⤷ Title: March Madness: Apple’s M5 Mac Surge and the Surprising $599 “MacBook SE” Debut
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 00:45:44 +0000
════════════════════════
⌗ Tags: #Technology #A18 Pro #Apple Intelligence #Apple Spring Event 2026 #budget MacBook #iPad 12 #iPad Air 8 #iPhone 17e #M5 MacBook Air #M5 MacBook Pro #Mark Gurman #Tech News 2026
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 00:45:44 +0000
════════════════════════
⌗ Tags: #Technology #A18 Pro #Apple Intelligence #Apple Spring Event 2026 #budget MacBook #iPad 12 #iPad Air 8 #iPhone 17e #M5 MacBook Air #M5 MacBook Pro #Mark Gurman #Tech News 2026
Daily CyberSecurity
March Madness: Apple’s M5 Mac Surge and the Surprising $599 "MacBook SE" Debut
Apple’s March 2026 event reveals M5 MacBook Pros, a refreshed M5 Air, and a $599 budget MacBook powered by the A18 Pro chip to challenge Chromebooks.
⤷ Title: Flagship Power, Budget Price: How Apple’s iPhone 17e Aims to Crush the Mid-Range Market
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 00:40:16 +0000
════════════════════════
⌗ Tags: #Technology #Apple A19 chip #budget iPhone #emerging markets #enterprise smartphones #iOS 26 #iPhone 17e #MagSafe #Mark Gurman #Pixel 10a competitor #Tech News 2026
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 00:40:16 +0000
════════════════════════
⌗ Tags: #Technology #Apple A19 chip #budget iPhone #emerging markets #enterprise smartphones #iOS 26 #iPhone 17e #MagSafe #Mark Gurman #Pixel 10a competitor #Tech News 2026
Daily CyberSecurity
Flagship Power, Budget Price: How Apple’s iPhone 17e Aims to Crush the Mid-Range Market
Apple’s iPhone 17e is coming. With the flagship A19 chip and MagSafe at just $599, it's a "budget" beast designed to dominate China, India, and enterprises.
⤷ Title: Triple Threat: Critical Gogs Flaws (CVSS 9.3) Allow RCE & 2FA Bypass
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 00:36:24 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #2FA bypass #CVE_2025_64111 #CVE_2025_64175 #CVE_2026_24135 #Git Service #Gogs #Patch Alert #Path Traversal #Remote Code Execution #Self_Hosted
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 00:36:24 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #2FA bypass #CVE_2025_64111 #CVE_2025_64175 #CVE_2026_24135 #Git Service #Gogs #Patch Alert #Path Traversal #Remote Code Execution #Self_Hosted
Daily CyberSecurity
Triple Threat: Critical Gogs Flaws (CVSS 9.3) Allow RCE & 2FA Bypass
Critical Gogs flaws (CVE-2025-64111) allow RCE & 2FA bypass. Attackers can execute commands via .git config. Update to v0.13.4 immediately.
⤷ Title: Virtual Invasion: SolarWinds WHD Exploited to Host Hidden QEMU VMs
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 00:31:20 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_40551 #cyberattack #DLL Sideloading #Microsoft Defender #persistence #QEMU #SolarWinds #SysAdmin #virtualization #Web Help Desk
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 00:31:20 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_40551 #cyberattack #DLL Sideloading #Microsoft Defender #persistence #QEMU #SolarWinds #SysAdmin #virtualization #Web Help Desk
Daily CyberSecurity
Virtual Invasion: SolarWinds WHD Exploited to Host Hidden QEMU VMs
Microsoft finds hackers using SolarWinds WHD to run hidden QEMU VMs. The attack uses DLL sideloading for full domain compromise. Patch immediately.
⤷ Title: Trust Broken: Critical Keylime Flaw (CVSS 9.4) Disables mTLS Authentication
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 00:27:39 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cloud Security #CVE_2026_1709 #Keylime #mTLS #Mutual TLS #open_source #Patch Alert #Registrar #Remote Attestation #TPM
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 00:27:39 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cloud Security #CVE_2026_1709 #Keylime #mTLS #Mutual TLS #open_source #Patch Alert #Registrar #Remote Attestation #TPM
Daily CyberSecurity
Trust Broken: Critical Keylime Flaw (CVSS 9.4) Disables mTLS Authentication
Critical Keylime flaw CVE-2026-1709 (CVSS 9.4) disables mTLS in v7.12.0-7.13.0. Unauthorized clients can access the registrar. Update or firewall now.
⤷ Title: Silent Killer: Black Basta Bundles “BYOVD” Driver to Blind Antivirus
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 00:22:19 +0000
════════════════════════
⌗ Tags: #Malware #Black Basta #BYOVD #Cardinal #CrowdStrike #cybersecurity #defense evasion #kernel_exploitation #Malware Analysis #NsecSoft Driver #ransomware #Sophos #Symantec
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 00:22:19 +0000
════════════════════════
⌗ Tags: #Malware #Black Basta #BYOVD #Cardinal #CrowdStrike #cybersecurity #defense evasion #kernel_exploitation #Malware Analysis #NsecSoft Driver #ransomware #Sophos #Symantec
Daily CyberSecurity
Silent Killer: Black Basta Bundles "BYOVD" Driver to Blind Antivirus
Black Basta ransomware now embeds a vulnerable NsecSoft driver (BYOVD) to silently kill antivirus processes like Sophos & CrowdStrike.
⤷ Title: CVE-2026-25592: Critical Semantic Kernel Flaw (CVSS 10.0) Allows File Overwrite
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 00:18:30 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #.NET SDK #AI security #Arbitrary File Write #CVE_2026_25592 #CVSS 10.0 #DevSecOps #Microsoft #Python Plugin #Semantic Kernel #SessionsPythonPlugin
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 00:18:30 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #.NET SDK #AI security #Arbitrary File Write #CVE_2026_25592 #CVSS 10.0 #DevSecOps #Microsoft #Python Plugin #Semantic Kernel #SessionsPythonPlugin
Daily CyberSecurity
CVE-2026-25592: Critical Semantic Kernel Flaw (CVSS 10.0) Allows File Overwrite
Microsoft warns of critical flaw CVE-2026-25592 (CVSS 10.0) in Semantic Kernel SDK. AI agents can overwrite system files. Update to v1.70.0 now.
⤷ Title: Poisoned Protocol: dYdX Supply Chain Attack Injects RATs into npm & PyPI
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 00:12:25 +0000
════════════════════════
⌗ Tags: #Malware #cryptocurrency #DeFi Security #dYdX #npm malware #PyPi Malware #Python RAT #Remote Access Trojan #Socket Security #supply chain attack #Typosquatting #Wallet Stealer
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 00:12:25 +0000
════════════════════════
⌗ Tags: #Malware #cryptocurrency #DeFi Security #dYdX #npm malware #PyPi Malware #Python RAT #Remote Access Trojan #Socket Security #supply chain attack #Typosquatting #Wallet Stealer
Daily CyberSecurity
Poisoned Protocol: dYdX Supply Chain Attack Injects RATs into npm & PyPI
Critical dYdX supply chain attack: Compromised npm & PyPI packages steal seed phrases & deploy RATs. Remove @dydxprotocol/v4-client-js immediately.
⤷ Title: CVE-2026-25544: Critical Payload CMS SQLi (CVSS 9.8) Exposes Admin Tokens
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 00:07:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #blind sqli #CVE_2026_25544 #database security #Drizzle ORM #Headless CMS #Next.js #Patch Alert #Payload CMS #sql injection #web development
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 00:07:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #blind sqli #CVE_2026_25544 #database security #Drizzle ORM #Headless CMS #Next.js #Patch Alert #Payload CMS #sql injection #web development
Daily CyberSecurity
CVE-2026-25544: Critical Payload CMS SQLi (CVSS 9.8) Exposes Admin Tokens
Critical Payload CMS flaw CVE-2026-25544 (CVSS 9.8) allows SQL injection via JSON fields. Unauthenticated attackers can steal admin tokens. Update to v3.73.0.
⤷ Title: Marco Stealer: The New “Data Raider” Targeting Crypto & Cloud Storage
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 00:01:54 +0000
════════════════════════
⌗ Tags: #Malware #AES_256 Encryption #anti_analysis #Cloud Security #Cryptocurrency Malware #Cybercrime #info_stealer #Malware Analysis #Marco Stealer #Zscaler ThreatLabz
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 00:01:54 +0000
════════════════════════
⌗ Tags: #Malware #AES_256 Encryption #anti_analysis #Cloud Security #Cryptocurrency Malware #Cybercrime #info_stealer #Malware Analysis #Marco Stealer #Zscaler ThreatLabz
Daily CyberSecurity
Marco Stealer: The New "Data Raider" Targeting Crypto & Cloud Storage
Zscaler reveals Marco Stealer, a new malware harvesting crypto & cloud files. It uses AES-256 encryption & kills analysis tools. Learn how to detect it.
⤷ Title: Client-Side Security in 2026: The Threat Model Apps Ignore
════════════════════════
𐀪 Author: Hash Block
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 01:32:00 GMT
════════════════════════
⌗ Tags: #application_security #cybersecurity #client_side_rendering #javascript #web_security
════════════════════════
𐀪 Author: Hash Block
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 01:32:00 GMT
════════════════════════
⌗ Tags: #application_security #cybersecurity #client_side_rendering #javascript #web_security
Medium
Client-Side Security in 2026: The Threat Model Apps Ignore
Why “HTTPS + JWT + a WAF” still isn’t enough when the user’s device is part of the attack surface.
⤷ Title: Cyborg WriteUp | TryHackMe | CTF
════════════════════════
𐀪 Author: s1lja
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 00:35:00 GMT
════════════════════════
⌗ Tags: #brasil #ctf_writeup #tryhackme_writeup #hacking
════════════════════════
𐀪 Author: s1lja
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 00:35:00 GMT
════════════════════════
⌗ Tags: #brasil #ctf_writeup #tryhackme_writeup #hacking
Medium
Cyborg WriteUp | TryHackMe | CTF
essa é uma writeup de uma lab do tryhackme.com Link da lab https://tryhackme.com/room/cyborgt8
⤷ Title: Attacktive Directory — TryHackMe Walkthrough
════════════════════════
𐀪 Author: Abdallah_samir
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 23:54:30 GMT
════════════════════════
⌗ Tags: #active_directory #ctf #ctf_writeup #tryhackme #hacking
════════════════════════
𐀪 Author: Abdallah_samir
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 23:54:30 GMT
════════════════════════
⌗ Tags: #active_directory #ctf #ctf_writeup #tryhackme #hacking
Medium
Attacktive Directory — TryHackMe Walkthrough
Initial Reconnaissance: Scanning the Target with Nmap
⤷ Title: Yet Another Yahoo Scammer
════════════════════════
𐀪 Author: Elizabeth Emerald
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 23:50:19 GMT
════════════════════════
⌗ Tags: #email #scam #this_happened_to_me #hacking #phishing
════════════════════════
𐀪 Author: Elizabeth Emerald
════════════════════════
ⴵ Time: Mon, 09 Feb 2026 23:50:19 GMT
════════════════════════
⌗ Tags: #email #scam #this_happened_to_me #hacking #phishing
Medium
Yet Another Yahoo Scammer
Yahoo is aptly named: Hoo do Ya think you’re fooling?
⤷ Title: HTTP Down: High-Severity Axios Flaw (CVSS 7.5) Crashes Node.js Servers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 03:54:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Axios #CVE_2026_25639 #Denial of Service #HTTP Client #JavaScript Security #JSON Parsing #Node.js #Patch Alert #Prototype Pollution #web development
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 03:54:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Axios #CVE_2026_25639 #Denial of Service #HTTP Client #JavaScript Security #JSON Parsing #Node.js #Patch Alert #Prototype Pollution #web development
Daily CyberSecurity
HTTP Down: High-Severity Axios Flaw (CVSS 7.5) Crashes Node.js Servers
A high-severity vulnerability has been discovered in Axios, the immensely popular HTTP client used by millions of developers for Node.js and browser-based applications. The flaw, tracked as CVE-20…
⤷ Title: 30-Year-Old Bug: High-Severity libpng Flaw (CVSS 8.3) Exposes Millions of Apps
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 02:58:28 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_25646 #Denial of Service #Heap Buffer Overflow #image processing #Legacy Vulnerability #libpng #Open Source Security #Patch Alert #PNG #Remote Code Execution
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 02:58:28 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_25646 #Denial of Service #Heap Buffer Overflow #image processing #Legacy Vulnerability #libpng #Open Source Security #Patch Alert #PNG #Remote Code Execution
Daily CyberSecurity
30-Year-Old Bug: High-Severity libpng Flaw (CVSS 8.3) Exposes Millions of Apps
A 30-year-old heap overflow in libpng (CVE-2026-25646) exposes apps to DoS & RCE. The flaw affects all versions since inception. Update to v1.6.55 now.
⤷ Title: Tuesday Morning Threat Report: Feb 10, 2026 TMTR
════════════════════════
𐀪 Author: Mark Maguire
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 02:15:56 GMT
════════════════════════
⌗ Tags: #cybersecurity #olympics #hacking
════════════════════════
𐀪 Author: Mark Maguire
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 02:15:56 GMT
════════════════════════
⌗ Tags: #cybersecurity #olympics #hacking
Medium
Tuesday Morning Threat Report: Feb 10, 2026 TMTR
A Russian hacking group launches a DDoS attack on the Olympics, and Firefox adds settings to let users opt-in to new AI browser features
⤷ Title: Security Controls That Quietly Stop Working After AI Integration
════════════════════════
𐀪 Author: Pritam Dutta
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 05:55:18 GMT
════════════════════════
⌗ Tags: #application_security #cybersecurity #ai_security #ai_security_threat
════════════════════════
𐀪 Author: Pritam Dutta
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 05:55:18 GMT
════════════════════════
⌗ Tags: #application_security #cybersecurity #ai_security #ai_security_threat
Medium
Security Controls That Quietly Stop Working After AI Integration
In the previous post, I argued that AI didn’t break security — it exposed assumptions we didn’t realize we were making.
⤷ Title: The Silent Imposter: A Deep Dive into CSRF Attacks
════════════════════════
𐀪 Author: Vaibhav Tiwari
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 04:44:59 GMT
════════════════════════
⌗ Tags: #csrf #cybersecurity #hacking #xs
════════════════════════
𐀪 Author: Vaibhav Tiwari
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 04:44:59 GMT
════════════════════════
⌗ Tags: #csrf #cybersecurity #hacking #xs
Medium
The Silent Imposter: A Deep Dive into CSRF Attacks
From beginner concepts to professional defenses, how attackers hijack your trust.
⤷ Title: Web Application Security: Hands-On Practice (Chapter 10 from The Web Application Hacker’s Handbook)
════════════════════════
𐀪 Author: Aditya Kumar
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 04:16:50 GMT
════════════════════════
⌗ Tags: #chapter_10 #web_application_security #cyber_security_training #hacking #cybersecurity
════════════════════════
𐀪 Author: Aditya Kumar
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 04:16:50 GMT
════════════════════════
⌗ Tags: #chapter_10 #web_application_security #cyber_security_training #hacking #cybersecurity
Medium
Web Application Security: Hands-On Practice (Chapter 10 from The Web Application Hacker’s Handbook)
Note: This write-up reflects my learning and hands-on practice based on the book The Web Application Hacker’s Handbook: Discovering and…
⤷ Title: Shannon Is What Happens When Penetration Testing Becomes Autonomous
════════════════════════
𐀪 Author: Ishank choudhary
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 04:36:00 GMT
════════════════════════
⌗ Tags: #testing #penetration_testing #framework #artificial_intelligence #ai
════════════════════════
𐀪 Author: Ishank choudhary
════════════════════════
ⴵ Time: Tue, 10 Feb 2026 04:36:00 GMT
════════════════════════
⌗ Tags: #testing #penetration_testing #framework #artificial_intelligence #ai
Medium
Shannon Is What Happens When Penetration Testing Becomes Autonomous
I dug into Shannon properly this time — and it finally clicked why this isn’t “just another security tool”