⤷ Title: The Invisible Attack: Hidden Characters Can Make Gemini Models Implant Backdoors
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 19 Aug 2025 08:27:58 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI #AI Agents #cybersecurity #Gemini #google #Jules #Prompt Injection #Unicode
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 19 Aug 2025 08:27:58 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI #AI Agents #cybersecurity #Gemini #google #Jules #Prompt Injection #Unicode
Penetration Testing Tools
The Invisible Attack: Hidden Characters Can Make Gemini Models Implant Backdoors
Researchers found that Gemini models interpret invisible Unicode "Tag" characters as commands, allowing attackers to trick AI agents into implanting backdoors.
⤷ Title: BiDi Swap: A Decade-Old Unicode Flaw Still Enables URL Spoofing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 22 Sep 2025 00:32:50 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #BiDi Swap #browser security #cybersecurity #phishing attacks #Unicode #URL spoofing #Varonis
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 22 Sep 2025 00:32:50 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #BiDi Swap #browser security #cybersecurity #phishing attacks #Unicode #URL spoofing #Varonis
Daily CyberSecurity
BiDi Swap: A Decade-Old Unicode Flaw Still Enables URL Spoofing
A decade-old browser flaw, "BiDi Swap," allows attackers to craft deceptive URLs for phishing. The bug, found by Varonis, exploits mixed-text direction.
⤷ Title: ASCII Smuggling Attack Bypasses Filters, Forcing Gemini to Obey Invisible Commands from Calendar Invites
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 13 Oct 2025 02:48:35 +0000
════════════════════════
⌗ Tags: #Vulnerability #ASCII Smuggling #Calendar Spoofing #Data Tampering #FireTail #Gemini #LLM #Prompt Injection #Unicode
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 13 Oct 2025 02:48:35 +0000
════════════════════════
⌗ Tags: #Vulnerability #ASCII Smuggling #Calendar Spoofing #Data Tampering #FireTail #Gemini #LLM #Prompt Injection #Unicode
Penetration Testing Tools
ASCII Smuggling Attack Bypasses Filters, Forcing Gemini to Obey Invisible Commands from Calendar Invites
Researchers at FireTail have discovered the resurrection of an old-class flaw — ASCII Smuggling — now resurfacing in
⤷ Title: GlassWorm Supply Chain Worm Uses Invisible Unicode and Solana Blockchain for Stealth C2
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 20 Oct 2025 01:40:52 +0000
════════════════════════
⌗ Tags: #Malware #Cryptocurrency Theft #GlassWorm #HVNC #Solana Blockchain #supply chain attack #Unicode Injection #VSCode #ZOMBI RAT
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 20 Oct 2025 01:40:52 +0000
════════════════════════
⌗ Tags: #Malware #Cryptocurrency Theft #GlassWorm #HVNC #Solana Blockchain #supply chain attack #Unicode Injection #VSCode #ZOMBI RAT
Daily CyberSecurity
GlassWorm Supply Chain Worm Uses Invisible Unicode and Solana Blockchain for Stealth C2
Koi Security exposed GlassWorm, the first VSCode worm that spreads autonomously, using invisible Unicode to hide malicious code. It uses Solana blockchain and Google Calendar for a resilient C2.
⤷ Title: BiDi Swap: New Phishing Trick Exploits Unicode to Forge Web Addresses
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 30 Oct 2025 02:54:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BiDi Swap #browser security #phishing #RTL #Spoofing #Unicode
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 30 Oct 2025 02:54:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BiDi Swap #browser security #phishing #RTL #Spoofing #Unicode
Penetration Testing Tools
BiDi Swap: New Phishing Trick Exploits Unicode to Forge Web Addresses
The BiDi Swap attack exploits flaws in Unicode's bidirectional text rendering to make malicious URLs look legitimate, tricking users and bypassing browser security.
⤷ Title: How to Avoid AI Detecting Your Text
════════════════════════
𐀪 Author: Zvi Azran
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 17:32:39 GMT
════════════════════════
⌗ Tags: #unicode #security #ai #writing_prompts #cybersecurity
════════════════════════
𐀪 Author: Zvi Azran
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 17:32:39 GMT
════════════════════════
⌗ Tags: #unicode #security #ai #writing_prompts #cybersecurity
Medium
How to Avoid AI Detecting Your Text
Making text readable for humans, but not for AI.
⤷ Title: GlassWorm Worm Resurfaces: Invisible Unicode Malware Re-Infects VS Code Extensions, Spreads to GitHub
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 10 Nov 2025 00:31:19 +0000
════════════════════════
⌗ Tags: #Malware #Code Theft #GitHub Compromise #GlassWorm #Solana C2 #supply chain attack #Unicode Worm #VSCode
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 10 Nov 2025 00:31:19 +0000
════════════════════════
⌗ Tags: #Malware #Code Theft #GitHub Compromise #GlassWorm #Solana C2 #supply chain attack #Unicode Worm #VSCode
Daily CyberSecurity
GlassWorm Worm Resurfaces: Invisible Unicode Malware Re-Infects VS Code Extensions, Spreads to GitHub
GlassWorm resurfaced, infecting 3 new VS Code extensions on OpenVSX. The worm uses invisible Unicode and Solana blockchain C2 to steal credentials and spread via AI-generated malicious commits on GitHub.
⤷ Title: Glassworm Strikes Again: Third Wave of Malicious VS Code Extensions Bypasses Moderation
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 03 Dec 2025 08:11:54 +0000
════════════════════════
⌗ Tags: #Malware #GlassWorm #Infostealer #malware #OpenVSX #supply chain attack #Unicode Obfuscation #Visual Studio Marketplace #VS Code
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 03 Dec 2025 08:11:54 +0000
════════════════════════
⌗ Tags: #Malware #GlassWorm #Infostealer #malware #OpenVSX #supply chain attack #Unicode Obfuscation #Visual Studio Marketplace #VS Code
Penetration Testing Tools
Glassworm Strikes Again: Third Wave of Malicious VS Code Extensions Bypasses Moderation
The Glassworm campaign targeting popular Visual Studio Code extensions has entered yet another phase — researchers are now
⤷ Title: How a Small Validation Bypass Enabled Invisible Identities
════════════════════════
𐀪 Author: Mahmoud Farag
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 23:09:12 GMT
════════════════════════
⌗ Tags: #bug_bounty #unicode #web_security #input_validation #cybersecurity
════════════════════════
𐀪 Author: Mahmoud Farag
════════════════════════
ⴵ Time: Sun, 22 Feb 2026 23:09:12 GMT
════════════════════════
⌗ Tags: #bug_bounty #unicode #web_security #input_validation #cybersecurity
Medium
How a Small Validation Bypass Enabled Invisible Identities
الحمد لله والصلاة والسلام على رسول الله وعلى آله وصحبه أما بعد
⤷ Title: SonicWall Issues Critical Patch for SMA 1000 Series to Stop SQL Injection and MFA Bypasses
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 09 Apr 2026 02:44:45 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_4112 #CVE_2026_4114 #CVE_2026_4116 #cybersecurity #infosec #MFA Bypass #privilege escalation #SMA 1000 #SonicWall #sql injection #TOTP #Unicode Encoding
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 09 Apr 2026 02:44:45 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_4112 #CVE_2026_4114 #CVE_2026_4116 #cybersecurity #infosec #MFA Bypass #privilege escalation #SMA 1000 #SonicWall #sql injection #TOTP #Unicode Encoding
Daily CyberSecurity
SonicWall Issues Critical Patch for SMA 1000 Series to Stop SQL Injection and MFA Bypasses
SonicWall patches critical SMA 1000 flaws, including a 7.2 SQL injection for privilege escalation and Unicode-based MFA bypasses. Secure your VPN—update now!