⤷ Title: [CopyFail and DirtyFrag] — Privilege Escalation on Ubuntu
════════════════════════
𐀪 Author: Bash Overflow
════════════════════════
ⴵ Time: Wed, 20 May 2026 05:14:27 GMT
════════════════════════
⌗ Tags: #penetration_testing #copyfail #ubuntu #linux_priv_esc #dirty_frag
════════════════════════
𐀪 Author: Bash Overflow
════════════════════════
ⴵ Time: Wed, 20 May 2026 05:14:27 GMT
════════════════════════
⌗ Tags: #penetration_testing #copyfail #ubuntu #linux_priv_esc #dirty_frag
Medium
[CopyFail and DirtyFrag] — Privilege Escalation on Ubuntu
Two kernel exploits. One root shell. No race conditions, no disk traces, no way your file integrity checks will catch it.
⤷ Title: Connecting Burp Suite with GitHub Copilot via MCP Server
════════════════════════
𐀪 Author: Albert
════════════════════════
ⴵ Time: Wed, 20 May 2026 05:02:28 GMT
════════════════════════
⌗ Tags: #penetration_testing #generative_ai_tools #burpsuite #mcp_server #github_copilot
════════════════════════
𐀪 Author: Albert
════════════════════════
ⴵ Time: Wed, 20 May 2026 05:02:28 GMT
════════════════════════
⌗ Tags: #penetration_testing #generative_ai_tools #burpsuite #mcp_server #github_copilot
Medium
Connecting Burp Suite with GitHub Copilot via MCP Server
How to bring AI directly into your web vulnerability analysis workflow.
⤷ Title: Shai-Hulud Malware Hits @antv Ecosystem, Poisoning Hundreds of npm Packages
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 08:04:06 +0000
════════════════════════
⌗ Tags: #Malware #@antv Malicious Packages #atool Maintainer Account #CI/CD Secret Stealer #Claude Code Backdoor #OIDC Token Hijacking #Session P2P Network #Shai_Hulud npm Attack #Sigstore Provenance Forgery #Software Supply Chain Worm #Visual Studio Code Malware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 08:04:06 +0000
════════════════════════
⌗ Tags: #Malware #@antv Malicious Packages #atool Maintainer Account #CI/CD Secret Stealer #Claude Code Backdoor #OIDC Token Hijacking #Session P2P Network #Shai_Hulud npm Attack #Sigstore Provenance Forgery #Software Supply Chain Worm #Visual Studio Code Malware
Penetration Testing Tools
Shai-Hulud Malware Hits @antv Ecosystem, Poisoning Hundreds of npm Packages
The npm ecosystem has been subjected to a massive, highly coordinated supply-chain assault. Within a compressed one-hour envelope,
⤷ Title: Bypassing the Guardrails: New “DirtyDecrypt” Linux Flaw Overwrites Root Files in Memory
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 08:02:12 +0000
════════════════════════
⌗ Tags: #Vulnerability #CONFIG_RXGK Kernel Parameter #Container Escape Exploit #Copy_on_Write Bypass #CVE_2026_31635 #Fedora Arch Linux Vulnerable #Linux DirtyDecrypt Vulnerability #Linux Kernel Sasha Levin #RxGK Page Cache Corruption #rxgk_decrypt_skb Local Privilege Escalation #Zellic Threat Research
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 08:02:12 +0000
════════════════════════
⌗ Tags: #Vulnerability #CONFIG_RXGK Kernel Parameter #Container Escape Exploit #Copy_on_Write Bypass #CVE_2026_31635 #Fedora Arch Linux Vulnerable #Linux DirtyDecrypt Vulnerability #Linux Kernel Sasha Levin #RxGK Page Cache Corruption #rxgk_decrypt_skb Local Privilege Escalation #Zellic Threat Research
Penetration Testing Tools
Bypassing the Guardrails: New "DirtyDecrypt" Linux Flaw Overwrites Root Files in Memory
The Linux ecosystem has been destabilized by successive operational waves for several weeks; scarcely had the industry turbulence
⤷ Title: Under the PyInstaller Mask: Point Wild Exposes XWorm V7.4 Stealth Loader and AMSI Bypass
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:49:06 +0000
════════════════════════
⌗ Tags: #Malware #.NET Reflection Plugins #AES Encrypted C2 Configuration #AMSI Bypass In_Memory Execution #Fileless Remote Administrative Trojan #Hidden System File Attributes #Point Wild Threat Intelligence #PyInstaller Loader Forensic #Runtime Windows API Resolving #Win.Kernel_Svc_AJ8iOw.exe #XWorm V7.4 Malware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:49:06 +0000
════════════════════════
⌗ Tags: #Malware #.NET Reflection Plugins #AES Encrypted C2 Configuration #AMSI Bypass In_Memory Execution #Fileless Remote Administrative Trojan #Hidden System File Attributes #Point Wild Threat Intelligence #PyInstaller Loader Forensic #Runtime Windows API Resolving #Win.Kernel_Svc_AJ8iOw.exe #XWorm V7.4 Malware
Information Security News
Under the PyInstaller Mask: Point Wild Exposes XWorm V7.4 Stealth Loader and AMSI Bypass - Information Security News
Threat intelligence architects at Point Wild have dissectively mapped a contemporary XWorm V7.4 infection pipeline, demonstrating how a seemingly innocuous, Python-based installation package systematically mutates into a formidable remote administrative implant.…
⤷ Title: China-Linked Hackers Deploy “TencShell” Backdoor via Faux Web Font Files
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:45:33 +0000
════════════════════════
⌗ Tags: #Malware #Cato CTRL Threat Research #Donut Shellcode In_Memory Execution #Fileless Position_Independent Code #Rshell Framework Customization #State_Sponsored Cyber Espionage #Tencent API Impersonation #TencShell Backdoor Malware #Third_Party Identity Compromise #Web Font Masquerading #Windows Registry Persistence
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:45:33 +0000
════════════════════════
⌗ Tags: #Malware #Cato CTRL Threat Research #Donut Shellcode In_Memory Execution #Fileless Position_Independent Code #Rshell Framework Customization #State_Sponsored Cyber Espionage #Tencent API Impersonation #TencShell Backdoor Malware #Third_Party Identity Compromise #Web Font Masquerading #Windows Registry Persistence
Information Security News
China-Linked Hackers Deploy "TencShell" Backdoor via Faux Web Font Files - Information Security News
In April 2026, threat intelligence specialists at Cato CTRL neutralized a sophisticated network intrusion attempt targeting a major multinational manufacturing enterprise. The adversaries sought to establish a persistent foothold within the corporate perimeter…
⤷ Title: The Zero-Detection Shadow: Unit 42 Exposes Advanced Gremlin Stealer Hijacking Live Browser WebSockets
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:42:37 +0000
════════════════════════
⌗ Tags: #Malware #.NET Resource Obfuscation #Chromium Identity Theft #Code Virtualization Bytecode #Cookie Protection Bypass #Cryptojacking Clipboard Hijacker #Gremlin Stealer Malware #Unit 42 Palo Alto Networks #WebSocket Session Hijacking #XOR Encoded Payload #Zero Detection C2 Infrastructure
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:42:37 +0000
════════════════════════
⌗ Tags: #Malware #.NET Resource Obfuscation #Chromium Identity Theft #Code Virtualization Bytecode #Cookie Protection Bypass #Cryptojacking Clipboard Hijacker #Gremlin Stealer Malware #Unit 42 Palo Alto Networks #WebSocket Session Hijacking #XOR Encoded Payload #Zero Detection C2 Infrastructure
Information Security News
The Zero-Detection Shadow: Unit 42 Exposes Advanced Gremlin Stealer Hijacking Live Browser WebSockets - Information Security News
The exfiltration of administrative credentials and volatile session tokens increasingly manifests not as a rudimentary brute-force incursion, but as a meticulously obfuscated mechanism engineered to maintain absolute silence until the definitive moment of…
⤷ Title: Developer Alert: Poisoned Nx Console VS Code Extension Steals AWS, npm, and GitHub Tokens
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:37:38 +0000
════════════════════════
⌗ Tags: #Malware #Bun JavaScript Runtime #Dangling Orphan Commit #DNS Tunneling Exfiltration #GitHub Token Theft #Multi_Stage Credential Harvester #Nx Console Extension Compromise #rwl.angular_console #Sigstore Supply Chain Poisoning #StepSecurity Forensic Audit #Visual Studio Code Marketplace
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:37:38 +0000
════════════════════════
⌗ Tags: #Malware #Bun JavaScript Runtime #Dangling Orphan Commit #DNS Tunneling Exfiltration #GitHub Token Theft #Multi_Stage Credential Harvester #Nx Console Extension Compromise #rwl.angular_console #Sigstore Supply Chain Poisoning #StepSecurity Forensic Audit #Visual Studio Code Marketplace
Penetration Testing Tools
Developer Alert: Poisoned Nx Console VS Code Extension Steals AWS, npm, and GitHub Tokens
The highly popular Nx Console extension for Visual Studio Code has been compromised via a weaponized supply-chain injection.
⤷ Title: Net Closed: Interpol’s Operation Ramz Bags 200 Cybercriminals and Smashes 53 Command Servers
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:35:12 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Command and Control Server Seizure #Cybercrime Arrests 2026 #Human Trafficking Scam Network #Interpol Operation Ramz #Middle East Cyber Crime #Operation Red Card 2.0 #Operation Synergia III #Phishing_as_a_Service Node Dismantled #Private Sector Threat Intelligence #Sovereign Nation Law Enforcement
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:35:12 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Command and Control Server Seizure #Cybercrime Arrests 2026 #Human Trafficking Scam Network #Interpol Operation Ramz #Middle East Cyber Crime #Operation Red Card 2.0 #Operation Synergia III #Phishing_as_a_Service Node Dismantled #Private Sector Threat Intelligence #Sovereign Nation Law Enforcement
Information Security News
Net Closed: Interpol's Operation Ramz Bags 200 Cybercriminals and Smashes 53 Command Servers - Information Security News
Interpol has coordinated the apprehension of over 200 individuals implicated in a sophisticated cybercrime matrix operating across the Middle East and North Africa. Designated as Operation Ramz, the multi-jurisdictional law enforcement surge spanned 13...
⤷ Title: Extortion in the Classroom: FBI Warns of ShinyHunters Cyber Attack on National Distance-Learning Platform
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:30:05 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Academic Ransomware Extortion #Distance Learning Platform Breach #FBI Threat Warning #IC3 Data Leak #Internet Crime Complaint Center #PII Exfiltration Defense #ShinyHunters Cyber Intrusion #Spear_Phishing Campaign Mitigation #Student Data Privacy #Swatting Incursions
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:30:05 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Academic Ransomware Extortion #Distance Learning Platform Breach #FBI Threat Warning #IC3 Data Leak #Internet Crime Complaint Center #PII Exfiltration Defense #ShinyHunters Cyber Intrusion #Spear_Phishing Campaign Mitigation #Student Data Privacy #Swatting Incursions
Information Security News
Extortion in the Classroom: FBI Warns of ShinyHunters Cyber Attack on National Distance-Learning Platform - Information Security…
The United States Federal Bureau of Investigation (FBI) has issued an official warning regarding the cascading aftermath of a cyber-intrusion orchestrated by the notorious threat syndicate ShinyHunters against a major distance-learning platform utilized by...
⤷ Title: The Script Editor Trap: New macOS “Reaper” Malware Bypasses Terminal Defenses to Steal Keychains
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:22:37 +0000
════════════════════════
⌗ Tags: #Malware #applescript URI Scheme #Gatekeeper xattr Evasion #Keychain Exfiltration #LaunchAgent Persistence #macOS Reaper Malware #macOS Tahoe Security Bypass #Remote Access Trojan #Script Editor Exploit #SentinelOne Threat Intel #SHub Infostealer
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:22:37 +0000
════════════════════════
⌗ Tags: #Malware #applescript URI Scheme #Gatekeeper xattr Evasion #Keychain Exfiltration #LaunchAgent Persistence #macOS Reaper Malware #macOS Tahoe Security Bypass #Remote Access Trojan #Script Editor Exploit #SentinelOne Threat Intel #SHub Infostealer
Information Security News
The Script Editor Trap: New macOS "Reaper" Malware Bypasses Terminal Defenses to Steal Keychains - Information Security News
A novel exploitation technique has surfaced on macOS, designed to deceive users via a counterfeit “security update.” The malicious payload, designated as Reaper—an advanced iteration of the SHub information stealer—no longer relies on social...
⤷ Title: Inside UNC6671’s “BlackFile” Cloud Extortion Campaigns
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 08:56:06 +0000
════════════════════════
⌗ Tags: #Cybercriminals #adversary_in_the_middle #AiTM Proxy #BlackFile #Cloud Security #Google Threat Intelligence #infosec #MFA Bypass #Microsoft 365 Security #Okta Compromise #UNC6671 #Vishing Campaign
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 08:56:06 +0000
════════════════════════
⌗ Tags: #Cybercriminals #adversary_in_the_middle #AiTM Proxy #BlackFile #Cloud Security #Google Threat Intelligence #infosec #MFA Bypass #Microsoft 365 Security #Okta Compromise #UNC6671 #Vishing Campaign
Daily CyberSecurity
Inside UNC6671’s “BlackFile” Cloud Extortion Campaigns
A sophisticated identity-centric threat actor operating under the brand “BlackFile” has spent the early months of 2026 disrupting corporate cloud environments across the globe. A detai…
⤷ Title: Google Drops Antigravity 2.0 to Orchestrate Teams of Autonomous Coding Agents
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 08:53:02 +0000
════════════════════════
⌗ Tags: #Technology #Antigravity CLI #Antigravity SDK #Autonomous AI Agents #Bare_Metal OS Generation #Code Bender Security #Enterprise Software Automation #Gemini 3.5 Flash #Google Antigravity 2.0 #Sub_agent Teamwork #Vibe Coding
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 08:53:02 +0000
════════════════════════
⌗ Tags: #Technology #Antigravity CLI #Antigravity SDK #Autonomous AI Agents #Bare_Metal OS Generation #Code Bender Security #Enterprise Software Automation #Gemini 3.5 Flash #Google Antigravity 2.0 #Sub_agent Teamwork #Vibe Coding
Daily CyberSecurity
Google Drops Antigravity 2.0 to Orchestrate Teams of Autonomous Coding Agents
At the Google I/O 2026 developer symposium, the technology exposition that elicited the most profound excitement among software engineers was undoubtedly the monumental unveiling of Antigravity 2.…
⤷ Title: Zero-Trust Voice: Discord Finalizes Mandatory “DAVE” Encryption for All Audio and Video Streams
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:49:06 +0000
════════════════════════
⌗ Tags: #Technology #Automated Content Moderation #Client Update Requirements #Discord DAVE Protocol #End_to_End Encryption #Messaging Layer Security #Multi_Party Cryptographic Handshake #Selective Forwarding Unit #Trail of Bits Audit #User Data Sovereignty #WebRTC Encoded Transform
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:49:06 +0000
════════════════════════
⌗ Tags: #Technology #Automated Content Moderation #Client Update Requirements #Discord DAVE Protocol #End_to_End Encryption #Messaging Layer Security #Multi_Party Cryptographic Handshake #Selective Forwarding Unit #Trail of Bits Audit #User Data Sovereignty #WebRTC Encoded Transform
Daily CyberSecurity
Zero-Trust Voice: Discord Finalizes Mandatory “DAVE” Encryption for All Audio and Video Streams
Discord, the widely celebrated communications architecture tailored for the global gaming constituency, has announced the universal initialization of mandatory end-to-end encryption (E2EE) across …
⤷ Title: Velvet Chollima Leaves Backend Keys Inside Critical GitLab Dead-Drop Malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:16:41 +0000
════════════════════════
⌗ Tags: #Malware #Cryptocurrency Theft #cyber_espionage #EV Code Signing #GitLab Dead_Drop #infosec #Keylogger #Malware Analysis #OPSEC Failure #threat intelligence #Tralert FX #Velvet Chollima
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:16:41 +0000
════════════════════════
⌗ Tags: #Malware #Cryptocurrency Theft #cyber_espionage #EV Code Signing #GitLab Dead_Drop #infosec #Keylogger #Malware Analysis #OPSEC Failure #threat intelligence #Tralert FX #Velvet Chollima
Daily CyberSecurity
Velvet Chollima Leaves Backend Keys Inside Critical GitLab Dead-Drop Malware
A routine investigation into a low-detection installer has blown the doors off a highly organized, financially motivated cyber-espionage campaign. Orchestrated by a single operator or small team l…
⤷ Title: Bypassing the Frontend Obfuscation: How I Uncovered a Company’s Entire Internal Architecture…
════════════════════════
𐀪 Author: Priyansh
════════════════════════
ⴵ Time: Wed, 20 May 2026 08:05:00 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_bounty_writeup #bug_bounty_tips #bugs #hacking
════════════════════════
𐀪 Author: Priyansh
════════════════════════
ⴵ Time: Wed, 20 May 2026 08:05:00 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_bounty_writeup #bug_bounty_tips #bugs #hacking
Medium
Bypassing the Frontend Obfuscation: How I Uncovered a Company’s Entire Internal Architecture…
As bug bounty hunters, we are trained to find the chink in the armor. But what happens when the target has no visible cracks?
⤷ Title: Android API Security Testing: Where the Real Bounties Live in 2025
════════════════════════
𐀪 Author: Akifkhan
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:26:57 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #android #bug_bounty #ctf
════════════════════════
𐀪 Author: Akifkhan
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:26:57 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #android #bug_bounty #ctf
Medium
Android API Security Testing: Where the Real Bounties Live in 2025
Tags: android-security api-security mobile-pentesting bug-bounty burp-suite idor broken-authentication ethical-hacking cybersecurity…
⤷ Title: Your SDK Dependencies May Be Parsing Untrusted XML Without Protection
════════════════════════
𐀪 Author: Eldor Zufarov
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:47:22 GMT
════════════════════════
⌗ Tags: #devsecops #saas_security #cybersecurity #application_security #python
════════════════════════
𐀪 Author: Eldor Zufarov
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:47:22 GMT
════════════════════════
⌗ Tags: #devsecops #saas_security #cybersecurity #application_security #python
Medium
Your SDK Dependencies May Be Parsing Untrusted XML Without Protection
Your SDK dependencies may be parsing untrusted XML without protection — and you wouldn’t know until an incident.
⤷ Title: The AI That Found a 27-Year-Old Security Vulnerability — And What It Means for All of Us
════════════════════════
𐀪 Author: BARRON VAN DEN BERG
════════════════════════
ⴵ Time: Wed, 20 May 2026 08:36:41 GMT
════════════════════════
⌗ Tags: #hacking #information_security #technology #cybersecurity #artificial_intelligence
════════════════════════
𐀪 Author: BARRON VAN DEN BERG
════════════════════════
ⴵ Time: Wed, 20 May 2026 08:36:41 GMT
════════════════════════
⌗ Tags: #hacking #information_security #technology #cybersecurity #artificial_intelligence
Medium
The AI That Found a 27-Year-Old Security Vulnerability — And What It Means for All of Us
Anthropic’s Claude Mythos just changed cybersecurity forever. Here’s the full story.
⤷ Title: A HACKER GROUP JUST STOLE 4,000 OF GITHUB’S OWN PRIVATE REPOSITORIES..
════════════════════════
𐀪 Author: Abe Toluwani
════════════════════════
ⴵ Time: Wed, 20 May 2026 08:12:23 GMT
════════════════════════
⌗ Tags: #hacking #github #security_breach #cyberattack #data_breach
════════════════════════
𐀪 Author: Abe Toluwani
════════════════════════
ⴵ Time: Wed, 20 May 2026 08:12:23 GMT
════════════════════════
⌗ Tags: #hacking #github #security_breach #cyberattack #data_breach
Medium
A HACKER GROUP JUST STOLE 4,000 OF GITHUB’S OWN PRIVATE REPOSITORIES..
Earlier today GitHub announced that were investigating unauthorized access to GitHub’s internal repositories and claims that no customer…
⤷ Title: The $11.5M Forged Transfer in the Verus-Ethereum Bridge Hack
════════════════════════
𐀪 Author: Alice Hsu
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:56:01 GMT
════════════════════════
⌗ Tags: #hacking #blockchain #vulnerability #defi
════════════════════════
𐀪 Author: Alice Hsu
════════════════════════
ⴵ Time: Wed, 20 May 2026 07:56:01 GMT
════════════════════════
⌗ Tags: #hacking #blockchain #vulnerability #defi
Medium
The $11.5M Forged Transfer in the Verus-Ethereum Bridge Hack
Incident Overview