⤷ Title: Modern Appsec at AI speed?
════════════════════════
𐀪 Author: Stuart McClure
════════════════════════
ⴵ Time: Tue, 01 Apr 2025 22:56:57 GMT
════════════════════════
⌗ Tags: #appsec #devsecops #ai #cybersecurity
════════════════════════
𐀪 Author: Stuart McClure
════════════════════════
ⴵ Time: Tue, 01 Apr 2025 22:56:57 GMT
════════════════════════
⌗ Tags: #appsec #devsecops #ai #cybersecurity
Medium
Modern Appsec at AI speed?
Help me CPG, you’re our only hope!
⤷ Title: The Importance of Continuous Monitoring in XDR
════════════════════════
𐀪 Author: Akshay Chauhan
════════════════════════
ⴵ Time: Tue, 01 Apr 2025 22:47:23 GMT
════════════════════════
⌗ Tags: #xdr #safeaeon #cybersecurity #extended_detection
════════════════════════
𐀪 Author: Akshay Chauhan
════════════════════════
ⴵ Time: Tue, 01 Apr 2025 22:47:23 GMT
════════════════════════
⌗ Tags: #xdr #safeaeon #cybersecurity #extended_detection
Medium
The Importance of Continuous Monitoring in XDR
Cyber threats are no longer a matter of if but when. Attackers are getting smarter, using advanced techniques to bypass traditional…
⤷ Title: Hunter (CyberDefenders) — Writeup
════════════════════════
𐀪 Author: Muhammad Essam (0xM4R73R)
════════════════════════
ⴵ Time: Tue, 01 Apr 2025 22:26:22 GMT
════════════════════════
⌗ Tags: #digital_forensics #endpoint_forensics #forensic_investigations #blue_team_operations #cybersecurity
════════════════════════
𐀪 Author: Muhammad Essam (0xM4R73R)
════════════════════════
ⴵ Time: Tue, 01 Apr 2025 22:26:22 GMT
════════════════════════
⌗ Tags: #digital_forensics #endpoint_forensics #forensic_investigations #blue_team_operations #cybersecurity
Medium
Hunter (CyberDefenders) — Writeup
Hello everybody, this is an in-depth writeup that I wrote while preparing for my eCDFP certification that I would highly recommend you try.
⤷ Title: OSINT Recon: How to Find Subdomains, IPs, and Technologies Like a Pro!
════════════════════════
𐀪 Author: Adarsh Pandey
════════════════════════
ⴵ Time: Tue, 01 Apr 2025 23:42:05 GMT
════════════════════════
⌗ Tags: #threat_intelligence #recon #technology #osint_investigation #osint
════════════════════════
𐀪 Author: Adarsh Pandey
════════════════════════
ⴵ Time: Tue, 01 Apr 2025 23:42:05 GMT
════════════════════════
⌗ Tags: #threat_intelligence #recon #technology #osint_investigation #osint
Medium
OSINT Recon: How to Find Subdomains, IPs, and Technologies Like a Pro!
Hey, hackers! Today, we're diving into the world of OSINT (Open-Source Intelligence) reconnaissance, where we uncover subdomains, IP…
⤷ Title: ESXi Testing Tookit: Simple and easy to use CLI tool to test ESXi detections
════════════════════════
𐀪 Author: ddos-admin
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 01:00:25 +0000
════════════════════════
⌗ Tags: #Network Defense #ESXi detections
════════════════════════
𐀪 Author: ddos-admin
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 01:00:25 +0000
════════════════════════
⌗ Tags: #Network Defense #ESXi detections
Penetration Testing Tools
ESXi Testing Tookit: Simple and easy to use CLI tool to test ESXi detections
ESXi Testing Toolkit is a command-line utility designed to help security teams test detections deployed in ESXi environments.
⤷ Title: DVAC: An intentionally vulnerable Android Application
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:30:31 +0000
════════════════════════
⌗ Tags: #Arsenal Lab #Mobile Hacking #vulnerable Android application
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:30:31 +0000
════════════════════════
⌗ Tags: #Arsenal Lab #Mobile Hacking #vulnerable Android application
Penetration Testing Tools
DVAC: An intentionally vulnerable Android Application
Damn Vulnerable Android Components is an educational Android application intentionally designed to expose and demonstrate vulnerabilities
⤷ Title: ELFEN: Automated Linux Malware Analysis Sandbox
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:15:56 +0000
════════════════════════
⌗ Tags: #Malware Defense #Linux malware analysis
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:15:56 +0000
════════════════════════
⌗ Tags: #Malware Defense #Linux malware analysis
Penetration Testing Tools
ELFEN: Automated Linux Malware Analysis Sandbox
ELFEN is a dockerized sandbox for analyzing Linux (file type: ELF) malware. It leverages an array of open-source technologie
⤷ Title: CISA Flags Apache Tomcat CVE-2025-24813 as Actively Exploited with 9.8 CVSS
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 02:00:30 +0000
════════════════════════
⌗ Tags: #Vulnerability #apache Tomcat #CVE_2025_24813
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 02:00:30 +0000
════════════════════════
⌗ Tags: #Vulnerability #apache Tomcat #CVE_2025_24813
Daily CyberSecurity
CISA Flags Apache Tomcat CVE-2025-24813 as Actively Exploited with 9.8 CVSS
CVE-2025-24813 vulnerability in Apache Tomcat, now actively exploited in the wild, has landed in the CISA Known Exploited Vulnerabilities Catalog
⤷ Title: Chrome 135: 14 Security Fixes, High-Severity CVE-2025-3066 Flaw Patched
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 01:41:39 +0000
════════════════════════
⌗ Tags: #Vulnerability #chrome #Chrome 135 #CVE_2025_3066
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 01:41:39 +0000
════════════════════════
⌗ Tags: #Vulnerability #chrome #Chrome 135 #CVE_2025_3066
Daily CyberSecurity
Chrome 135: 14 Security Fixes, High-Severity CVE-2025-3066 Flaw Patched
Explore the latest features in Chrome 135 including security fixes and enhancements for Windows, macOS, and Linux users.
⤷ Title: VyOS and Debian Systems Vulnerable to Man-in-the-Middle Attacks (CVE-2025-30095)
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 01:05:49 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_30095 #ssh #VyOS
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 01:05:49 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_30095 #ssh #VyOS
Daily CyberSecurity
VyOS and Debian Systems Vulnerable to Man-in-the-Middle Attacks (CVE-2025-30095)
Learn about CVE-2025-30095, a critical vulnerability in VyOS that allows man-in-the-middle attacks through SSH key misuse.
⤷ Title: MongoDB Patches: DoS & Bypass Risks Addressed
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:56:24 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_3083 #CVE_2025_3084 #CVE_2025_3085 #mongodb
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:56:24 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_3083 #CVE_2025_3084 #CVE_2025_3085 #mongodb
Daily CyberSecurity
MongoDB Patches: DoS & Bypass Risks Addressed
MongoDB has released patches addressing three newly disclosed vulnerabilities that could expose deployments to DoS & authentication bypass attacks
⤷ Title: CVE-2025-30223 (CVSS 9.3): Critical XSS Vulnerability Discovered in Beego Framework
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:55:11 +0000
════════════════════════
⌗ Tags: #Vulnerability #Beego framework #CVE_2025_30223
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:55:11 +0000
════════════════════════
⌗ Tags: #Vulnerability #Beego framework #CVE_2025_30223
Daily CyberSecurity
CVE-2025-30223 (CVSS 9.3): Critical XSS Vulnerability Discovered in Beego Framework
Explore the details of CVE-2025-30223, a critical XSS vulnerability in the Beego framework impacting web applications.
⤷ Title: Gootloader Returns with Fake Legal Document Lure via Google Ads
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:45:33 +0000
════════════════════════
⌗ Tags: #Malware #Google Ads #Gootloader
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:45:33 +0000
════════════════════════
⌗ Tags: #Malware #Google Ads #Gootloader
Daily CyberSecurity
Gootloader Returns with Fake Legal Document Lure via Google Ads
Explore the new Gootloader tactics using Google Ads to spread malware through legal document searches and social engineering.
⤷ Title: HijackLoader Evolves: New Modules Bring Stealth, Persistence, and Advanced VM Evasion
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:35:53 +0000
════════════════════════
⌗ Tags: #Malware #Call stack spoofing #HijackLoader
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:35:53 +0000
════════════════════════
⌗ Tags: #Malware #Call stack spoofing #HijackLoader
Daily CyberSecurity
HijackLoader Evolves: New Modules Bring Stealth, Persistence, and Advanced VM Evasion
Explore the latest updates on HijackLoader malware and its stealthy modules designed to evade detection and expand capabilities.
⤷ Title: 8 Zero-Day Vulnerabilities Uncovered in Netgear WNR854T Router
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:30:39 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2024_54802 #CVE_2024_54803 #CVE_2024_54804 #CVE_2024_54805 #CVE_2024_54806 #CVE_2024_54807 #CVE_2024_54808 #CVE_2024_54809 #Netgear #Netgear WNR854T #Netgear WNR854T Router #WNR854T
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:30:39 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2024_54802 #CVE_2024_54803 #CVE_2024_54804 #CVE_2024_54805 #CVE_2024_54806 #CVE_2024_54807 #CVE_2024_54808 #CVE_2024_54809 #Netgear #Netgear WNR854T #Netgear WNR854T Router #WNR854T
Daily CyberSecurity
8 Zero-Day Vulnerabilities Uncovered in Netgear WNR854T Router
Explore the Netgear WNR854T vulnerability report detailing eight zero-day flaws that threaten network security.
⤷ Title: PostgreSQL Servers Hacked: 1,500+ Cloud Systems Mining Crypto via CPU_HU
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:25:11 +0000
════════════════════════
⌗ Tags: #Malware #CPU_HU #fileless cryptominer #JINX_0126 #PostgreSQL
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:25:11 +0000
════════════════════════
⌗ Tags: #Malware #CPU_HU #fileless cryptominer #JINX_0126 #PostgreSQL
Daily CyberSecurity
PostgreSQL Servers Hacked: 1,500+ Cloud Systems Mining Crypto via CPU_HU
Uncover the dangers of fileless cryptominers that exploit PostgreSQL servers. Learn how JINX-0126 stealthily operates.
⤷ Title: CVE-2025-30065 (CVSS 10): Critical Vulnerability Discovered in Apache Parquet Java
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:15:43 +0000
════════════════════════
⌗ Tags: #Vulnerability #Apache Parquet #Apache Parquet Java #CVE_2025_30065
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:15:43 +0000
════════════════════════
⌗ Tags: #Vulnerability #Apache Parquet #Apache Parquet Java #CVE_2025_30065
Daily CyberSecurity
CVE-2025-30065 (CVSS 10): Critical Vulnerability Discovered in Apache Parquet Java
Learn about CVE-2025-30065, a critical vulnerability in Apache Parquet that poses risks to Java library users.
⤷ Title: SmokeLoader Malware Deployed in Stealthy Campaign Targeting Major Banks
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:12:02 +0000
════════════════════════
⌗ Tags: #Malware #Emmenhtal #Emmenhtal Loader #SmokeLoader
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:12:02 +0000
════════════════════════
⌗ Tags: #Malware #Emmenhtal #Emmenhtal Loader #SmokeLoader
Daily CyberSecurity
SmokeLoader Malware Deployed in Stealthy Campaign Targeting Major Banks
Explore the dangers of SmokeLoader malware and its stealthy techniques in recent cyber attacks targeting major banks.
⤷ Title: Critical Vulnerabilities Threaten IBM App Connect Enterprise
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:05:37 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_1302 #CVE_2025_24791 #IBM App Connect Enterprise
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:05:37 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_1302 #CVE_2025_24791 #IBM App Connect Enterprise
Daily CyberSecurity
Critical Vulnerabilities Threaten IBM App Connect Enterprise
Learn about CVE-2025-1302 vulnerability in IBM App Connect Enterprise and its implications for remote code execution.
⤷ Title: You Say Premium Features? Well, Not Anymore
════════════════════════
𐀪 Author: Ahmed Salem
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 01:23:22 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty_tips #bug_bounty #bug_bounty_writeup
════════════════════════
𐀪 Author: Ahmed Salem
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 01:23:22 GMT
════════════════════════
⌗ Tags: #cybersecurity #bug_bounty_tips #bug_bounty #bug_bounty_writeup
Medium
You Say Premium Features? Well, Not Anymore
How I Exploited an IDOR Flaw to Unlock Target.com’s Paid Templates
⤷ Title: How I Uncovered a Sneaky DOM XSS Bug in a Popular Social Media Platform — And Scored a $4,000 Bug…
════════════════════════
𐀪 Author: TheIndianNetwork
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:59:05 GMT
════════════════════════
⌗ Tags: #dom #dom_xss #bug_bounty #bug_bounty_tips #xss_attack
════════════════════════
𐀪 Author: TheIndianNetwork
════════════════════════
ⴵ Time: Wed, 02 Apr 2025 00:59:05 GMT
════════════════════════
⌗ Tags: #dom #dom_xss #bug_bounty #bug_bounty_tips #xss_attack
Medium
How I Uncovered a Sneaky DOM XSS Bug in a Popular Social Media Platform — And Scored a $4,000 Bug Bounty!
Introduction: The Hidden Danger of DOM XSS in Social Media Platforms