⤷ Title: MASTERING THE HACKER MINDSET: HOW ETHICAL HACKERS DEFEND BY THINKING LIKE ATTACKERS
════════════════════════
𐀪 Author: Raphaam Digital (Cyber Security Updates)
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 20:50:44 GMT
════════════════════════
⌗ Tags: #exploitation #penetration_testing #offensive_security #ethical_hacking #cybersecurity
════════════════════════
𐀪 Author: Raphaam Digital (Cyber Security Updates)
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 20:50:44 GMT
════════════════════════
⌗ Tags: #exploitation #penetration_testing #offensive_security #ethical_hacking #cybersecurity
Medium
MASTERING THE HACKER MINDSET: HOW ETHICAL HACKERS DEFEND BY THINKING LIKE ATTACKERS
As businesses and organisations continue to face a constant barrage of sophisticated digital threats, they turn to a unique breed of…
⤷ Title: Client-Server Basics · TryHackMe Walkthrough
════════════════════════
𐀪 Author: RosanaFSS
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 20:57:12 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #security #cybersecurity #tryhackme #architecture
════════════════════════
𐀪 Author: RosanaFSS
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 20:57:12 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #security #cybersecurity #tryhackme #architecture
Medium
Client-Server Basics · TryHackMe Walkthrough
This room teaches the basics of the Client-Server model.
⤷ Title: CloudSEK CTF_FINAL 2025 — Multi-step exploitation (JWT → SSTI → RCE)
════════════════════════
𐀪 Author: codebreaker
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 20:13:20 GMT
════════════════════════
⌗ Tags: #ctf_writeup #ssti #rce #jwt_authentication #ctf
════════════════════════
𐀪 Author: codebreaker
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 20:13:20 GMT
════════════════════════
⌗ Tags: #ctf_writeup #ssti #rce #jwt_authentication #ctf
Medium
CloudSEK CTF_FINAL 2025 — Multi-step exploitation (JWT → SSTI → RCE)
CloudSEK CTF 2025 Round 2 — Writeup Submission
⤷ Title: Substack Breach: 662,752 User Records Leaked on Cybercrime Forum
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 22:50:05 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attacks #Data Breaches #BreachForums #Cyber Attack #Cyber Crime #Cybersecurity #data breach #Privacy #Scraping #Substack
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 22:50:05 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attacks #Data Breaches #BreachForums #Cyber Attack #Cyber Crime #Cybersecurity #data breach #Privacy #Scraping #Substack
Hackread
Substack Breach: 662,752 User Records Leaked on Cybercrime Forum
Substack confirms a breach after hacker accessed internal user records now circulating on crime forums, exposing emails, phone numbers, and account metadata.
⤷ Title: Disabling PPL Protection on Windows Processes
════════════════════════
𐀪 Author: S12 - 0x12Dark Development
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 22:23:05 GMT
════════════════════════
⌗ Tags: #hacker #hacking #malware #antivirus #penetration_testing
════════════════════════
𐀪 Author: S12 - 0x12Dark Development
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 22:23:05 GMT
════════════════════════
⌗ Tags: #hacker #hacking #malware #antivirus #penetration_testing
Medium
Disabling PPL Protection on Windows Processes
Welcome to my latest Medium post. Today, we’ll explore the classic method for disabling a process’s Protected Process Light (PPL) using a…
⤷ Title: The Shocking Truth: How Companies Sell Your Data
════════════════════════
𐀪 Author: Shahzaib
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 22:41:38 GMT
════════════════════════
⌗ Tags: #data_science #technology #programming #cybersecurity #ethical_hacking
════════════════════════
𐀪 Author: Shahzaib
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 22:41:38 GMT
════════════════════════
⌗ Tags: #data_science #technology #programming #cybersecurity #ethical_hacking
Medium
The Shocking Truth: How Companies Sell Your Data
You Are Not the Customer. You Are the Livestock
⤷ Title: Do AI Company's Even Have a Hold on Their Product
════════════════════════
𐀪 Author: Jerimiah Jackson
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 22:12:50 GMT
════════════════════════
⌗ Tags: #ai #206 #xs #news #elon_musk
════════════════════════
𐀪 Author: Jerimiah Jackson
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 22:12:50 GMT
════════════════════════
⌗ Tags: #ai #206 #xs #news #elon_musk
Medium
Do AI Company's Even Have a Hold on Their Product
Yesterday February 3, 2026 a news story came out from APN & NBC news reporting on the infamous Elon musk. This story captured the events…
⤷ Title: The Invisible Landlord: ShadowSyndicate Rotates Keys to Hide Infrastructure
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:42:35 +0000
════════════════════════
⌗ Tags: #Cybercriminals #bulletproof hosting #C2 Servers #Cobalt Strike #Cybercrime #Group_IB #initial access broker #Ransomware Infrastructure #ShadowSyndicate #SSH Key Rotation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:42:35 +0000
════════════════════════
⌗ Tags: #Cybercriminals #bulletproof hosting #C2 Servers #Cobalt Strike #Cybercrime #Group_IB #initial access broker #Ransomware Infrastructure #ShadowSyndicate #SSH Key Rotation
Daily CyberSecurity
The Invisible Landlord: ShadowSyndicate Rotates Keys to Hide Infrastructure
Group-IB reveals ShadowSyndicate is evolving. The cybercrime cluster now rotates SSH keys to hide its infrastructure. Is it a BPH or IAB?
⤷ Title: Popular n8n Platform Hit by Triple Threat of RCE Flaws
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:39:22 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_25049 #CVE_2026_25053 #CVE_2026_25056 #Git Node #Low Code Security #Merge Node #n8n #Patch Alert #Remote Code Execution #Workflow Automation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:39:22 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_25049 #CVE_2026_25053 #CVE_2026_25056 #Git Node #Low Code Security #Merge Node #n8n #Patch Alert #Remote Code Execution #Workflow Automation
Daily CyberSecurity
Popular n8n Platform Hit by Triple Threat of RCE Flaws
Critical n8n flaws (CVE-2026-25053, 25056) allow attackers to hijack servers via Git & Merge nodes. Update to v2.5.0 now to prevent RCE.
⤷ Title: The Invisible Proxy: NGINX Hijacked for Silent SEO Poisoning
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:33:06 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Baota Panel #Datadog #Gambling Spam #Malicious Configuration #nginx #Proxy Pass #SEO Poisoning #SysAdmin #Traffic Hijacking #Web Server Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:33:06 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Baota Panel #Datadog #Gambling Spam #Malicious Configuration #nginx #Proxy Pass #SEO Poisoning #SysAdmin #Traffic Hijacking #Web Server Security
Daily CyberSecurity
The Invisible Proxy: NGINX Hijacked for Silent SEO Poisoning
Hackers are hijacking NGINX servers via malicious config injections. Datadog warns of silent traffic redirection for SEO poisoning. Check your proxy_pass.
⤷ Title: Phantom in the Machine: Inside Salt Typhoon’s “SnappyBee” Backdoor
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:27:36 +0000
════════════════════════
⌗ Tags: #Malware #Advanced Persistent Threat #Cobalt Strike #Darktrace #Deed RAT #Demodex #DLL side_loading #Earth Estries #Malware Analysis #Salt Typhoon #SNAPPYBEE
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:27:36 +0000
════════════════════════
⌗ Tags: #Malware #Advanced Persistent Threat #Cobalt Strike #Darktrace #Deed RAT #Demodex #DLL side_loading #Earth Estries #Malware Analysis #Salt Typhoon #SNAPPYBEE
Daily CyberSecurity
Phantom in the Machine: Inside Salt Typhoon’s "SnappyBee" Backdoor
Darktrace dissects SnappyBee (Deed RAT), a stealthy Salt Typhoon backdoor. Learn how it uses DLL side-loading & memory hooking to evade modern AV.
⤷ Title: 4 Million Downloads at Risk: Critical Unstructured Flaw (CVSS 9.8) Allows RCE
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:23:34 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI supply chain #CVE_2025_64712 #CVSS 9.8 #LLM Data #Malicious MSG #Patch Alert #Path Traversal #Python Security #rce #Unstructured Library
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:23:34 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI supply chain #CVE_2025_64712 #CVSS 9.8 #LLM Data #Malicious MSG #Patch Alert #Path Traversal #Python Security #rce #Unstructured Library
Daily CyberSecurity
4 Million Downloads at Risk: Critical Unstructured Flaw (CVSS 9.8) Allows RCE
Critical Unstructured library flaw CVE-2025-64712 (CVSS 9.8) allows RCE via malicious .msg files. 4M+ downloads affected. Update to v0.18.18 now.
⤷ Title: Stealth Injection: Silver Fox APT Upgrades “ValleyRat” with Rare PoolParty Tech
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:17:36 +0000
════════════════════════
⌗ Tags: #Malware #cyber_espionage #Cybereason #Explorer.exe #Fake Installer #Malware Analysis #PoolParty Variant 7 #Process injection #Silver Fox APT #ValleyRAT #Winos 4.0
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:17:36 +0000
════════════════════════
⌗ Tags: #Malware #cyber_espionage #Cybereason #Explorer.exe #Fake Installer #Malware Analysis #PoolParty Variant 7 #Process injection #Silver Fox APT #ValleyRAT #Winos 4.0
Daily CyberSecurity
Stealth Injection: Silver Fox APT Upgrades "ValleyRat" with Rare PoolParty Tech
Silver Fox APT targets users with fake LINE installers delivering ValleyRat. New campaign uses rare "PoolParty" injection to evade detection.
⤷ Title: Cloud-Hosted Trap: Phishers Use Vercel & Telegram to Bypass Filters
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:11:49 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cloud Security #Credential Harvesting #Dropbox Impersonation #Email Security #PDF Phishing #phishing #social engineering #Telegram bot #Vercel Blob #X_Labs
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:11:49 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cloud Security #Credential Harvesting #Dropbox Impersonation #Email Security #PDF Phishing #phishing #social engineering #Telegram bot #Vercel Blob #X_Labs
Daily CyberSecurity
Cloud-Hosted Trap: Phishers Use Vercel & Telegram to Bypass Filters
Sophisticated phishing abuses Vercel Blob & PDFs to bypass filters. Stolen credentials are exfiltrated via Telegram bots. Learn how to spot this attack.
⤷ Title: “PDF” Poison: Popular JavaScript Library Patches Critical Injection and Crash Flaws
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:07:28 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AcroForm #BMPDecoder #CVE_2026_24133 #CVE_2026_24737 #Denial of Service #Front_end Development #JavaScript Library #jsPDF #PDF Generation #Web Security #XSS
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:07:28 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AcroForm #BMPDecoder #CVE_2026_24133 #CVE_2026_24737 #Denial of Service #Front_end Development #JavaScript Library #jsPDF #PDF Generation #Web Security #XSS
Daily CyberSecurity
"PDF" Poison: Popular JavaScript Library Patches Critical Injection and Crash Flaws
Critical jsPDF flaws (CVE-2026-24133) allow XSS & DoS via malicious BMPs. Update to v4.1.0 immediately to prevent browser crashes and code injection.
⤷ Title: Macs Under Siege: New Infostealers Spread via WhatsApp & Fake Apps
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:01:18 +0000
════════════════════════
⌗ Tags: #Malware #AMOS #Credential Theft #Crystal PDF #Cyber Security #Eternidade Stealer #Infostealer #macOS Malware #Microsoft Defender #Python Malware #WhatsApp Worm
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:01:18 +0000
════════════════════════
⌗ Tags: #Malware #AMOS #Credential Theft #Crystal PDF #Cyber Security #Eternidade Stealer #Infostealer #macOS Malware #Microsoft Defender #Python Malware #WhatsApp Worm
Daily CyberSecurity
Macs Under Siege: New Infostealers Spread via WhatsApp & Fake Apps
Microsoft warns: Infostealers now target macOS & use WhatsApp worms. "Eternidade" & "Crystal PDF" steal credentials via cross-platform attacks.
⤷ Title: Guía Avanzada de Curl para Bug Hunting: Técnicas de Reconocimiento y Explotación
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:01:01 GMT
════════════════════════
⌗ Tags: #bug_bounty #hacking #infosec #cybersecurity #technology
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:01:01 GMT
════════════════════════
⌗ Tags: #bug_bounty #hacking #infosec #cybersecurity #technology
Medium
Guía Avanzada de Curl para Bug Hunting: Técnicas de Reconocimiento y Explotación
Domina curl para auditorías de seguridad: bypass de WAF, explotación de Race Conditions y automatización de reconocimiento.
⤷ Title: 280+ Leaky Skills: How OpenClaw & ClawHub Are Exposing API Keys and PII
════════════════════════
𐀪 Author: Snyk
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 02:00:27 GMT
════════════════════════
⌗ Tags: #ai #vulnerabilityinsights #application_security
════════════════════════
𐀪 Author: Snyk
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 02:00:27 GMT
════════════════════════
⌗ Tags: #ai #vulnerabilityinsights #application_security
Medium
280+ Leaky Skills: How OpenClaw & ClawHub Are Exposing API Keys and PII
On Monday, February 3rd, Snyk Staff Senior Engineer Luca Beurer-Kellner and Senior Incubation Engineer Hemang Sarkar uncovered a massive systemic vulnerability in the ClawHub ecosystem (clawhub.ai) …
⤷ Title: AWS Enumeration Using Pacu: Cybr’s IAM Lab
════════════════════════
𐀪 Author: Amanuel
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:13:50 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_security #cloud_security #penetration_testing #aws_security
════════════════════════
𐀪 Author: Amanuel
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 00:13:50 GMT
════════════════════════
⌗ Tags: #cybersecurity #application_security #cloud_security #penetration_testing #aws_security
Medium
AWS Enumeration Using Pacu: Cybr’s IAM Lab
If you’re getting into AWS pentesting, one of the first superpowers you need is solid IAM enumeration. It’s the “recon phase” of cloud…
⤷ Title: Dragon in the Archives: How “Amaranth-Dragon” Weaponized a WinRAR Zero-Day to Spy on Southeast Asia
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 02:47:01 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability #Amaranth_Dragon #APT41 #CVE_2025_8088 #Cyber Espionage #DLL side_loading #Havoc framework #Southeast Asia #Spear Phishing #Tech News 2026 #TGAmaranth RAT #Winrar
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 02:47:01 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability #Amaranth_Dragon #APT41 #CVE_2025_8088 #Cyber Espionage #DLL side_loading #Havoc framework #Southeast Asia #Spear Phishing #Tech News 2026 #TGAmaranth RAT #Winrar
Penetration Testing Tools
Dragon in the Archives: How "Amaranth-Dragon" Weaponized a WinRAR Zero-Day to Spy on Southeast Asia
In 2025, Southeast Asia witnessed a pronounced escalation in cyber-espionage operations, meticulously cloaked in missives pertaining to regional
⤷ Title: Sandbox Shattered: New n8n Critical Flaw CVE-2026-25049 Exposes AI Workflows to Full Takeover
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 02:45:05 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI Automation #CVE_2026_25049 #Endor Labs #expression evaluation #n8n #Pillar Security #RCE #remote code execution #Sandbox Escape #SecureLayer7 #Tech News 2026 #webhook exploit
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 06 Feb 2026 02:45:05 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI Automation #CVE_2026_25049 #Endor Labs #expression evaluation #n8n #Pillar Security #RCE #remote code execution #Sandbox Escape #SecureLayer7 #Tech News 2026 #webhook exploit
Penetration Testing Tools
Sandbox Shattered: New n8n Critical Flaw CVE-2026-25049 Exposes AI Workflows to Full Takeover
The n8n workflow automation platform is once again embroiled in a significant security crisis. In a recently disseminated