⤷ Title: CVE-2024-7399: Samsung MagicINFO Vulnerability Now Actively Exploited in the Wild
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 05 May 2025 22:28:36 +0000
════════════════════════
⌗ Tags: #Vulnerability #Arctic Wolf #CMS vulnerability #CVE_2024_7399 #JSP upload #Remote Code Execution #Samsung MagicINFO #unauthenticated RCE
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 05 May 2025 22:28:36 +0000
════════════════════════
⌗ Tags: #Vulnerability #Arctic Wolf #CMS vulnerability #CVE_2024_7399 #JSP upload #Remote Code Execution #Samsung MagicINFO #unauthenticated RCE
Daily CyberSecurity
CVE-2024-7399: Samsung MagicINFO Vulnerability Now Actively Exploited in the Wild
CVE-2024-7399 vulnerability actively exploited in Samsung MagicINFO 9 Server allows remote code execution. Arctic Wolf reports in-the-wild attacks. Upgrade now!
⤷ Title: BeyondTrust PRA Vulnerability (CVE-2025-0217) Enables Session Hijacking via Authentication Bypass
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 05 May 2025 22:18:31 +0000
════════════════════════
⌗ Tags: #Vulnerability #Authentication Bypass #BeyondTrust #CVE_2025_0217 #PAM #PRA #Privileged Access Management #Privileged Remote Access #security advisory #ShellJump
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 05 May 2025 22:18:31 +0000
════════════════════════
⌗ Tags: #Vulnerability #Authentication Bypass #BeyondTrust #CVE_2025_0217 #PAM #PRA #Privileged Access Management #Privileged Remote Access #security advisory #ShellJump
Daily CyberSecurity
BeyondTrust PRA Vulnerability (CVE-2025-0217) Enables Session Hijacking via Authentication Bypass
CVE-2025-0217 flaw in BeyondTrust PRA allows session hijacking via local auth bypass. Upgrade to version 25.1+ to prevent exploitation.
⤷ Title: $500 Bounty for Reflected XSS on HackerOne
════════════════════════
𐀪 Author: Monika sharma
════════════════════════
ⴵ Time: Mon, 05 May 2025 23:06:26 GMT
════════════════════════
⌗ Tags: #bug_bounty #report #penetration_testing #cybersecurity #technology
════════════════════════
𐀪 Author: Monika sharma
════════════════════════
ⴵ Time: Mon, 05 May 2025 23:06:26 GMT
════════════════════════
⌗ Tags: #bug_bounty #report #penetration_testing #cybersecurity #technology
Medium
$500 Bounty for Reflected XSS on HackerOne
How a Security Researcher Earned $500 by Discovering Reflected XSS on HackerOne
⤷ Title: Hacker’s Recon Guide: Tools & Tricks to Map Any Target
════════════════════════
𐀪 Author: Vipul Sonule
════════════════════════
ⴵ Time: Mon, 05 May 2025 23:04:51 GMT
════════════════════════
⌗ Tags: #technology #hacking #cybersecurity #osint #bug_bounty
════════════════════════
𐀪 Author: Vipul Sonule
════════════════════════
ⴵ Time: Mon, 05 May 2025 23:04:51 GMT
════════════════════════
⌗ Tags: #technology #hacking #cybersecurity #osint #bug_bounty
Medium
🧠 Hacker’s Recon Guide: Tools & Tricks to Map Any Target
In the realm of cybersecurity, reconnaissance is the foundational phase that sets the stage for any ethical hacking or penetration testing…
⤷ Title: Here we go , 2 bugs in the same program
════════════════════════
𐀪 Author: Youssef Hany
════════════════════════
ⴵ Time: Mon, 05 May 2025 22:52:37 GMT
════════════════════════
⌗ Tags: #writeup #broken_access_control #bug_bounty #ssti #security
════════════════════════
𐀪 Author: Youssef Hany
════════════════════════
ⴵ Time: Mon, 05 May 2025 22:52:37 GMT
════════════════════════
⌗ Tags: #writeup #broken_access_control #bug_bounty #ssti #security
Medium
Here we go 🚨, 2 bugs in the same program
“بِسْمِ اللَّهِ، وَالْحَمْدُ لِلَّهِ، وَالصَّلَاةُ وَالسَّلَامُ عَلَى رَسُولِ اللَّهِ، اللَّهُمَّ عَلِّمْنَا مَا يَنْفَعُنَا، وَانْفَعْنَا…
⤷ Title: Secrets HACKERS Don’t Want You to Know About OSINT!
════════════════════════
𐀪 Author: Dhanush N
════════════════════════
ⴵ Time: Mon, 05 May 2025 23:03:54 GMT
════════════════════════
⌗ Tags: #osint #hacking #security #osint_investigation #cybersecurity
════════════════════════
𐀪 Author: Dhanush N
════════════════════════
ⴵ Time: Mon, 05 May 2025 23:03:54 GMT
════════════════════════
⌗ Tags: #osint #hacking #security #osint_investigation #cybersecurity
Medium
Secrets HACKERS Don’t Want You to Know About OSINT!
Imagine having the ability to uncover hidden truths, track down critical information or even protect your organization — all using data…
⤷ Title: Building the Digital Fortress: The Next Chapter in my Story [WHO AM I — PART2]
════════════════════════
𐀪 Author: Taher Amine, mMBA, CISSP-SME, CCISO, CMSA, ISOxx
════════════════════════
ⴵ Time: Mon, 05 May 2025 22:26:27 GMT
════════════════════════
⌗ Tags: #cybersecurity #taher_amine_elhouari #infosec
════════════════════════
𐀪 Author: Taher Amine, mMBA, CISSP-SME, CCISO, CMSA, ISOxx
════════════════════════
ⴵ Time: Mon, 05 May 2025 22:26:27 GMT
════════════════════════
⌗ Tags: #cybersecurity #taher_amine_elhouari #infosec
Medium
Building the Digital Fortress: The Next Chapter in my Story [WHO AM I — PART2]
“How I’m Scaling My Impact While Staying Rooted in Purpose”
⤷ Title: Digital White Blood Cells: Building an Immune System for the Internet
════════════════════════
𐀪 Author: Aaron Rose
════════════════════════
ⴵ Time: Mon, 05 May 2025 23:25:01 GMT
════════════════════════
⌗ Tags: #internet #network_security #ddos #cybersecurity #infrastructure
════════════════════════
𐀪 Author: Aaron Rose
════════════════════════
ⴵ Time: Mon, 05 May 2025 23:25:01 GMT
════════════════════════
⌗ Tags: #internet #network_security #ddos #cybersecurity #infrastructure
Medium
Digital White Blood Cells: Building an Immune System for the Internet
How digital networks could evolve from passive routing to active defense — and finally outgrow the malware
⤷ Title: Top 5 Cybersecurity Threats to Watch in 2025 — and How to Get Ready
════════════════════════
𐀪 Author: Michael Siopa
════════════════════════
ⴵ Time: Mon, 05 May 2025 22:56:25 GMT
════════════════════════
⌗ Tags: #cybersecurity #cyber_security_awareness #cyber_threat #cybersecurity_awareness #cyberattack
════════════════════════
𐀪 Author: Michael Siopa
════════════════════════
ⴵ Time: Mon, 05 May 2025 22:56:25 GMT
════════════════════════
⌗ Tags: #cybersecurity #cyber_security_awareness #cyber_threat #cybersecurity_awareness #cyberattack
Medium
Top 5 Cybersecurity Threats to Watch in 2025 — and How to Get Ready
As digital transformation accelerates and cybercriminals grow more advanced, 2025 is shaping up to be a defining year in the cybersecurity…
⤷ Title: The Unexpected Upside: Unleashing Creativity and Exploring Limits?
════════════════════════
𐀪 Author: Majeztik SlumBoi / Julius Crawford
════════════════════════
ⴵ Time: Mon, 05 May 2025 22:37:25 GMT
════════════════════════
⌗ Tags: #software_engineering #privacy #deep_learning #artificial_intelligence #cybersecurity
════════════════════════
𐀪 Author: Majeztik SlumBoi / Julius Crawford
════════════════════════
ⴵ Time: Mon, 05 May 2025 22:37:25 GMT
════════════════════════
⌗ Tags: #software_engineering #privacy #deep_learning #artificial_intelligence #cybersecurity
Medium
The Unexpected Upside: Unleashing Creativity and Exploring Limits?
Everyone doesn't have bad intentions but we're limited because of those that do
⤷ Title: Windows DPAPI Fundamentals
════════════════════════
𐀪 Author: Tom O'Neill
════════════════════════
ⴵ Time: Mon, 05 May 2025 22:32:20 GMT
════════════════════════
⌗ Tags: #windows_security #red_team #cybersecurity #penetration_testing
════════════════════════
𐀪 Author: Tom O'Neill
════════════════════════
ⴵ Time: Mon, 05 May 2025 22:32:20 GMT
════════════════════════
⌗ Tags: #windows_security #red_team #cybersecurity #penetration_testing
Medium
Windows DPAPI Fundamentals
A review of fundamental Windows DPAPI concepts and a C# project to demonstrate the Protect/Unprotect methods using byte arrays.
⤷ Title: TryHackMe: Python Basics Room Explained
════════════════════════
𐀪 Author: Diego Lasarin
════════════════════════
ⴵ Time: Mon, 05 May 2025 22:27:01 GMT
════════════════════════
⌗ Tags: #automation #scripting #tryhackme #python #cybersecurity
════════════════════════
𐀪 Author: Diego Lasarin
════════════════════════
ⴵ Time: Mon, 05 May 2025 22:27:01 GMT
════════════════════════
⌗ Tags: #automation #scripting #tryhackme #python #cybersecurity
Medium
TryHackMe: Python Basics Room Explained
From Hello World to Cyber Scripts
⤷ Title: Understanding the Role of a CISO in Protecting Your Organization’s Cybersecurity
════════════════════════
𐀪 Author: Karthikeyan Nagaraj
════════════════════════
ⴵ Time: Mon, 05 May 2025 22:17:32 GMT
════════════════════════
⌗ Tags: #cybersecurity #networking #security #careers #technology
════════════════════════
𐀪 Author: Karthikeyan Nagaraj
════════════════════════
ⴵ Time: Mon, 05 May 2025 22:17:32 GMT
════════════════════════
⌗ Tags: #cybersecurity #networking #security #careers #technology
Medium
Understanding the Role of a CISO in Protecting Your Organization’s Cybersecurity
Why every modern business needs a strong, strategic Chief Information Security Officer at the helm of cyber defense.
⤷ Title: The Ultimate Guide to API Security Testing — Cheat sheet 2025 Edition
════════════════════════
𐀪 Author: Mohamed Talaat Saada (@t4144t)
════════════════════════
ⴵ Time: Mon, 05 May 2025 20:49:12 GMT
════════════════════════
⌗ Tags: #penetration_testing #bug_bounty_writeup #bug_bounty_tips #owasp_top_10 #bug_bounty
════════════════════════
𐀪 Author: Mohamed Talaat Saada (@t4144t)
════════════════════════
ⴵ Time: Mon, 05 May 2025 20:49:12 GMT
════════════════════════
⌗ Tags: #penetration_testing #bug_bounty_writeup #bug_bounty_tips #owasp_top_10 #bug_bounty
Medium
The Ultimate Guide to API Security Testing — Cheat sheet 2025 Edition
I was searching for such resource to work as cheat sheet series and guide me through different attack scenarios for API attacks, didn’t…
⤷ Title: How I Passed the Certified Ethical Hacker Exam!
════════════════════════
𐀪 Author: Dr. Alexis | Health | Tech | Business | Blog
════════════════════════
ⴵ Time: Mon, 05 May 2025 22:05:07 GMT
════════════════════════
⌗ Tags: #certified_ethical_hacker #ethical_hacking #ec_council #che #ec_council_certification
════════════════════════
𐀪 Author: Dr. Alexis | Health | Tech | Business | Blog
════════════════════════
ⴵ Time: Mon, 05 May 2025 22:05:07 GMT
════════════════════════
⌗ Tags: #certified_ethical_hacker #ethical_hacking #ec_council #che #ec_council_certification
Medium
How I Passed the Certified Ethical Hacker Exam!
When I set out to pursue the CEH (Certified Ethical Hacker) certification, I knew it would require more than interest—it would require…
⤷ Title: Unauthenticated DoS Vulnerability Crashes Windows Deployment Services, No Patch
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 06 May 2025 00:40:39 +0000
════════════════════════
⌗ Tags: #Vulnerability #Denial of Service #memory exhaustion #Preauth DoS #UDP spoofing #WDS vulnerability #Windows Deployment Services #Zhiniang Peng
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 06 May 2025 00:40:39 +0000
════════════════════════
⌗ Tags: #Vulnerability #Denial of Service #memory exhaustion #Preauth DoS #UDP spoofing #WDS vulnerability #Windows Deployment Services #Zhiniang Peng
Daily CyberSecurity
Unauthenticated DoS Vulnerability Crashes Windows Deployment Services, No Patch
A preauth DoS flaw in Windows Deployment Services allows attackers to crash systems via spoofed UDP packets, warns researcher Zhiniang Peng.
⤷ Title: CVE-2025-2905 (CVSS 9.1): Critical XXE Vulnerability Found in WSO2 API Manager
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 06 May 2025 00:37:47 +0000
════════════════════════
⌗ Tags: #Vulnerability #API Manager #CVE_2025_2905 #security advisory #WSO2 #XXE Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 06 May 2025 00:37:47 +0000
════════════════════════
⌗ Tags: #Vulnerability #API Manager #CVE_2025_2905 #security advisory #WSO2 #XXE Vulnerability
Daily CyberSecurity
CVE-2025-2905 (CVSS 9.1): Critical XXE Vulnerability Found in WSO2 API Manager
A critical XXE vulnerability (CVE-2025-2905) in WSO2 API Manager allows attackers to read files and cause DoS. Patch WSO2-2016-0151 is the solution.
⤷ Title: CVE-2025-2605 (CVSS 9.9): Critical Vulnerability Found in Honeywell MB-Secure Alarm Panels
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 06 May 2025 00:33:43 +0000
════════════════════════
⌗ Tags: #Vulnerability #alarm panel #CVE_2025_2605 #cybersecurity #Honeywell #Industrial Security #MB_Secure
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 06 May 2025 00:33:43 +0000
════════════════════════
⌗ Tags: #Vulnerability #alarm panel #CVE_2025_2605 #cybersecurity #Honeywell #Industrial Security #MB_Secure
Daily CyberSecurity
CVE-2025-2605 (CVSS 9.9): Critical Vulnerability Found in Honeywell MB-Secure Alarm Panels
A critical vulnerability (CVE-2025-2605) in Honeywell MB-Secure alarm panels allows attackers to execute OS commands. Update to the latest version now.
⤷ Title: Darcula Exposed: Inside a Global Phishing-as-a-Service Empire Powered by the Magic Cat Toolkit
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 06 May 2025 00:22:27 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cybercrime #Darcula #Magic Cat #mnemonic #PhaaS #phishing infrastructure #Phishing_as_a_Service #smishing #Telegram scams
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 06 May 2025 00:22:27 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cybercrime #Darcula #Magic Cat #mnemonic #PhaaS #phishing infrastructure #Phishing_as_a_Service #smishing #Telegram scams
Daily CyberSecurity
Darcula Exposed: Inside a Global Phishing-as-a-Service Empire Powered by the Magic Cat Toolkit
mnemonic exposes Darcula, a global phishing-as-a-service network using the Magic Cat toolkit to target mobile users with encrypted, real-time scam dashboards.
⤷ Title: Digigram PYKO-OUT AoIP Devices Exposed to Attacks Due to Missing Default Password
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 06 May 2025 00:18:27 +0000
════════════════════════
⌗ Tags: #Vulnerability #audio_over_IP #CERT/CC #CVE_2025_3927 #default credentials #Digigram #network_security #PYKO_OUT
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 06 May 2025 00:18:27 +0000
════════════════════════
⌗ Tags: #Vulnerability #audio_over_IP #CERT/CC #CVE_2025_3927 #default credentials #Digigram #network_security #PYKO_OUT
Daily CyberSecurity
Digigram PYKO-OUT AoIP Devices Exposed to Attacks Due to Missing Default Password
CERT/CC warns of CVE-2025-3927 in Digigram PYKO-OUT AoIP device, where default no-password access allows attackers to control devices and pivot networks.
⤷ Title: Massive E-commerce Supply Chain Attack Uncovered: Hundreds of Stores at Risk
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 06 May 2025 00:13:38 +0000
════════════════════════
⌗ Tags: #Malware #e_commerce #Magento #Magesolution #malware #Meetanshi #Sansec #security breach #supply chain attack #Tigren
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 06 May 2025 00:13:38 +0000
════════════════════════
⌗ Tags: #Malware #e_commerce #Magento #Magesolution #malware #Meetanshi #Sansec #security breach #supply chain attack #Tigren
Daily CyberSecurity
Massive E-commerce Supply Chain Attack Uncovered: Hundreds of Stores at Risk
A large-scale supply chain attack has injected backdoors into e-commerce software, potentially affecting 500-1,000 stores. Sansec urges immediate checks.