⤷ Title: Multiple CVEs in GNU Screen: Local Root Exploit and TTY Hijacking Discovered
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:45:58 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_23395 #CVE_2025_46802 #CVE_2025_46803 #CVE_2025_46804 #CVE_2025_46805 #Exploit #GNU Screen #privilege escalation #root access #security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:45:58 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_23395 #CVE_2025_46802 #CVE_2025_46803 #CVE_2025_46804 #CVE_2025_46805 #Exploit #GNU Screen #privilege escalation #root access #security
Daily CyberSecurity
Multiple CVEs in GNU Screen: Local Root Exploit and TTY Hijacking Discovered
A security audit reveals critical flaws in GNU Screen, including a root exploit. The flaws impact both Screen 5.0.0 and 4.9.x, posing a major risk to Linux/UNIX systems.
⤷ Title: CVE-2025-1087: Critical Template Injection in Insomnia API Client Enables Remote Code Execution
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:42:44 +0000
════════════════════════
⌗ Tags: #Vulnerability #API security #CVE_2025_1087 #Developer Tools #Insomnia #JavaScript RCE #Kong #Template Injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:42:44 +0000
════════════════════════
⌗ Tags: #Vulnerability #API security #CVE_2025_1087 #Developer Tools #Insomnia #JavaScript RCE #Kong #Template Injection
Daily CyberSecurity
CVE-2025-1087: Critical Template Injection in Insomnia API Client Enables Remote Code Execution
CVE-2025-1087: Critical flaw in Kong Insomnia allows template injection and arbitrary code execution. Users urged to update to v11.0.2 immediately.
⤷ Title: North Korean APT37’s “ToyBox Story”: Stealthy Attacks Unveiled
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:40:49 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT37 #cloud #cyberattack #dropbox #Fileless Malware #malware #North Korea #RokRAT #spear_phishing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:40:49 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT37 #cloud #cyberattack #dropbox #Fileless Malware #malware #North Korea #RokRAT #spear_phishing
Daily CyberSecurity
North Korean APT37's "ToyBox Story": Stealthy Attacks Unveiled
New report details APT37's "ToyBox Story" campaign, using spear phishing and cloud services to deploy RoKRAT malware. Fileless attacks and stealthy tactics revealed.
⤷ Title: AI Tools Turn Trojan: Fake Video Platforms Drop Noodlophile Stealer and XWorm Payloads
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:33:27 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #AI Malware #CapCut Exploit #Fake AI Platforms #Infostealer #Malware_as_a_Service #Noodlophile Stealer #Telegram bot #XWorm
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:33:27 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #AI Malware #CapCut Exploit #Fake AI Platforms #Infostealer #Malware_as_a_Service #Noodlophile Stealer #Telegram bot #XWorm
Daily CyberSecurity
AI Tools Turn Trojan: Fake Video Platforms Drop Noodlophile Stealer and XWorm Payloads
Attackers exploit fake AI video tools to deploy Noodlophile Stealer and XWorm, stealing credentials and data via Telegram bots.
⤷ Title: How to Stop Threats that Bypass Multi-Factor Authentication
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:26:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:26:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals
Daily CyberSecurity
How to Stop Threats that Bypass Multi-Factor Authentication
Explore the vulnerabilities in multi-factor authentication and effective strategies to prevent attackers from bypassing it.
⤷ Title: PoC Released: CVE-2025-31644 Exploit Grants Root Access on F5 BIG-IP via Appliance Mode Command Injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:25:01 +0000
════════════════════════
⌗ Tags: #Vulnerability #Appliance mode bypass #BIG_IP vulnerability #Command Injection #CVE_2025_31644 #F5 #iControl REST #PoC #root access #TMSH CLI
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:25:01 +0000
════════════════════════
⌗ Tags: #Vulnerability #Appliance mode bypass #BIG_IP vulnerability #Command Injection #CVE_2025_31644 #F5 #iControl REST #PoC #root access #TMSH CLI
Daily CyberSecurity
PoC Released: CVE-2025-31644 Exploit Grants Root Access on F5 BIG-IP via Appliance Mode Command Injection
PoC for CVE-2025-31644 shows how admin users can exploit F5 BIG-IP Appliance Mode to gain root access via command injection.
⤷ Title: PupkinStealer: Tiny Malware, Big Theft via Telegram Bot Exposed
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:20:41 +0000
════════════════════════
⌗ Tags: #Malware #browser credentials #Cyfirma #Data Theft #Discord #Infostealer #malware #PupkinStealer #Telegram #Telegram bot
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:20:41 +0000
════════════════════════
⌗ Tags: #Malware #browser credentials #Cyfirma #Data Theft #Discord #Infostealer #malware #PupkinStealer #Telegram #Telegram bot
Daily CyberSecurity
PupkinStealer: Tiny Malware, Big Theft via Telegram Bot Exposed
New lightweight PupkinStealer malware silently steals browser data, messaging sessions, and desktop files, sending it all via Telegram.
⤷ Title: CAPTCHA Trap: Fake Verification Unleashes Lumma Stealer on Unsuspecting Users
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:14:32 +0000
════════════════════════
⌗ Tags: #Malware #Cybercrime #Data Theft #fake CAPTCHA #Infostealer #Lumma Stealer #malware #powershell #social engineering #Sophos
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:14:32 +0000
════════════════════════
⌗ Tags: #Malware #Cybercrime #Data Theft #fake CAPTCHA #Infostealer #Lumma Stealer #malware #powershell #social engineering #Sophos
Daily CyberSecurity
CAPTCHA Trap: Fake Verification Unleashes Lumma Stealer on Unsuspecting Users
Beware! Cybercriminals are using fake CAPTCHA pages to trick you into running commands that install the dangerous Lumma Stealer malware.
⤷ Title: API Security in 2025: Top Best Practices Every Security Team Must Know
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:11:21 +0000
════════════════════════
⌗ Tags: #How To #API Gateway #API security #Best Practices #DevSecOps #encryption #OAuth 2.1 #OWASP #Rate Limiting #Threat Detection #Zero Trust
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:11:21 +0000
════════════════════════
⌗ Tags: #How To #API Gateway #API security #Best Practices #DevSecOps #encryption #OAuth 2.1 #OWASP #Rate Limiting #Threat Detection #Zero Trust
Daily CyberSecurity
API Security in 2025: Top Best Practices Every Security Team Must Know
Stay ahead in 2025 with top API security best practices for security teams—covering auth, rate limiting, encryption, and threat detection.
⤷ Title: Shadowy IoT Army: Decades-Old Proxy Botnet Exposed and Crippled
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:10:07 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Anonymity #Cybercrime #IoT botnet #Law Enforcement #malware #proxy network #router #security #smart devices
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:10:07 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Anonymity #Cybercrime #IoT botnet #Law Enforcement #malware #proxy network #router #security #smart devices
Daily CyberSecurity
Shadowy IoT Army: Decades-Old Proxy Botnet Exposed and Crippled
A massive, long-running proxy botnet using outdated IoT devices for criminal anonymity has been dismantled in a global law enforcement operation.
⤷ Title: Stealth in Pixels: .NET Malware Hides Payloads in Bitmap Resources
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:05:44 +0000
════════════════════════
⌗ Tags: #Malware #.NET #Agent Tesla #Asia #cyberattack #financial institutions #malspam #malware #Obfuscation #steganography #Unit 42
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:05:44 +0000
════════════════════════
⌗ Tags: #Malware #.NET #Agent Tesla #Asia #cyberattack #financial institutions #malspam #malware #Obfuscation #steganography #Unit 42
Daily CyberSecurity
Stealth in Pixels: .NET Malware Hides Payloads in Bitmap Resources
Sophisticated malware hides inside image files within .NET apps to secretly infect systems, targeting finance in Türkiye and logistics in Asia.
⤷ Title: LockBit Hacking Group Defaced and Compromised — May 2025 Incident Report
════════════════════════
𐀪 Author: KN
════════════════════════
ⴵ Time: Tue, 13 May 2025 01:33:12 GMT
════════════════════════
⌗ Tags: #cybersecurity #news #hacking
════════════════════════
𐀪 Author: KN
════════════════════════
ⴵ Time: Tue, 13 May 2025 01:33:12 GMT
════════════════════════
⌗ Tags: #cybersecurity #news #hacking
Medium
LockBit Hacking Group Defaced and Compromised — May 2025 Incident Report
What is LockBit?
⤷ Title: (VATINT) Tools For OSINT Investigators
════════════════════════
𐀪 Author: loyalonlytoday
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:42:26 GMT
════════════════════════
⌗ Tags: #cybersecurity #osint_investigation #investigation #hacking #osint
════════════════════════
𐀪 Author: loyalonlytoday
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:42:26 GMT
════════════════════════
⌗ Tags: #cybersecurity #osint_investigation #investigation #hacking #osint
Medium
(VATINT) Tools For OSINT Investigators
Vehicle and Transportation Intelligence Tools For OSINT Investigators
⤷ Title: Blueprint (TryHackMe) Pwned: From osCommerce RCE to SYSTEM & Flags — A CTF Walkthrough [2024/2025…
════════════════════════
𐀪 Author: jensbecker-dev
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:50:42 GMT
════════════════════════
⌗ Tags: #tryhackme #writeup #infosec #windows_hacking #cybersecurity
════════════════════════
𐀪 Author: jensbecker-dev
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:50:42 GMT
════════════════════════
⌗ Tags: #tryhackme #writeup #infosec #windows_hacking #cybersecurity
Medium
Blueprint (TryHackMe) Pwned: From osCommerce RCE to SYSTEM & Flags — A CTF Walkthrough [2024/2025…
Hey, fellow hackers and infosec enthusiasts!
⤷ Title: mKingdom (Easy) — TryHackme Walkthrough
════════════════════════
𐀪 Author: Alts
════════════════════════
ⴵ Time: Tue, 13 May 2025 02:00:42 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme #infosec #tryhackme_walkthrough #cybersecurity
════════════════════════
𐀪 Author: Alts
════════════════════════
ⴵ Time: Tue, 13 May 2025 02:00:42 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme #infosec #tryhackme_walkthrough #cybersecurity
Medium
mKingdom (Easy) — TryHackme Walkthrough
https://tryhackme.com/room/mkingdom
⤷ Title: Basic Computer Architecture for Cyber Security
════════════════════════
𐀪 Author: Kyoungmin Roh
════════════════════════
ⴵ Time: Tue, 13 May 2025 01:54:48 GMT
════════════════════════
⌗ Tags: #cybersecurity #computer_architecture #computer_science
════════════════════════
𐀪 Author: Kyoungmin Roh
════════════════════════
ⴵ Time: Tue, 13 May 2025 01:54:48 GMT
════════════════════════
⌗ Tags: #cybersecurity #computer_architecture #computer_science
Medium
Basic Computer Architecture for Cyber Security
What Is Computer Architecture?
⤷ Title: Why User Consent in Data Collection Matters for Privacy
════════════════════════
𐀪 Author: Pawan Jaiswal
════════════════════════
ⴵ Time: Tue, 13 May 2025 01:39:45 GMT
════════════════════════
⌗ Tags: #software_engineering #technology #cybersecurity #openexploit #programming
════════════════════════
𐀪 Author: Pawan Jaiswal
════════════════════════
ⴵ Time: Tue, 13 May 2025 01:39:45 GMT
════════════════════════
⌗ Tags: #software_engineering #technology #cybersecurity #openexploit #programming
Medium
Why User Consent in Data Collection Matters for Privacy
Your information is worth more than ever before. With every application you access, website you visit, or smart wear you put on, you’re…
⤷ Title: Snyk plugin for JetBrains IDE’s
════════════════════════
𐀪 Author: Michael Harms
════════════════════════
ⴵ Time: Tue, 13 May 2025 01:28:19 GMT
════════════════════════
⌗ Tags: #development #cybersecurity #cyber_security_awareness #software_security #vulnerability
════════════════════════
𐀪 Author: Michael Harms
════════════════════════
ⴵ Time: Tue, 13 May 2025 01:28:19 GMT
════════════════════════
⌗ Tags: #development #cybersecurity #cyber_security_awareness #software_security #vulnerability
Medium
Snyk plugin for JetBrains IDE’s
Snyk is a security tool that helps developers find and fix vulnerabilities in their open-source dependencies, container images, and…
⤷ Title: XINTRA Abu Jibal Lab Walkthrough
════════════════════════
𐀪 Author: QhtSec
════════════════════════
ⴵ Time: Tue, 13 May 2025 01:09:41 GMT
════════════════════════
⌗ Tags: #apt34 #cybersecurity #dfir #threat_hunting
════════════════════════
𐀪 Author: QhtSec
════════════════════════
ⴵ Time: Tue, 13 May 2025 01:09:41 GMT
════════════════════════
⌗ Tags: #apt34 #cybersecurity #dfir #threat_hunting
Medium
XINTRA Abu Jibal Lab Walkthrough
SCOPING NOTE
⤷ Title: Dexter’s Lab
════════════════════════
𐀪 Author: Montel Oliver
════════════════════════
ⴵ Time: Tue, 13 May 2025 01:06:59 GMT
════════════════════════
⌗ Tags: #cybersecurity #malware_analysis #reverse_engineering
════════════════════════
𐀪 Author: Montel Oliver
════════════════════════
ⴵ Time: Tue, 13 May 2025 01:06:59 GMT
════════════════════════
⌗ Tags: #cybersecurity #malware_analysis #reverse_engineering
Medium
Dexter’s Lab
Analyzing Dexter, Part 1
⤷ Title: PHP Type Juggling Vulnerability: Exploitation and Defense
════════════════════════
𐀪 Author: Mahmoud Bedair
════════════════════════
ⴵ Time: Tue, 13 May 2025 01:01:33 GMT
════════════════════════
⌗ Tags: #php #vulnerability #php_developers #cybersecurity
════════════════════════
𐀪 Author: Mahmoud Bedair
════════════════════════
ⴵ Time: Tue, 13 May 2025 01:01:33 GMT
════════════════════════
⌗ Tags: #php #vulnerability #php_developers #cybersecurity
Medium
🪄PHP Type Juggling Vulnerability: Exploitation and Defense
1.🎭 Introduction to PHP Type Juggling