⤷ Title: CISA KEV Alert: GeoServer XXE Flaw Under Active Attack Risks Data Theft & Internal Network Scanning
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 03:00:51 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Active Exploitation #CISA KEV #CVE_2025_58360 #Data Theft #GeoServer #ssrf #XML External Entity #xxe
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 03:00:51 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Active Exploitation #CISA KEV #CVE_2025_58360 #Data Theft #GeoServer #ssrf #XML External Entity #xxe
Daily CyberSecurity
CISA KEV Alert: GeoServer XXE Flaw Under Active Attack Risks Data Theft & Internal Network Scanning
CISA added a critical XXE flaw (CVE-2025-58360) in OSGeo GeoServer to the KEV Catalog. The actively exploited bug allows attackers to read arbitrary files and perform SSRF on internal networks. Patch immediately.
⤷ Title: Military-Grade ValleyRAT Goes Rogue: Kernel Rootkit Builder Leak Triggers Massive Global Surge
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 02:57:10 +0000
════════════════════════
⌗ Tags: #Malware #Builder Leak #Cybercrime #EDR Bypass #Kernel Rootkit #Modular Backdoor #ValleyRAT #Windows 11 #Winos
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 02:57:10 +0000
════════════════════════
⌗ Tags: #Malware #Builder Leak #Cybercrime #EDR Bypass #Kernel Rootkit #Modular Backdoor #ValleyRAT #Windows 11 #Winos
Daily CyberSecurity
Military-Grade ValleyRAT Goes Rogue: Kernel Rootkit Builder Leak Triggers Massive Global Surge
A sophisticated cyber weapon previously linked to targeted espionage has gone rogue, flooding the threat landscape after its creation tools were leaked to the public. A new report from Check Point…
⤷ Title: Sophisticated Okta SSO Phishing Bypasses Defenses to Steal Session Tokens With Salary Review Lures
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 02:32:27 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Datadog Labs #Microsoft 365 #Okta #phishing #Salary Review #Session Token Hijack #SSO Bypass
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 02:32:27 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Datadog Labs #Microsoft 365 #Okta #phishing #Salary Review #Session Token Hijack #SSO Bypass
Daily CyberSecurity
Sophisticated Okta SSO Phishing Bypasses Defenses to Steal Session Tokens With Salary Review Lures
A sophisticated phishing campaign uses salary review lures to target M365/Okta SSO. Attackers proxy the login page to preserve customization and hijack critical session tokens via dynamic redirection.
⤷ Title: CVE-2025-64188 (CVSS 9.8): Critical “Soledad” Theme Flaw Lets Subscribers Take Over WordPress Sites
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 02:22:26 +0000
════════════════════════
⌗ Tags: #Vulnerability Report
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 02:22:26 +0000
════════════════════════
⌗ Tags: #Vulnerability Report
Daily CyberSecurity
CVE-2025-64188 (CVSS 9.8): Critical "Soledad" Theme Flaw Lets Subscribers Take Over WordPress Sites
A Critical (CVSS 9.8) flaw in Soledad WordPress Theme allows Subscribers to escalate privileges and gain full site takeover by exploiting an exposed AJAX action. Update to v8.6.9.1 immediately.
⤷ Title: DiCaprio Movie Torrent Lures Users: Agent Tesla Deployed via Malicious LNK and Subtitle File Code Hiding
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 02:15:04 +0000
════════════════════════
⌗ Tags: #Malware #Agent Tesla #Cybercrime #living_off_the_land #LNK Exploit #LotL #Movie Torrent #powershell #Subtitle File
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 02:15:04 +0000
════════════════════════
⌗ Tags: #Malware #Agent Tesla #Cybercrime #living_off_the_land #LNK Exploit #LotL #Movie Torrent #powershell #Subtitle File
Daily CyberSecurity
DiCaprio Movie Torrent Lures Users: Agent Tesla Deployed via Malicious LNK and Subtitle File Code Hiding
A movie torrent scam uses a DiCaprio film lure to infect PCs with Agent Tesla RAT. The attack chain uses LNK files and malicious code hidden in a subtitle file to achieve fileless execution via LotL tools.
⤷ Title: GOLD BLADE APT Hits Canadian Firms with BYOVD EDR Killer and Ransomware Delivered Via Fake Resumes
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 01:52:16 +0000
════════════════════════
⌗ Tags: #Malware #BYOVD #Canada #corporate espionage #EDR Killer #GOLD BLADE #QWCrypt Ransomware #Recruitment Lure #RedCurl #RedWolf
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 01:52:16 +0000
════════════════════════
⌗ Tags: #Malware #BYOVD #Canada #corporate espionage #EDR Killer #GOLD BLADE #QWCrypt Ransomware #Recruitment Lure #RedCurl #RedWolf
Daily CyberSecurity
GOLD BLADE APT Hits Canadian Firms with BYOVD EDR Killer and Ransomware Delivered Via Fake Resumes
GOLD BLADE (RedCurl) targets Canadian firms (80% of attacks) with espionage and QWCrypt ransomware. The group uses fake resumes and a BYOVD EDR killer (Zemana driver) to disable security controls.
⤷ Title: XSS — Merry XSSMas
════════════════════════
𐀪 Author: THM{0x416469747961204D6163686972616A75}
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 02:18:19 GMT
════════════════════════
⌗ Tags: #xss_attack #cybersecurity #tryhackme #xss_vulnerability #aoc2025
════════════════════════
𐀪 Author: THM{0x416469747961204D6163686972616A75}
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 02:18:19 GMT
════════════════════════
⌗ Tags: #xss_attack #cybersecurity #tryhackme #xss_vulnerability #aoc2025
Medium
XSS — Merry XSSMas
Learn about types of XSS vulnerabilities and how to prevent them.
⤷ Title: [Write-up] HackTheBox - Explosion
════════════════════════
𐀪 Author: Mattana Olarikded
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 02:56:41 GMT
════════════════════════
⌗ Tags: #hackthebox_writeup #hackthebox #hack_the_box_writeup #hack_the_box_walkthrough #hackthebox_walkthrough
════════════════════════
𐀪 Author: Mattana Olarikded
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 02:56:41 GMT
════════════════════════
⌗ Tags: #hackthebox_writeup #hackthebox #hack_the_box_writeup #hack_the_box_walkthrough #hackthebox_walkthrough
Medium
[Write-up] HackTheBox - Explosion
สวัสดีค่ะ วันนี้เราจะมาแชร์วิธีการหา root flag ในกล่อง Explosion ซึ่งเป็นกล่องใน Starting Point - Tier 0 ของ HackTheBox ค่ะ ถ้าพร้อมแล้ว…
⤷ Title: CISA Flags Actively Exploited GeoServer XXE Flaw in Updated KEV Catalog
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 10:31:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 10:31:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: SpearSpray: The Stealthy Tool That Bypasses Lockout Policies in Active Directory
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:49:20 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Account Lockout #Active Directory #BloodHound #Cyber Attack Tool #Kerberos #LDAP #password spraying #Red Team #security #SpearSpray
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:49:20 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Account Lockout #Active Directory #BloodHound #Cyber Attack Tool #Kerberos #LDAP #password spraying #Red Team #security #SpearSpray
Penetration Testing Tools
SpearSpray: The Stealthy Tool That Bypasses Lockout Policies in Active Directory
SpearSpray is an advanced AD password spraying tool using Kerberos and LDAP, featuring jitter and domain policy awareness to bypass account lockouts for stealthy attacks.
⤷ Title: PATCH NOW: Google Issues Emergency Chrome Update for Actively Exploited Zero-Day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:45:42 +0000
════════════════════════
⌗ Tags: #Vulnerability #Chrome Security #CVE_2025_14372 #cybersecurity #Emergency Update #exploitation #Google Chrome #vulnerability #zero_day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:45:42 +0000
════════════════════════
⌗ Tags: #Vulnerability #Chrome Security #CVE_2025_14372 #cybersecurity #Emergency Update #exploitation #Google Chrome #vulnerability #zero_day
Penetration Testing Tools
PATCH NOW: Google Issues Emergency Chrome Update for Actively Exploited Zero-Day
Google has released an unscheduled Chrome update to patch a zero-day vulnerability already being exploited in active attacks.
⤷ Title: PATCH NOW: Microsoft Fixes 57 Flaws, Including Three Zero-Days Actively Exploited
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:44:45 +0000
════════════════════════
⌗ Tags: #Vulnerability #Windows #CVE_2025_62221 #cybersecurity #GitHub Copilot #Microsoft #Patch Tuesday #PowerShell #RCE #Windows Security #zero_day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:44:45 +0000
════════════════════════
⌗ Tags: #Vulnerability #Windows #CVE_2025_62221 #cybersecurity #GitHub Copilot #Microsoft #Patch Tuesday #PowerShell #RCE #Windows Security #zero_day
Penetration Testing Tools
PATCH NOW: Microsoft Fixes 57 Flaws, Including Three Zero-Days Actively Exploited
Microsoft has released its December security updates: Patch Tuesday brings fixes for 57 vulnerabilities, including three zero-days (one
⤷ Title: Japan’s Largest Scam: Chinese Duo Used Hijacked Accounts to Manipulate Stock Prices
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:42:06 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Chinese Nationals #Financial Crime #Hijacked Accounts #Japan #Market Manipulation #Matched Orders #phishing #Securities #Stock Fraud #Tokyo Stock Exchange
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:42:06 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Chinese Nationals #Financial Crime #Hijacked Accounts #Japan #Market Manipulation #Matched Orders #phishing #Securities #Stock Fraud #Tokyo Stock Exchange
Penetration Testing Tools
Japan’s Largest Scam: Chinese Duo Used Hijacked Accounts to Manipulate Stock Prices
The investigation in Japan has detained two Chinese nationals suspected of orchestrating the largest known market-manipulation scheme involving
⤷ Title: ChimeraWire: The Click-Fraud Trojan Disguised as a Human User
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:40:19 +0000
════════════════════════
⌗ Tags: #Malware #BOTNET #ChimeraWire #Click Fraud #DLL hijacking #Doctor Web #privilege escalation #SEO Manipulation #trojan #Windows Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:40:19 +0000
════════════════════════
⌗ Tags: #Malware #BOTNET #ChimeraWire #Click Fraud #DLL hijacking #Doctor Web #privilege escalation #SEO Manipulation #trojan #Windows Security
Penetration Testing Tools
ChimeraWire: The Click-Fraud Trojan Disguised as a Human User
Experts at Doctor Web have identified a new click-fraud trojan, Trojan.ChimeraWire, which disguises itself as the activity of
⤷ Title: Invisible Ransomware: Storm-0249 Weaponizes SentinelOne EDR in Stealth Attacks
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:38:43 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #DLL Sideloading #EDR #Initial Access Broker #PowerShell #ransomware #ReliaQuest #SentinelOne #Storm_0249 #supply chain attack
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:38:43 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #DLL Sideloading #EDR #Initial Access Broker #PowerShell #ransomware #ReliaQuest #SentinelOne #Storm_0249 #supply chain attack
Penetration Testing Tools
Invisible Ransomware: Storm-0249 Weaponizes SentinelOne EDR in Stealth Attacks
The financially motivated group Storm-0249, long known as a broker of initial access for ransomware operators, has markedly
⤷ Title: React2Shell Exploit: Botnets Target 150K+ Devices Daily with Node.js Flaw
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:37:14 +0000
════════════════════════
⌗ Tags: #Malware #Vulnerability #BOTNET #BusyBox #Cryptominer #CVE_2025_55182 #cybersecurity #IoT #Mirai #Node.js #React2Shell #remote command execution
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:37:14 +0000
════════════════════════
⌗ Tags: #Malware #Vulnerability #BOTNET #BusyBox #Cryptominer #CVE_2025_55182 #cybersecurity #IoT #Mirai #Node.js #React2Shell #remote command execution
Penetration Testing Tools
React2Shell Exploit: Botnets Target 150K+ Devices Daily with Node.js Flaw
A newly discovered vulnerability in Node.js, designated CVE-2025-55182 and informally dubbed React2Shell, has become a favored weapon of
⤷ Title: Khashoggi’s Widow Files French Complaint Over Pegasus Spyware Infection
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:36:37 +0000
════════════════════════
⌗ Tags: #Malware #Citizen Lab #French Prosecutor #Hanan Elatr Khashoggi #Jamal Khashoggi #NSO Group #Pegasus #Saudi Arabia #Spyware #Surveillance #UAE
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:36:37 +0000
════════════════════════
⌗ Tags: #Malware #Citizen Lab #French Prosecutor #Hanan Elatr Khashoggi #Jamal Khashoggi #NSO Group #Pegasus #Saudi Arabia #Spyware #Surveillance #UAE
Penetration Testing Tools
Khashoggi's Widow Files French Complaint Over Pegasus Spyware Infection
The widow of Saudi dissident journalist Jamal Khashoggi has filed a complaint with the French prosecutor’s office, alleging
⤷ Title: Digital War Crimes: ICC Drafts Policy to Judge Cyber-Enabled Genocide and Aggression
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:34:37 +0000
════════════════════════
⌗ Tags: #Information Security #AI #Cybercrimes #Digital Evidence #Genocide #ICC #International Criminal Court #International Law #Rome Statute #Tallinn Manual #War Crimes
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:34:37 +0000
════════════════════════
⌗ Tags: #Information Security #AI #Cybercrimes #Digital Evidence #Genocide #ICC #International Criminal Court #International Law #Rome Statute #Tallinn Manual #War Crimes
Penetration Testing Tools
Digital War Crimes: ICC Drafts Policy to Judge Cyber-Enabled Genocide and Aggression
The International Criminal Court has released a draft policy aimed at confronting crimes committed through digital technologies. The
⤷ Title: OpenAI Fights Back: GPT-5.2 Unveiled to Rival Google’s Gemini 3 Pro
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:21:11 +0000
════════════════════════
⌗ Tags: #Technology #AGI #AI Benchmark #artificial intelligence #Gemini 3 Pro #GPT_5.2 #LMArena #OpenAI #Red Alert #Sam Altman #Superintelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:21:11 +0000
════════════════════════
⌗ Tags: #Technology #AGI #AI Benchmark #artificial intelligence #Gemini 3 Pro #GPT_5.2 #LMArena #OpenAI #Red Alert #Sam Altman #Superintelligence
Daily CyberSecurity
OpenAI Fights Back: GPT-5.2 Unveiled to Rival Google's Gemini 3 Pro
OpenAI launches GPT-5.2 ("Red Alert") to reclaim the top spot from Gemini 3 Pro. The model achieves perfect math scores and promises unparalleled reliability for enterprise tasks.
⤷ Title: The IP Wall Falls: Disney Invests $1B in OpenAI to License 200+ Characters for AI
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:16:24 +0000
════════════════════════
⌗ Tags: #Technology #Bob Iger #Character Licensing #ChatGPT #Disney+ #investment #IP Protection #Marvel #OpenAI #Sam Altman #Sora #Star Wars
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:16:24 +0000
════════════════════════
⌗ Tags: #Technology #Bob Iger #Character Licensing #ChatGPT #Disney+ #investment #IP Protection #Marvel #OpenAI #Sam Altman #Sora #Star Wars
Daily CyberSecurity
The IP Wall Falls: Disney Invests $1B in OpenAI to License 200+ Characters for AI
Disney invests $1B in OpenAI and licenses 200+ characters (Mickey, Iron Man, Vader) for Sora and ChatGPT Images—a major pivot to defining the rules of AI-generated content.
⤷ Title: The AI Super-App Rises: Photoshop & Adobe Express Integrate into ChatGPT
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:13:26 +0000
════════════════════════
⌗ Tags: #Technology #Acrobat #Adobe #Adobe Express #AI Integration #Canva #ChatGPT #Creative Workflow #MCP Protocol #OpenAI #Photoshop #Super App
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 12 Dec 2025 04:13:26 +0000
════════════════════════
⌗ Tags: #Technology #Acrobat #Adobe #Adobe Express #AI Integration #Canva #ChatGPT #Creative Workflow #MCP Protocol #OpenAI #Photoshop #Super App
Daily CyberSecurity
The AI Super-App Rises: Photoshop & Adobe Express Integrate into ChatGPT
OpenAI integrates Photoshop, Acrobat, and Adobe Express into ChatGPT via MCP. The move creates an "AI super-app," enabling 800M users to edit images and PDFs directly in chat.