════════
𐀪 Author: loyalonlytoday
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 01:51:10 GMT
════════════════════════
⌗ Tags: #osint #osint_investigation #tools #cybersecurity #ethical_hacking
════════════════════════
𐀪 Author: loyalonlytoday
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 01:51:10 GMT
════════════════════════
⌗ Tags: #osint #osint_investigation #tools #cybersecurity #ethical_hacking
Medium
Terrorism and crime research tools for OSINT investigators
These will be helpful in your journey
⤷ Title: Stealthy Spies: MuddyWater Deploys UDPGangster to Evade Network Defenses
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:54:01 +0000
════════════════════════
⌗ Tags: #Malware #APT #Azerbaijan #cyber attack #Cyber Espionage #Fortinet #Israel #malware #MuddyWater #phishing #Turkey #UDPGangster
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:54:01 +0000
════════════════════════
⌗ Tags: #Malware #APT #Azerbaijan #cyber attack #Cyber Espionage #Fortinet #Israel #malware #MuddyWater #phishing #Turkey #UDPGangster
Penetration Testing Tools
Stealthy Spies: MuddyWater Deploys UDPGangster to Evade Network Defenses
The Iranian threat group MuddyWater has intensified its cyber-espionage operations with the deployment of a new malicious program
⤷ Title: CISA’s Stark Mobile Security Warning: Stop Using Personal VPNs Now?
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:53:01 +0000
════════════════════════
⌗ Tags: #Information Security #Android #CISA #Cyber Attack Surface #cybersecurity #Data Protection #iphone #mobile security #privacy #Surveillance #VPN
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:53:01 +0000
════════════════════════
⌗ Tags: #Information Security #Android #CISA #Cyber Attack Surface #cybersecurity #Data Protection #iphone #mobile security #privacy #Surveillance #VPN
Penetration Testing Tools
CISA's Stark Mobile Security Warning: Stop Using Personal VPNs Now?
The U.S. Cybersecurity and Infrastructure Security Agency (CISA), in its newly issued mobile communications guidelines, has delivered a
⤷ Title: Portugal Grants Legal Protection to Ethical Hackers for Vulnerability Disclosure
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:50:13 +0000
════════════════════════
⌗ Tags: #Information Security #bug bounty #CNCS #Cybersecurity Law #ethical hacking #Legal Protection #Portugal #Responsible Disclosure #Vulnerability Disclosure
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:50:13 +0000
════════════════════════
⌗ Tags: #Information Security #bug bounty #CNCS #Cybersecurity Law #ethical hacking #Legal Protection #Portugal #Responsible Disclosure #Vulnerability Disclosure
Penetration Testing Tools
Portugal Grants Legal Protection to Ethical Hackers for Vulnerability Disclosure
Portugal has expanded its legal framework in the realm of digital security, formally establishing protections for good-faith specialists
⤷ Title: Tiny Core Linux 16.2: Fully Functional Graphical OS Fits in Just 23 MB
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:49:21 +0000
════════════════════════
⌗ Tags: #Linux #BusyBox #embedded systems #FLTK/FLWM #Linux 16.2 #Minimalist OS #obsolete hardware #RAM_based #Tiny Core Linux
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:49:21 +0000
════════════════════════
⌗ Tags: #Linux #BusyBox #embedded systems #FLTK/FLWM #Linux 16.2 #Minimalist OS #obsolete hardware #RAM_based #Tiny Core Linux
Penetration Testing Tools
Tiny Core Linux 16.2: Fully Functional Graphical OS Fits in Just 23 MB
The new release of Tiny Core Linux illustrates just how far the philosophy of minimalism can be taken