⤷ Title: Rokarolla Android Banking Trojan Steals Financial Data
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 06:30:56 +0000
════════════════════════
⌗ Tags: #Malware #Android Malware #Banking Trojan #CVE_2023_35674 #CVE_2023_40088 #CVE_2024_0044 #Rokarolla
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 06:30:56 +0000
════════════════════════
⌗ Tags: #Malware #Android Malware #Banking Trojan #CVE_2023_35674 #CVE_2023_40088 #CVE_2024_0044 #Rokarolla
Daily CyberSecurity
Rokarolla Android Banking Trojan Steals Financial Data
The Rokarolla Android banking trojan executes a complete device takeover. It targets 217 apps and steals credentials through fake overlays and keyloggers.
⤷ Title: One Email, Multiple Accounts: Account Duplication
════════════════════════
𐀪 Author: Parth Narula
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 07:22:18 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #penetration_testing #bug_bounty_tips #bug_bounty #cybersecurity
════════════════════════
𐀪 Author: Parth Narula
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 07:22:18 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #penetration_testing #bug_bounty_tips #bug_bounty #cybersecurity
Medium
One Email, Multiple Accounts: Account Duplication
Hey Hackers, I am Parth Narula. A penetration tester, bug hunter, red teamer and overall a security researcher. I live for those moments…
⤷ Title: Privilege Escalation Through Named-Pipe Flaw
════════════════════════
𐀪 Author: Defidev
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 07:19:21 GMT
════════════════════════
⌗ Tags: #privelege_escalation #bug_bounty #cybersecurity #hacking
════════════════════════
𐀪 Author: Defidev
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 07:19:21 GMT
════════════════════════
⌗ Tags: #privelege_escalation #bug_bounty #cybersecurity #hacking
Medium
Privilege Escalation Through Named-Pipe Flaw
Note: I cannot disclose any part of the company information as this was not exactly a “Bug bounty”. But, as this vulnerability found was…
⤷ Title: Cyber Security Professional
════════════════════════
𐀪 Author: Cozonix
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 06:14:25 GMT
════════════════════════
⌗ Tags: #technology #information_technology #cyber_security_awareness #kali_linux #hacking
════════════════════════
𐀪 Author: Cozonix
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 06:14:25 GMT
════════════════════════
⌗ Tags: #technology #information_technology #cyber_security_awareness #kali_linux #hacking
Medium
Cyber Security Professional
Skills, Career Path, and Future Opportunities
⤷ Title: Year of the Rabbit
════════════════════════
𐀪 Author: Leon
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 06:02:09 GMT
════════════════════════
⌗ Tags: #ctf #hacking #tryhackme #boot_to_root #ctf_writeup
════════════════════════
𐀪 Author: Leon
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 06:02:09 GMT
════════════════════════
⌗ Tags: #ctf #hacking #tryhackme #boot_to_root #ctf_writeup
Medium
Year of the Rabbit
Room: TryHackMe Year of the Rabbit
⤷ Title: I Analyzed My First Phishing Alert in a SOC Lab. Here’s What Gave It Away.
════════════════════════
𐀪 Author: Cyberwithalish
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 07:18:21 GMT
════════════════════════
⌗ Tags: #tryhackme #cyber_security_awareness #phishing #tryhackme_writeup #phishing_email
════════════════════════
𐀪 Author: Cyberwithalish
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 07:18:21 GMT
════════════════════════
⌗ Tags: #tryhackme #cyber_security_awareness #phishing #tryhackme_writeup #phishing_email
Medium
I Analyzed My First Phishing Alert in a SOC Lab. Here’s What Gave It Away.
The email said my Amazon package couldn’t be delivered. Something was wrong with my address, and if I didn’t confirm my details within 48…
⤷ Title: SOC L1 Alert Reporting — TryHackMe Write-Up
════════════════════════
𐀪 Author: Darshan
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 06:50:15 GMT
════════════════════════
⌗ Tags: #tryhackme #soc #cybersecurity
════════════════════════
𐀪 Author: Darshan
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 06:50:15 GMT
════════════════════════
⌗ Tags: #tryhackme #soc #cybersecurity
Medium
SOC L1 Alert Reporting — TryHackMe Write-Up
Task 1 — Introduction
⤷ Title: Elastic: Setting up a SOC Lab | TryHackMe
════════════════════════
𐀪 Author: Ryca
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 06:41:36 GMT
════════════════════════
⌗ Tags: #elastic #tryhackme #blue_team #cybersecurity
════════════════════════
𐀪 Author: Ryca
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 06:41:36 GMT
════════════════════════
⌗ Tags: #elastic #tryhackme #blue_team #cybersecurity
Medium
Elastic: Setting up a SOC Lab | TryHackMe
Set up a SOC lab with Elasticsearch, Kibana, and Fleet Server.
⤷ Title: The 2026 AI Agent Credential Crisis: Six Months of Intelligence, One Unanswered Question
════════════════════════
𐀪 Author: Duncan N. Ndegwa
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 07:52:27 GMT
════════════════════════
⌗ Tags: #ai_agents_in_action #semi_annual_review #non_human_identities #api_security #threat_intelligence
════════════════════════
𐀪 Author: Duncan N. Ndegwa
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 07:52:27 GMT
════════════════════════
⌗ Tags: #ai_agents_in_action #semi_annual_review #non_human_identities #api_security #threat_intelligence
Medium
The 2026 AI Agent Credential Crisis: Six Months of Intelligence, One Unanswered Question
28 Million Secrets. 200,000 Vulnerable Servers. The Security Industry Built the Governance Layer. Nobody Built the Design Layer.
⤷ Title: Three Incidents. Four Layers. One Week.
════════════════════════
𐀪 Author: Duncan N. Ndegwa
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 07:40:25 GMT
════════════════════════
⌗ Tags: #mastra_ai #servicenow #api_security #security_credentials #fortinet
════════════════════════
𐀪 Author: Duncan N. Ndegwa
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 07:40:25 GMT
════════════════════════
⌗ Tags: #mastra_ai #servicenow #api_security #security_credentials #fortinet
Medium
Three Incidents. Four Layers. One Week.
The same week the agentic web was declared production-ready, credential exfiltration hit four different layers of the stack. Same root…
⤷ Title: New Mistic Backdoor Linked to KongTuke in ClickFix and ModeloRAT Campaigns
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 14:24:37 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 14:24:37 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Apache Kvrocks Vulnerabilities Fix Five Severe Flaws
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 09:58:10 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache Kvrocks #CVE_2026_41566 #CVE_2026_46752 #CVE_2026_54226 #Vulnerability
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 09:58:10 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache Kvrocks #CVE_2026_41566 #CVE_2026_46752 #CVE_2026_54226 #Vulnerability
Daily CyberSecurity
Apache Kvrocks Vulnerabilities Fix Five Severe Flaws
Five Apache Kvrocks vulnerabilities, including CVSS 10 NoSQL database flaws, expose servers to DoS and overflow attacks. Patch to version 2.16.0 now.
⤷ Title: AutoJack AI Agent Exploit Unveiled
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 08:52:41 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI agent #AutoGen Studio #AutoJack #cybersecurity #Exploit #rce #Vulnerability
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 08:52:41 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI agent #AutoGen Studio #AutoJack #cybersecurity #Exploit #rce #Vulnerability
Daily CyberSecurity
AutoJack AI Agent Exploit Unveiled
Discover the AutoJack AI agent exploit! We explore the AutoGen Studio vulnerability that allows remote code execution via local MCP WebSockets.
⤷ Title: Windows Crypto Clipper Malware Exposed
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 08:01:49 +0000
════════════════════════
⌗ Tags: #Malware #cryptocurrency #cybersecurity #malware #Microsoft Threat Intelligence #Tor routed cryptocurrency stealer #Windows crypto clipper malware
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 08:01:49 +0000
════════════════════════
⌗ Tags: #Malware #cryptocurrency #cybersecurity #malware #Microsoft Threat Intelligence #Tor routed cryptocurrency stealer #Windows crypto clipper malware
Daily CyberSecurity
Windows Crypto Clipper Malware Exposed
Microsoft discovered a new Windows crypto clipper malware. This Tor routed cryptocurrency stealer uses USB drives to spread and steal wallet addresses.
⤷ Title: Excessive Data Exposure via Unauthenticated GraphQL Endpoint
════════════════════════
𐀪 Author: 0xPinocchioSec
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 09:20:53 GMT
════════════════════════
⌗ Tags: #bug_bounty #infosec #graphql #web_security #cybersecurity_research
════════════════════════
𐀪 Author: 0xPinocchioSec
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 09:20:53 GMT
════════════════════════
⌗ Tags: #bug_bounty #infosec #graphql #web_security #cybersecurity_research
Medium
Excessive Data Exposure via Unauthenticated GraphQL Endpoint
Bug Bounty Write-up | Information Disclosure | GraphQL Security
⤷ Title: Insecure Deserialization: The Silent Code Executor Hackers Love — By GrayXploit Security Research…
════════════════════════
𐀪 Author: Grayxploit
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 09:02:25 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty_tips #owasp #bug_bounty #red_team
════════════════════════
𐀪 Author: Grayxploit
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 09:02:25 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty_tips #owasp #bug_bounty #red_team
Medium
Insecure Deserialization: The Silent Code Executor Hackers Love — By GrayXploit Security Research Team
“Give me control over what your app trusts, and I’ll own your server.” — Every exploit developer who has touched a Java serialization bug
⤷ Title: Cordyceps: The CI/CD Exploit That Let Any Free GitHub Account Hijack Microsoft, Google, and Apache
════════════════════════
𐀪 Author: Abhijith
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 09:00:43 GMT
════════════════════════
⌗ Tags: #infosec #open_source #appsec #devsecops #cybersecurity
════════════════════════
𐀪 Author: Abhijith
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 09:00:43 GMT
════════════════════════
⌗ Tags: #infosec #open_source #appsec #devsecops #cybersecurity
Medium
Cordyceps: The CI/CD Exploit That Let Any Free GitHub Account Hijack Microsoft, Google, and Apache
A parasitic fungus takes over its host’s body and controls it from within. Security researchers just found something eerily similar living…
⤷ Title: How I Actually Find Freelance Pentest Clients Without a Sales Background
════════════════════════
𐀪 Author: Ismail Tasdelen
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 09:20:08 GMT
════════════════════════
⌗ Tags: #business #freelancing #cybersecurity #penetration_testing #careers
════════════════════════
𐀪 Author: Ismail Tasdelen
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 09:20:08 GMT
════════════════════════
⌗ Tags: #business #freelancing #cybersecurity #penetration_testing #careers
Medium
How I Actually Find Freelance Pentest Clients Without a Sales Background
Nobody taught me how to sell. Here’s the system I accidentally built that brings in consulting work without a single cold call.
⤷ Title: TryHackMe “Forward” Writeup | sAMAccountName Spoofing to Domain Admin (CVE-2021–42278 & 42287)
════════════════════════
𐀪 Author: matteo-iacovantuono
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 08:06:38 GMT
════════════════════════
⌗ Tags: #penetration_testing #ctf #tryhackme #ctf_writeup #active_directory
════════════════════════
𐀪 Author: matteo-iacovantuono
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 08:06:38 GMT
════════════════════════
⌗ Tags: #penetration_testing #ctf #tryhackme #ctf_writeup #active_directory
Medium
TryHackMe “Forward” Writeup | sAMAccountName Spoofing to Domain Admin (CVE-2021–42278 & 42287)
Introduction
⤷ Title: Blueprint — TryHackMe WriteUp with Flags
════════════════════════
𐀪 Author: Rayenhafsawy
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 08:55:03 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #tryhackme_writeup #ctf #tryhackme #cybersecurity
════════════════════════
𐀪 Author: Rayenhafsawy
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 08:55:03 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #tryhackme_writeup #ctf #tryhackme #cybersecurity
Medium
Blueprint — TryHackMe WriteUp with Flags
Blueprint — TryHackMe WriteUp with Flags Date: 31/08/2025 Room Link: https://tryhackme.com/room/blueprint My Profile: https://tryhackme.com/p/RayenHafsawy 🧭 Introduction This room chains an …
⤷ Title: Free cybersecurity certifications in 2026
════════════════════════
𐀪 Author: Abdul Samad
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 09:17:36 GMT
════════════════════════
⌗ Tags: #ethical_hacking #career_development #certification #cybersecurity #online_learning
════════════════════════
𐀪 Author: Abdul Samad
════════════════════════
ⴵ Time: Thu, 25 Jun 2026 09:17:36 GMT
════════════════════════
⌗ Tags: #ethical_hacking #career_development #certification #cybersecurity #online_learning
Medium
Free cybersecurity certifications in 2026
Free Cybersecurity Certifications in 2026: Which Ones Are Actually Worth Your Time?