⤷ Title: NATS-as-C2: Critical Langflow Exploit Exploded to Fuel “LLMjacking” and Cloud Credential Theft
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 07:02:20 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI Agent security #AWS Bedrock Exploitation #Cloud Credential Theft #CVE_2026_33017 #KeyHunter Botnet #Langflow Vulnerability #LLMjacking #NATS_as_C2 #Sysdig Threat Research #uTLS Fingerprinting
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 07:02:20 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI Agent security #AWS Bedrock Exploitation #Cloud Credential Theft #CVE_2026_33017 #KeyHunter Botnet #Langflow Vulnerability #LLMjacking #NATS_as_C2 #Sysdig Threat Research #uTLS Fingerprinting
Penetration Testing Tools
NATS-as-C2: Critical Langflow Exploit Exploded to Fuel "LLMjacking" and Cloud Credential Theft
Forensic specialists from Sysdig have intercepted an anomalous command architecture governing a malicious network, wherein the adversaries abandoned
⤷ Title: Resurgent Tycoon 2FA Adopts OAuth Device Code Phishing to Hijack Microsoft 365
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 07:11:10 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cloud Security #Cyber Security #Device Authorization Grant #eSentire TRU #infosec #MFA Bypass #Microsoft 365 #Multi_Factor Authentication #OAuth 2.0 #PhaaS #Phishing_as_a_Service #Tycoon 2FA
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 07:11:10 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cloud Security #Cyber Security #Device Authorization Grant #eSentire TRU #infosec #MFA Bypass #Microsoft 365 #Multi_Factor Authentication #OAuth 2.0 #PhaaS #Phishing_as_a_Service #Tycoon 2FA
Daily CyberSecurity
Resurgent Tycoon 2FA Adopts OAuth Device Code Phishing to Hijack Microsoft 365
Despite a global takedown, Tycoon 2FA is back. It now abuses Microsoft's device code flow to bypass MFA entirely. Disabling this flow is critical.
⤷ Title: Chinese APT FamousSparrow Weaponizes Evolved Deed RAT Against Azerbaijani Energy Infrastructure
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 07:06:15 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Bitdefender Labs #cyber_espionage #Deed RAT #DLL Sideloading #Energy Sector Security #FamousSparrow #infosec #Microsoft Exchange #ProxyNotShell #South Caucasus #TernDoor
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 07:06:15 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Bitdefender Labs #cyber_espionage #Deed RAT #DLL Sideloading #Energy Sector Security #FamousSparrow #infosec #Microsoft Exchange #ProxyNotShell #South Caucasus #TernDoor
Daily CyberSecurity
Chinese APT FamousSparrow Weaponizes Evolved Deed RAT Against Azerbaijani Energy Infrastructure
Bitdefender exposes a persistent FamousSparrow campaign using advanced DLL sideloading and Deed RAT to compromise energy infrastructure. Patch now!
⤷ Title: I Got Admin Access to Chhattisgarh CCTNS in One Login Attempt
════════════════════════
𐀪 Author: Siddharth
════════════════════════
ⴵ Time: Tue, 19 May 2026 08:32:52 GMT
════════════════════════
⌗ Tags: #government #hacking #bug_bounty #bug_bounty_tips
════════════════════════
𐀪 Author: Siddharth
════════════════════════
ⴵ Time: Tue, 19 May 2026 08:32:52 GMT
════════════════════════
⌗ Tags: #government #hacking #bug_bounty #bug_bounty_tips
Medium
I Got Admin Access to Chhattisgarh CCTNS in One Login Attempt🚨
It was past midnight when I tried it.
⤷ Title: 7 Recon Tricks That Paid Me Bounties
════════════════════════
𐀪 Author: cyber-ninjaaa
════════════════════════
ⴵ Time: Tue, 19 May 2026 08:26:28 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #hacking
════════════════════════
𐀪 Author: cyber-ninjaaa
════════════════════════
ⴵ Time: Tue, 19 May 2026 08:26:28 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty #hacking
Medium
7 Recon Tricks That Paid Me Bounties
Find your first bug by doing recon differently. Not harder. Just different.Most people run the same tools. Subfinder. Amass default mode…
⤷ Title: The Dark Side of the OSI Model: How Hackers Target Each Layer
════════════════════════
𐀪 Author: Singhreetika
════════════════════════
ⴵ Time: Tue, 19 May 2026 07:57:24 GMT
════════════════════════
⌗ Tags: #security #hacking #cybersecurity #networking #learning
════════════════════════
𐀪 Author: Singhreetika
════════════════════════
ⴵ Time: Tue, 19 May 2026 07:57:24 GMT
════════════════════════
⌗ Tags: #security #hacking #cybersecurity #networking #learning
Medium
The Dark Side of the OSI Model: How Hackers Target Each Layer
When most beginners learn the OSI Model, they usually memorize the seven layers to clear interviews or exams.
⤷ Title: Hackers, Flags, and the Art of Thinking Like an Attacker: Inside 0xDay CTF
════════════════════════
𐀪 Author: IEEE_HIT_SB
════════════════════════
ⴵ Time: Tue, 19 May 2026 07:11:06 GMT
════════════════════════
⌗ Tags: #technology #hacking #internet #networking #cybersecurity
════════════════════════
𐀪 Author: IEEE_HIT_SB
════════════════════════
ⴵ Time: Tue, 19 May 2026 07:11:06 GMT
════════════════════════
⌗ Tags: #technology #hacking #internet #networking #cybersecurity
Medium
Hackers, Flags, and the Art of Thinking Like an Attacker: Inside 0xDay CTF
Imagine being hande6d a locked box and told: “There’s a secret message hidden inside it. No hints. Good luck.”
⤷ Title: npm cooked: TanStack Got Owned in 6 Minutes, another supply chain attack with a dead-man’s switch.
════════════════════════
𐀪 Author: Arti Verma
════════════════════════
ⴵ Time: Tue, 19 May 2026 07:05:44 GMT
════════════════════════
⌗ Tags: #javascript #cybersecurity #technology #hacking #malware
════════════════════════
𐀪 Author: Arti Verma
════════════════════════
ⴵ Time: Tue, 19 May 2026 07:05:44 GMT
════════════════════════
⌗ Tags: #javascript #cybersecurity #technology #hacking #malware
Medium
npm cooked: TanStack Got Owned in 6 Minutes, another supply chain attack with a dead-man’s switch.
Yesterday, someone published 84 malicious versions across 42 @tanstack /* npm packages.
⤷ Title: Why Cyber Security & Ethical Hacking Are Among the Most Powerful Skills in 2026
════════════════════════
𐀪 Author: Sbacklinks
════════════════════════
ⴵ Time: Tue, 19 May 2026 07:58:17 GMT
════════════════════════
⌗ Tags: #ethical_hacking #physically_course #cybersecurity #genese_academy #online_courses
════════════════════════
𐀪 Author: Sbacklinks
════════════════════════
ⴵ Time: Tue, 19 May 2026 07:58:17 GMT
════════════════════════
⌗ Tags: #ethical_hacking #physically_course #cybersecurity #genese_academy #online_courses
Medium
Why Cyber Security & Ethical Hacking Are Among the Most Powerful Skills in 2026
As the world becomes more digital, cyber threats are increasing every day. Businesses, banks, governments, and even individuals are…
⤷ Title: SEPPMail Secure E-Mail Gateway Vulnerabilities Enable RCE and Mail Traffic Access
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 19 May 2026 14:53:15 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 19 May 2026 14:53:15 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Hosting Service Standards That Define High-Performing Agencies
════════════════════════
𐀪 Author: Owais Sultan
════════════════════════
ⴵ Time: Tue, 19 May 2026 10:44:08 +0000
════════════════════════
⌗ Tags: #Technology #Hosting
════════════════════════
𐀪 Author: Owais Sultan
════════════════════════
ⴵ Time: Tue, 19 May 2026 10:44:08 +0000
════════════════════════
⌗ Tags: #Technology #Hosting
Hackread
Hosting Service Standards That Define High-Performing Agencies
Top agencies treat hosting as strategy, using faster servers, stronger security, reliable backups, and expert support to keep clients long term. Win!
⤷ Title: Hackers Actively Exploit ‘Nginx Rift’ Vulnerability Affecting NGINX, F5 Products
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Tue, 19 May 2026 10:12:20 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attack #Cybersecurity #F5 #NGINX #VulnCheck #Vulnerability
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Tue, 19 May 2026 10:12:20 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attack #Cybersecurity #F5 #NGINX #VulnCheck #Vulnerability
Hackread
Hackers Actively Exploit ‘Nginx Rift’ Vulnerability Affecting NGINX, F5 Products
Hackers are actively exploiting the Nginx Rift vulnerability affecting NGINX and F5 products, exposing servers to denial-of-service attacks.
⤷ Title: GPU Security Alert: NVIDIA Drivers Hit with Critical 8.8 CVSS Flaw and Enterprise vGPU Bugs
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 09:38:51 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cloud Gaming #CVE_2026_24187 #GPU Display Driver #infosec #Linux Driver #nvidia #Patch Alert #privilege escalation #security update #vGPU Software #Windows Driver
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 09:38:51 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cloud Gaming #CVE_2026_24187 #GPU Display Driver #infosec #Linux Driver #nvidia #Patch Alert #privilege escalation #security update #vGPU Software #Windows Driver
Daily CyberSecurity
GPU Security Alert: NVIDIA Drivers Hit with Critical 8.8 CVSS Flaw and Enterprise vGPU Bugs
NVIDIA has issued critical security updates for its GPU display drivers and vGPU software to fix a high-severity 8.8 CVSS use-after-free flaw. Patch now!
⤷ Title: Unmasked Origin: Infamous “OrBit” Linux Rootkit Exposed as a Fork of Open-Source Medusa
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 09:22:30 +0000
════════════════════════
⌗ Tags: #Malware #BLOCKADE SPIDER #infosec #Intezer #LD_PRELOAD #Linux Security #Medusa Malware #OrBit Rootkit #PAM Hooking #Pluggable Authentication Modules #UNC3886 #userland rootkit
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 19 May 2026 09:22:30 +0000
════════════════════════
⌗ Tags: #Malware #BLOCKADE SPIDER #infosec #Intezer #LD_PRELOAD #Linux Security #Medusa Malware #OrBit Rootkit #PAM Hooking #Pluggable Authentication Modules #UNC3886 #userland rootkit
Daily CyberSecurity
Unmasked Origin: Infamous "OrBit" Linux Rootkit Exposed as a Fork of Open-Source Medusa
New research by Intezer reveals the OrBit Linux rootkit is actually a fork of the open-source Medusa kit, actively weaponized across multiple APTs.
⤷ Title: SQL & NoSQL Injection in APIs-The Vulnerability That Still Puts YOUR Data at Risk
════════════════════════
𐀪 Author: Sana Jalil
════════════════════════
ⴵ Time: Tue, 19 May 2026 09:01:42 GMT
════════════════════════
⌗ Tags: #sql_injection #non_sql_injection #owasp_top_10 #api_penetration_testing #bug_bounty
════════════════════════
𐀪 Author: Sana Jalil
════════════════════════
ⴵ Time: Tue, 19 May 2026 09:01:42 GMT
════════════════════════
⌗ Tags: #sql_injection #non_sql_injection #owasp_top_10 #api_penetration_testing #bug_bounty
Medium
SQL & NoSQL Injection in APIs-The Vulnerability That Still Puts YOUR Data at Risk
Introduction
⤷ Title: Secrets That Survive Everything
════════════════════════
𐀪 Author: Hemanth Gorijala
════════════════════════
ⴵ Time: Tue, 19 May 2026 09:01:24 GMT
════════════════════════
⌗ Tags: #devops #penetration_testing #bug_bounty #security #cybersecurity
════════════════════════
𐀪 Author: Hemanth Gorijala
════════════════════════
ⴵ Time: Tue, 19 May 2026 09:01:24 GMT
════════════════════════
⌗ Tags: #devops #penetration_testing #bug_bounty #security #cybersecurity
Medium
Secrets That Survive Everything
The Runtime Security Gap Left Unguarded
⤷ Title: The Sleeper Agent Bug: How One HTML Payload Lay Hidden for Months to Attack My Inbox ⏳
════════════════════════
𐀪 Author: LordofHeaven
════════════════════════
ⴵ Time: Tue, 19 May 2026 09:00:53 GMT
════════════════════════
⌗ Tags: #html_injection #web_security #infosec #coffinxp #bug_bounty
════════════════════════
𐀪 Author: LordofHeaven
════════════════════════
ⴵ Time: Tue, 19 May 2026 09:00:53 GMT
════════════════════════
⌗ Tags: #html_injection #web_security #infosec #coffinxp #bug_bounty
Medium
The Sleeper Agent Bug: How One HTML Payload Lay Hidden for Months to Attack My Inbox ⏳
The Sleeper Agent Bug: How One HTML Payload Lay Hidden for Months to Attack My Inbox ⏳ A short recon story about a delayed HTML injection, a surprising phishing vector, and why every output channel …
⤷ Title: A Pentester’s Methodology for Toxic Vulnerability Combinations
════════════════════════
𐀪 Author: Hemanth Gorijala
════════════════════════
ⴵ Time: Tue, 19 May 2026 09:00:37 GMT
════════════════════════
⌗ Tags: #bug_bounty #hacking #cybersecurity #security #penetration_testing
════════════════════════
𐀪 Author: Hemanth Gorijala
════════════════════════
ⴵ Time: Tue, 19 May 2026 09:00:37 GMT
════════════════════════
⌗ Tags: #bug_bounty #hacking #cybersecurity #security #penetration_testing
Medium
A Pentester’s Methodology for Toxic Vulnerability Combinations
How a Low, a Medium, and a High Compose Into a Critical
⤷ Title: How to Install Httpx Tool in Kali Linux & WSL (Beginner friendly)
════════════════════════
𐀪 Author: h4ckerstark1
════════════════════════
ⴵ Time: Tue, 19 May 2026 10:10:42 GMT
════════════════════════
⌗ Tags: #httpx #cybersecurity #reconnaissance #ethical_hacking #bug_bounty
════════════════════════
𐀪 Author: h4ckerstark1
════════════════════════
ⴵ Time: Tue, 19 May 2026 10:10:42 GMT
════════════════════════
⌗ Tags: #httpx #cybersecurity #reconnaissance #ethical_hacking #bug_bounty
Medium
How to Install Httpx Tool in Kali Linux & WSL (Beginner friendly)
written by H4ckerStark1
⤷ Title: Secrets That Survive Everything
════════════════════════
𐀪 Author: Hemanth Gorijala
════════════════════════
ⴵ Time: Tue, 19 May 2026 09:01:22 GMT
════════════════════════
⌗ Tags: #devops #penetration_testing #bug_bounty #security #cybersecurity
════════════════════════
𐀪 Author: Hemanth Gorijala
════════════════════════
ⴵ Time: Tue, 19 May 2026 09:01:22 GMT
════════════════════════
⌗ Tags: #devops #penetration_testing #bug_bounty #security #cybersecurity
Medium
Secrets That Survive Everything
The Runtime Security Gap Left Unguarded
⤷ Title: A Pentester’s Methodology for Toxic Vulnerability Combinations
════════════════════════
𐀪 Author: Hemanth Gorijala
════════════════════════
ⴵ Time: Tue, 19 May 2026 09:00:36 GMT
════════════════════════
⌗ Tags: #bug_bounty #hacking #cybersecurity #security #penetration_testing
════════════════════════
𐀪 Author: Hemanth Gorijala
════════════════════════
ⴵ Time: Tue, 19 May 2026 09:00:36 GMT
════════════════════════
⌗ Tags: #bug_bounty #hacking #cybersecurity #security #penetration_testing
Medium
A Pentester’s Methodology for Toxic Vulnerability Combinations
How a Low, a Medium, and a High Compose Into a Critical