⤷ Title: Allegretto a HTB Writeup
════════════════════════
𐀪 Author: Ahmed mani
════════════════════════
ⴵ Time: Sun, 08 Feb 2026 20:16:41 GMT
════════════════════════
⌗ Tags: #hackthebox_writeup #blueteamlabs #hackthebox #blue_team
════════════════════════
𐀪 Author: Ahmed mani
════════════════════════
ⴵ Time: Sun, 08 Feb 2026 20:16:41 GMT
════════════════════════
⌗ Tags: #hackthebox_writeup #blueteamlabs #hackthebox #blue_team
Medium
Allegretto a HTB Writeup
This writeup documents my analysis and investigation of the Allegretto sherlock on Hackthebox. This sherlock focuses heavily on filesystem…
⤷ Title: Why Real API Breaches Happen Through Chains, Not Single Bugs
════════════════════════
𐀪 Author: Gertnsaku
════════════════════════
ⴵ Time: Sun, 08 Feb 2026 20:49:12 GMT
════════════════════════
⌗ Tags: #api_security
════════════════════════
𐀪 Author: Gertnsaku
════════════════════════
ⴵ Time: Sun, 08 Feb 2026 20:49:12 GMT
════════════════════════
⌗ Tags: #api_security
Medium
Why Real API Breaches Happen Through Chains, Not Single Bugs
When most people think of a cybersecurity breach, they imagine a single, catastrophic flaw being exploited. In reality, API breaches are…
⤷ Title: Cryptography Challenges — ZINAD x ITI Cyber Champion CTF 2026
════════════════════════
𐀪 Author: محمد بن إبراهيم
════════════════════════
ⴵ Time: Sun, 08 Feb 2026 22:31:25 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #ctf #ctf_writeup #bug_bounty
════════════════════════
𐀪 Author: محمد بن إبراهيم
════════════════════════
ⴵ Time: Sun, 08 Feb 2026 22:31:25 GMT
════════════════════════
⌗ Tags: #cybersecurity #hacking #ctf #ctf_writeup #bug_bounty
Medium
Cryptography Challenges — ZINAD x ITI Cyber Champion CTF 2026
بسم الله الرحمن الرحيم
⤷ Title: Umbrella (TryHackMe) Walkthrough: From Exposed Docker Registry to Root on Host
════════════════════════
𐀪 Author: Roshan Rajbanshi
════════════════════════
ⴵ Time: Sun, 08 Feb 2026 22:11:46 GMT
════════════════════════
⌗ Tags: #ctf #offensive_security #tryhackme #penetration_testing #cybersecurity
════════════════════════
𐀪 Author: Roshan Rajbanshi
════════════════════════
ⴵ Time: Sun, 08 Feb 2026 22:11:46 GMT
════════════════════════
⌗ Tags: #ctf #offensive_security #tryhackme #penetration_testing #cybersecurity
Medium
Umbrella (TryHackMe) Walkthrough: From Exposed Docker Registry to Root on Host
## Introduction
⤷ Title: VulnNet: Roasted — TryHackMe Walkthrough
════════════════════════
𐀪 Author: Abdallah_samir
════════════════════════
ⴵ Time: Sun, 08 Feb 2026 22:25:01 GMT
════════════════════════
⌗ Tags: #active_directory #tryhackme_walkthrough #ctf #tryhackme
════════════════════════
𐀪 Author: Abdallah_samir
════════════════════════
ⴵ Time: Sun, 08 Feb 2026 22:25:01 GMT
════════════════════════
⌗ Tags: #active_directory #tryhackme_walkthrough #ctf #tryhackme
Medium
VulnNet: Roasted — TryHackMe Walkthrough
“VulnNet: Roasted” is a challenging TryHackMe room focused on Active Directory exploitation and Kerberos-based attacks.
⤷ Title: HackTheBox — LogJammer Sherlock Walkthrough
════════════════════════
𐀪 Author: Drew Arpino
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:01:02 GMT
════════════════════════
⌗ Tags: #hackthebox #dfir #cybersecurity #hackthebox_writeup #hackthebox_walkthrough
════════════════════════
𐀪 Author: Drew Arpino
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:01:02 GMT
════════════════════════
⌗ Tags: #hackthebox #dfir #cybersecurity #hackthebox_writeup #hackthebox_walkthrough
Medium
HackTheBox — LogJammer Sherlock Walkthrough
Windows Event Log Forensics: Investigating Persistence, Malware, and Log Tampering with Event Log Explorer & FLARE‑VM.
⤷ Title: The Bug Hunter’s Secret Weapon
════════════════════════
𐀪 Author: mohandika
════════════════════════
ⴵ Time: Sun, 08 Feb 2026 22:12:04 GMT
════════════════════════
⌗ Tags: #cybersecurity #ethical_hacking #kali_linux #theharvester #osint
════════════════════════
𐀪 Author: mohandika
════════════════════════
ⴵ Time: Sun, 08 Feb 2026 22:12:04 GMT
════════════════════════
⌗ Tags: #cybersecurity #ethical_hacking #kali_linux #theharvester #osint
Medium
The Bug Hunter’s Secret Weapon
How OSINT helps find vulnerabilities before the bad guys do
⤷ Title: Speed of Truth: X Trials “Collaborative Notes” to Supercharge Fact-Checking with Grok AI
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:58:21 +0000
════════════════════════
⌗ Tags: #Technology #AI_human collaboration #Collaborative Notes #Community Notes #Elon Musk #Fact_checking #Grok 4.1 #Grok AI #Keith Coleman #Misinformation #Tech News 2026 #X
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:58:21 +0000
════════════════════════
⌗ Tags: #Technology #AI_human collaboration #Collaborative Notes #Community Notes #Elon Musk #Fact_checking #Grok 4.1 #Grok AI #Keith Coleman #Misinformation #Tech News 2026 #X
Daily CyberSecurity
Speed of Truth: X Trials "Collaborative Notes" to Supercharge Fact-Checking with Grok AI
X pilots "Collaborative Notes," using Grok AI to draft instant fact-checks for human review. Truncate misinformation latency with AI-speed annotations.
⤷ Title: Co-Pilots of the Future: Apple Opens CarPlay to ChatGPT and Google Gemini for Smarter Road Trips
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:54:17 +0000
════════════════════════
⌗ Tags: #Technology #AI voice assistants #Apple CarPlay #automotive tech #ChatGPT #Claude AI #Google Gemini #iOS 26 #Siri #smart driving #Tech News 2026
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:54:17 +0000
════════════════════════
⌗ Tags: #Technology #AI voice assistants #Apple CarPlay #automotive tech #ChatGPT #Claude AI #Google Gemini #iOS 26 #Siri #smart driving #Tech News 2026
Daily CyberSecurity
Co-Pilots of the Future: Apple Opens CarPlay to ChatGPT and Google Gemini for Smarter Road Trips
Apple is opening CarPlay to third-party AI like ChatGPT and Gemini. Discover the 2026 roadmap for sophisticated, conversational co-pilots in your car.
⤷ Title: Fortune Favors the AI: Crypto.com CEO Drops $70M on AI.com to Launch “Synthetic Secretaries” at Super Bowl LX
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:50:07 +0000
════════════════════════
⌗ Tags: #Technology #$70M domain #AGI #AI Agents #AI.com #autonomous agents #Crypto.com #Decentralized AI #Kris Marszalek #Matt Damon #Super Bowl LX #Tech News 2026
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:50:07 +0000
════════════════════════
⌗ Tags: #Technology #$70M domain #AGI #AI Agents #AI.com #autonomous agents #Crypto.com #Decentralized AI #Kris Marszalek #Matt Damon #Super Bowl LX #Tech News 2026
Daily CyberSecurity
Fortune Favors the AI: Crypto.com CEO Drops $70M on AI.com to Launch "Synthetic Secretaries" at Super Bowl LX
Crypto.com’s Kris Marszalek spent $70M on AI.com to debut personal AI agents at Super Bowl LX. Transition from chat to agents that actually "get things done."
⤷ Title: Code Red: 4 Critical SandboxJS Flaws (CVSS 10.0) Allow Host Takeover
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:46:57 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary Code Execution #CVE_2026_25520 #CVE_2026_25586 #CVSS 10.0 #Host Prototype Pollution #JavaScript Security #Patch Alert #Sandbox Escape #SandboxJS #Web Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:46:57 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary Code Execution #CVE_2026_25520 #CVE_2026_25586 #CVSS 10.0 #Host Prototype Pollution #JavaScript Security #Patch Alert #Sandbox Escape #SandboxJS #Web Security
Daily CyberSecurity
Code Red: 4 Critical SandboxJS Flaws (CVSS 10.0) Allow Host Takeover
Critical SandboxJS flaws (CVSS 10.0) allow sandbox escape & host takeover via prototype pollution. Update to v0.8.29 immediately to stop code execution.
⤷ Title: Digital Detox Mandate: EU Charges TikTok Over “Autopilot” Design and Minor Safety Failures
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:44:43 +0000
════════════════════════
⌗ Tags: #Technology #addictive design #autoplay #ByteDance #Digital Services Act #DSA #EU Commission #Henna Virkkunen #infinite scroll #Mental Health #minor safety #tech regulation 2026 #TikTok
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:44:43 +0000
════════════════════════
⌗ Tags: #Technology #addictive design #autoplay #ByteDance #Digital Services Act #DSA #EU Commission #Henna Virkkunen #infinite scroll #Mental Health #minor safety #tech regulation 2026 #TikTok
Daily CyberSecurity
Digital Detox Mandate: EU Charges TikTok Over "Autopilot" Design and Minor Safety Failures
The EU Commission preliminarily finds TikTok's design addictive and in breach of the DSA. The app faces massive fines and a mandatory interface overhaul.
⤷ Title: The “Compatibility” Trap: New Mac Malware Tricks Users into Bypassing TCC
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:41:43 +0000
════════════════════════
⌗ Tags: #Malware #AppleScript #Compatibility Wizard #cybersecurity #Darktrace #infosec #macOS Malware #Node.js Loader #phishing #social engineering #TCC Bypass
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:41:43 +0000
════════════════════════
⌗ Tags: #Malware #AppleScript #Compatibility Wizard #cybersecurity #Darktrace #infosec #macOS Malware #Node.js Loader #phishing #social engineering #TCC Bypass
Daily CyberSecurity
The "Compatibility" Trap: New Mac Malware Tricks Users into Bypassing TCC
Darktrace finds Mac malware using a fake "Compatibility Wizard" to trick users. The AppleScript attack bypasses TCC to drop a Node.js backdoor.
⤷ Title: Tearing Down the Walled Garden: How Google Quick Share Finally Bridged the AirDrop Chasm
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:39:43 +0000
════════════════════════
⌗ Tags: #Android #Apple AirDrop #Cross_Platform #Erik Kay #File Transfer #Google Quick Share #Interoperability #Pixel 10 #Samsung Galaxy S26 #Snapdragon 8 Gen 5 #Tech News 2026
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:39:43 +0000
════════════════════════
⌗ Tags: #Android #Apple AirDrop #Cross_Platform #Erik Kay #File Transfer #Google Quick Share #Interoperability #Pixel 10 #Samsung Galaxy S26 #Snapdragon 8 Gen 5 #Tech News 2026
Daily CyberSecurity
Tearing Down the Walled Garden: How Google Quick Share Finally Bridged the AirDrop Chasm
Google’s Quick Share is ending the "green bubble" file barrier. Learn how the 2026 rollout brings AirDrop compatibility to Samsung and Snapdragon devices.
⤷ Title: The “All-in-One” Spy: DKnife Malware Hijacks Routers to Swap Downloads
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:38:42 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #AiTM #Chinese Threat Actors #Cisco Talos #DarkNimbus #DKnife #Edge Devices #Malware Analysis #router security #ShadowPad #Traffic Manipulation #yitiji
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:38:42 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #AiTM #Chinese Threat Actors #Cisco Talos #DarkNimbus #DKnife #Edge Devices #Malware Analysis #router security #ShadowPad #Traffic Manipulation #yitiji
Daily CyberSecurity
The "All-in-One" Spy: DKnife Malware Hijacks Routers to Swap Downloads
Cisco Talos exposes DKnife, a router malware that inspects traffic and swaps legitimate downloads for ShadowPad backdoors. Active since 2019.
⤷ Title: Double the RAM, Half the Stress: Raspberry Pi 4’s Secret Design Overhaul to Combat the 2026 Memory Crisis
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:35:34 +0000
════════════════════════
⌗ Tags: #Technology #AI Infrastructure #dual_memory #hardware revision #LPDDR4 #Memory Shortage #pieeprom_2026_01_09 #price hike 2026 #Raspberry Pi 4B #Rev 1.5 #single_board computer
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:35:34 +0000
════════════════════════
⌗ Tags: #Technology #AI Infrastructure #dual_memory #hardware revision #LPDDR4 #Memory Shortage #pieeprom_2026_01_09 #price hike 2026 #Raspberry Pi 4B #Rev 1.5 #single_board computer
Daily CyberSecurity
Double the RAM, Half the Stress: Raspberry Pi 4’s Secret Design Overhaul to Combat the 2026 Memory Crisis
⤷ Title: “JackMa” & ShadowGuard: TGR-STA-1030 Spies on 37 Nations via Linux Rootkit
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:32:38 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Advanced Persistent Threat #cyber_espionage #Diaoyu Loader #eBPF #geopolitics #JackMa #Linux Rootkit #ShadowGuard #TGR_STA_1030 #UNC6619 #Unit 42
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:32:38 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Advanced Persistent Threat #cyber_espionage #Diaoyu Loader #eBPF #geopolitics #JackMa #Linux Rootkit #ShadowGuard #TGR_STA_1030 #UNC6619 #Unit 42
Daily CyberSecurity
"JackMa" & ShadowGuard: TGR-STA-1030 Spies on 37 Nations via Linux Rootkit
TGR-STA-1030 (UNC6619) hits 70+ orgs in 37 countries. The Asia-based group uses the new ShadowGuard eBPF rootkit to hide in Linux kernels.
⤷ Title: CVE-2026-1731: Critical BeyondTrust Flaw (CVSS 9.9) Allows Pre-Auth RCE
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:28:00 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #BeyondTrust #CVE_2026_1731 #CVSS 9.9 #IT security #PAM #Patch Alert #Pre_Auth Vulnerability #Privileged Remote Access #Remote Code Execution #Remote Support
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:28:00 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #BeyondTrust #CVE_2026_1731 #CVSS 9.9 #IT security #PAM #Patch Alert #Pre_Auth Vulnerability #Privileged Remote Access #Remote Code Execution #Remote Support
Daily CyberSecurity
CVE-2026-1731: Critical BeyondTrust Flaw (CVSS 9.9) Allows Pre-Auth RCE
Critical BeyondTrust flaw CVE-2026-1731 (CVSS 9.9) allows unauthenticated RCE on Remote Support & PRA appliances. Update to v25.3.2 immediately.
⤷ Title: Stan Ghouls Target Uzbekistan and Russia with NetSupport RAT
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:27:34 +0000
════════════════════════
⌗ Tags: #Malware #Bloody Wolf #cyber_espionage #Java Loader #kaspersky #Mirai botnet #NetSupport RAT #phishing #rat #social engineering #Stan Ghouls #Uzbekistan
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:27:34 +0000
════════════════════════
⌗ Tags: #Malware #Bloody Wolf #cyber_espionage #Java Loader #kaspersky #Mirai botnet #NetSupport RAT #phishing #rat #social engineering #Stan Ghouls #Uzbekistan
Daily CyberSecurity
Stan Ghouls Target Uzbekistan and Russia with NetSupport RAT
Stan Ghouls group targets Uzbekistan via fake court emails and malicious Java loaders. Learn how they deploy NetSupport RAT to spy on victims.
⤷ Title: CVE-2026-25526: Critical Jinjava Flaw (CVSS 9.8) Permits Remote Code Execution
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:21:47 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_25526 #ForTag Vulnerability #HubSpot CMS #Java Template Engine #Jinjava #ObjectMapper Deserialization #Patch Alert #Remote Code Execution #Sandbox Escape #Server Side Template Injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:21:47 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_25526 #ForTag Vulnerability #HubSpot CMS #Java Template Engine #Jinjava #ObjectMapper Deserialization #Patch Alert #Remote Code Execution #Sandbox Escape #Server Side Template Injection
Daily CyberSecurity
CVE-2026-25526: Critical Jinjava Flaw (CVSS 9.8) Permits Remote Code Execution
Critical Jinjava flaw CVE-2026-25526 (CVSS 9.8) breaks sandbox security. Attackers can execute Java code via template loops. Update to v2.8.3 now.
⤷ Title: “Hard Working” Thieves: Rublevka Team Steals $10M in Solana Scam-as-a-Service
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:17:18 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Crypto theft #Cybercrime #Insikt Group #Phantom Wallet #Rublevka Team #Scam_as_a_Service #social engineering #Solana #TON #Wallet drainer
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 00:17:18 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Crypto theft #Cybercrime #Insikt Group #Phantom Wallet #Rublevka Team #Scam_as_a_Service #social engineering #Solana #TON #Wallet drainer
Daily CyberSecurity
"Hard Working" Thieves: Rublevka Team Steals $10M in Solana Scam-as-a-Service
Rublevka Team's "scam-as-a-service" has stolen $10M+ in crypto. Their automated Solana drainers target Phantom & Solflare wallets. Don't be next.