⤷ Title: Getting Into a College’s AWS Account Without a Password — How Two Public AWS API Calls Exposed…
════════════════════════
𐀪 Author: Padmesh
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:06:33 GMT
════════════════════════
⌗ Tags: #aws #web_security #cloud_security #cybersecurity #ethical_hacking
════════════════════════
𐀪 Author: Padmesh
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:06:33 GMT
════════════════════════
⌗ Tags: #aws #web_security #cloud_security #cybersecurity #ethical_hacking
Medium
Getting Into a College’s AWS Account Without a Password — How Two Public AWS API Calls Exposed…
By Padmesh P S | Cybersecurity Researcher | 4 min read | Severity: Critical
⤷ Title: The Bug That Shouldn’t Exist…But Still Does Everywhere
════════════════════════
𐀪 Author: Fateyaly
════════════════════════
ⴵ Time: Thu, 21 May 2026 05:29:40 GMT
════════════════════════
⌗ Tags: #ethical_hacking #programming #technology #cybersecurity #coding
════════════════════════
𐀪 Author: Fateyaly
════════════════════════
ⴵ Time: Thu, 21 May 2026 05:29:40 GMT
════════════════════════
⌗ Tags: #ethical_hacking #programming #technology #cybersecurity #coding
Medium
The Bug That Shouldn’t Exist…But Still Does Everywhere
Some mistakes never die in real-world apps.
⤷ Title: Linux Privilege Escalation: Automation | TryHackMe |practical challenge
════════════════════════
𐀪 Author: Jose Praveen
════════════════════════
ⴵ Time: Thu, 21 May 2026 05:16:51 GMT
════════════════════════
⌗ Tags: #privilege_escalation #tryhackme_walkthrough #ethical_hacking #cybersecurity
════════════════════════
𐀪 Author: Jose Praveen
════════════════════════
ⴵ Time: Thu, 21 May 2026 05:16:51 GMT
════════════════════════
⌗ Tags: #privilege_escalation #tryhackme_walkthrough #ethical_hacking #cybersecurity
Medium
Linux Privilege Escalation: Automation | TryHackMe |practical challenge
Build on Linux privilege escalation skills: automate enumeration and use public exploits.
⤷ Title: 9-Year-Old Linux Kernel Flaw Enables Root Command Execution on Major Distros
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 21 May 2026 13:05:53 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 21 May 2026 13:05:53 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Anonymity Stripped: Unsecured Kibana and Dozzle Dashboards Leak 22 Million FTF Live Video Chat Records
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:26:05 +0000
════════════════════════
⌗ Tags: #Data Leak #Burhan LTD #Cooy Ads Ltd #Data Leak Cybernews #De_anonymization Risk #Dozzle Docker Logs #FTF Live Video Chat #Real_time Token Leak #Regional CERT Escalation #Session Metadata Exposure #Unsecured Kibana Dashboard
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:26:05 +0000
════════════════════════
⌗ Tags: #Data Leak #Burhan LTD #Cooy Ads Ltd #Data Leak Cybernews #De_anonymization Risk #Dozzle Docker Logs #FTF Live Video Chat #Real_time Token Leak #Regional CERT Escalation #Session Metadata Exposure #Unsecured Kibana Dashboard
Penetration Testing Tools
Anonymity Stripped: Unsecured Kibana and Dozzle Dashboards Leak 22 Million FTF Live Video Chat Records
The FTF Live video-chat ecosystem, which explicitly guaranteed its consumer base absolute anonymity during randomized social interactions, has
⤷ Title: The Egress Hijack: How the Kimwolf Botnet Weaponized Commercial Residential Proxies for Mass Cyber Attacks
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:21:11 +0000
════════════════════════
⌗ Tags: #Malware #Application Layer Exhaustion #Badbox 2.0 Malware Framework #Byteconnect SDK Monetization #Gray Market Proxy Suppliers #IPIDEA Android Supply Chain #Kimwolf Botnet Residential Proxies #Qurium Forensic Investigation #Triada Trojan persistence #Turnkey Cybercrime Economy #Unauthenticated ADB Exploitation
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:21:11 +0000
════════════════════════
⌗ Tags: #Malware #Application Layer Exhaustion #Badbox 2.0 Malware Framework #Byteconnect SDK Monetization #Gray Market Proxy Suppliers #IPIDEA Android Supply Chain #Kimwolf Botnet Residential Proxies #Qurium Forensic Investigation #Triada Trojan persistence #Turnkey Cybercrime Economy #Unauthenticated ADB Exploitation
Penetration Testing Tools
The Egress Hijack: How the Kimwolf Botnet Weaponized Commercial Residential Proxies for Mass Cyber Attacks
Residential proxy networks, which convincingly mirror standard domestic internet connections, have emerged as one of the most agonizing
⤷ Title: Microsoft Smashes “Fox Tempest” Cyber Syndicate Selling Cryptographic Cover for Ransomware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:17:59 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Code Validation Bypass #Fox Tempest Malware Signing #Malvertising SEO Poisoning #Microsoft Artifact Signing Abuse #OpFauxSign Takedown #Phantom Azure Developer Tenancies #Rhysida Ransomware Deployment #Short_Lived 72_Hour Certificates #SignSpace Cloud Seizure #Vanilla Tempest Co_Conspirator
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:17:59 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Code Validation Bypass #Fox Tempest Malware Signing #Malvertising SEO Poisoning #Microsoft Artifact Signing Abuse #OpFauxSign Takedown #Phantom Azure Developer Tenancies #Rhysida Ransomware Deployment #Short_Lived 72_Hour Certificates #SignSpace Cloud Seizure #Vanilla Tempest Co_Conspirator
Penetration Testing Tools
Microsoft Smashes "Fox Tempest" Cyber Syndicate Selling Cryptographic Cover for Ransomware
Microsoft has initiated formal civil litigation against the fraudulent syndicate operating the Fox Tempest enterprise, an illicit infrastructure
⤷ Title: The Silent Command: “AudioHijack” Technique Uses Inaudible Sound Waves to Take Over Voice AI Assistants
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:15:28 +0000
════════════════════════
⌗ Tags: #Technology #Acoustic Attention Supervision #AudioHijack Adversarial Audio #Auditory Prompt Injection #Cross Platform Exploit Transfer #IEEE Symposium on Security and Privacy #Inaudible Sound Commands #Large Audio_Language Models #Meng Chen Zhejiang University #Multimodal AI Tool Misuse #Waveform Tokenization Bypassing
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:15:28 +0000
════════════════════════
⌗ Tags: #Technology #Acoustic Attention Supervision #AudioHijack Adversarial Audio #Auditory Prompt Injection #Cross Platform Exploit Transfer #IEEE Symposium on Security and Privacy #Inaudible Sound Commands #Large Audio_Language Models #Meng Chen Zhejiang University #Multimodal AI Tool Misuse #Waveform Tokenization Bypassing
Penetration Testing Tools
The Silent Command: "AudioHijack" Technique Uses Inaudible Sound Waves to Take Over Voice AI Assistants
Voice-centric artificial intelligence platforms are susceptible to specialized adversarial subversion executed via acoustic signals that elude casual human
⤷ Title: Living Off the HTA Land: How Hackers Weaponize a 1999 Windows Utility for Silent Malware Delivery
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:04:27 +0000
════════════════════════
⌗ Tags: #Malware #Amatera Info Harvester #ClickFix Social Engineering LummaStealer #ClipBanker Crypto Stealer #CountLoader Staging Framework #Emmenhtal Loader #HTML Application HTA Payload #Living off the Land Binaries #MSHTA Weaponization Malware Delivery #mshta.exe Windows Binary #PurpleFox Rootkit Lineage
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:04:27 +0000
════════════════════════
⌗ Tags: #Malware #Amatera Info Harvester #ClickFix Social Engineering LummaStealer #ClipBanker Crypto Stealer #CountLoader Staging Framework #Emmenhtal Loader #HTML Application HTA Payload #Living off the Land Binaries #MSHTA Weaponization Malware Delivery #mshta.exe Windows Binary #PurpleFox Rootkit Lineage
Penetration Testing Tools
Living Off the HTA Land: How Hackers Weaponize a 1999 Windows Utility for Silent Malware Delivery
Threat actors are increasingly weaponizing MSHTA, a legacy Windows utility, as a highly efficient conduit to execute malicious
⤷ Title: New PawsRunner Steganography Loader Evades EDR to Deploy PureLogs Infostealer
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 08:40:14 +0000
════════════════════════
⌗ Tags: #Malware #.NET malware #Cyber Security #Environment Variables #FortiGuard Labs #infosec #Infostealer #PawsRunner #Phishing Lure #PureLogs #Steganography Loader #TXZ Archive
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 08:40:14 +0000
════════════════════════
⌗ Tags: #Malware #.NET malware #Cyber Security #Environment Variables #FortiGuard Labs #infosec #Infostealer #PawsRunner #Phishing Lure #PureLogs #Steganography Loader #TXZ Archive
Daily CyberSecurity
New PawsRunner Steganography Loader Evades EDR to Deploy PureLogs Infostealer
FortiGuard Labs warns of PawsRunner, a new .NET steganography loader hiding PureLogs infostealer payloads inside cat images to bypass corporate EDR.
⤷ Title: Bypassing MFA: Gremlin Stealer Evolves into Advanced Memory-Resident Session Hijacker
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:26:35 +0000
════════════════════════
⌗ Tags: #Malware #Chromium Browsers #Clipboard Hijacker #Control Flow Flattening #Cyber Security #Discord Token Stealer #Gremlin Stealer #infosec #Infostealer #MFA Bypass #Session Hijacking #Unit 42
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:26:35 +0000
════════════════════════
⌗ Tags: #Malware #Chromium Browsers #Clipboard Hijacker #Control Flow Flattening #Cyber Security #Discord Token Stealer #Gremlin Stealer #infosec #Infostealer #MFA Bypass #Session Hijacking #Unit 42
Daily CyberSecurity
Bypassing MFA: Gremlin Stealer Evolves into Advanced Memory-Resident Session Hijacker
Unit 42 exposes the new Gremlin stealer. It uses memory-resident techniques to hijack active browser session tokens and completely bypass MFA.
⤷ Title: I Found a Prompt Injection Vulnerability in DeepHat - And They Never Responded
════════════════════════
𐀪 Author: Tanmoy M.
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:27:15 GMT
════════════════════════
⌗ Tags: #ai_security #cybersecurity #bug_bounty #llm #prompt_injection
════════════════════════
𐀪 Author: Tanmoy M.
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:27:15 GMT
════════════════════════
⌗ Tags: #ai_security #cybersecurity #bug_bounty #llm #prompt_injection
Medium
I Found a Prompt Injection Vulnerability in DeepHat - And They Never Responded
I Found a Prompt Injection Vulnerability in DeepHat (Kindo’s Cybersecurity AI) — And They Never Responded DeepHat is an AI assistant built by Kindo, positioned specifically as a …
⤷ Title: Abusing LLMNR/NBT-NS Poisoning for Initial Active Directory Foothold
════════════════════════
𐀪 Author: Md Fahim Al Shihab
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:29:57 GMT
════════════════════════
⌗ Tags: #active_directory #hackthebox #cybersecurity #cpt #hacking
════════════════════════
𐀪 Author: Md Fahim Al Shihab
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:29:57 GMT
════════════════════════
⌗ Tags: #active_directory #hackthebox #cybersecurity #cpt #hacking
Medium
Abusing LLMNR/NBT-NS Poisoning for Initial Active Directory Foothold
Introduction
⤷ Title: The Hidden Career Path: How Ethical Hacking in Delhi Is Creating India’s Most Recession-Proof…
════════════════════════
𐀪 Author: Varun Papnai
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:22:07 GMT
════════════════════════
⌗ Tags: #ethical_hacking #hacking #cybersecurity
════════════════════════
𐀪 Author: Varun Papnai
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:22:07 GMT
════════════════════════
⌗ Tags: #ethical_hacking #hacking #cybersecurity
Medium
The Hidden Career Path: How Ethical Hacking in Delhi Is Creating India’s Most Recession-Proof…
While thousands of students debate between engineering degrees and MBA programs, a smaller group of people is quietly walking into one of…
⤷ Title: SOCIAL ENGINEERING(Zphisher)
════════════════════════
𐀪 Author: BlueTeamMal
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:56:45 GMT
════════════════════════
⌗ Tags: #social_engineering #hacking #cybersecurity
════════════════════════
𐀪 Author: BlueTeamMal
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:56:45 GMT
════════════════════════
⌗ Tags: #social_engineering #hacking #cybersecurity
Medium
ZPHISHER HANDS ON LAB
1.I used Zphisher as it’s the one of the simplest tool for social engineering.
⤷ Title: A Full Network Revision — part 1
════════════════════════
𐀪 Author: ExploitHunter
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:55:39 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #infosec #cyber_security_awareness #web_development
════════════════════════
𐀪 Author: ExploitHunter
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:55:39 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #infosec #cyber_security_awareness #web_development
Medium
A Full Network Revision — part 1
(I have explained in short cause revision are meant to be shorter and more easily understandable so if you want proper explanation go to my…
⤷ Title: Peluang dan Risiko Hukum Penerapan AI di Penetration Testing
════════════════════════
𐀪 Author: Aditya Fathan
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:22:51 GMT
════════════════════════
⌗ Tags: #hacker #ai #penetration_testing #cybersecurity #technology
════════════════════════
𐀪 Author: Aditya Fathan
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:22:51 GMT
════════════════════════
⌗ Tags: #hacker #ai #penetration_testing #cybersecurity #technology
Medium
Peluang dan Risiko Hukum Penerapan AI di Penetration Testing
Di era digital yang modern, ancaman cybersecurity merupakan salah satu ancaman yang sangat berbahaya. Ancaman siber kini menjadi tantangan…
⤷ Title: Why Cyber Security is the Hottest Career in India in 2026
════════════════════════
𐀪 Author: Itmgoi
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:51:17 GMT
════════════════════════
⌗ Tags: #technology #engineering_career #cybersecurity #artificial_intelligence #ethical_hacking
════════════════════════
𐀪 Author: Itmgoi
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:51:17 GMT
════════════════════════
⌗ Tags: #technology #engineering_career #cybersecurity #artificial_intelligence #ethical_hacking
Medium
Why Cyber Security is the Hottest Career in India in 2026
Every 39 seconds, a cyber attack happens somewhere in the world. By 2026, cyber security has become one of the most important — and most…
⤷ Title: Day 7: Email Footprinting -What an Email Address Gives Away Before You Click Send
════════════════════════
𐀪 Author: Adarsh Vardhan
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:31:40 GMT
════════════════════════
⌗ Tags: #osint #netwroking #cybersecurity #email #ethical_hacking
════════════════════════
𐀪 Author: Adarsh Vardhan
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:31:40 GMT
════════════════════════
⌗ Tags: #osint #netwroking #cybersecurity #email #ethical_hacking
Medium
Day 7: Email Footprinting -What an Email Address Gives Away Before You Click Send
30 days. Public. Still going.
⤷ Title: When Identity is the Attack Path
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 21 May 2026 16:00:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 21 May 2026 16:00:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Microsoft’s Retired IE Tool MSHTA Now Being Used in Fileless Malware Attacks
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Thu, 21 May 2026 10:18:11 +0000
════════════════════════
⌗ Tags: #Security #Malware #Microsoft #Cyber Attack #Cybersecurity #Fileless #LOLBIN #MSHTA #Vulnerability
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Thu, 21 May 2026 10:18:11 +0000
════════════════════════
⌗ Tags: #Security #Malware #Microsoft #Cyber Attack #Cybersecurity #Fileless #LOLBIN #MSHTA #Vulnerability
Hackread
Microsoft’s Retired IE Tool MSHTA Now Being Used in Fileless Malware Attacks
Despite Internet Explorer’s retirement, hackers are abusing the legacy MSHTA utility in stealthy fileless malware attacks targeting Windows users.