⤷ Title: GodDamn Ransomware Rebrands Beast and Uses a Malicious Signed Driver to Disable Defenses
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 06:11:12 +0000
════════════════════════
⌗ Tags: #Malware #AnyDesk #Beast Ransomware #BYOVD #GodDamn Ransomware #Hyadina #Malicious Kernel Driver #mimikatz #Monster Ransomware #PoisonX #Symantec
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 06:11:12 +0000
════════════════════════
⌗ Tags: #Malware #AnyDesk #Beast Ransomware #BYOVD #GodDamn Ransomware #Hyadina #Malicious Kernel Driver #mimikatz #Monster Ransomware #PoisonX #Symantec
Daily CyberSecurity
GodDamn Ransomware Rebrands Beast and Uses a Malicious Signed Driver to Disable Defenses
At a Glance Malware family GodDamn ransomware (rebrand of Beast, formerly Monster) Threat actor Hyadina, a ransomware-as-a-service developer tracked by Symantec Target / victims Enterprise Windows…
⤷ Title: Notepad++ v8.9.7 Fixes 5 Vulnerabilities, All With Public Details and PoC Exploit Code
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 02:28:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #buffer overflow #notepad++ #Path Traversal #Zip Slip
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 02:28:16 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #buffer overflow #notepad++ #Path Traversal #Zip Slip
Daily CyberSecurity
Notepad++ v8.9.7 Fixes 5 Vulnerabilities, All With Public Details and PoC Exploit Code
TL;DR Notepad++ v8.9.7 fixes five security flaws in the popular Windows editor. Technical details and proof-of-concept exploit code for all five Notepad++ vulnerabilities are public in the project…
⤷ Title: Chrome 150 Security Update Fixes 15 Flaws, Including Two Critical Use-After-Free Bugs
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 01:45:52 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #chrome #google #use after free #V8
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 01:45:52 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #chrome #google #use after free #V8
Daily CyberSecurity
Chrome 150 Security Update Fixes 15 Flaws, Including Two Critical Use-After-Free Bugs
TL;DR Google has shipped a Chrome security update that raises the Stable channel to 150.0.7871.124/.125 on Windows and Mac, and 150.0.7871.124 on Linux. The release fixes 15 security flaws, includ…
⤷ Title: Passkey Phishing Campaign Uses Vishing Calls to Hijack Microsoft Entra Accounts
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 01:10:18 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Account Takeover #data extortion #Microsoft Entra #O_UNC_066 #Okta #Passkey Phishing #Phishing Kit #Pink #Vishing
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 01:10:18 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Account Takeover #data extortion #Microsoft Entra #O_UNC_066 #Okta #Passkey Phishing #Phishing Kit #Pink #Vishing
Daily CyberSecurity
Passkey Phishing Campaign Uses Vishing Calls to Hijack Microsoft Entra Accounts
At a Glance Actor O-UNC-066 (Okta); tracked as CL-CRI-1147 / “Pink” by Palo Alto Unit 42; linked to The Com Activity type Vishing plus passkey-enrollment phishing, leading to account t…
⤷ Title: CISA Warns Three SharePoint Server Vulnerabilities Are Exploited in the Wild, Urges Hardening
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 01:05:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA #KEV #Microsoft #Sharepoint
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 01:05:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA #KEV #Microsoft #Sharepoint
Daily CyberSecurity
CISA Warns Three SharePoint Server Vulnerabilities Are Exploited in the Wild, Urges Hardening
TL;DR CISA has confirmed active exploitation of three SharePoint vulnerabilities: CVE-2026-32201, CVE-2026-45659, and CVE-2026-56164. Threat actors chain them to gain access to on-premises SharePo…
⤷ Title: Node.js Backdoor Hides Its C2 on the TON Blockchain
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 00:10:15 +0000
════════════════════════
⌗ Tags: #Malware #EtherHiding #LevelBlue #LNK malware #NodeJS Backdoor #phishing #TON Blockchain #TonRAT
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 00:10:15 +0000
════════════════════════
⌗ Tags: #Malware #EtherHiding #LevelBlue #LNK malware #NodeJS Backdoor #phishing #TON Blockchain #TonRAT
Daily CyberSecurity
Node.js Backdoor Hides Its C2 on the TON Blockchain
At a glance Malware family Node.js backdoor (tracked as “TonRAT” by some researchers) Threat actor Unattributed; no named group Target / victims Hospitality sector; hotel staff Deliver…
⤷ Title: CVE-2026-15409: SonicWall SMA1000 SSRF Vulnerability (CVSS 10.0) Exploited in the Wild
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 00:00:11 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #code_injection #SMA1000 #SonicWall #ssrf
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 00:00:11 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #code_injection #SMA1000 #SonicWall #ssrf
Daily CyberSecurity
CVE-2026-15409: SonicWall SMA1000 SSRF Vulnerability (CVSS 10.0) Exploited in the Wild
TL;DR SonicWall has released hotfixes for two actively exploited flaws in SMA1000 secure access appliances. The SonicWall SMA1000 SSRF vulnerability, tracked as CVE-2026-15409, carries a maximum C…
⤷ Title: LegacyHive: Exploit Code and Full Details Publicly Disclosed for Unpatched Windows Privilege Escalation Flaw
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 14 Jul 2026 23:46:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #LegacyHive #Nightmare_Eclipse #privilege escalation #windows #zero_day
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 14 Jul 2026 23:46:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #LegacyHive #Nightmare_Eclipse #privilege escalation #windows #zero_day
Daily CyberSecurity
LegacyHive: Exploit Code and Full Details Publicly Disclosed for Unpatched Windows Privilege Escalation Flaw
TL;DR A researcher known as Nightmare-Eclipse has published details and proof-of-concept code for LegacyHive, a Windows User Profile Service privilege escalation flaw. The LegacyHive exploit abuse…
⤷ Title: How a Simple S3 Bucket Misconfiguration Turned into a Security Assessment
════════════════════════
𐀪 Author: sunny561
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 16:10:56 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty_tips #bug_bounty #pentesting #cloud_security
════════════════════════
𐀪 Author: sunny561
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 16:10:56 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty_tips #bug_bounty #pentesting #cloud_security
Medium
How a Simple S3 Bucket Misconfiguration Turned into a Security Assessment
“Every bug hunter dreams of finding that one small clue that leads to something much bigger.”
⤷ Title: RFID
════════════════════════
𐀪 Author: BURAK BALTA
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 17:51:49 GMT
════════════════════════
⌗ Tags: #red_team #siber_guvenlik #wireless #hacking #rfid
════════════════════════
𐀪 Author: BURAK BALTA
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 17:51:49 GMT
════════════════════════
⌗ Tags: #red_team #siber_guvenlik #wireless #hacking #rfid
Medium
RFID
# Bina Erişim Güvenliğinde RFID: Teknoloji, Tehditler ve Azaltma
⤷ Title: Hwat Hell Machine Hacking | Achieving Reverse Shell and Capturing the Flags
════════════════════════
𐀪 Author: ABDUL AHAD
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 16:39:11 GMT
════════════════════════
⌗ Tags: #hacking #web_enumeration #ctf #php_reverse_shell #sql_injection
════════════════════════
𐀪 Author: ABDUL AHAD
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 16:39:11 GMT
════════════════════════
⌗ Tags: #hacking #web_enumeration #ctf #php_reverse_shell #sql_injection
Medium
Hwat Hell Machine Hacking | Achieving Reverse Shell and Capturing the Flags
hwats hell machine
⤷ Title: How I Set Up an AI Red Teaming Lab from Scratch (And What You Need to Know Before You Start)
════════════════════════
𐀪 Author: Motasem Hamdan
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 17:38:01 GMT
════════════════════════
⌗ Tags: #ai_agent #infosec #ai #generative_ai_tools #cybersecurity
════════════════════════
𐀪 Author: Motasem Hamdan
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 17:38:01 GMT
════════════════════════
⌗ Tags: #ai_agent #infosec #ai #generative_ai_tools #cybersecurity
Medium
How I Set Up an AI Red Teaming Lab from Scratch (And What You Need to Know Before You Start)
I’ve been meaning to build a dedicated environment for practicing AI red teaming techniques for a while now not because I enjoy fighting…
⤷ Title: Pivoting, Tunneling & Port Forwarding — Skills Assessment
════════════════════════
𐀪 Author: Ahmet
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 17:15:55 GMT
════════════════════════
⌗ Tags: #pentesting #cybersecurity #penetration_testing #htb_walkthrough
════════════════════════
𐀪 Author: Ahmet
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 17:15:55 GMT
════════════════════════
⌗ Tags: #pentesting #cybersecurity #penetration_testing #htb_walkthrough
Medium
Pivoting, Tunneling & Port Forwarding — Skills Assessment
A team member started a penetration test against the Inlanefreight environment but was moved to another project, leaving a web shell in…
⤷ Title: I Built a DHCP Starvation Attack in My Home Lab (and Detected It) — Here’s How
════════════════════════
𐀪 Author: Faiza Mobeen
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 17:00:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #dhcp_starvation_attack #cybersecurity_home_lab #penetration_testing #networking
════════════════════════
𐀪 Author: Faiza Mobeen
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 17:00:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #dhcp_starvation_attack #cybersecurity_home_lab #penetration_testing #networking
Medium
I Built a DHCP Starvation Attack in My Home Lab (and Detected It) — Here’s How
A beginner-friendly, step-by-step walkthrough of attacking, breaking, and detecting DHCP — safely, in an isolated lab.
⤷ Title: Brr writeup — TryHackMe
════════════════════════
𐀪 Author: Capitan Grizzly
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 17:28:17 GMT
════════════════════════
⌗ Tags: #capitangrizzly #ctf #tryhackme #cybersecurity
════════════════════════
𐀪 Author: Capitan Grizzly
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 17:28:17 GMT
════════════════════════
⌗ Tags: #capitangrizzly #ctf #tryhackme #cybersecurity
Medium
Brr writeup — TryHackMe
Brr CTF es un challenge de tipo web, poco exigente pero te ayuda a determinar que tan pulida esta tu mentalidad para buscar información.
⤷ Title: SSRF in Simple | Server Side Request Forgery | Cybersecurity Lesson
════════════════════════
𐀪 Author: Sachin kewat
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 17:34:03 GMT
════════════════════════
⌗ Tags: #cybersecurity #owasp_top_10 #ssrf
════════════════════════
𐀪 Author: Sachin kewat
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 17:34:03 GMT
════════════════════════
⌗ Tags: #cybersecurity #owasp_top_10 #ssrf
Medium
SSRF in Simple | Server Side Request Forgery | Cybersecurity Lesson
Hi everyone! Today I’m going to explain SSRF (Server-Side Request Forgery) in the simplest way possible so that everyone can understand it.
⤷ Title: Bypassing Authentication with SQL Injection: PortSwigger Lab Walkthrough
════════════════════════
𐀪 Author: @i.ogore
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 17:34:17 GMT
════════════════════════
⌗ Tags: #sql_injection #web_security #cybersecurity #portswigger
════════════════════════
𐀪 Author: @i.ogore
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 17:34:17 GMT
════════════════════════
⌗ Tags: #sql_injection #web_security #cybersecurity #portswigger
Medium
Bypassing Authentication with SQL Injection: PortSwigger Lab Walkthrough
Authentication bypass is one of the most critical impacts of an SQL Injection (SQLi) vulnerability. In this walkthrough, we will break down…
⤷ Title: TuxBot v3 Evolution Shows Signs of LLM-Assisted IoT Botnet Development
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 00:13:08 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 16 Jul 2026 00:13:08 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: 10 Recon Techniques Every Pentester Should Master in 2026
════════════════════════
𐀪 Author: Hackers Things
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 19:03:00 GMT
════════════════════════
⌗ Tags: #ethical_hacking #bug_bounty #information_security #cybersecurity #penetration_testing
════════════════════════
𐀪 Author: Hackers Things
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 19:03:00 GMT
════════════════════════
⌗ Tags: #ethical_hacking #bug_bounty #information_security #cybersecurity #penetration_testing
Medium
10 Recon Techniques Every Pentester Should Master in 2026
The reconnaissance methods that help security professionals map attack surfaces before a single exploit is launched.
⤷ Title: The Security Team Is Not a Gate
════════════════════════
𐀪 Author: Andrews Ferreira
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 18:58:06 GMT
════════════════════════
⌗ Tags: #software_engineering #devsecops #threat_modeling #application_security
════════════════════════
𐀪 Author: Andrews Ferreira
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 18:58:06 GMT
════════════════════════
⌗ Tags: #software_engineering #devsecops #threat_modeling #application_security
Medium
The Security Team Is Not a Gate
What I learned rolling out Application Security inside a large engineering organization
⤷ Title: Best Security Practices in Software Development for Web Applications
════════════════════════
𐀪 Author: Janod Abesekara
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 18:31:01 GMT
════════════════════════
⌗ Tags: #best_practices #software_security #software_development #software_security_testing #application_security
════════════════════════
𐀪 Author: Janod Abesekara
════════════════════════
ⴵ Time: Wed, 15 Jul 2026 18:31:01 GMT
════════════════════════
⌗ Tags: #best_practices #software_security #software_development #software_security_testing #application_security
Medium
Best Security Practices in Software Development for Web Applications
Web applications have become an essential part of modern businesses, powering everything from e-commerce platforms and banking systems to…