⤷ Title: Chrome Emergency Update: Zero-Day (CVE-2025-10585) in V8 Exploited in the Wild
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 18 Sep 2025 01:38:17 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_10585 #google chrome #Remote Code Execution #security update #Type Confusion #use after free #V8 #Vulnerability #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 18 Sep 2025 01:38:17 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_10585 #google chrome #Remote Code Execution #security update #Type Confusion #use after free #V8 #Vulnerability #zero_day
Daily CyberSecurity
Chrome Emergency Update: Zero-Day (CVE-2025-10585) in V8 Exploited in the Wild
Google has released an urgent Chrome update, patching a V8 zero-day (CVE-2025-10585) being exploited in the wild, along with other high-severity flaws.
⤷ Title: Researcher Releases PoC Exploit for Windows Elevation of Privilege Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 00:12:27 +0000
════════════════════════
⌗ Tags: #Vulnerability #DirectComposition #out_of_bounds write #privilege escalation #Type Confusion #Win32K #windows
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 00:12:27 +0000
════════════════════════
⌗ Tags: #Vulnerability #DirectComposition #out_of_bounds write #privilege escalation #Type Confusion #Win32K #windows
Daily CyberSecurity
Researcher Releases PoC Exploit for Windows Elevation of Privilege Vulnerability
A serious Windows LPE flaw in DirectComposition allows local attackers to gain SYSTEM privileges by exploiting a type confusion bug leading to a controlled out-of-bounds write in kernel memory.
⤷ Title: Google Patches Actively Exploited Chrome Zero-Day Flaw (CVE-2025-13223) in Emergency Update
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 23:03:13 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #browser security #chrome #CVE_2025_13223 #cybersecurity #google #patch #Remote Code Execution #tag #Type Confusion #V8 #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 23:03:13 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #browser security #chrome #CVE_2025_13223 #cybersecurity #google #patch #Remote Code Execution #tag #Type Confusion #V8 #zero_day
Daily CyberSecurity
Google Patches Actively Exploited Chrome Zero-Day Flaw (CVE-2025-13223) in Emergency Update
Google released an emergency Chrome update (142.0.7444.175) to patch two V8 Type Confusion flaws. One zero-day (CVE-2025-13223) is actively exploited. Update now!
⤷ Title: Chrome 143 Stable Fixes 13 Flaws: High-Severity V8 Type Confusion Earns $11,000 Bounty
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 03 Dec 2025 02:43:55 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_13630 #google chrome #Google Updater #High Severity #security update #Type Confusion #V8 Engine
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 03 Dec 2025 02:43:55 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_13630 #google chrome #Google Updater #High Severity #security update #Type Confusion #V8 Engine
Daily CyberSecurity
Chrome 143 Stable Fixes 13 Flaws: High-Severity V8 Type Confusion Earns $11,000 Bounty
Google rolled out Chrome 143 stable, patching 13 vulnerabilities. Key fixes include a High-severity V8 Type Confusion flaw (CVE-2025-13630) and an Updater vulnerability that risk code execution. Update immediately.
⤷ Title: The Silent Listener: New DRBControl Backdoor Variant Uses Network Sniffing to Evade Detection
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:48:07 +0000
════════════════════════
⌗ Tags: #Malware #APT27 #APT41 #Cyber Espionage #DLL Sideloading #DRBControl #IIJ #malware analysis #Mofu Loader #Promiscuous Mode #ShadowPad #Type 1 Backdoor
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:48:07 +0000
════════════════════════
⌗ Tags: #Malware #APT27 #APT41 #Cyber Espionage #DLL Sideloading #DRBControl #IIJ #malware analysis #Mofu Loader #Promiscuous Mode #ShadowPad #Type 1 Backdoor
Penetration Testing Tools
The Silent Listener: New DRBControl Backdoor Variant Uses Network Sniffing to Evade Detection
Japanese company Internet Initiative Japan (IIJ) has reported observing a new variant of the malware known as Type
⤷ Title: Chrome 144 Security Alert: V8 & Libvpx Flaws Expose Systems to Hacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 02:05:22 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #browser security #Chrome Update #CVE_2026_1861 #CVE_2026_1862 #google chrome #Heap Buffer Overflow #libvpx #Patch Alert #Type Confusion #V8 JavaScript engine
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 02:05:22 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #browser security #Chrome Update #CVE_2026_1861 #CVE_2026_1862 #google chrome #Heap Buffer Overflow #libvpx #Patch Alert #Type Confusion #V8 JavaScript engine
Daily CyberSecurity
Chrome 144 Security Alert: V8 & Libvpx Flaws Expose Systems to Hacks
Google Chrome patches high-severity V8 (CVE-2026-1862) and libvpx (CVE-2026-1861) flaws. Update to version 144.0.7559.132 immediately.
⤷ Title: The Bitwise Blunder: How a Single Typo in Firefox’s Engine Opened the Door to RCE
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 23 Feb 2026 03:11:44 +0000
════════════════════════
⌗ Tags: #Vulnerability #bug bounty #Cyber Security 2026 #Firefox #Garbage Collection #Ion JIT #JavaScript Engine #Mozilla #RCE #SpiderMonkey #Type Confusion #WebAssembly
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 23 Feb 2026 03:11:44 +0000
════════════════════════
⌗ Tags: #Vulnerability #bug bounty #Cyber Security 2026 #Firefox #Garbage Collection #Ion JIT #JavaScript Engine #Mozilla #RCE #SpiderMonkey #Type Confusion #WebAssembly
Penetration Testing Tools
The Bitwise Blunder: How a Single Typo in Firefox’s Engine Opened the Door to RCE
A critical Remote Code Execution (RCE) vulnerability has been unearthed within SpiderMonkey, the JavaScript engine powering Mozilla Firefox.
⤷ Title: Regulated, Audited, and Breached: Hardening a Legacy API Under a Financial Regulator’s Watch
════════════════════════
𐀪 Author: Ggontar
════════════════════════
ⴵ Time: Tue, 12 May 2026 22:55:15 GMT
════════════════════════
⌗ Tags: #type_safety #api #backend #sql_injection #appsec
════════════════════════
𐀪 Author: Ggontar
════════════════════════
ⴵ Time: Tue, 12 May 2026 22:55:15 GMT
════════════════════════
⌗ Tags: #type_safety #api #backend #sql_injection #appsec
Medium
Regulated, Audited, and Breached: Hardening a Legacy API Under a Financial Regulator’s Watch
As a financial services company, we were required by our regulator to conduct penetration testing. It wasn’t a nice-to-have or a proactive…
⤷ Title: Double Critical Threat: Google Chrome Rushes Out Urgent Fixes for WebRTC and UI Sandbox Flaws
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 01:43:33 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #browser security #Chrome Security Update #CVE_2026_9110 #CVE_2026_9111 #Cyber Security #google chrome #infosec #Sandbox Escape #Type Confusion #use after free #WebRTC Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 01:43:33 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #browser security #Chrome Security Update #CVE_2026_9110 #CVE_2026_9111 #Cyber Security #google chrome #infosec #Sandbox Escape #Type Confusion #use after free #WebRTC Vulnerability
Daily CyberSecurity
Double Critical Threat: Google Chrome Rushes Out Urgent Fixes for WebRTC and UI Sandbox Flaws
Google has dropped an urgent Chrome desktop update fixing 16 vulnerabilities, including two critical sandbox subversion flaws in WebRTC and the UI.
⤷ Title: Apache Fory Patches Four Deserialization Flaws Across Java, C++, and Rust
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 12:51:40 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache Fory #Apache Fury #CVE_2026_60080 #CVE_2026_64606 #CVE_2026_64608 #CVE_2026_64609 #Deserialization #open_source #Serialization #Type Confusion #use after free
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Mon, 27 Jul 2026 12:51:40 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache Fory #Apache Fury #CVE_2026_60080 #CVE_2026_64606 #CVE_2026_64608 #CVE_2026_64609 #Deserialization #open_source #Serialization #Type Confusion #use after free
Daily CyberSecurity
Apache Fory Patches Four Deserialization Flaws Across Java, C++, and Rust
TL;DR The Apache Fory project disclosed four vulnerabilities on July 21, 2026. Three carry an important rating, and one is moderate. Version 1.4.0 fixes all of them. Why it matters Fory is a fast …