πNew WriteupβοΈ
βββββββββββββββ
πDate: Tue, 14 Mar 2023 03:44:23 GMT
βββββββββββββββ
βοΈTitle: Linux Privilege Escalation with LD_PRELOAD (Sudo)
βββββββββββββββ
πLink: https://medium.com/p/a13e0b755ede
βββββββββββββββ
Tags: #cybersecurity #environment_variables #privilege_escalation #hackthebox #linux
βββββββββββββββ
πDate: Tue, 14 Mar 2023 03:44:23 GMT
βββββββββββββββ
βοΈTitle: Linux Privilege Escalation with LD_PRELOAD (Sudo)
βββββββββββββββ
πLink: https://medium.com/p/a13e0b755ede
βββββββββββββββ
Tags: #cybersecurity #environment_variables #privilege_escalation #hackthebox #linux
Medium
Linux Privilege Escalation with LD_PRELOAD (Sudo)
PREREQUISITE KNOWLEDGE
β€· Title: Why You Should Never Hardcode Secrets in Your Code
ββββββββββββββββββββββββ
πͺ Author: Prasanth Rao
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 12 Sep 2025 10:33:08 GMT
ββββββββββββββββββββββββ
β Tags: #security #dotenv #application_security #best_practices #environment_variables
ββββββββββββββββββββββββ
πͺ Author: Prasanth Rao
ββββββββββββββββββββββββ
β΄΅ Time: Fri, 12 Sep 2025 10:33:08 GMT
ββββββββββββββββββββββββ
β Tags: #security #dotenv #application_security #best_practices #environment_variables
Medium
Why You Should Never Hardcode Secrets in Your Code
Why managing secrets securely is crucial for building safe, scalable, and maintainable applications
β€· Title: Frontend Secrets: The Good, The Bad, and The Exposed
ββββββββββββββββββββββββ
πͺ Author: Ali Jahangiri
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 09 Oct 2025 09:02:50 GMT
ββββββββββββββββββββββββ
β Tags: #management_secrets #environment_variables #dotenv #api_security #nextjs
ββββββββββββββββββββββββ
πͺ Author: Ali Jahangiri
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 09 Oct 2025 09:02:50 GMT
ββββββββββββββββββββββββ
β Tags: #management_secrets #environment_variables #dotenv #api_security #nextjs
Medium
Frontend Secrets: The Good, The Bad, and The Exposed
If youβve ever pushed an API key to GitHub, struggled to configure different settings for development and production, or wondered why yourβ¦
β€· Title: The βlcβ Leak: Critical 9.3 Severity LangChain Flaw Turns Prompt Injections into Secret Theft
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 25 Dec 2025 00:22:06 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #AI Agents #CVE_2025_68664 #data exfiltration #Environment Variables #Information Disclosure #LangChain #LLM Security #Prompt injection #Python Security #Serialization Injection
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 25 Dec 2025 00:22:06 +0000
ββββββββββββββββββββββββ
β Tags: #Vulnerability Report #AI Agents #CVE_2025_68664 #data exfiltration #Environment Variables #Information Disclosure #LangChain #LLM Security #Prompt injection #Python Security #Serialization Injection
Daily CyberSecurity
The βlcβ Leak: Critical 9.3 Severity LangChain Flaw Turns Prompt Injections into Secret Theft
A critical vulnerability was found in LangChain, the popular open-source framework used to power Large Language Model (LLM) agents. The flaw, tracked as CVE-2025-68664, carries a severe CVSS scoreβ¦
β€· Title: The AI Weak Link: How a Third-Party Breach Exposed Vercel Customer Secrets
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Tue, 21 Apr 2026 09:17:43 +0000
ββββββββββββββββββββββββ
β Tags: #Data Leak #API Keys #cloud security #Context.ai #Cybersecurity 2026 #data breach #Environment Variables #Mandiant #Next.js #OAuth Security #supply chain attack #Vercel
ββββββββββββββββββββββββ
πͺ Author: ddos
ββββββββββββββββββββββββ
β΄΅ Time: Tue, 21 Apr 2026 09:17:43 +0000
ββββββββββββββββββββββββ
β Tags: #Data Leak #API Keys #cloud security #Context.ai #Cybersecurity 2026 #data breach #Environment Variables #Mandiant #Next.js #OAuth Security #supply chain attack #Vercel
Penetration Testing Tools
The AI Weak Link: How a Third-Party Breach Exposed Vercel Customer Secrets
The month of April concluded for the American firm Vercel with a distressing incident that precipitously transcended the
β€· Title: New PawsRunner Steganography Loader Evades EDR to Deploy PureLogs Infostealer
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 21 May 2026 08:40:14 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #.NET malware #Cyber Security #Environment Variables #FortiGuard Labs #infosec #Infostealer #PawsRunner #Phishing Lure #PureLogs #Steganography Loader #TXZ Archive
ββββββββββββββββββββββββ
πͺ Author: Ddos
ββββββββββββββββββββββββ
β΄΅ Time: Thu, 21 May 2026 08:40:14 +0000
ββββββββββββββββββββββββ
β Tags: #Malware #.NET malware #Cyber Security #Environment Variables #FortiGuard Labs #infosec #Infostealer #PawsRunner #Phishing Lure #PureLogs #Steganography Loader #TXZ Archive
Daily CyberSecurity
New PawsRunner Steganography Loader Evades EDR to Deploy PureLogs Infostealer
FortiGuard Labs warns of PawsRunner, a new .NET steganography loader hiding PureLogs infostealer payloads inside cat images to bypass corporate EDR.