⤷ Title: CISA Warns of Critical Vulnerabilities in Planet Technology Products
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:50:50 +0000
════════════════════════
⌗ Tags: #Vulnerability #CISA #CISA advisory #Command Injection #CVE_2025_46271 #CVE_2025_46272 #CVE_2025_46273 #CVE_2025_46274 #CVE_2025_46275 #hardcoded credentials #network_security #NMS_500 #PLANET Technology #security advisory #UNI_NMS_Lite #WGS_804HPT_V2
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:50:50 +0000
════════════════════════
⌗ Tags: #Vulnerability #CISA #CISA advisory #Command Injection #CVE_2025_46271 #CVE_2025_46272 #CVE_2025_46273 #CVE_2025_46274 #CVE_2025_46275 #hardcoded credentials #network_security #NMS_500 #PLANET Technology #security advisory #UNI_NMS_Lite #WGS_804HPT_V2
Daily CyberSecurity
CISA Warns of Critical Vulnerabilities in Planet Technology Products
CISA warns of critical vulnerabilities in Planet Technology products, including command injection and hardcoded credentials, allowing attackers to manipulate devices.
⤷ Title: Critical Flaw Exposes Linux Security Blind Spot: io_uring Bypasses Detection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:45:39 +0000
════════════════════════
⌗ Tags: #Linux #Malware #Vulnerability #ARMO #Curing #EDR #Falco #io_uring #kernel #Linux Security #Microsoft Defender for Endpoint #rootkit #security vulnerability #Tetragon
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:45:39 +0000
════════════════════════
⌗ Tags: #Linux #Malware #Vulnerability #ARMO #Curing #EDR #Falco #io_uring #kernel #Linux Security #Microsoft Defender for Endpoint #rootkit #security vulnerability #Tetragon
Daily CyberSecurity
Critical Flaw Exposes Linux Security Blind Spot: io_uring Bypasses Detection
ARMO researchers reveal how io_uring blinds Linux security tools like Falco, Tetragon, and Defender, exposing systems to undetected rootkit attacks.
⤷ Title: React Router Vulnerabilities CVE-2025-43864 and CVE-2025-43865 Expose Web Applications to Attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:40:10 +0000
════════════════════════
⌗ Tags: #Vulnerability #Cache Poisoning #CVE_2025_43864 #CVE_2025_43865 #data spoofing #JavaScript vulnerabilities #React Router #Web Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:40:10 +0000
════════════════════════
⌗ Tags: #Vulnerability #Cache Poisoning #CVE_2025_43864 #CVE_2025_43865 #data spoofing #JavaScript vulnerabilities #React Router #Web Security
Daily CyberSecurity
React Router Vulnerabilities CVE-2025-43864 and CVE-2025-43865 Expose Web Applications to Attack
React Router flaws CVE-2025-43864 and CVE-2025-43865 allow cache poisoning and data spoofing attacks; users must upgrade to version 7.5.2 or later.
⤷ Title: SocGholish and RansomHub: Sophisticated Attack Campaign Targeting Corporate Networks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:36:24 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #backdoor #cyberattack #eSentire #FakeUpdates #Infostealer #initial access #malware #Python #RansomHub #ransomware #SocGholish
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:36:24 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #backdoor #cyberattack #eSentire #FakeUpdates #Infostealer #initial access #malware #Python #RansomHub #ransomware #SocGholish
Daily CyberSecurity
SocGholish and RansomHub: Sophisticated Attack Campaign Targeting Corporate Networks
eSentire TRU discovers a campaign combining SocGholish malware with RansomHub affiliates, using fake updates and Python backdoors to compromise networks.
⤷ Title: DeviceCodePhishing: How a New Attack Bypasses FIDO and MFA Protections
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:30:43 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Azure Entra security #Cybersecurity Threats #DeviceCodePhishing #FIDO2 phishing #MFA Bypass #OAuth attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:30:43 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Azure Entra security #Cybersecurity Threats #DeviceCodePhishing #FIDO2 phishing #MFA Bypass #OAuth attacks
Daily CyberSecurity
DeviceCodePhishing: How a New Attack Bypasses FIDO and MFA Protections
DeviceCodePhishing exploits OAuth Device Code Flow to bypass MFA and FIDO protections, redirecting victims to real sites with no phishing signs.
⤷ Title: CVE-2025-23016: Critical FastCGI Heap Overflow Threatens Embedded Devices, PoC Releases
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:26:27 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_23016 #embedded systems security #FastCGI vulnerability #heap overflow #integer overflow #Synacktiv
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:26:27 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_23016 #embedded systems security #FastCGI vulnerability #heap overflow #integer overflow #Synacktiv
Daily CyberSecurity
CVE-2025-23016: Critical FastCGI Heap Overflow Threatens Embedded Devices, PoC Releases
FastCGI CVE-2025-23016 vulnerability allows heap overflow and potential code execution on embedded devices. Users must upgrade to version 2.4.5 or later
⤷ Title: North Korean APT ‘Contagious Interview’ Launches Fake Crypto Companies to Spread Malware Trio
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:22:02 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #APT #BeaverTail #Contagious Interview #cryptocurrency #cyber attack #InvisibleFerret #Lazarus Group #malware #North Korea #OtterCookie #phishing #social engineering
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:22:02 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #APT #BeaverTail #Contagious Interview #cryptocurrency #cyber attack #InvisibleFerret #Lazarus Group #malware #North Korea #OtterCookie #phishing #social engineering
Daily CyberSecurity
North Korean APT 'Contagious Interview' Launches Fake Crypto Companies to Spread Malware Trio
Silent Push uncovers Lazarus Group's campaign using fake crypto job offers to spread malware (BeaverTail, InvisibleFerret, OtterCookie), targeting job seekers.
⤷ Title: Multiple Vulnerabilities in NETSCOUT nGeniusONE Threaten Infrastructure Visibility Platforms
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:15:46 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE #Cyber Security #NETSCOUT #network monitoring #nGeniusONE #patch #security advisory
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:15:46 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE #Cyber Security #NETSCOUT #network monitoring #nGeniusONE #patch #security advisory
Daily CyberSecurity
Multiple Vulnerabilities in NETSCOUT nGeniusONE Threaten Infrastructure Visibility Platforms
NETSCOUT advisory reveals critical vulnerabilities in nGeniusONE, including hardcoded credentials & XSS. Update to version 6.4.0 b2350 or later immediately.
⤷ Title: SessionShark: New Phishing Kit Bypasses Office 365 MFA
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:05:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AiTM #Cybercrime #MFA Bypass #Office 365 #phishing #security #SessionShark #SlashNext
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:05:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AiTM #Cybercrime #MFA Bypass #Office 365 #phishing #security #SessionShark #SlashNext
Daily CyberSecurity
SessionShark: New Phishing Kit Bypasses Office 365 MFA
Discover SessionShark, a sophisticated phishing toolkit designed to bypass Microsoft Office 365 multi-factor authentication by stealing session tokens.
⤷ Title: How I Made $12k in 48 Hours — By Recovering ‘Deleted’ Files
════════════════════════
𐀪 Author: Ibtissam Hammadi
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:00:17 GMT
════════════════════════
⌗ Tags: #bug_bounty #passive_income #hacking #github #cybersecurity
════════════════════════
𐀪 Author: Ibtissam Hammadi
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:00:17 GMT
════════════════════════
⌗ Tags: #bug_bounty #passive_income #hacking #github #cybersecurity
Medium
How I Made $12k in 48 Hours — By Recovering ‘Deleted’ Files
A Bug Bounty Hack That Turned Trash Into Cash (Here’s How You Can Do It Too)
⤷ Title: Hunting Suspicious DLL Side-Loading Activity
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:55:23 GMT
════════════════════════
⌗ Tags: #dll_sideloading #bug_bounty #hacking #hunting #cybersecurity
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:55:23 GMT
════════════════════════
⌗ Tags: #dll_sideloading #bug_bounty #hacking #hunting #cybersecurity
Medium
🎯 Hunting Suspicious DLL Side-Loading Activity
DLL Side-Loading is a common technique where attackers place a malicious DLL in a directory where a legitimate application expects a…
⤷ Title: $500 XSS Payload in Slack
════════════════════════
𐀪 Author: Monika sharma
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:54:09 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #technology #bug_bounty #hacking
════════════════════════
𐀪 Author: Monika sharma
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:54:09 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #technology #bug_bounty #hacking
Medium
$500 XSS Payload in Slack
ow a Reflected XSS Flaw in Slack’s Auth Flow Earned a $500 Bounty
⤷ Title: Understanding Vulnerabilities
════════════════════════
𐀪 Author: Luis Soto
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:11:10 GMT
════════════════════════
⌗ Tags: #cybersecurity #tech #hacking #vulnerability #coding
════════════════════════
𐀪 Author: Luis Soto
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:11:10 GMT
════════════════════════
⌗ Tags: #cybersecurity #tech #hacking #vulnerability #coding
Medium
Understanding Vulnerabilities
Part 1
⤷ Title: A List Of OSINT Resources(Must Read Article)
════════════════════════
𐀪 Author: loyalonlytoday
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:36:35 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #osint #resources #osint_investigation
════════════════════════
𐀪 Author: loyalonlytoday
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:36:35 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #osint #resources #osint_investigation
Medium
A List Of OSINT Resources(Must Read Article)
Helps to learn new techniques and new things in OSINT
⤷ Title: Hack The Box — Machine — Hospital Walkthrough (ES)
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:02:37 GMT
════════════════════════
⌗ Tags: #cybersecurity #hackthebox #hacking #windows #ctf
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:02:37 GMT
════════════════════════
⌗ Tags: #cybersecurity #hackthebox #hacking #windows #ctf
Medium
Hack The Box — Machine — Hospital Walkthrough (ES)
Descubre como ganar acceso a la máquina Hospital de HTB con explicaciones simples
⤷ Title: How to Install a Honeypot to Catch Hackers
════════════════════════
𐀪 Author: Pawan Jaiswal
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:40:56 GMT
════════════════════════
⌗ Tags: #openexploit #cybersecurity #software_engineering #programming #technology
════════════════════════
𐀪 Author: Pawan Jaiswal
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:40:56 GMT
════════════════════════
⌗ Tags: #openexploit #cybersecurity #software_engineering #programming #technology
Medium
How to Install a Honeypot to Catch Hackers
Being proactive is essential. One thrilling and effective method to protect your systems is by creating a honeypot. A honeypot is an…
⤷ Title: Pivoting
════════════════════════
𐀪 Author: Narendra Varma Chekuri
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:32:06 GMT
════════════════════════
⌗ Tags: #ssh #cybersecurity #linux #pivoting #port_forwarding
════════════════════════
𐀪 Author: Narendra Varma Chekuri
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:32:06 GMT
════════════════════════
⌗ Tags: #ssh #cybersecurity #linux #pivoting #port_forwarding
Medium
Pivoting
A basic overview on Pivoting
⤷ Title: LocalPotato - CVE-2023–21746 : TryHackMe Walkthrough
════════════════════════
𐀪 Author: RosanaFSS
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:07:50 GMT
════════════════════════
⌗ Tags: #ethical_hacking #tryhackme_walkthrough #tryhackme #vulnerability #cybersecurity
════════════════════════
𐀪 Author: RosanaFSS
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:07:50 GMT
════════════════════════
⌗ Tags: #ethical_hacking #tryhackme_walkthrough #tryhackme #vulnerability #cybersecurity
Medium
LocalPotato - CVE-2023–21746 : TryHackMe Walkthrough
A Local Privilege Escalation (LPE) vulnerability in Windows that allow an attacker with a low-privilege account on a host to read/write…
⤷ Title: Protecting Your Organization from Fraudulent Remote IT Workers
════════════════════════
𐀪 Author: Andrew Kagan
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:09:22 GMT
════════════════════════
⌗ Tags: #cybersecurity #remote_working #fraud
════════════════════════
𐀪 Author: Andrew Kagan
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 00:09:22 GMT
════════════════════════
⌗ Tags: #cybersecurity #remote_working #fraud
Medium
Protecting Your Organization from Fraudulent Remote IT Workers
Fraudulent remote IT workers represent a significant and evolving threat to organizations globally. While this issue can involve various…
⤷ Title: Penetration Testing: How to Think Like a Hacker (Before They Do)
════════════════════════
𐀪 Author: Ahmad Javed
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:52:46 GMT
════════════════════════
⌗ Tags: #cyber_security_awareness #cybersecurity #cybersecurity_training #penetration_testing #hacker
════════════════════════
𐀪 Author: Ahmad Javed
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:52:46 GMT
════════════════════════
⌗ Tags: #cyber_security_awareness #cybersecurity #cybersecurity_training #penetration_testing #hacker
Medium
Penetration Testing: How to Think Like a Hacker (Before They Do)
Why Your Firewall Isn’t Enough — And How to Stress-Test Your Defenses in 2024
⤷ Title: From Flipper Zero to Metal Key
════════════════════════
𐀪 Author: Anthony Ellison
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:06:40 GMT
════════════════════════
⌗ Tags: #keys #3d_printing #flipper_zero #physical_security #penetration_testing
════════════════════════
𐀪 Author: Anthony Ellison
════════════════════════
ⴵ Time: Mon, 28 Apr 2025 01:06:40 GMT
════════════════════════
⌗ Tags: #keys #3d_printing #flipper_zero #physical_security #penetration_testing
Medium
From Flipper Zero to Metal Key
I would like to begin by stating two things. First, this is for educational purposes only and secondly, I have seen others use these…