⤷ Title: Hack The Box | GoodGames
════════════════════════
𐀪 Author: Luigi Carpio (0xBahalaNa)
════════════════════════
ⴵ Time: Mon, 21 Apr 2025 22:40:36 GMT
════════════════════════
⌗ Tags: #hackthebox_writeup #hackthebox_walkthrough #cybersecurity #hackthebox #information_security
════════════════════════
𐀪 Author: Luigi Carpio (0xBahalaNa)
════════════════════════
ⴵ Time: Mon, 21 Apr 2025 22:40:36 GMT
════════════════════════
⌗ Tags: #hackthebox_writeup #hackthebox_walkthrough #cybersecurity #hackthebox #information_security
Medium
Hack The Box | GoodGames
Released 02/21/2022 (Retired)
⤷ Title: Detected Suspicious XLS File Alert
════════════════════════
𐀪 Author: Juan Martinez
════════════════════════
ⴵ Time: Mon, 21 Apr 2025 22:26:16 GMT
════════════════════════
⌗ Tags: #blueteamlabs #cybersecurity #soc_analyst #alerts
════════════════════════
𐀪 Author: Juan Martinez
════════════════════════
ⴵ Time: Mon, 21 Apr 2025 22:26:16 GMT
════════════════════════
⌗ Tags: #blueteamlabs #cybersecurity #soc_analyst #alerts
Medium
Detected Suspicious XLS File Alert
As part of the SOC Analyst learning path, I completed the “SOC138 — Detected Suspicious Xls File” alert on LetsDefend (Event ID:
77). As…
77). As…
⤷ Title: X-Twitter 3 Puzzles to Solve
════════════════════════
𐀪 Author: JustADad
════════════════════════
ⴵ Time: Mon, 21 Apr 2025 23:04:23 GMT
════════════════════════
⌗ Tags: #blue_sky #social_media #twitter #elon_musk #xs
════════════════════════
𐀪 Author: JustADad
════════════════════════
ⴵ Time: Mon, 21 Apr 2025 23:04:23 GMT
════════════════════════
⌗ Tags: #blue_sky #social_media #twitter #elon_musk #xs
Medium
X-Twitter 3 Puzzles to Solve
Explain them to me.
⤷ Title: Prioritise | THM | Write-Up
════════════════════════
𐀪 Author: Mohamed Ali
════════════════════════
ⴵ Time: Mon, 21 Apr 2025 22:15:35 GMT
════════════════════════
⌗ Tags: #prioritise #sqli #tryhackme_writeup #tryhackme_walkthrough #ctf_writeup
════════════════════════
𐀪 Author: Mohamed Ali
════════════════════════
ⴵ Time: Mon, 21 Apr 2025 22:15:35 GMT
════════════════════════
⌗ Tags: #prioritise #sqli #tryhackme_writeup #tryhackme_walkthrough #ctf_writeup
Medium
Prioritise | THM | Write-Up
In this challenge you will explore some less common SQL Injection techniques.
⤷ Title: Suzaku: A sigma-based threat hunting and fast forensics timeline generator for cloud logs
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:44:56 +0000
════════════════════════
⌗ Tags: #Data Forensics #Network Defense
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:44:56 +0000
════════════════════════
⌗ Tags: #Data Forensics #Network Defense
Penetration Testing Tools
Suzaku: A sigma-based threat hunting and fast forensics timeline generator for cloud logs
Suzaku is a threat hunting and fast forensics timeline generator for cloud logs. (Imagine Hayabusa but for cloud logs instead of Windows event logs.)
⤷ Title: MORF: Mobile Reconnaissance Framework
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:20:23 +0000
════════════════════════
⌗ Tags: #Mobile Hacking #Mobile Reconnaissance Framework
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:20:23 +0000
════════════════════════
⌗ Tags: #Mobile Hacking #Mobile Reconnaissance Framework
Penetration Testing Tools
MORF: Mobile Reconnaissance Framework
Mobile Reconnaissance Framework is a powerful, lightweight, and platform-independent offensive mobile security tool
⤷ Title: WinDiff: allows browsing and comparing symbol and type information of Microsoft Windows binaries
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:04:22 +0000
════════════════════════
⌗ Tags: #Reverse Engineering #windiff
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:04:22 +0000
════════════════════════
⌗ Tags: #Reverse Engineering #windiff
Penetration Testing Tools
WinDiff: allows browsing and comparing symbol and type information of Microsoft Windows binaries
WinDiff is an open-source web-based tool that allows browsing and comparing symbol and type information of Microsoft Windows binaries
⤷ Title: CVE-2025-21204: SYSTEM-Level Privilege Escalation in Windows Update Stack Exposed, PoC Released
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:50:10 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_21204 #directory junction #Elli Shlomo #Microsoft #PowerShell exploit #privilege escalation #symbolic links #SYSTEM access #Windows Update Stack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:50:10 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_21204 #directory junction #Elli Shlomo #Microsoft #PowerShell exploit #privilege escalation #symbolic links #SYSTEM access #Windows Update Stack
Daily CyberSecurity
CVE-2025-21204: SYSTEM-Level Privilege Escalation in Windows Update Stack Exposed, PoC Released
A critical flaw (CVE-2025-21204) in the Windows Update Stack allows local privilege escalation. Details and proof-of-concept exploit released.
⤷ Title: Google Spoofed in Sophisticated DKIM Replay Attack Exploiting Email Trust Mechanisms
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:43:12 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cyber attack #DKIM replay #DMARC #EasyDMARC #email authentication #Email Security #Gmail threats #Google spoofing #phishing #spoofed subpoena
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:43:12 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cyber attack #DKIM replay #DMARC #EasyDMARC #email authentication #Email Security #Gmail threats #Google spoofing #phishing #spoofed subpoena
Daily CyberSecurity
Google Spoofed in Sophisticated DKIM Replay Attack Exploiting Email Trust Mechanisms
A sophisticated DKIM Replay Attack spoofed Google, bypassing email security. Learn how this attack worked and how to protect yourself from email spoofing.
⤷ Title: CVE-2025-33028: WinZip Flaw Exposes Users to Silent Code Execution via MotW Bypass, No Patch
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:40:39 +0000
════════════════════════
⌗ Tags: #Vulnerability #archive #Code Execution #CVE_2025_33028 #cybersecurity #Exploit #Mark_of_the_Web #MotW #security flaw #WinZip
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:40:39 +0000
════════════════════════
⌗ Tags: #Vulnerability #archive #Code Execution #CVE_2025_33028 #cybersecurity #Exploit #Mark_of_the_Web #MotW #security flaw #WinZip
Daily CyberSecurity
CVE-2025-33028: WinZip Flaw Exposes Users to Silent Code Execution via MotW Bypass, No Patch
A WinZip vulnerability (CVE-2025-33028) allows attackers to bypass Mark-of-the-Web (MotW) protection, enabling silent code execution via malicious archives.
⤷ Title: FOG Ransomware Campaign Targets Multiple Sectors with Phishing and Payload Obfuscation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:37:16 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #Fog Ransomware #malware loader #Monero wallet #phishing attacks #powershell #privilege escalation #ransomware detection #Trend Micro
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:37:16 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #Fog Ransomware #malware loader #Monero wallet #phishing attacks #powershell #privilege escalation #ransomware detection #Trend Micro
Daily CyberSecurity
FOG Ransomware Campaign Targets Multiple Sectors with Phishing and Payload Obfuscation
FOG ransomware campaign spreads via phishing and stealthy loaders, targeting tech, education, and manufacturing sectors with obfuscated payloads.
⤷ Title: Legitimate Windows Tool Abused: mavinject.exe Used for Stealthy DLL Injection by Threat Actors
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:33:19 +0000
════════════════════════
⌗ Tags: #Cybercriminals #App_V #APT #ASEC #cybersecurity #DLL injection #Earth Preta #Lazarus Group #malware injection #mavinject.exe #signed binary abuse #Windows Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:33:19 +0000
════════════════════════
⌗ Tags: #Cybercriminals #App_V #APT #ASEC #cybersecurity #DLL injection #Earth Preta #Lazarus Group #malware injection #mavinject.exe #signed binary abuse #Windows Security
Daily CyberSecurity
Legitimate Windows Tool Abused: mavinject.exe Used for Stealthy DLL Injection by Threat Actors
Threat actors abuse Microsoft’s mavinject.exe to inject malicious DLLs into trusted processes, evading detection in stealthy APT campaigns.
⤷ Title: SuperCard X: Android Malware Steals Cards via NFC Relay Attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:22:55 +0000
════════════════════════
⌗ Tags: #Malware #Android Malware #banking security #card fraud #financial fraud #Malware_as_a_Service #mobile banking #mobile security #NFC_relay #SuperCard X
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:22:55 +0000
════════════════════════
⌗ Tags: #Malware #Android Malware #banking security #card fraud #financial fraud #Malware_as_a_Service #mobile banking #mobile security #NFC_relay #SuperCard X
Daily CyberSecurity
SuperCard X: Android Malware Steals Cards via NFC Relay Attacks
SuperCard X malware uses a novel NFC-relay technique to steal credit card data from Android devices, enabling fraudulent POS and ATM transactions.
⤷ Title: Critical CVE-2025-1976 Vulnerability in Brocade Fabric OS Actively Exploited
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:16:40 +0000
════════════════════════
⌗ Tags: #Vulnerability #Brocade #CVE_2025_1976 #CVSS 8.6 #cybersecurity #Fabric OS #privilege escalation #root access #security advisory
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:16:40 +0000
════════════════════════
⌗ Tags: #Vulnerability #Brocade #CVE_2025_1976 #CVSS 8.6 #cybersecurity #Fabric OS #privilege escalation #root access #security advisory
Daily CyberSecurity
Critical CVE-2025-1976 Vulnerability in Brocade Fabric OS Actively Exploited
A critical vulnerability (CVE-2025-1976) in Brocade Fabric OS allows a local admin user to execute arbitrary code with root privileges. Update immediately!
⤷ Title: Malicious npm Packages Backdoor Telegram Bot Developers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:12:46 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #malware #Node.js #npm #package security #Software security #ssh backdoor #supply chain attack #Telegram Bots
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:12:46 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #malware #Node.js #npm #package security #Software security #ssh backdoor #supply chain attack #Telegram Bots
Daily CyberSecurity
Malicious npm Packages Backdoor Telegram Bot Developers
Malicious npm packages are targeting Telegram bot developers, installing SSH backdoors and stealing data. Learn how this supply chain attack works and how to protect yourself.
⤷ Title: RustoBot Botnet Exploits Router Flaws in Sophisticated Attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:07:09 +0000
════════════════════════
⌗ Tags: #Malware #Vulnerability #botnet #CVE_2022_26187 #CVE_2022_26210 #CVE_2024_12987 #cybersecurity #ddos #DrayTek #malware #router security #RustoBot #TOTOLINK
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:07:09 +0000
════════════════════════
⌗ Tags: #Malware #Vulnerability #botnet #CVE_2022_26187 #CVE_2022_26210 #CVE_2024_12987 #cybersecurity #ddos #DrayTek #malware #router security #RustoBot #TOTOLINK
Daily CyberSecurity
RustoBot Botnet Exploits Router Flaws in Sophisticated Attacks
RustoBot, a sophisticated botnet written in Rust, is exploiting vulnerabilities in TOTOLINK & DrayTek routers to launch DDoS attacks. Learn how this malware operates and how to protect your network.
⤷ Title: SVG Files Weaponized: Phishing Attacks Embed HTML Code
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:06:41 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cybersecurity #Email Security #html #javascript #Kaspersky Labs #phishing attacks #SVG phishing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:06:41 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cybersecurity #Email Security #html #javascript #Kaspersky Labs #phishing attacks #SVG phishing
Daily CyberSecurity
SVG Files Weaponized: Phishing Attacks Embed HTML Code
Phishing attacks are evolving! Cybercriminals now embed HTML in SVG files to bypass detection. Learn how SVG phishing works and how to stay safe.
⤷ Title: Magecart Attack Uncovered: Obfuscated JavaScript Steals Credit Card Data
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:05:34 +0000
════════════════════════
⌗ Tags: #Malware #credit card theft #cybersecurity #data exfiltration #database pollution #e_commerce security #Infostealer #javascript #Magecart #web skimming
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:05:34 +0000
════════════════════════
⌗ Tags: #Malware #credit card theft #cybersecurity #data exfiltration #database pollution #e_commerce security #Infostealer #javascript #Magecart #web skimming
Daily CyberSecurity
Magecart Attack Uncovered: Obfuscated JavaScript Steals Credit Card Data
Yarix uncovers a sophisticated Magecart attack using obfuscated JavaScript to steal credit card data from an e-commerce site, highlighting evolving web skimming tactics.
⤷ Title: Twitter/X investigation tools for OSINT investigators
════════════════════════
𐀪 Author: loyalonlytoday
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:37:27 GMT
════════════════════════
⌗ Tags: #hacking #osint_investigation #investigation #osint #cybersecurity
════════════════════════
𐀪 Author: loyalonlytoday
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 00:37:27 GMT
════════════════════════
⌗ Tags: #hacking #osint_investigation #investigation #osint #cybersecurity
Medium
Twitter/X investigation tools for OSINT investigators
Handy tools in your OSINT journey.
⤷ Title: Cloud Control Freak — IAM : Taming Access the GRC Engineering Way
════════════════════════
𐀪 Author: Harsh Kahate
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 01:53:35 GMT
════════════════════════
⌗ Tags: #information_security #cloud_computing #cybersecurity #aws #grc_engineering
════════════════════════
𐀪 Author: Harsh Kahate
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 01:53:35 GMT
════════════════════════
⌗ Tags: #information_security #cloud_computing #cybersecurity #aws #grc_engineering
Medium
Cloud Control Freak — IAM : Taming Access the GRC Engineering Way
Welcome to the series (Cloud Control Freak — the GRC way) of articles focused on GRC Engineering <> AWS. This series is for all GRC…
⤷ Title: From Physical Security to Cybersecurity: My Journey into the Digital Frontlines
════════════════════════
𐀪 Author: Francesca Marinuzzi
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 01:52:36 GMT
════════════════════════
⌗ Tags: #personal_development #cybersecurity
════════════════════════
𐀪 Author: Francesca Marinuzzi
════════════════════════
ⴵ Time: Tue, 22 Apr 2025 01:52:36 GMT
════════════════════════
⌗ Tags: #personal_development #cybersecurity
Medium
From Physical Security to Cybersecurity: My Journey into the Digital Frontlines
How working in a security company led me to explore the invisible threats we all face online.