⤷ Title: The Persistence of WinRAR: Google Warns of Widespread CVE-2025-8088 Attacks
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 04:15:22 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Vulnerability #Ads #CVE_2025_8088 #Google Threat Intelligence #InfoSec 2026 #path traversal #phishing #RomCom #Sandworm #Startup Persistence #Winrar
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 04:15:22 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Vulnerability #Ads #CVE_2025_8088 #Google Threat Intelligence #InfoSec 2026 #path traversal #phishing #RomCom #Sandworm #Startup Persistence #Winrar
Penetration Testing Tools
The Persistence of WinRAR: Google Warns of Widespread CVE-2025-8088 Attacks
The Google Threat Intelligence Group (GTIG) has disclosed the extensive exploitation of a critical vulnerability, designated CVE-2025-8088, residing
⤷ Title: Defending the Start-Up Nation: Israel Unveils First Permanent Cyber Law
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 04:14:01 +0000
════════════════════════
⌗ Tags: #Cyber Security #Critical Infrastructure #Cyber Security 2026 #data privacy #INCD #Infosec #Israel #Knesset #National Cyber Defense Bill #National Resilience #Yossi Karadi
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 04:14:01 +0000
════════════════════════
⌗ Tags: #Cyber Security #Critical Infrastructure #Cyber Security 2026 #data privacy #INCD #Infosec #Israel #Knesset #National Cyber Defense Bill #National Resilience #Yossi Karadi
Penetration Testing Tools
Defending the Start-Up Nation: Israel Unveils First Permanent Cyber Law
Israel is poised to undergo one of the most profound transformations in its digital security landscape. Authorities have
⤷ Title: Memory Under Siege: OpenSSL Releases Urgent Patches for Critical Buffer Overflows
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 04:12:17 +0000
════════════════════════
⌗ Tags: #Vulnerability #AES_GCM #Buffer Overflow #cryptography #CVE_2025_15467 #InfoSec 2026 #openssl #PKCS#12 #Security Patch #Sysadmin #TLS 1.3
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 04:12:17 +0000
════════════════════════
⌗ Tags: #Vulnerability #AES_GCM #Buffer Overflow #cryptography #CVE_2025_15467 #InfoSec 2026 #openssl #PKCS#12 #Security Patch #Sysadmin #TLS 1.3
Penetration Testing Tools
Memory Under Siege: OpenSSL Releases Urgent Patches for Critical Buffer Overflows
The OpenSSL team has disseminated a comprehensive security advisory detailing a constellation of vulnerabilities afflicting the ubiquitous cryptographic
⤷ Title: Shadow Bankers of the Blockchain: The $16B Rise of Chinese Crypto-Laundering
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 04:09:39 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Black U #Blockchain Forensics #Chainalysis #cryptocurrency #cybercrime #Huione #InfoSec 2026 #Money Laundering #Shadow Banking #USDT #Xinbi
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 04:09:39 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Black U #Blockchain Forensics #Chainalysis #cryptocurrency #cybercrime #Huione #InfoSec 2026 #Money Laundering #Shadow Banking #USDT #Xinbi
Penetration Testing Tools
Shadow Bankers of the Blockchain: The $16B Rise of Chinese Crypto-Laundering
The cryptocurrency realm has imperceptibly acquired new “shadow bankers,” with a substantial portion of illicit digital assets now
⤷ Title: The Heart of Downing Street: China’s Salt Typhoon Infiltrates UK PMs’ Phones
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 04:08:22 +0000
════════════════════════
⌗ Tags: #Cyber Security #Boris Johnson #Chinese Hackers #Cyber Espionage #Downing Street #Five Eyes #GCHQ #InfoSec 2026 #MI5 #Rishi Sunak #Salt Typhoon
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 04:08:22 +0000
════════════════════════
⌗ Tags: #Cyber Security #Boris Johnson #Chinese Hackers #Cyber Espionage #Downing Street #Five Eyes #GCHQ #InfoSec 2026 #MI5 #Rishi Sunak #Salt Typhoon
Penetration Testing Tools
The Heart of Downing Street: China’s Salt Typhoon Infiltrates UK PMs’ Phones
Chinese state-affiliated hackers maintained illicit access to mobile devices belonging to personnel within the British Prime Minister’s residence
⤷ Title: The Botnet Merger: Kimwolf Hijacks 10 Million Badbox 2.0 Devices
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 04:05:49 +0000
════════════════════════
⌗ Tags: #Malware #ADB Exploit #Android TV #BadBox 2.0 #BOTNET #Brian Krebs #DDoS #InfoSec 2026 #IoT Security #Kimwolf #Residential Proxies
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 04:05:49 +0000
════════════════════════
⌗ Tags: #Malware #ADB Exploit #Android TV #BadBox 2.0 #BOTNET #Brian Krebs #DDoS #InfoSec 2026 #IoT Security #Kimwolf #Residential Proxies
Penetration Testing Tools
The Botnet Merger: Kimwolf Hijacks 10 Million Badbox 2.0 Devices
The cybercriminals orchestrating the Kimwolf botnet appear intent on flaunting a truly monumental acquisition. A screenshot has surfaced
⤷ Title: WhatsApp’s Great Migration: New Lockdown Mode and Rust-Powered Media Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 04:02:36 +0000
════════════════════════
⌗ Tags: #Technology #C++ #InfoSec 2026 #Lockdown Mode #Media Security #Memory Safety #Meta #Rust #Spyware Protection #Strict Account Settings #WhatsApp
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 29 Jan 2026 04:02:36 +0000
════════════════════════
⌗ Tags: #Technology #C++ #InfoSec 2026 #Lockdown Mode #Media Security #Memory Safety #Meta #Rust #Spyware Protection #Strict Account Settings #WhatsApp
Penetration Testing Tools
WhatsApp’s Great Migration: New Lockdown Mode and Rust-Powered Media Security
Meta has commenced the rollout of a novel WhatsApp feature designed to consolidate a suite of security settings
⤷ Title: Red Teaming at Scale: GHARF Automates the Attack Lifecycle via CI/CD
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 08:08:16 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Automation #CAI/CAD #CI/CD Security #DevSecOps #GHARF #GitHub Actions #InfoSec 2026 #Offensive Security #Pentesting #red teaming
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 08:08:16 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Automation #CAI/CAD #CI/CD Security #DevSecOps #GHARF #GitHub Actions #InfoSec 2026 #Offensive Security #Pentesting #red teaming
Penetration Testing Tools
Red Teaming at Scale: GHARF Automates the Attack Lifecycle via CI/CD
Discover GHARF, the framework bringing CI/CD to Red Teaming. Learn how CAI/CAD automates attack cycles for rapid, high-fidelity security exercises.
⤷ Title: The Browser Puppeteer: New Vishing Kits Hijack Sessions in Real-Time
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 08:03:56 +0000
════════════════════════
⌗ Tags: #Cybercriminals #FIDO2 #InfoSec 2026 #MFA Bypass #Okta #Okta FastPass #Phishing_as_a_Service #Session Orchestration #ShinyHunters #Social Engineering #Vishing
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 08:03:56 +0000
════════════════════════
⌗ Tags: #Cybercriminals #FIDO2 #InfoSec 2026 #MFA Bypass #Okta #Okta FastPass #Phishing_as_a_Service #Session Orchestration #ShinyHunters #Social Engineering #Vishing
Penetration Testing Tools
The Browser Puppeteer: New Vishing Kits Hijack Sessions in Real-Time
Social engineering offensives are undergoing a sophisticated metamorphosis—adversaries now amalgamate telephonic directives with dynamic phishing kits that facilitate
⤷ Title: The Industrialized Scam: How Sinch and Microsoft Teams Power the Global Fraud Trade
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 08:01:55 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Callback Scheme #Demurrage Report #InfoSec 2026 #Inteliquent #KYC #Microsoft Teams #Sinch #Telecom Security #Tom Walker #VoIP Fraud
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 08:01:55 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Callback Scheme #Demurrage Report #InfoSec 2026 #Inteliquent #KYC #Microsoft Teams #Sinch #Telecom Security #Tom Walker #VoIP Fraud
Penetration Testing Tools
The Industrialized Scam: How Sinch and Microsoft Teams Power the Global Fraud Trade
When the facade of a PayPal, Microsoft, or banking “support” number graces a smartphone screen, few perceive the
⤷ Title: The ERP Breach: North Korea’s Andariel Group Strikes Europe with New Malware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 08:00:03 +0000
════════════════════════
⌗ Tags: #Malware #Andariel #BYOVD #ERP Hack #GopherRAT #InfoSec 2026 #JelusRAT #North Korea #StarshellRAT #supply chain attack #TigerRAT #WithSecure
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 08:00:03 +0000
════════════════════════
⌗ Tags: #Malware #Andariel #BYOVD #ERP Hack #GopherRAT #InfoSec 2026 #JelusRAT #North Korea #StarshellRAT #supply chain attack #TigerRAT #WithSecure
Penetration Testing Tools
The ERP Breach: North Korea’s Andariel Group Strikes Europe with New Malware
The North Korean-aligned cyber-espionage syndicate Andariel has reasserted its presence through a sophisticated offensive targeting entities across Europe
⤷ Title: MFA Under Siege: Microsoft Unveils Stealthy AiTM Attacks Striking the Energy Sector
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 07:58:44 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AiTM #BEC #Energy Sector #InfoSec 2026 #MFA Bypass #Microsoft #Microsoft Defender #phishing #Session Hijacking #SharePoint
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 07:58:44 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AiTM #BEC #Energy Sector #InfoSec 2026 #MFA Bypass #Microsoft #Microsoft Defender #phishing #Session Hijacking #SharePoint
Penetration Testing Tools
MFA Under Siege: Microsoft Unveils Stealthy AiTM Attacks Striking the Energy Sector
Microsoft has disclosed a sophisticated sequence of multi-stage incursions leveraging Adversary-in-the-Middle (AiTM) session hijacking in tandem with Business
⤷ Title: The Developer’s Trap: EmEditor Supply Chain Attack Drains Credentials
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 07:57:05 +0000
════════════════════════
⌗ Tags: #Malware #Developer Security #EmEditor #Emurasoft #Google Drive Caching #InfoSec 2026 #Infostealer #PowerShell #supply chain attack #Trend Micro #Watering Hole
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 07:57:05 +0000
════════════════════════
⌗ Tags: #Malware #Developer Security #EmEditor #Emurasoft #Google Drive Caching #InfoSec 2026 #Infostealer #PowerShell #supply chain attack #Trend Micro #Watering Hole
Penetration Testing Tools
The Developer’s Trap: EmEditor Supply Chain Attack Drains Credentials
In late December 2025, the architects of the renowned text editor EmEditor issued a formal advisory regarding the
⤷ Title: The Year the Web Faltered: Cloudflare’s 2025 Report Unveils a Fragile Digital World
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 07:52:42 +0000
════════════════════════
⌗ Tags: #Technology #Cloudflare Radar #Digital Blackout #InfoSec 2026 #Infrastructure Security #Internet Outage #Network Resilience #Submarine Cables #Tanzania Election #WACS
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 07:52:42 +0000
════════════════════════
⌗ Tags: #Technology #Cloudflare Radar #Digital Blackout #InfoSec 2026 #Infrastructure Security #Internet Outage #Network Resilience #Submarine Cables #Tanzania Election #WACS
Penetration Testing Tools
The Year the Web Faltered: Cloudflare’s 2025 Report Unveils a Fragile Digital World
The internet appears as a steadfast and nearly imperceptible presence in our daily lives, until the abrupt moment
⤷ Title: Office Under Siege: Microsoft Rushes Emergency Fix for Active Zero-Day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 07:51:07 +0000
════════════════════════
⌗ Tags: #Vulnerability #CISA #CVE_2026_21509 #Cyber Security #InfoSec 2026 #Microsoft 365 #Microsoft Office #OLE Bypass #Patch Management #Social Engineering #zero_day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 07:51:07 +0000
════════════════════════
⌗ Tags: #Vulnerability #CISA #CVE_2026_21509 #Cyber Security #InfoSec 2026 #Microsoft 365 #Microsoft Office #OLE Bypass #Patch Management #Social Engineering #zero_day
Penetration Testing Tools
Office Under Siege: Microsoft Rushes Emergency Fix for Active Zero-Day
Microsoft has issued an urgent, out-of-band security update for Microsoft Office to mitigate a high-stakes zero-day vulnerability that
⤷ Title: VPNs & Fake Updates: Google Dismantles Massive IPIDEA Proxy Network
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 31 Jan 2026 00:32:16 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Android security #botnet #Galleon VPN #Google Threat Intelligence #IPIDEA #Malicious SDK #Proxy Hijacking #Radish VPN #residential proxy #Windows malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 31 Jan 2026 00:32:16 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Android security #botnet #Galleon VPN #Google Threat Intelligence #IPIDEA #Malicious SDK #Proxy Hijacking #Radish VPN #residential proxy #Windows malware
Daily CyberSecurity
VPNs & Fake Updates: Google Dismantles Massive IPIDEA Proxy Network
Google disrupts IPIDEA proxy network. Fake VPNs and hijacked apps turned millions of devices into unwitting exit nodes. Play Protect is removing them.
⤷ Title: From User to SYSTEM: PoC Released for Zabbix Privilege Escalation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 30 Jan 2026 02:52:48 +0000
════════════════════════
⌗ Tags: #Vulnerability #Patch Alert #PoC #privilege escalation #SYSTEM privileges #Windows Security #Zabbix #Zabbix Agent
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 30 Jan 2026 02:52:48 +0000
════════════════════════
⌗ Tags: #Vulnerability #Patch Alert #PoC #privilege escalation #SYSTEM privileges #Windows Security #Zabbix #Zabbix Agent
Daily CyberSecurity
From User to SYSTEM: PoC Released for Zabbix Privilege Escalation
Exploit code released for Zabbix flaw CVE-2025-27237. Low-level users can gain SYSTEM privileges on Windows via OpenSSL config. Update now.
⤷ Title: “Update” to Nightmare: eScan Antivirus Hacked to Distribute Malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 30 Jan 2026 02:15:55 +0000
════════════════════════
⌗ Tags: #Malware #Antivirus Compromise #cyber attack #eScan #infosec #malware #Manual Patch #MicroWorld Technologies #Morphisec #Reload.exe #supply chain attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 30 Jan 2026 02:15:55 +0000
════════════════════════
⌗ Tags: #Malware #Antivirus Compromise #cyber attack #eScan #infosec #malware #Manual Patch #MicroWorld Technologies #Morphisec #Reload.exe #supply chain attack
Daily CyberSecurity
"Update" to Nightmare: eScan Antivirus Hacked to Distribute Malware
Critical supply chain attack hits eScan antivirus. Hackers hijacked updates to install malware and disable the AV. Manual patch required.
⤷ Title: Smart Buildings at Risk: Critical Johnson Controls Flaw (CVSS 10) Allows Remote SQL Injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 30 Jan 2026 01:59:19 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #building automation #CISA #Critical Vulnerability #CVE_2025_26385 #ICS security #Johnson Controls #Metasys #Smart Building #sql injection #TCP 1433
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 30 Jan 2026 01:59:19 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #building automation #CISA #Critical Vulnerability #CVE_2025_26385 #ICS security #Johnson Controls #Metasys #Smart Building #sql injection #TCP 1433
Daily CyberSecurity
Smart Buildings at Risk: Critical Johnson Controls Flaw (CVSS 10) Allows Remote SQL Injection
CISA warns of CVSS 10 flaw CVE-2025-26385 in Johnson Controls Metasys. Remote SQL execution possible. Patch now or close TCP port 1433.
⤷ Title: Exploited in the Wild: Critical Ivanti EPMM RCE Flaws (CVSS 9.8) Under Attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 30 Jan 2026 01:52:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_1281 #CVE_2026_1340 #exploited in the wild #Ivanti EPMM #MDM #mobile security #MobileIron Core #rce #Remote Code Execution #unauthenticated RCE #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 30 Jan 2026 01:52:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_1281 #CVE_2026_1340 #exploited in the wild #Ivanti EPMM #MDM #mobile security #MobileIron Core #rce #Remote Code Execution #unauthenticated RCE #zero_day
Daily CyberSecurity
Exploited in the Wild: Critical Ivanti EPMM RCE Flaws (CVSS 9.8) Under Attack
Ivanti confirms critical EPMM RCE flaws (CVE-2026-1281) are exploited in the wild. Unauthenticated attackers can compromise MDM. Patch immediately.
⤷ Title: Cluster Admin for All: Critical Kyverno Flaw (CVSS 10) Shatters Isolation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 30 Jan 2026 00:27:09 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Admission Controller #cloud_native #CVE_2026_22039 #CVE_2026_23881 #DevSecOps #dos #K8s #Kubernetes Security #Kyverno #privilege escalation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 30 Jan 2026 00:27:09 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Admission Controller #cloud_native #CVE_2026_22039 #CVE_2026_23881 #DevSecOps #dos #K8s #Kubernetes Security #Kyverno #privilege escalation
Daily CyberSecurity
Cluster Admin for All: Critical Kyverno Flaw (CVSS 10) Shatters Isolation
Critical Kyverno flaw CVE-2026-22039 (CVSS 10) allows policy creators to gain cluster admin rights. Update to v1.16.3 to fix privilege escalation & DoS.