⤷ Title: AgentHopper Alert: How a Single Web Sentence Can Hijack Your AI Assistant
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 04:26:36 +0000
════════════════════════
⌗ Tags: #Open Source Tool #38C3 #AgentHopper #AI Agents #ASCII Smuggling #Claude Code #GitHub Copilot #Infosec 2025 #Johann Rehberger #Prompt Injection #ZombAI
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 04:26:36 +0000
════════════════════════
⌗ Tags: #Open Source Tool #38C3 #AgentHopper #AI Agents #ASCII Smuggling #Claude Code #GitHub Copilot #Infosec 2025 #Johann Rehberger #Prompt Injection #ZombAI
Information Security News
AgentHopper Alert: How a Single Web Sentence Can Hijack Your AI Assistant
At the recent Chaos Communication Congress in Germany, a new warning was issued about the risks associated with AI agents. According to information security specialist Johann Rehberger, a computer…
⤷ Title: The Kernel Ghost: Mustang Panda’s New Rootkit Blinds Antivirus to Deploy ToneShell
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 04:24:21 +0000
════════════════════════
⌗ Tags: #Malware #Cyber Espionage #HoneyMyte #kaspersky #Malware 2025 #Microsoft Defender #Mustang Panda #Myanmar #ProjectConfiguration.sys #rootkit #Thailand #Toneshell
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 04:24:21 +0000
════════════════════════
⌗ Tags: #Malware #Cyber Espionage #HoneyMyte #kaspersky #Malware 2025 #Microsoft Defender #Mustang Panda #Myanmar #ProjectConfiguration.sys #rootkit #Thailand #Toneshell
Information Security News
The Kernel Ghost: Mustang Panda’s New Rootkit Blinds Antivirus to Deploy ToneShell
Cyber-espionage attributed to the Chinese group HoneyMyte—also known as Mustang Panda and Bronze President—has reached a new level. Researchers have observed the deployment of an advanced version …
⤷ Title: The Mole in the Machine: New Arrests in Coinbase’s $400M Insider Data Scandal
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 04:22:24 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Brian Armstrong #Coinbase #Crypto Scam #Cybersecurity 2025 #data breach #Hyderabad Police #India #Insider Threat #Ronald Spector #Social Engineering #TaskUs
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 04:22:24 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Brian Armstrong #Coinbase #Crypto Scam #Cybersecurity 2025 #data breach #Hyderabad Police #India #Insider Threat #Ronald Spector #Social Engineering #TaskUs
Information Security News
The Mole in the Machine: New Arrests in Coinbase’s $400M Insider Data Scandal
Coinbase has reported the first arrests in its investigation into the sale of customer data: police in Hyderabad, India, have detained a former exchange support employee suspected of accepting bri…
⤷ Title: How a Hidden Backdoor Drained $7M from Trust Wallet
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 04:21:14 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Backdoor #Bitcoin #browser extension #Crypto Theft #CVE_2025_14847 #Ethereum #PostHog #SlowMist #Solana #supply chain attack #Trust Wallet #ZachXBT
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 04:21:14 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Backdoor #Bitcoin #browser extension #Crypto Theft #CVE_2025_14847 #Ethereum #PostHog #SlowMist #Solana #supply chain attack #Trust Wallet #ZachXBT
Information Security News
How a Hidden Backdoor Drained $7M from Trust Wallet
A dangerous vulnerability has been discovered in the Trust Wallet browser extension, potentially allowing attackers to steal users’ cryptocurrency. The issue affected version 2.68, and the wallet’…
⤷ Title: The Femtocell Fallout: How a Single “Master Key” Exposed Millions of KT Users
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 04:13:16 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Base Station #BPFDoor #Cyber Espionage #data breach #Femtocell #Infosec 2025 #Korea Telecom #KT #Micropayment Fraud #South Korea #Yongdae Kim
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 04:13:16 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Base Station #BPFDoor #Cyber Espionage #data breach #Femtocell #Infosec 2025 #Korea Telecom #KT #Micropayment Fraud #South Korea #Yongdae Kim
Information Security News
The Femtocell Fallout: How a Single “Master Key” Exposed Millions of KT Users
South Korea’s Ministry of Science and ICT has stated that Korea Telecom (KT) may have exposed its subscribers to risk for years due to poorly secured home mini base stations. According to the mini…
⤷ Title: The Extradition of a Memory Thief: How a Fake Windows Tool Stole $1.2M in Crypto
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 04:11:19 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cryptocurrency Theft #Cybercrime 2025 #extradition #Infosec #Interpol #KMSAuto #malware #Memory Hijack #South Korea #Wallet Hijacking
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 04:11:19 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cryptocurrency Theft #Cybercrime 2025 #extradition #Infosec #Interpol #KMSAuto #malware #Memory Hijack #South Korea #Wallet Hijacking
Information Security News
The Extradition of a Memory Thief: How a Fake Windows Tool Stole $1.2M in Crypto
A foreign hacker who stole cryptocurrency worth more than 1.7 billion won (approximately $1.18 million) using malware that covertly replaced wallet addresses has been extradited to South Korea. Ac…
⤷ Title: MongoBleed Emergency: 87,000 Databases Leaking Secrets as Hackers Bypass Login
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 04:08:46 +0000
════════════════════════
⌗ Tags: #Vulnerability #CISA #CVE_2025_14847 #cyber attack #data breach #Heap Overflow #Heartbleed #Infosec 2025 #MongoBleed #MongoDB #NoSQL Security #Zlib
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 04:08:46 +0000
════════════════════════
⌗ Tags: #Vulnerability #CISA #CVE_2025_14847 #cyber attack #data breach #Heap Overflow #Heartbleed #Infosec 2025 #MongoBleed #MongoDB #NoSQL Security #Zlib
Information Security News
MongoBleed Emergency: 87,000 Databases Leaking Secrets as Hackers Bypass Login
U.S. and Australian cybersecurity authorities have confirmed that hackers are already exploiting a newly disclosed vulnerability in MongoDB-based data storage systems. The issue surfaced over the …
⤷ Title: The Audio Backdoor: How Your Premium Headphones Could Hack Your Phone
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 04:06:51 +0000
════════════════════════
⌗ Tags: #Vulnerability #Airoha #Bluetooth Vulnerability #Bose #CVE_2025_20700 #CVE_2025_20701 #CVE_2025_20702 #Eavesdropping #JBL #Marshall #RACE Protocol #Smartphone Security #Sony
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 04:06:51 +0000
════════════════════════
⌗ Tags: #Vulnerability #Airoha #Bluetooth Vulnerability #Bose #CVE_2025_20700 #CVE_2025_20701 #CVE_2025_20702 #Eavesdropping #JBL #Marshall #RACE Protocol #Smartphone Security #Sony
Information Security News
The Audio Backdoor: How Your Premium Headphones Could Hack Your Phone
Vulnerabilities discovered in wireless headphones powered by Airoha chips have opened the door to remote compromise of the smartphones they are connected to. The flaws identified by security resea…
⤷ Title: Web-Enshittification: Why the Creator of JavaScript Says Windows 11 is Broken
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 04:02:58 +0000
════════════════════════
⌗ Tags: #Windows #bloatware #Brendan Eich #Discord #electron #JavaScript #Microsoft #performance #RAM Usage #Software Engineering #WebView2 #WhatsApp #Windows 11
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 04:02:58 +0000
════════════════════════
⌗ Tags: #Windows #bloatware #Brendan Eich #Discord #electron #JavaScript #Microsoft #performance #RAM Usage #Software Engineering #WebView2 #WhatsApp #Windows 11
Information Security News
Web-Enshittification: Why the Creator of JavaScript Says Windows 11 is Broken
Windows 11 continues to accrete web components virtually everywhere—from Discord and Teams to WhatsApp, Windows Search, the Start menu, and even the new agenda view in the notification center. The…
⤷ Title: The $41 Billion Golden Ticket: SoftBank Seals Historic OpenAI Stake
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 07:46:06 +0000
════════════════════════
⌗ Tags: #Technology #AGI #AI Infrastructure #DigitalBridge #Masayoshi Son #Microsoft #nvidia #OpenAI #SoftBank #Stargate Project #T_Mobile #Venture Capital
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 07:46:06 +0000
════════════════════════
⌗ Tags: #Technology #AGI #AI Infrastructure #DigitalBridge #Masayoshi Son #Microsoft #nvidia #OpenAI #SoftBank #Stargate Project #T_Mobile #Venture Capital
Daily CyberSecurity
The $41 Billion Golden Ticket: SoftBank Seals Historic OpenAI Stake
Japan’s SoftBank Group has officially announced that it completed the payment of an additional $22.5 billion investment into OpenAI last Friday (12/26). This marks the fulfillment of a pledge made…
⤷ Title: The Christmas Heist: How Shai-Hulud Hijacked Trust Wallet for an $8.5M Score
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 07:36:56 +0000
════════════════════════
⌗ Tags: #Cybercriminals #backdoor #Binance #Chrome Web Store #Crypto theft #Mnemonic Seed #NPM Attack #Shai_Hulud #Supply Chain #Trust Wallet #Version 2.68 #ZachXBT
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 07:36:56 +0000
════════════════════════
⌗ Tags: #Cybercriminals #backdoor #Binance #Chrome Web Store #Crypto theft #Mnemonic Seed #NPM Attack #Shai_Hulud #Supply Chain #Trust Wallet #Version 2.68 #ZachXBT
Daily CyberSecurity
The Christmas Heist: How Shai-Hulud Hijacked Trust Wallet for an $8.5M Score
Earlier, Binance-owned non-custodial crypto wallet Trust Wallet fell victim to a hacking incident in which attackers, through as-yet-unknown means, directly replaced the Trust Wallet listing in th…
⤷ Title: CVE-2025-47411: Critical Apache StreamPipes Flaw Allows Standard Users to Seize Admin Control
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 03:06:14 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache StreamPipes #Authentication Bypass #CVE_2025_47411 #Cyber Security #Data Tampering #IIoT Security #Industrial IoT #JWT Manipulation #Open Source Security #privilege escalation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 03:06:14 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache StreamPipes #Authentication Bypass #CVE_2025_47411 #Cyber Security #Data Tampering #IIoT Security #Industrial IoT #JWT Manipulation #Open Source Security #privilege escalation
Daily CyberSecurity
CVE-2025-47411: Critical Apache StreamPipes Flaw Allows Standard Users to Seize Admin Control
The Apache Software Foundation has released a critical fix for StreamPipes, its self-service Industrial IoT toolbox designed to let non-technical users analyze complex data streams. A newly disclo…
⤷ Title: “RondoDoX” Strikes Back: Exposed Logs Reveal Massive 9-Month Campaign Targeting Next.js and IoT
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 02:33:19 +0000
════════════════════════
⌗ Tags: #Malware #botnet #CloudSEK #CVE_2025_55182 #IoT security #Next.js #Prototype Pollution #rce #React2Shell #RondoDox #Server Actions #Web Framework Security #XMRig
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 02:33:19 +0000
════════════════════════
⌗ Tags: #Malware #botnet #CloudSEK #CVE_2025_55182 #IoT security #Next.js #Prototype Pollution #rce #React2Shell #RondoDox #Server Actions #Web Framework Security #XMRig
Daily CyberSecurity
“RondoDoX” Strikes Back: Exposed Logs Reveal Massive 9-Month Campaign Targeting Next.js and IoT
The RondoDoX botnet has resurfaced with a potent new arsenal, shifting its sights from simple routers to enterprise-grade web frameworks. A new intelligence report from CloudSEK details a sprawlin…
⤷ Title: Cybersecurity Pros Admit to Moonlighting as BlackCat Ransomware Affiliates
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 02:19:42 +0000
════════════════════════
⌗ Tags: #Cybercriminals #ALPHV #Bitcoin Extortion #BlackCat #Cybercrime #Department of Justice #DigitalMint #Insider Threat #Kevin Martin #ransomware #Ryan Goldberg #Sygnia
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 02:19:42 +0000
════════════════════════
⌗ Tags: #Cybercriminals #ALPHV #Bitcoin Extortion #BlackCat #Cybercrime #Department of Justice #DigitalMint #Insider Threat #Kevin Martin #ransomware #Ryan Goldberg #Sygnia
Daily CyberSecurity
Cybersecurity Pros Admit to Moonlighting as BlackCat Ransomware Affiliates
Two cybersecurity professionals have admitted to moonlighting as ransomware affiliates, utilizing the very skills designed to protect networks to instead lock them down and extort millions. Ryan G…
⤷ Title: The $2 Billion Bet: Why Meta Just Bought the World’s Fastest-Growing AI Startup
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 02:10:18 +0000
════════════════════════
⌗ Tags: #Technology #Acquisitions 2025 #AI Agents #Alexandr Wang #Butterfly Effect Technology #Instagram #Manus #Mark Zuckerberg #Meta #Silicon Valley #WhatsApp
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 02:10:18 +0000
════════════════════════
⌗ Tags: #Technology #Acquisitions 2025 #AI Agents #Alexandr Wang #Butterfly Effect Technology #Instagram #Manus #Mark Zuckerberg #Meta #Silicon Valley #WhatsApp
Daily CyberSecurity
The $2 Billion Bet: Why Meta Just Bought the World’s Fastest-Growing AI Startup
With 2025 drawing to a close, Meta CEO Mark Zuckerberg’s AI shopping cart is clearly not yet full. Once again, he has demonstrated his formidable “checkbook power” by acquiring Manus, a red-hot AI…
⤷ Title: Bixby’s Revenge: Samsung Pairs with Perplexity AI to Outsmart Google Gemini
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 02:04:17 +0000
════════════════════════
⌗ Tags: #Android #Technology #AI Assistant #Apple Intelligence #Bixby #CES 2026 #Galaxy S26 #Google Gemini #machine_learning #One UI 8.5 #Perplexity.ai #samsung #Smart Home
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 02:04:17 +0000
════════════════════════
⌗ Tags: #Android #Technology #AI Assistant #Apple Intelligence #Bixby #CES 2026 #Galaxy S26 #Google Gemini #machine_learning #One UI 8.5 #Perplexity.ai #samsung #Smart Home
Daily CyberSecurity
Bixby’s Revenge: Samsung Pairs with Perplexity AI to Outsmart Google Gemini
At the beginning of this year, Samsung made a bold move in its One UI 7 update by introducing Google Gemini and replacing its own Bixby as the default assistant, briefly making Bixby appear relega…
⤷ Title: The Insider Crisis: How Bribed Outsourced Staff Sold Out Ubisoft’s Crown Jewels
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 01:59:20 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cyber_espionage #Data Breach #InfoSec 2025 #Insider Threat #MongoBleed #Outsourcing #R6 Credits #Rainbow Six Siege #Ubisoft #VX_Underground
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 01:59:20 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cyber_espionage #Data Breach #InfoSec 2025 #Insider Threat #MongoBleed #Outsourcing #R6 Credits #Rainbow Six Siege #Ubisoft #VX_Underground
Daily CyberSecurity
The Insider Crisis: How Bribed Outsourced Staff Sold Out Ubisoft’s Crown Jewels
The security research group vx-underground, active on social media platforms, recently released a series of disclosures concerning attacks against Ubisoft and its Rainbow Six franchise. Because th…
⤷ Title: The Mole in the Machine: New Arrests in Coinbase’s $400M Insider Data Scandal
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 01:54:30 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Brian Armstrong #coinbase #crypto scam #Cybersecurity 2025 #Data Breach #Hyderabad Police #India #Insider Threat #social engineering #TaskUs
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 01:54:30 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Brian Armstrong #coinbase #crypto scam #Cybersecurity 2025 #Data Breach #Hyderabad Police #India #Insider Threat #social engineering #TaskUs
Daily CyberSecurity
The Mole in the Machine: New Arrests in Coinbase’s $400M Insider Data Scandal
The U.S.-listed cryptocurrency exchange Coinbase recently announced that Indian police have once again arrested a former employee suspected of accepting bribes in exchange for handing over custome…
⤷ Title: Como participar de um programa de hacker
════════════════════════
𐀪 Author: Bughunt
════════════════════════
ⴵ Time: Tue, 30 Dec 2025 19:51:00 GMT
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Bughunt
════════════════════════
ⴵ Time: Tue, 30 Dec 2025 19:51:00 GMT
════════════════════════
⌗ Tags: No_Tags
BugHunt
Como participar de um programa de hacker
Entenda como participar de um programa de hacker de forma legal, conheça os principais modelos e veja como atuar em programas de bug bounty na BugHunt.
⤷ Title: From “Nothing Interesting” to Critical Impact: The Power of Re-Reading Responses ⚠️
════════════════════════
𐀪 Author: Iski
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 07:54:49 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #infosec #bug_bounty #cybersecurity #hacking
════════════════════════
𐀪 Author: Iski
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 07:54:49 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #infosec #bug_bounty #cybersecurity #hacking
Medium
From “Nothing Interesting” to Critical Impact: The Power of Re-Reading Responses 🔍⚠️
Hey there!😁
⤷ Title: How I Found a Broken Access Control Flaw: Bypassing Authentication with Extensionless Paths.
════════════════════════
𐀪 Author: DOD cyber solutions
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 07:38:16 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty #ethical_hacking #cybersecurity #technology
════════════════════════
𐀪 Author: DOD cyber solutions
════════════════════════
ⴵ Time: Wed, 31 Dec 2025 07:38:16 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty #ethical_hacking #cybersecurity #technology
Medium
How I Found a Broken Access Control Flaw: Bypassing Authentication with Extensionless Paths.
Hi everyone, I’m back with another writeup! 🎉