⤷ Title: Why Every Organization Needs a Security Operations Center (SOC)
════════════════════════
𐀪 Author: Karthikeyan Nagaraj
════════════════════════
ⴵ Time: Sun, 27 Apr 2025 22:16:35 GMT
════════════════════════
⌗ Tags: #soc #careers #cybersecurity #technology #programming
════════════════════════
𐀪 Author: Karthikeyan Nagaraj
════════════════════════
ⴵ Time: Sun, 27 Apr 2025 22:16:35 GMT
════════════════════════
⌗ Tags: #soc #careers #cybersecurity #technology #programming
Medium
Why Every Organization Needs a Security Operations Center (SOC)
Strengthen your defense posture and stay ahead of cyber threats with a dedicated Security Operations Center.
⤷ Title: From Vulnerable to Vigilant: Improving Cybersecurity in Small Business
════════════════════════
𐀪 Author: Stephan Daniels
════════════════════════
ⴵ Time: Sun, 27 Apr 2025 22:15:51 GMT
════════════════════════
⌗ Tags: #data_security #information_security #small_business #cybersecurity_training #cybersecurity
════════════════════════
𐀪 Author: Stephan Daniels
════════════════════════
ⴵ Time: Sun, 27 Apr 2025 22:15:51 GMT
════════════════════════
⌗ Tags: #data_security #information_security #small_business #cybersecurity_training #cybersecurity
Medium
From Vulnerable to Vigilant: Improving Cybersecurity in Small Business
Over the past 40 years or so, advancements in technology have radically changed the way we do business. With the proliferation of the…
⤷ Title: Hacking the Quizlet Match Game
════════════════════════
𐀪 Author: אורי מגד
════════════════════════
ⴵ Time: Sun, 27 Apr 2025 22:06:37 GMT
════════════════════════
⌗ Tags: #quizlet #javascript #ethical_hacking #burpsuite #cybersecurity
════════════════════════
𐀪 Author: אורי מגד
════════════════════════
ⴵ Time: Sun, 27 Apr 2025 22:06:37 GMT
════════════════════════
⌗ Tags: #quizlet #javascript #ethical_hacking #burpsuite #cybersecurity
Medium
Hacking the Quizlet Match Game
A Competitive Spark in English Class
⤷ Title: Brooklyn Nine Nine CTF — Full Writeup and Walkthrough
════════════════════════
𐀪 Author: mikesploit
════════════════════════
ⴵ Time: Sun, 27 Apr 2025 22:46:54 GMT
════════════════════════
⌗ Tags: #penetration_testing #ctf_walkthrough #tryhackme_writeup #tryhackme_walkthrough #ctf_writeup
════════════════════════
𐀪 Author: mikesploit
════════════════════════
ⴵ Time: Sun, 27 Apr 2025 22:46:54 GMT
════════════════════════
⌗ Tags: #penetration_testing #ctf_walkthrough #tryhackme_writeup #tryhackme_walkthrough #ctf_writeup
Medium
Brooklyn Nine Nine CTF — Full Writeup and Walkthrough
Summary
⤷ Title: HACK SMART SECURITY WALKTHROUGH : TRYHACKME
════════════════════════
𐀪 Author: rizzziom
════════════════════════
ⴵ Time: Sun, 27 Apr 2025 22:31:29 GMT
════════════════════════
⌗ Tags: #ctf #penetration_testing #ctf_writeup #tryhackme_walkthrough #tryhackme
════════════════════════
𐀪 Author: rizzziom
════════════════════════
ⴵ Time: Sun, 27 Apr 2025 22:31:29 GMT
════════════════════════
⌗ Tags: #ctf #penetration_testing #ctf_writeup #tryhackme_walkthrough #tryhackme
Medium
HACK SMART SECURITY WALKTHROUGH : TRYHACKME
SCANNING
⤷ Title: HTB Knife Walkthrough
════════════════════════
𐀪 Author: The Cyber Outpost
════════════════════════
ⴵ Time: Sun, 27 Apr 2025 23:01:32 GMT
════════════════════════
⌗ Tags: #php #rce #hackthebox_walkthrough #hackthebox #hackthebox_writeup
════════════════════════
𐀪 Author: The Cyber Outpost
════════════════════════
ⴵ Time: Sun, 27 Apr 2025 23:01:32 GMT
════════════════════════
⌗ Tags: #php #rce #hackthebox_walkthrough #hackthebox #hackthebox_writeup
Medium
HTB Knife Walkthrough
In this article, we’re going to explore the retired easy box of Netmon, following the guided mode.
⤷ Title: fuzzuf: Fuzzing Unification Framework
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:44:45 +0000
════════════════════════
⌗ Tags: #Reverse Engineering #Fuzzing Unification Framework
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:44:45 +0000
════════════════════════
⌗ Tags: #Reverse Engineering #Fuzzing Unification Framework
Penetration Testing Tools
fuzzuf: Fuzzing Unification Framework
Fuzzing Unification Framework is a fuzzing framework with its own DSL to describe a fuzzing loop by constructing building blocks of fuzzing primitives.
⤷ Title: cuddlephish: Weaponized multi-user browser-in-the-middle (BitM) for penetration testers
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:30:14 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #browser_in_the_middle
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:30:14 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #browser_in_the_middle
Penetration Testing Tools
cuddlephish: Weaponized multi-user browser-in-the-middle (BitM) for penetration testers
The browser-in-the-middle attack can be used to bypass multi-factor authentication on many high-value web applications.
⤷ Title: Craft CMS Zero-Day CVE-2025-32432 Exploited with Metasploit Module Now Public
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:55:46 +0000
════════════════════════
⌗ Tags: #Vulnerability #Craft CMS #CVE_2024_58136 #CVE_2025_32432 #Metasploit exploit #RCE vulnerability #Yii framework vulnerability #zero_day attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:55:46 +0000
════════════════════════
⌗ Tags: #Vulnerability #Craft CMS #CVE_2024_58136 #CVE_2025_32432 #Metasploit exploit #RCE vulnerability #Yii framework vulnerability #zero_day attack
Daily CyberSecurity
Craft CMS Zero-Day CVE-2025-32432 Exploited with Metasploit Module Now Public
Critical Craft CMS zero-day CVE-2025-32432 exploited with Yii flaw; Metasploit module published, urging urgent patching to prevent server breaches.
⤷ Title: CISA Warns of Critical Vulnerabilities in Planet Technology Products
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:50:50 +0000
════════════════════════
⌗ Tags: #Vulnerability #CISA #CISA advisory #Command Injection #CVE_2025_46271 #CVE_2025_46272 #CVE_2025_46273 #CVE_2025_46274 #CVE_2025_46275 #hardcoded credentials #network_security #NMS_500 #PLANET Technology #security advisory #UNI_NMS_Lite #WGS_804HPT_V2
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:50:50 +0000
════════════════════════
⌗ Tags: #Vulnerability #CISA #CISA advisory #Command Injection #CVE_2025_46271 #CVE_2025_46272 #CVE_2025_46273 #CVE_2025_46274 #CVE_2025_46275 #hardcoded credentials #network_security #NMS_500 #PLANET Technology #security advisory #UNI_NMS_Lite #WGS_804HPT_V2
Daily CyberSecurity
CISA Warns of Critical Vulnerabilities in Planet Technology Products
CISA warns of critical vulnerabilities in Planet Technology products, including command injection and hardcoded credentials, allowing attackers to manipulate devices.
⤷ Title: Critical Flaw Exposes Linux Security Blind Spot: io_uring Bypasses Detection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:45:39 +0000
════════════════════════
⌗ Tags: #Linux #Malware #Vulnerability #ARMO #Curing #EDR #Falco #io_uring #kernel #Linux Security #Microsoft Defender for Endpoint #rootkit #security vulnerability #Tetragon
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:45:39 +0000
════════════════════════
⌗ Tags: #Linux #Malware #Vulnerability #ARMO #Curing #EDR #Falco #io_uring #kernel #Linux Security #Microsoft Defender for Endpoint #rootkit #security vulnerability #Tetragon
Daily CyberSecurity
Critical Flaw Exposes Linux Security Blind Spot: io_uring Bypasses Detection
ARMO researchers reveal how io_uring blinds Linux security tools like Falco, Tetragon, and Defender, exposing systems to undetected rootkit attacks.
⤷ Title: React Router Vulnerabilities CVE-2025-43864 and CVE-2025-43865 Expose Web Applications to Attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:40:10 +0000
════════════════════════
⌗ Tags: #Vulnerability #Cache Poisoning #CVE_2025_43864 #CVE_2025_43865 #data spoofing #JavaScript vulnerabilities #React Router #Web Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:40:10 +0000
════════════════════════
⌗ Tags: #Vulnerability #Cache Poisoning #CVE_2025_43864 #CVE_2025_43865 #data spoofing #JavaScript vulnerabilities #React Router #Web Security
Daily CyberSecurity
React Router Vulnerabilities CVE-2025-43864 and CVE-2025-43865 Expose Web Applications to Attack
React Router flaws CVE-2025-43864 and CVE-2025-43865 allow cache poisoning and data spoofing attacks; users must upgrade to version 7.5.2 or later.
⤷ Title: SocGholish and RansomHub: Sophisticated Attack Campaign Targeting Corporate Networks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:36:24 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #backdoor #cyberattack #eSentire #FakeUpdates #Infostealer #initial access #malware #Python #RansomHub #ransomware #SocGholish
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:36:24 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #backdoor #cyberattack #eSentire #FakeUpdates #Infostealer #initial access #malware #Python #RansomHub #ransomware #SocGholish
Daily CyberSecurity
SocGholish and RansomHub: Sophisticated Attack Campaign Targeting Corporate Networks
eSentire TRU discovers a campaign combining SocGholish malware with RansomHub affiliates, using fake updates and Python backdoors to compromise networks.
⤷ Title: DeviceCodePhishing: How a New Attack Bypasses FIDO and MFA Protections
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:30:43 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Azure Entra security #Cybersecurity Threats #DeviceCodePhishing #FIDO2 phishing #MFA Bypass #OAuth attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:30:43 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Azure Entra security #Cybersecurity Threats #DeviceCodePhishing #FIDO2 phishing #MFA Bypass #OAuth attacks
Daily CyberSecurity
DeviceCodePhishing: How a New Attack Bypasses FIDO and MFA Protections
DeviceCodePhishing exploits OAuth Device Code Flow to bypass MFA and FIDO protections, redirecting victims to real sites with no phishing signs.
⤷ Title: CVE-2025-23016: Critical FastCGI Heap Overflow Threatens Embedded Devices, PoC Releases
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:26:27 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_23016 #embedded systems security #FastCGI vulnerability #heap overflow #integer overflow #Synacktiv
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:26:27 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_23016 #embedded systems security #FastCGI vulnerability #heap overflow #integer overflow #Synacktiv
Daily CyberSecurity
CVE-2025-23016: Critical FastCGI Heap Overflow Threatens Embedded Devices, PoC Releases
FastCGI CVE-2025-23016 vulnerability allows heap overflow and potential code execution on embedded devices. Users must upgrade to version 2.4.5 or later
⤷ Title: North Korean APT ‘Contagious Interview’ Launches Fake Crypto Companies to Spread Malware Trio
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:22:02 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #APT #BeaverTail #Contagious Interview #cryptocurrency #cyber attack #InvisibleFerret #Lazarus Group #malware #North Korea #OtterCookie #phishing #social engineering
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:22:02 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #APT #BeaverTail #Contagious Interview #cryptocurrency #cyber attack #InvisibleFerret #Lazarus Group #malware #North Korea #OtterCookie #phishing #social engineering
Daily CyberSecurity
North Korean APT 'Contagious Interview' Launches Fake Crypto Companies to Spread Malware Trio
Silent Push uncovers Lazarus Group's campaign using fake crypto job offers to spread malware (BeaverTail, InvisibleFerret, OtterCookie), targeting job seekers.
⤷ Title: Multiple Vulnerabilities in NETSCOUT nGeniusONE Threaten Infrastructure Visibility Platforms
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:15:46 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE #Cyber Security #NETSCOUT #network monitoring #nGeniusONE #patch #security advisory
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:15:46 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE #Cyber Security #NETSCOUT #network monitoring #nGeniusONE #patch #security advisory
Daily CyberSecurity
Multiple Vulnerabilities in NETSCOUT nGeniusONE Threaten Infrastructure Visibility Platforms
NETSCOUT advisory reveals critical vulnerabilities in nGeniusONE, including hardcoded credentials & XSS. Update to version 6.4.0 b2350 or later immediately.
⤷ Title: SessionShark: New Phishing Kit Bypasses Office 365 MFA
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:05:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AiTM #Cybercrime #MFA Bypass #Office 365 #phishing #security #SessionShark #SlashNext
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:05:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AiTM #Cybercrime #MFA Bypass #Office 365 #phishing #security #SessionShark #SlashNext
Daily CyberSecurity
SessionShark: New Phishing Kit Bypasses Office 365 MFA
Discover SessionShark, a sophisticated phishing toolkit designed to bypass Microsoft Office 365 multi-factor authentication by stealing session tokens.
⤷ Title: How I Made $12k in 48 Hours — By Recovering ‘Deleted’ Files
════════════════════════
𐀪 Author: Ibtissam Hammadi
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:00:17 GMT
════════════════════════
⌗ Tags: #bug_bounty #passive_income #hacking #github #cybersecurity
════════════════════════
𐀪 Author: Ibtissam Hammadi
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:00:17 GMT
════════════════════════
⌗ Tags: #bug_bounty #passive_income #hacking #github #cybersecurity
Medium
How I Made $12k in 48 Hours — By Recovering ‘Deleted’ Files
A Bug Bounty Hack That Turned Trash Into Cash (Here’s How You Can Do It Too)
⤷ Title: Hunting Suspicious DLL Side-Loading Activity
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:55:23 GMT
════════════════════════
⌗ Tags: #dll_sideloading #bug_bounty #hacking #hunting #cybersecurity
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:55:23 GMT
════════════════════════
⌗ Tags: #dll_sideloading #bug_bounty #hacking #hunting #cybersecurity
Medium
🎯 Hunting Suspicious DLL Side-Loading Activity
DLL Side-Loading is a common technique where attackers place a malicious DLL in a directory where a legitimate application expects a…
⤷ Title: $500 XSS Payload in Slack
════════════════════════
𐀪 Author: Monika sharma
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:54:09 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #technology #bug_bounty #hacking
════════════════════════
𐀪 Author: Monika sharma
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:54:09 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #technology #bug_bounty #hacking
Medium
$500 XSS Payload in Slack
ow a Reflected XSS Flaw in Slack’s Auth Flow Earned a $500 Bounty