⤷ Title: Guloader Malware Rides Wave of Fake Performance Reports
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 00:27:58 +0000
════════════════════════
⌗ Tags: #Malware #AhnLab ASEC #cybersecurity #GuLoader #Human Resources Scam #Malware Analysis #phishing #Remcos RAT #social engineering
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 00:27:58 +0000
════════════════════════
⌗ Tags: #Malware #AhnLab ASEC #cybersecurity #GuLoader #Human Resources Scam #Malware Analysis #phishing #Remcos RAT #social engineering
Daily CyberSecurity
Guloader Malware Rides Wave of Fake Performance Reports
Cybercriminals are weaponizing workplace anxiety in a new sophisticated phishing campaign. The AhnLab Security Intelligence Center (ASEC) has issued a warning regarding a malicious operation that …
⤷ Title: The 9.6 Crack in Java’s Foundation: Critical Undertow Flaw CVE-2025-12543
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 00:22:17 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cache Poisoning #Critical Vulnerability #CVE_2025_12543 #host header injection #Java security #JBoss EAP #Undertow #WildFly
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 00:22:17 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cache Poisoning #Critical Vulnerability #CVE_2025_12543 #host header injection #Java security #JBoss EAP #Undertow #WildFly
Daily CyberSecurity
The 9.6 Crack in Java’s Foundation: Critical Undertow Flaw CVE-2025-12543
A foundational crack has been discovered in the bedrock of the Java web ecosystem. Undertow, the high-performance web server that powers enterprise heavyweights like WildFly and JBoss EAP, has bee…
⤷ Title: NodeCordRAT: The Trojan Hiding in NPM to Steal Crypto via Discord
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 00:16:11 +0000
════════════════════════
⌗ Tags: #Malware #Cryptocurrency Theft #DevOps Security #Discord C2 #Malware Analysis #NodeCordRAT #npm #supply chain attack #Zscaler ThreatLabz
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 00:16:11 +0000
════════════════════════
⌗ Tags: #Malware #Cryptocurrency Theft #DevOps Security #Discord C2 #Malware Analysis #NodeCordRAT #npm #supply chain attack #Zscaler ThreatLabz
Daily CyberSecurity
NodeCordRAT: The Trojan Hiding in NPM to Steal Crypto via Discord
The open-source ecosystem has once again been weaponized, this time targeting developers working with cryptocurrency libraries. In a new report released this week, Zscaler ThreatLabz revealed the …
⤷ Title: Wide Open Firewall: Critical Foomuuri Flaws Let Local Users Take Control
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 00:11:20 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_67603 #CVE_2025_67858 #firewall #Foomuuri #Linux Security #nftables #privilege escalation #SUSE
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 00:11:20 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_67603 #CVE_2025_67858 #firewall #Foomuuri #Linux Security #nftables #privilege escalation #SUSE
Daily CyberSecurity
Wide Open Firewall: Critical Foomuuri Flaws Let Local Users Take Control
The SUSE Security Team has released a detailed report exposing multiple vulnerabilities in Foomuuri, a popular nftables-based firewall manager for Linux, that left the firewall’s management …
⤷ Title: BlueDelta Espionage: Russian Hackers Abuse Free Apps to Target Energy Sector
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 00:08:34 +0000
════════════════════════
⌗ Tags: #Cyber Security #BlueDelta #Credential Harvesting #cyber_espionage #Energy Sector Security #GRU #phishing #Recorded Future #threat intelligence #Webhook.site
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 00:08:34 +0000
════════════════════════
⌗ Tags: #Cyber Security #BlueDelta #Credential Harvesting #cyber_espionage #Energy Sector Security #GRU #phishing #Recorded Future #threat intelligence #Webhook.site
Daily CyberSecurity
BlueDelta Espionage: Russian Hackers Abuse Free Apps to Target Energy Sector
A notorious Russian state-sponsored hacking group has evolved its digital espionage toolkit, launching a sophisticated wave of credential-harvesting attacks targeting energy researchers and govern…
⤷ Title: LockBit 5.0 Sustains Global Ransomware Dominance
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 00:01:30 +0000
════════════════════════
⌗ Tags: #Malware #AhnLab #Cybercrime #Data Leak Site #information_security #LockBit #Malware Analysis #RaaS #ransomware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 00:01:30 +0000
════════════════════════
⌗ Tags: #Malware #AhnLab #Cybercrime #Data Leak Site #information_security #LockBit #Malware Analysis #RaaS #ransomware
Daily CyberSecurity
LockBit 5.0 Sustains Global Ransomware Dominance
The hydra of the cybercrime world has grown another head. Since its emergence in late 2019, the LockBit gang has arguably become the most prolific ransomware operator in history. Now, a new analys…
⤷ Title: Guía de Commix: Automatización de OS Command Injection en Bug Bounty
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 00:02:47 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty #penetration_testing #cybersecurity #technology
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 00:02:47 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty #penetration_testing #cybersecurity #technology
Medium
Guía de Commix: Automatización de OS Command Injection en Bug Bounty
Domina Commix para detectar y explotar vulnerabilidades de OS Command Injection de forma ética en programas de Bug Bounty.
⤷ Title: The Phishing Pond TryHackMe WriteUP
════════════════════════
𐀪 Author: cat0x01
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 00:54:56 GMT
════════════════════════
⌗ Tags: #phishing #pentesting #ctf #tryhackme #cybersecurity
════════════════════════
𐀪 Author: cat0x01
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 00:54:56 GMT
════════════════════════
⌗ Tags: #phishing #pentesting #ctf #tryhackme #cybersecurity
Medium
The Phishing Pond TryHackMe WriteUP
Phishing attacks are one of the most common and dangerous techniques used by attackers today. Instead of hacking systems directly…
⤷ Title: The $20B Handover: Apple Card Dumps Goldman Sachs for JPMorgan Chase
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 03:46:08 +0000
════════════════════════
⌗ Tags: #Technology #Apple Card #Apple Savings #Apple Wallet #Banking News 2026 #Credit Card #Daily Cash #FinTech #Goldman Sachs #JPMorgan Chase #Mastercard
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 03:46:08 +0000
════════════════════════
⌗ Tags: #Technology #Apple Card #Apple Savings #Apple Wallet #Banking News 2026 #Credit Card #Daily Cash #FinTech #Goldman Sachs #JPMorgan Chase #Mastercard
Daily CyberSecurity
The $20B Handover: Apple Card Dumps Goldman Sachs for JPMorgan Chase
Apple has recently announced a definitive strategic alliance with JPMorgan Chase, the premier financial institution in the United States, which shall assume the mantle as the new issuing bank for …
⤷ Title: Public Exploit Released: Critical Trend Micro Flaw Grants SYSTEM Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 02:19:18 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_69258 #DLL hijacking #Enterprise Security #Public Exploit #Remote Code Execution (RCE) #SYSTEM privileges #Tenable #Trend Micro Apex Central
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 02:19:18 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_69258 #DLL hijacking #Enterprise Security #Public Exploit #Remote Code Execution (RCE) #SYSTEM privileges #Tenable #Trend Micro Apex Central
Daily CyberSecurity
Public Exploit Released: Critical Trend Micro Flaw Grants SYSTEM Access
Trend Micro has issued a critical security alert for users of Apex Central (on-premise), patching a dangerous remote code execution (RCE) vulnerability that could allow attackers to hijack systems…
⤷ Title: Bluetooth Broken? Apache NimBLE Flaws Enable Spoofing & Eavesdropping
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 02:04:07 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache NimBLE #Bluetooth security #CVE_2025_52435 #CVE_2025_62235 #embedded systems #IoT security #Nordic Semiconductor #Spoofing Attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 02:04:07 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache NimBLE #Bluetooth security #CVE_2025_52435 #CVE_2025_62235 #embedded systems #IoT security #Nordic Semiconductor #Spoofing Attack
Daily CyberSecurity
Bluetooth Broken? Apache NimBLE Flaws Enable Spoofing & Eavesdropping
The Apache Software Foundation has issued urgent patches for Apache NimBLE, the open-source Bluetooth 5.4 stack used to replace proprietary drivers on Nordic chipsets. A cluster of four security v…
⤷ Title: Unleashing the Power of DirBuster: Advanced Recon Techniques for Professional Pentesters
════════════════════════
𐀪 Author: Cybeague Technologies
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 02:50:16 GMT
════════════════════════
⌗ Tags: #information_security #security #hacking #reconnaissance #cybersecurity
════════════════════════
𐀪 Author: Cybeague Technologies
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 02:50:16 GMT
════════════════════════
⌗ Tags: #information_security #security #hacking #reconnaissance #cybersecurity
Medium
Unleashing the Power of DirBuster: Advanced Recon Techniques for Professional Pentesters
Go beyond basic scans — master DirBuster for real-world reconnaissance and red teaming.
⤷ Title: Getting Started with DirBuster: The Fast Lane to Hidden Directories in Cybersecurity
════════════════════════
𐀪 Author: Cybeague Technologies
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 02:49:12 GMT
════════════════════════
⌗ Tags: #reconnaissance #security #information_security #cybersecurity #hacking
════════════════════════
𐀪 Author: Cybeague Technologies
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 02:49:12 GMT
════════════════════════
⌗ Tags: #reconnaissance #security #information_security #cybersecurity #hacking
Medium
Getting Started with DirBuster: The Fast Lane to Hidden Directories in Cybersecurity
Discover how ethical hackers uncover secret folders and files using DirBuster.
⤷ Title: The End of Offline Era: Microsoft Kills Phone Activation After 24 Years
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 04:42:26 +0000
════════════════════════
⌗ Tags: #Windows #Air_Gapped Systems #aka.ms/aoh #MAK Keys #Microsoft #Office 2024 #Offline Activation #Product Activation #Tech News 2026 #Windows 10 #Windows 11
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 04:42:26 +0000
════════════════════════
⌗ Tags: #Windows #Air_Gapped Systems #aka.ms/aoh #MAK Keys #Microsoft #Office 2024 #Offline Activation #Product Activation #Tech News 2026 #Windows 10 #Windows 11
Daily CyberSecurity
The End of Offline Era: Microsoft Kills Phone Activation After 24 Years
Earlier reports indicated that vigilant observers had discovered the quiet decommissioning of Microsoft’s venerable telephone activation system. Users attempting to utilize this traditional channe…
⤷ Title: Collateral Damage: Microsoft Defender Blocks Official MAS Script in Malware War
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 04:26:39 +0000
════════════════════════
⌗ Tags: #Malware #MAS #Microsoft #Microsoft Activation Scripts #Microsoft Defender #phishing #powershell #Security Anomaly #Trojan:PowerShell/FakeMas #Typosquatting #Windows 11
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 04:26:39 +0000
════════════════════════
⌗ Tags: #Malware #MAS #Microsoft #Microsoft Activation Scripts #Microsoft Defender #phishing #powershell #Security Anomaly #Trojan:PowerShell/FakeMas #Typosquatting #Windows 11
Daily CyberSecurity
Collateral Damage: Microsoft Defender Blocks Official MAS Script in Malware War
Microsoft is evidently cognizant of the Microsoft Activation Scripts (MAS), a popular open-source utility; moreover, the corporation appears equally aware of adversaries registering deceptive doma…
⤷ Title: The AI Physician: OpenAI Launches “ChatGPT Health” to Sync Your Medical Records
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 04:01:01 +0000
════════════════════════
⌗ Tags: #Technology #Apple Health #ChatGPT Health #Digital Health 2026 #EHR #HealthBench #Healthcare AI #Medical Data #MyFitnessPal #OpenAI #privacy #Wearables
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 04:01:01 +0000
════════════════════════
⌗ Tags: #Technology #Apple Health #ChatGPT Health #Digital Health 2026 #EHR #HealthBench #Healthcare AI #Medical Data #MyFitnessPal #OpenAI #privacy #Wearables
Daily CyberSecurity
The AI Physician: OpenAI Launches “ChatGPT Health” to Sync Your Medical Records
OpenAI has unveiled a specialized portal entitled “ChatGPT Health,” a nascent feature that empowers users to integrate their personal medical dossiers and wellness applications with th…
⤷ Title: Caches, Edge, and Exploits
════════════════════════
𐀪 Author: Muhammed Asfan | Cybersecurity Analyst
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 05:50:02 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty_tips #cybersecurity #web_cache_poisoning #bug_bounty
════════════════════════
𐀪 Author: Muhammed Asfan | Cybersecurity Analyst
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 05:50:02 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty_tips #cybersecurity #web_cache_poisoning #bug_bounty
Medium
Caches, Edge, and Exploits
When people talk about caching, it usually sounds like a pure performance topic: “CDN”, “TTLs”, “faster load times”. From a security…
⤷ Title: IDOR in 2026: Same Bug, Bigger Damage — 10 GB of Chat History (Dating Application)
════════════════════════
𐀪 Author: Gokuleswaran B
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 05:07:38 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_bounty_tips #bug_bounty_writeup #idor_vulnerability #idor
════════════════════════
𐀪 Author: Gokuleswaran B
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 05:07:38 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_bounty_tips #bug_bounty_writeup #idor_vulnerability #idor
Medium
IDOR in 2026: Same Bug, Bigger Damage — 10 GB of Chat History (Dating Application)
Last night, while casually poking around a dating application (definitely not trying to swipe right on vulnerabilities), curiosity kicked…
⤷ Title: CVE-2025–61882 Explained: Why Cyber Security Testing Can’t Be Ignored
════════════════════════
𐀪 Author: Pynesec
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 05:14:05 GMT
════════════════════════
⌗ Tags: #cyber_security_services #cybersecurity #web_security #penetration_testing #vulnerability
════════════════════════
𐀪 Author: Pynesec
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 05:14:05 GMT
════════════════════════
⌗ Tags: #cyber_security_services #cybersecurity #web_security #penetration_testing #vulnerability
Medium
CVE-2025–61882 Explained: Why Cyber Security Testing Can’t Be Ignored
In today’s fast-moving digital landscape, vulnerabilities don’t just expose systems; they expose assumptions. CVE-2025–61882 is a strong…
⤷ Title: Strengthen Cyber Defense Fundamentals — Ethical Hacking Foundation Certification
════════════════════════
𐀪 Author: Adhiraj Kasabe
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 04:59:02 GMT
════════════════════════
⌗ Tags: #ethical_hacking_tools #ethical_hacking_course #ethical_hacking_tutorial #ethical_hacking #ethical_hacking_training
════════════════════════
𐀪 Author: Adhiraj Kasabe
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 04:59:02 GMT
════════════════════════
⌗ Tags: #ethical_hacking_tools #ethical_hacking_course #ethical_hacking_tutorial #ethical_hacking #ethical_hacking_training
Medium
Strengthen Cyber Defense Fundamentals — Ethical Hacking Foundation Certification
The Ethical Hacking Foundation Certification is an important step in the professional career of anyone interested in cybersecurity. It…
⤷ Title: The Case of the Missing Action: Why User_Login Vanished in ODC
════════════════════════
𐀪 Author: Rohit Singh
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 05:15:26 GMT
════════════════════════
⌗ Tags: #software_architecture #outsystems #api_security #web_development #cloud_computing
════════════════════════
𐀪 Author: Rohit Singh
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 05:15:26 GMT
════════════════════════
⌗ Tags: #software_architecture #outsystems #api_security #web_development #cloud_computing
Medium
The Case of the Missing Action: Why User_Login Vanished in ODC
When you set out to build an exposed REST API in OutSystems Developer Cloud (ODC), you might run into a surprise. If you are used to…