⤷ Title: Cyber-hijacking a ship?
════════════════════════
𐀪 Author: Angelina Souren
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 22:33:32 GMT
════════════════════════
⌗ Tags: #shipping #hacking #terrorism #hijacking #cybercrime
════════════════════════
𐀪 Author: Angelina Souren
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 22:33:32 GMT
════════════════════════
⌗ Tags: #shipping #hacking #terrorism #hijacking #cybercrime
Medium
Cyber-hijacking a ship?
I predicted this years ago
⤷ Title: When AI Becomes the Instructor: Analyzing YouTube’s Video Summarization Safety Gap
════════════════════════
𐀪 Author: Vidura Ranathunga
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 22:31:11 GMT
════════════════════════
⌗ Tags: #youtube #ai_slop #hacking #ai_jailbreak #cybersecurity
════════════════════════
𐀪 Author: Vidura Ranathunga
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 22:31:11 GMT
════════════════════════
⌗ Tags: #youtube #ai_slop #hacking #ai_jailbreak #cybersecurity
Medium
When AI Becomes the Instructor: Analyzing YouTube’s Video Summarization Safety Gap
Introduction
⤷ Title: The Hacker Mindset Isn’t About Crime, It’s About Curiosity
════════════════════════
𐀪 Author: Splicer Scorn: Lugubrious, Loquatious, Volatile...
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 22:07:27 GMT
════════════════════════
⌗ Tags: #diy_electronics #stigma #hacking #cybercrime #internet
════════════════════════
𐀪 Author: Splicer Scorn: Lugubrious, Loquatious, Volatile...
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 22:07:27 GMT
════════════════════════
⌗ Tags: #diy_electronics #stigma #hacking #cybercrime #internet
Medium
The Hacker Mindset Isn’t About Crime, It’s About Curiosity
Somewhere along the way, the word hacker got handcuffed to a crime scene photo. Hoodie. Dark room. Green text. A credit card number…
⤷ Title: TryHackMe Advent of Cyber 2025 Day 6 : Malware Analysis — Egg-xecutable
════════════════════════
𐀪 Author: Subrat Samantaray
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 22:32:35 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme #aoc2025 #tryhackme_walkthrough #advent_of_cyber_2025
════════════════════════
𐀪 Author: Subrat Samantaray
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 22:32:35 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme #aoc2025 #tryhackme_walkthrough #advent_of_cyber_2025
Medium
TryHackMe Advent of Cyber 2025 Day 6 : Malware Analysis — Egg-xecutable
Complete Walkthrough & Learning Guide
⤷ Title: Broken Access Control: low-privilege user dapat Menghapus Lampiran Slip Gaji Melalui Endpoint…
════════════════════════
𐀪 Author: Robi Mohamad subagja
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 01:02:18 GMT
════════════════════════
⌗ Tags: #broken_access_control #bug_bounty #bug_bounty_tips #cybersecurity #idor
════════════════════════
𐀪 Author: Robi Mohamad subagja
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 01:02:18 GMT
════════════════════════
⌗ Tags: #broken_access_control #bug_bounty #bug_bounty_tips #cybersecurity #idor
Medium
Broken Access Control: low-privilege user dapat Menghapus file/attachment Lampiran Melalui…
Broken Access Control: low-privilege user dapat Menghapus file/attachment Lampiran Melalui Endpoint Tersembunyi Pendahuluan Beberapa bulan lalu saya menemukan kerentanan Broken Access Control (IDOR) …
⤷ Title: What Is API Security and Why Should Everyday People Care?
════════════════════════
𐀪 Author: Anishamudani
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 01:07:39 GMT
════════════════════════
⌗ Tags: #owasp_top_10 #api_security #api #owasp_api_security_top_10 #owasp
════════════════════════
𐀪 Author: Anishamudani
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 01:07:39 GMT
════════════════════════
⌗ Tags: #owasp_top_10 #api_security #api #owasp_api_security_top_10 #owasp
Medium
What Is API Security and Why Should Everyday People Care?
You may not realize it, but you use APIs every single day. When you check your bank balance on your phone, sign in with Google, order…
⤷ Title: Brute Force Reimagined: How BruteForceAI Uses LLMs to Crack Complex Login Forms
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 03:11:39 +0000
════════════════════════
⌗ Tags: #Open Source Tool #AI_Powered Attacks #brute_force #BruteForceAI #Cyber Security Tools #Groq #LLM #Ollama #password spraying #Penetration Testing #red teaming
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 03:11:39 +0000
════════════════════════
⌗ Tags: #Open Source Tool #AI_Powered Attacks #brute_force #BruteForceAI #Cyber Security Tools #Groq #LLM #Ollama #password spraying #Penetration Testing #red teaming
Penetration Testing Tools
Brute Force Reimagined: How BruteForceAI Uses LLMs to Crack Complex Login Forms
BruteForceAI revolutionizes pen-testing by using LLMs for intelligent form analysis, human-like timing, and multi-threaded credential attacks.
⤷ Title: The Flash Flip: Google’s New Gemini 3 Flash Topples GPT-5.2 in Key AI Benchmarks
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 03:00:35 +0000
════════════════════════
⌗ Tags: #Google #AI Search #Antigravity AI #Google Gemini 3 Flash #GPT_5.2 #Humanity's Last Exam #MMMU_Pro #Multimodal AI #Nano Banana Pro #SWE_bench #Vertex AI
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 03:00:35 +0000
════════════════════════
⌗ Tags: #Google #AI Search #Antigravity AI #Google Gemini 3 Flash #GPT_5.2 #Humanity's Last Exam #MMMU_Pro #Multimodal AI #Nano Banana Pro #SWE_bench #Vertex AI
Penetration Testing Tools
The Flash Flip: Google’s New Gemini 3 Flash Topples GPT-5.2 in Key AI Benchmarks
The struggle for leadership in AI is increasingly shifting from research labs to mass-market products. Just one day
⤷ Title: Breaking the Spell: Android’s New 30-Second Safety Brake Stops Screen-Sharing Scammers
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 02:59:24 +0000
════════════════════════
⌗ Tags: #Android #Google #Android 11 #Android Security #Cash App #Financial Fraud #Google AI #JPMorganChase #Mobile Safety #Screen Sharing Scam #UK Pilot #US Fintech
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 02:59:24 +0000
════════════════════════
⌗ Tags: #Android #Google #Android 11 #Android Security #Cash App #Financial Fraud #Google AI #JPMorganChase #Mobile Safety #Screen Sharing Scam #UK Pilot #US Fintech
Penetration Testing Tools
Breaking the Spell: Android’s New 30-Second Safety Brake Stops Screen-Sharing Scammers
Android is expanding its pilot program to combat phone scams in which fraudsters persuade victims to enable screen
⤷ Title: Unpatched & Rooted: China-Linked Hackers Exploit Cisco Zero-Day to Hijack Secure Email Gateways
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 02:56:50 +0000
════════════════════════
⌗ Tags: #Vulnerability #AquaShell #AsyncOS #China #CISA KEV #Cisco #Cisco Secure Email #CVE_2025_20393 #Root Access #Spam Quarantine #Talos #UAT_9686 #zero_day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 02:56:50 +0000
════════════════════════
⌗ Tags: #Vulnerability #AquaShell #AsyncOS #China #CISA KEV #Cisco #Cisco Secure Email #CVE_2025_20393 #Root Access #Spam Quarantine #Talos #UAT_9686 #zero_day
Penetration Testing Tools
Unpatched & Rooted: China-Linked Hackers Exploit Cisco Zero-Day to Hijack Secure Email Gateways
Cisco has warned that threat actors are already exploiting a critical vulnerability in its widely deployed products, one
⤷ Title: The SSO Trap: How a “Default” Feature is Granting Attackers Admin Access to FortiGate Devices
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 02:55:38 +0000
════════════════════════
⌗ Tags: #Vulnerability #Arctic Wolf #authentication bypass #CVE_2025_59718 #CVE_2025_59719 #Cyberattack 2025 #FortiCloud #Fortinet #FortiOS #network security #SAML #SSO
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 02:55:38 +0000
════════════════════════
⌗ Tags: #Vulnerability #Arctic Wolf #authentication bypass #CVE_2025_59718 #CVE_2025_59719 #Cyberattack 2025 #FortiCloud #Fortinet #FortiOS #network security #SAML #SSO
Penetration Testing Tools
The SSO Trap: How a "Default" Feature is Granting Attackers Admin Access to FortiGate Devices
Arctic Wolf reports the first confirmed intrusions into customer networks in which attackers logged into FortiGate devices via
⤷ Title: Retaliation Strike: 22-Year-Old Arrested After BreachForums Hacks French Ministry of Interior
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 02:52:08 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Arrest #BreachForums #cyberattack #Cybersecurity 2025 #data breach #French Ministry of the Interior #Hacktivism #Laurent Nuñez #Paris Prosecutor #Police Archives
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 02:52:08 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Arrest #BreachForums #cyberattack #Cybersecurity 2025 #data breach #French Ministry of the Interior #Hacktivism #Laurent Nuñez #Paris Prosecutor #Police Archives
Penetration Testing Tools
Retaliation Strike: 22-Year-Old Arrested After BreachForums Hacks French Ministry of Interior
French law enforcement authorities have arrested a 22-year-old man suspected of orchestrating a recent cyberattack against the country’s
⤷ Title: The Play Store Predator: New Cellik Spyware Can Trojanize Any App With One Click
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 02:49:04 +0000
════════════════════════
⌗ Tags: #Malware #Android RAT #App Injection #Cellik #Google Play Store #HyperRat #iVerify #Malware_as_a_Service #mobile security #phishing #Spyware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 02:49:04 +0000
════════════════════════
⌗ Tags: #Malware #Android RAT #App Injection #Cellik #Google Play Store #HyperRat #iVerify #Malware_as_a_Service #mobile security #phishing #Spyware
Penetration Testing Tools
The Play Store Predator: New Cellik Spyware Can Trojanize Any App With One Click
Researchers at iVerify have identified a new Android remote access trojan dubbed Cellik, which blends the capabilities of
⤷ Title: Taming the Wolf: How the 1.8 Million-Strong Kimwolf Botnet Overtook Google Traffic
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 02:47:16 +0000
════════════════════════
⌗ Tags: #Malware #AISURU #Android TV #BOTNET #DDoS #ENS #EtherHiding #IoT Security #Kimwolf #Proxy_as_a_Service #QiAnXin XLab #Smart Home Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 02:47:16 +0000
════════════════════════
⌗ Tags: #Malware #AISURU #Android TV #BOTNET #DDoS #ENS #EtherHiding #IoT Security #Kimwolf #Proxy_as_a_Service #QiAnXin XLab #Smart Home Security
Penetration Testing Tools
Taming the Wolf: How the 1.8 Million-Strong Kimwolf Botnet Overtook Google Traffic
The Kimwolf botnet has drawn intense scrutiny after researchers at QiAnXin XLab reported that it had infected more
⤷ Title: Beyond the Shell: Critical React2Shell Exploit Hits Japan to Deploy Stealthy ZnDoor RAT
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 02:45:54 +0000
════════════════════════
⌗ Tags: #Malware #anti_forensics #CVE_2025_55182 #Japan Cyber Attacks #malware analysis #Next.js #NTT Security #RCE #React2Shell #threat intelligence #ZnDoor
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 02:45:54 +0000
════════════════════════
⌗ Tags: #Malware #anti_forensics #CVE_2025_55182 #Japan Cyber Attacks #malware analysis #Next.js #NTT Security #RCE #React2Shell #threat intelligence #ZnDoor
Penetration Testing Tools
Beyond the Shell: Critical React2Shell Exploit Hits Japan to Deploy Stealthy ZnDoor RAT
Since early December 2025, SOC teams in Japan have been observing a wave of attacks exploiting React2Shell (CVE-2025-55182)—a
⤷ Title: Rust’s First Breach: CVE-2025-68260 Marks the First Rust Vulnerability in the Linux Kernel
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 03:08:18 +0000
════════════════════════
⌗ Tags: #Linux #Vulnerability Report #Android Binder #CVE_2025_68260 #Greg Kroah_Hartman #Kernel Crash #Linux Kernel #Mainline Kernel #memory safety #race condition #Rust #Rust_for_Linux
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 03:08:18 +0000
════════════════════════
⌗ Tags: #Linux #Vulnerability Report #Android Binder #CVE_2025_68260 #Greg Kroah_Hartman #Kernel Crash #Linux Kernel #Mainline Kernel #memory safety #race condition #Rust #Rust_for_Linux
Daily CyberSecurity
Rust’s First Breach: CVE-2025-68260 Marks the First Rust Vulnerability in the Linux Kernel
Linux logs its first Rust CVE (CVE-2025-68260): a race condition in the Android Binder driver causing kernel crashes. Fixed in 6.18.1 and 6.19-rc1.
⤷ Title: Visualizations Weaponized: New Kibana Flaw Allows XSS Attacks via Vega Charts
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 02:30:39 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cross_Site Scripting #CVE_2025_68385 #cybersecurity #data visualization #Elastic Stack #Kibana #Patch Update #Session Hijacking #Vega Visualization #XSS
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 02:30:39 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cross_Site Scripting #CVE_2025_68385 #cybersecurity #data visualization #Elastic Stack #Kibana #Patch Update #Session Hijacking #Vega Visualization #XSS
Daily CyberSecurity
Visualizations Weaponized: New Kibana Flaw Allows XSS Attacks via Vega Charts
Elastic patches a High-severity XSS flaw (CVE-2025-68385) in Kibana. Attackers can weaponize Vega visualizations to hijack sessions. Update now!
⤷ Title: Log4j’s Security Blind Spot: New TLS Flaw Lets Attackers Intercept Sensitive Logs Despite Encryption
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 01:50:57 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #apache #CVE_2025_68161 #Encryption Bypass #Hostname Verification #Java security #Log4j #mitm attack #network_security #Socket Appender #tls
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 01:50:57 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #apache #CVE_2025_68161 #Encryption Bypass #Hostname Verification #Java security #Log4j #mitm attack #network_security #Socket Appender #tls
Daily CyberSecurity
Log4j’s Security Blind Spot: New TLS Flaw Lets Attackers Intercept Sensitive Logs Despite Encryption
A new Log4j flaw (CVE-2025-68161) breaks TLS hostname verification, allowing Man-in-the-Middle attacks on log data. Upgrade to v2.25.3 now.
⤷ Title: WatchGuard Under Siege: Critical CVSS 9.3 Zero-Day Exploited in the Wild to Hijack Corporate Firewalls
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 01:38:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_14733 #Firebox #Fireware OS #IKEv2 #memory corruption #network_security #Remote Code Execution #VPN security #WatchGuard #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 01:38:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_14733 #Firebox #Fireware OS #IKEv2 #memory corruption #network_security #Remote Code Execution #VPN security #WatchGuard #zero_day
Daily CyberSecurity
WatchGuard Under Siege: Critical CVSS 9.3 Zero-Day Exploited in the Wild to Hijack Corporate Firewalls
WatchGuard warns of an active CVSS 9.3 zero-day (CVE-2025-14733). Attackers are exploiting IKEv2 VPNs for root RCE. Patch and rotate secrets now!
⤷ Title: Kubernetes Alert: Headlamp Flaw (CVE-2025-14269) Lets Unauthenticated Users Hijack Helm Clusters
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 00:50:55 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cluster Management #Credential Caching #CVE_2025_14269 #DevSecOps #Headlamp #Helm #K8s Security #Kubernetes #Patch Update #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 00:50:55 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cluster Management #Credential Caching #CVE_2025_14269 #DevSecOps #Headlamp #Helm #K8s Security #Kubernetes #Patch Update #Vulnerability
Daily CyberSecurity
Kubernetes Alert: Headlamp Flaw (CVE-2025-14269) Lets Unauthenticated Users Hijack Helm Clusters
A Headlamp flaw allows unauthenticated users to reuse cached credentials to hijack Kubernetes Helm operations. Update to v0.39.0!
⤷ Title: FreeBSD Network Alert: Malicious IPv6 Packets Can Trigger Remote Code Execution via resolvconf (CVE-2025-14558)
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 00:42:10 +0000
════════════════════════
⌗ Tags: #Linux #Vulnerability Report #CVE_2025_14558 #freebsd #IPv6 #Networking Stack #OS Security #rce #resolvconf #Router Advertisement #rtsold #Shell Injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 19 Dec 2025 00:42:10 +0000
════════════════════════
⌗ Tags: #Linux #Vulnerability Report #CVE_2025_14558 #freebsd #IPv6 #Networking Stack #OS Security #rce #resolvconf #Router Advertisement #rtsold #Shell Injection
Daily CyberSecurity
FreeBSD Network Alert: Malicious IPv6 Packets Can Trigger Remote Code Execution via resolvconf (CVE-2025-14558)
A High-severity flaw (CVE-2025-14558) in FreeBSD allows Remote Code Execution via malicious IPv6 router advertisements and unquoted shell inputs.