⤷ Title: CISA Adds Actively Exploited Linux Root Access Bug CVE-2026-31431 to KEV
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Sun, 03 May 2026 11:56:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Sun, 03 May 2026 11:56:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Trellix Confirms Source Code Breach With Unauthorized Repository Access
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Sat, 02 May 2026 12:11:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Sat, 02 May 2026 12:11:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: 30,000 Facebook Accounts Hacked via Google AppSheet Phishing Campaign
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Fri, 01 May 2026 23:39:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Fri, 01 May 2026 23:39:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Paying Ransom Won’t Help as VECT 2.0 Ransomware Destroys Data Irreversibly
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Sun, 03 May 2026 16:07:49 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attacks #Cyber Crime #Check Point #Cyber Attack #Cybersecurity #RaaS #Ransomware #VECT #Windows
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Sun, 03 May 2026 16:07:49 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attacks #Cyber Crime #Check Point #Cyber Attack #Cybersecurity #RaaS #Ransomware #VECT #Windows
Hackread
Paying Ransom Won’t Help as VECT 2.0 Ransomware Destroys Data Irreversibly
VECT 2.0 ransomware contains fatal flaws that permanently destroy files, making recovery impossible and rendering ransom payments useless for victims.
⤷ Title: Google AppSheet Exploited in 30,000-User Facebook Phishing Operation
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Sat, 02 May 2026 18:07:25 +0000
════════════════════════
⌗ Tags: #Security #Phishing Scam #AccountDumpling #AppSheet #Cyber Attack #Cybersecurity #Facebook #Fraud #Google #Google Drive #Phishing #Scam
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Sat, 02 May 2026 18:07:25 +0000
════════════════════════
⌗ Tags: #Security #Phishing Scam #AccountDumpling #AppSheet #Cyber Attack #Cybersecurity #Facebook #Fraud #Google #Google Drive #Phishing #Scam
Hackread
Google AppSheet Exploited in 30,000-User Facebook Phishing Operation
Scammers are abusing Google AppSheet and Google Drive to bypass security filters and steal thousands of Facebook Business accounts globally.
⤷ Title: 2 US Cybersecurity Experts Jailed for Aiding ALPHV (BlackCat) Ransomware
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Sat, 02 May 2026 12:28:23 +0000
════════════════════════
⌗ Tags: #Cyber Crime #Cyber Attacks #Security #ALPHV #BlackCat #cyber attacks #Cybersecurity #FBI #Kevin Martin #Ransomware #Ryan Goldberg
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Sat, 02 May 2026 12:28:23 +0000
════════════════════════
⌗ Tags: #Cyber Crime #Cyber Attacks #Security #ALPHV #BlackCat #cyber attacks #Cybersecurity #FBI #Kevin Martin #Ransomware #Ryan Goldberg
Hackread
2 US Cybersecurity Experts Jailed for Aiding ALPHV (BlackCat) Ransomware
Two US cybersecurity experts jailed for aiding BlackCat ransomware group, extorting victims worldwide and exploiting insider access for profit.
⤷ Title: 45,000 Attacks, 5,300+ Backdoors Tied to China-Linked Cybercrime Operation
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Fri, 01 May 2026 19:38:50 +0000
════════════════════════
⌗ Tags: #Cyber Crime #Malware #Security #backdoor #China #Cyber Attack #Cybersecurity #OpenClaw #SOCRadar
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Fri, 01 May 2026 19:38:50 +0000
════════════════════════
⌗ Tags: #Cyber Crime #Malware #Security #backdoor #China #Cyber Attack #Cybersecurity #OpenClaw #SOCRadar
Hackread
45,000 Attacks, 5,300+ Backdoors Tied to China-Linked Cybercrime Operation
SOCRadar researchers have uncovered a massive Chinese cybercrime operation using the OpenClaw and Paperclip systems to automate global attacks.
⤷ Title: Hackers Use Jenkins Access to Deploy DDoS Botnet Against Gaming Servers
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Fri, 01 May 2026 17:21:29 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attacks #Botnet #Cyber Attack #Cybersecurity #Darktrace #DDOS #Malware #RCE
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Fri, 01 May 2026 17:21:29 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attacks #Botnet #Cyber Attack #Cybersecurity #Darktrace #DDOS #Malware #RCE
Hackread
Hackers Use Jenkins Access to Deploy DDoS Botnet Against Gaming Servers
A new campaign shows misconfigured Jenkins servers abused to deploy a DDoS botnet targeting gaming systems, with Valve Corporation infrastructure in focus.
⤷ Title: The Tadashi Files: Inside the xlabs_v1 Botnet Targeting 4 Million Android Devices
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sun, 03 May 2026 02:17:23 +0000
════════════════════════
⌗ Tags: #Malware #ADB Exploit #Android Malware #cybersecurity #DDoS_for_hire #Hunt Intelligence #IoT security #Mirai botnet #Port 5555 #RakNet Flood #Tadashi #xlabs_v1
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sun, 03 May 2026 02:17:23 +0000
════════════════════════
⌗ Tags: #Malware #ADB Exploit #Android Malware #cybersecurity #DDoS_for_hire #Hunt Intelligence #IoT security #Mirai botnet #Port 5555 #RakNet Flood #Tadashi #xlabs_v1
Daily CyberSecurity
The Tadashi Files: Inside the xlabs_v1 Botnet Targeting 4 Million Android Devices
Hunt Intelligence dismantles xlabs_v1, a Mirai-derived botnet targeting 4M Android devices via port 5555. See how an exposed server leaked the entire toolkit.
⤷ Title: 40,000+ Sites Exposed: Critical 9.8 CVSS Flaw Grants Total WordPress Account Takeover
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 02 May 2026 09:17:45 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Account Takeover #Authentication Bypass #CVE_2026_7567 #CVSS 9.8 #infosec #PHP Logic Bypass #Plugin Vulnerability #Temporary Login #wordpress #wordpress security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 02 May 2026 09:17:45 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Account Takeover #Authentication Bypass #CVE_2026_7567 #CVSS 9.8 #infosec #PHP Logic Bypass #Plugin Vulnerability #Temporary Login #wordpress #wordpress security
Daily CyberSecurity
40,000+ Sites Exposed: Critical 9.8 CVSS Flaw Grants Total WordPress Account Takeover
A critical 9.8 CVSS vulnerability in the Temporary Login plugin puts 40,000+ WordPress sites at risk of account takeover. Patch to version 1.1.0 now!
⤷ Title: Cybersecurity Pros Sentenced for Running ALPHV BlackCat Ransomware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 02 May 2026 03:29:54 +0000
════════════════════════
⌗ Tags: #Cybercriminals #ALPHV/BlackCat #Cybercrime #Cybersecurity Insider Threat #Extortion #fbi #Healthcare Breach #infosec #Kevin Martin #RaaS #ransomware #Ryan Goldberg
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 02 May 2026 03:29:54 +0000
════════════════════════
⌗ Tags: #Cybercriminals #ALPHV/BlackCat #Cybercrime #Cybersecurity Insider Threat #Extortion #fbi #Healthcare Breach #infosec #Kevin Martin #RaaS #ransomware #Ryan Goldberg
Daily CyberSecurity
Cybersecurity Pros Sentenced for Running ALPHV BlackCat Ransomware
Two US cybersecurity professionals get 4 years in prison for acting as ALPHV BlackCat ransomware affiliates, extorting victims and leaking patient data.
⤷ Title: Waking the Sleepers: The BufferZoneCorp Campaign Poisoning Ruby and Go Ecosystems
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 02 May 2026 03:23:31 +0000
════════════════════════
⌗ Tags: #Malware #BufferZoneCorp #CI/CD security #Credential Theft #cybersecurity #Go Modules #infosec #knot_theory #malware #RubyGems #Socket #supply chain attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 02 May 2026 03:23:31 +0000
════════════════════════
⌗ Tags: #Malware #BufferZoneCorp #CI/CD security #Credential Theft #cybersecurity #Go Modules #infosec #knot_theory #malware #RubyGems #Socket #supply chain attack
Daily CyberSecurity
Waking the Sleepers: The BufferZoneCorp Campaign Poisoning Ruby and Go Ecosystems
Socket uncovers a BufferZoneCorp "sleeper" campaign targeting Ruby and Go. Malicious packages steal SSH keys and subvert CI/CD pipelines. Patch now!
⤷ Title: The Fall of Versus: Dark Web Mastermind Extradited to the US to Face Life Behind Bars
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 02 May 2026 03:16:31 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cryptocurrency #Cybercrime #dark web #Darknet Market #Extradition #fbi #infosec #JCODE #Law Enforcement #malware #Patrick Schmitz #The Versus Project
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 02 May 2026 03:16:31 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cryptocurrency #Cybercrime #dark web #Darknet Market #Extradition #fbi #infosec #JCODE #Law Enforcement #malware #Patrick Schmitz #The Versus Project
Daily CyberSecurity
The Fall of Versus: Dark Web Mastermind Extradited to the US to Face Life Behind Bars
The alleged mastermind behind the massive "Versus Project" dark web market has been extradited to the US. He faces life in prison for cybercrime and drugs.
⤷ Title: AI’s Supply Chain Nightmare: The Lightning Framework Worm and the “Silence Developer” Meme
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 02 May 2026 03:10:13 +0000
════════════════════════
⌗ Tags: #Malware #AI security #Cloud Secrets #cyber_espionage #GitHub Compromise #infosec #LAPSUS$ #Lightning AI #malware #PyPI Security #supply chain attack #TEAM PCP
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 02 May 2026 03:10:13 +0000
════════════════════════
⌗ Tags: #Malware #AI security #Cloud Secrets #cyber_espionage #GitHub Compromise #infosec #LAPSUS$ #Lightning AI #malware #PyPI Security #supply chain attack #TEAM PCP
Daily CyberSecurity
AI's Supply Chain Nightmare: The Lightning Framework Worm and the "Silence Developer" Meme
Lightning framework v2.6.2 & 2.6.3 are malicious. The "TEAM PCP" worm steals cloud secrets and poisons repos. Downgrade to 2.6.1 and rotate keys immediately!
⤷ Title: “TanStack”: Malicious Name-Squatting Campaign Steals Environment Secrets
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 02 May 2026 02:58:40 +0000
════════════════════════
⌗ Tags: #Malware #Credential Theft #cybersecurity #data exfiltration #DevSecOps #infosec #npm malware #Postinstall Script #supply chain attack #Svix #TanStack #Typosquatting
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 02 May 2026 02:58:40 +0000
════════════════════════
⌗ Tags: #Malware #Credential Theft #cybersecurity #data exfiltration #DevSecOps #infosec #npm malware #Postinstall Script #supply chain attack #Svix #TanStack #Typosquatting
Daily CyberSecurity
"TanStack": Malicious Name-Squatting Campaign Steals Environment Secrets
A malicious unscoped "tanstack" npm package used live-debugged postinstall scripts to steal .env secrets via Svix webhooks. Check your dependencies now.
⤷ Title: The Worm Turns to PHP: Mini Shai-Hulud’s 20-Million-Install Hijack of Intercom
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 02 May 2026 02:52:05 +0000
════════════════════════
⌗ Tags: #Malware #Bun runtime #Composer Exploit #cybersecurity #infosec #Intercom_PHP #Mini Shai_Hulud #Packagist #PHP Malware #Secret Theft #Socket #supply chain attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 02 May 2026 02:52:05 +0000
════════════════════════
⌗ Tags: #Malware #Bun runtime #Composer Exploit #cybersecurity #infosec #Intercom_PHP #Mini Shai_Hulud #Packagist #PHP Malware #Secret Theft #Socket #supply chain attack
Daily CyberSecurity
The Worm Turns to PHP: Mini Shai-Hulud’s 20-Million-Install Hijack of Intercom
Socket uncovers a massive Mini Shai-Hulud breach in the Intercom PHP SDK. Malicious version 5.0.2 steals cloud secrets and GitHub tokens. Rotate keys now!
⤷ Title: Active In-The-Wild Exploit: “Copy Fail” Grants Root Privileges on Millions of Linux Systems
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 02 May 2026 02:22:36 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA KEV #Copy Fail #CVE_2026_31431 #cybersecurity #Dirty Pipe #In The Wild #infosec #Linux Kernel #privilege escalation #Root Privileges #Theori #Xint Code
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 02 May 2026 02:22:36 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA KEV #Copy Fail #CVE_2026_31431 #cybersecurity #Dirty Pipe #In The Wild #infosec #Linux Kernel #privilege escalation #Root Privileges #Theori #Xint Code
Daily CyberSecurity
Active In-The-Wild Exploit: "Copy Fail" Grants Root Privileges on Millions of Linux Systems
CISA warns "Copy Fail" (CVE-2026-31431) is exploited in the wild. Millions of Linux systems since 2017 are vulnerable to instant root privilege takeover.
⤷ Title: 44,000 IPs Hijacked: cPanel’s 9.8 CVSS Authentication Bypass Triggers Global Ransomware Surge
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 02 May 2026 02:04:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CISA KEV #CPanel #CVE_2026_41940 #CVSS 9.8 #cybersecurity #infosec #Mirai botnet #ransomware #Server Security #WebPros #WHM
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 02 May 2026 02:04:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CISA KEV #CPanel #CVE_2026_41940 #CVSS 9.8 #cybersecurity #infosec #Mirai botnet #ransomware #Server Security #WebPros #WHM
Daily CyberSecurity
44,000 IPs Hijacked: cPanel’s 9.8 CVSS Authentication Bypass Triggers Global Ransomware Surge
CISA warns of cPanel CVE-2026-41940 (CVSS 9.8). 44,000 IPs compromised via authentication bypass, fueling ransomware and botnets. Patch by May 3rd!
⤷ Title: When Logout Isn’t Really Goodbye: A Subtle Data Exposure Bug.
════════════════════════
𐀪 Author: kjulius
════════════════════════
ⴵ Time: Sat, 02 May 2026 07:46:46 GMT
════════════════════════
⌗ Tags: #p4_bugs #bug_bounty #cache_memory #logouts
════════════════════════
𐀪 Author: kjulius
════════════════════════
ⴵ Time: Sat, 02 May 2026 07:46:46 GMT
════════════════════════
⌗ Tags: #p4_bugs #bug_bounty #cache_memory #logouts
Medium
When Logout Isn’t Really Goodbye: A Subtle Data Exposure Bug.
When Logout Isn’t Really Goodbye: A Subtle Data Exposure Bug. How a “low severity” simple P4 bug still managed to teach a high-value lesson (and yes… it paid 💰). Beginner …
⤷ Title: Printer Shares — picoCTF Writeup
════════════════════════
𐀪 Author: mayhack
════════════════════════
ⴵ Time: Sun, 03 May 2026 20:21:07 GMT
════════════════════════
⌗ Tags: #bug_bounty #hacking #ctf #cybersecurity
════════════════════════
𐀪 Author: mayhack
════════════════════════
ⴵ Time: Sun, 03 May 2026 20:21:07 GMT
════════════════════════
⌗ Tags: #bug_bounty #hacking #ctf #cybersecurity
Medium
Printer Shares — picoCTF Writeup
Challenge Description
⤷ Title: Broken Authentication & 2FA Bybass ‘Business logic Error’
════════════════════════
𐀪 Author: Mohammed Yassin
════════════════════════
ⴵ Time: Sun, 03 May 2026 20:02:21 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #hacking
════════════════════════
𐀪 Author: Mohammed Yassin
════════════════════════
ⴵ Time: Sun, 03 May 2026 20:02:21 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #hacking
Medium
Broken Authentication & 2FA Bybass ‘Business logic Error’
Hi Hunter this is mohammed yassin ‘Ghostxz’ Again, Back with Bug in authentication flow let to business logic failure,
The bug is sample…
The bug is sample…