⤷ Title: FrigidStealer Malware Hits macOS Users via Fake Safari Browser Updates
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Thu, 15 May 2025 13:23:28 +0000
════════════════════════
⌗ Tags: #Security #Apple #Malware #Browser #Cyber Attack #Cybersecurity #Ferret #FrigidStealer #macOS #Safari #Scam
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Thu, 15 May 2025 13:23:28 +0000
════════════════════════
⌗ Tags: #Security #Apple #Malware #Browser #Cyber Attack #Cybersecurity #Ferret #FrigidStealer #macOS #Safari #Scam
Hackread
FrigidStealer Malware Hits macOS Users via Fake Safari Browser Updates
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: Securing the Code: Building a Culture of Credential Protection in Dev Teams
════════════════════════
𐀪 Author: Owais Sultan
════════════════════════
ⴵ Time: Thu, 15 May 2025 12:15:37 +0000
════════════════════════
⌗ Tags: #Security #Coding #Cybersecurity #Dev Teams
════════════════════════
𐀪 Author: Owais Sultan
════════════════════════
ⴵ Time: Thu, 15 May 2025 12:15:37 +0000
════════════════════════
⌗ Tags: #Security #Coding #Cybersecurity #Dev Teams
Hackread
Securing the Code: Building a Culture of Credential Protection in Dev Teams
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: Why Cloud Phone Systems are The Future of Business Communication
════════════════════════
𐀪 Author: Owais Sultan
════════════════════════
ⴵ Time: Thu, 15 May 2025 11:38:06 +0000
════════════════════════
⌗ Tags: #Technology #Business #cloud #Cloud computing
════════════════════════
𐀪 Author: Owais Sultan
════════════════════════
ⴵ Time: Thu, 15 May 2025 11:38:06 +0000
════════════════════════
⌗ Tags: #Technology #Business #cloud #Cloud computing
Hackread
Why Cloud Phone Systems are The Future of Business Communication
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: Police Shut Down Fake Trading Platform That Scammed Hundreds
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Thu, 15 May 2025 10:29:11 +0000
════════════════════════
⌗ Tags: #Cyber Crime #Scams and Fraud #Cybersecurity #EMPACT #europe #Europol #Fraud #Scam #Trading
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Thu, 15 May 2025 10:29:11 +0000
════════════════════════
⌗ Tags: #Cyber Crime #Scams and Fraud #Cybersecurity #EMPACT #europe #Europol #Fraud #Scam #Trading
Hackread
Police Shut Down Fake Trading Platform That Scammed Hundreds
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: RaaS Explained: How Cybercriminals Are Scaling Attacks Like Startups
════════════════════════
𐀪 Author: Owais Sultan
════════════════════════
ⴵ Time: Wed, 14 May 2025 18:40:28 +0000
════════════════════════
⌗ Tags: #Security #Cyber Crime #Cybersecurity #RaaS #Ransomware #Startups
════════════════════════
𐀪 Author: Owais Sultan
════════════════════════
ⴵ Time: Wed, 14 May 2025 18:40:28 +0000
════════════════════════
⌗ Tags: #Security #Cyber Crime #Cybersecurity #RaaS #Ransomware #Startups
Hackread
RaaS Explained: How Cybercriminals Are Scaling Attacks Like Startups
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: North Korean Hackers Stole $88M by Posing as US Tech Workers
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Wed, 14 May 2025 16:45:40 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attacks #Cyber Attack #Cyber Crime #Cybersecurity #Fraud #Job Seekers #North Korea #Scam #Scam. Fraud
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Wed, 14 May 2025 16:45:40 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attacks #Cyber Attack #Cyber Crime #Cybersecurity #Fraud #Job Seekers #North Korea #Scam #Scam. Fraud
Hackread
North Korean Hackers Stole $88M by Posing as US Tech Workers
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: ‘Admin’ and ‘123456’ Still Among Most Used Passwords in FTP Attacks
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Wed, 14 May 2025 14:23:37 +0000
════════════════════════
⌗ Tags: #Security #Brute Force #Cyber Attack #Cybersecurity #FTP #Password #RDP #Vulnerability
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Wed, 14 May 2025 14:23:37 +0000
════════════════════════
⌗ Tags: #Security #Brute Force #Cyber Attack #Cybersecurity #FTP #Password #RDP #Vulnerability
Hackread
‘Admin’ and ‘123456’ Still Among Most Used Passwords in FTP Attacks
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: Tarian: Protect your applications running on Kubernetes from malicious attacks
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 00:19:16 +0000
════════════════════════
⌗ Tags: #Network Defense #Protect Kubernetes #Taian
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 00:19:16 +0000
════════════════════════
⌗ Tags: #Network Defense #Protect Kubernetes #Taian
Penetration Testing Tools
Tarian: Protect your applications running on Kubernetes from malicious attacks
Protect your applications running on Kubernetes from malicious attacks by pre-registering your trusted processes and trusted file signatures
⤷ Title: Pinkerton: JavaScript file crawler and secret finder
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 00:19:12 +0000
════════════════════════
⌗ Tags: #Vulnerability Assessment #Web AppSec #Pinkerton
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 00:19:12 +0000
════════════════════════
⌗ Tags: #Vulnerability Assessment #Web AppSec #Pinkerton
Penetration Testing Tools
Pinkerton: JavaScript file crawler and secret finder
Pinkerton is a Python tool created to crawl JavaScript files and search for secrets. Features: Works with ProxyChains, Fast scan
⤷ Title: lemon: eBPF Memory Dump Tool
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 15 May 2025 00:36:52 +0000
════════════════════════
⌗ Tags: #Data Forensics #Memory Dump Tool
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 15 May 2025 00:36:52 +0000
════════════════════════
⌗ Tags: #Data Forensics #Memory Dump Tool
Penetration Testing Tools
lemon: eBPF Memory Dump Tool
LEMON is a Linux and Android memory dump tool that utilizes eBPF to capture the entire physical memory of a system and save it in LiME format
⤷ Title: kanha: A web-app pentesting suite written in Rust
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 15 May 2025 00:32:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Assessment #Web AppSec
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 15 May 2025 00:32:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Assessment #Web AppSec
Penetration Testing Tools
kanha: A web-app pentesting suite written in Rust
Kanha is a tool that can help you perform, a variety of attacks based on the target domain . With just kanha you can do, Fuzzing, Reverse dns lookup
⤷ Title: “Hey, Copilot”: Microsoft Adds Voice Activation to Windows AI
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 09:22:17 +0000
════════════════════════
⌗ Tags: #Technology #Windows #"Hey Copilot" #AI #artificial intelligence #Copilot #Microsoft #voice activation #voice control #windows #Windows Insider Program
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 09:22:17 +0000
════════════════════════
⌗ Tags: #Technology #Windows #"Hey Copilot" #AI #artificial intelligence #Copilot #Microsoft #voice activation #voice control #windows #Windows Insider Program
Daily CyberSecurity
"Hey, Copilot": Microsoft Adds Voice Activation to Windows AI
Microsoft introduces "Hey, Copilot" for voice-activated Windows AI! Learn how to use it, its limitations, and what's coming next.
⤷ Title: Google Boosts Accessibility with AI: Enhanced TalkBack, Captions, and More
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 09:18:52 +0000
════════════════════════
⌗ Tags: #Android #Technology #accessibility #AI #android #artificial intelligence #captions #chrome #Euphonia #google #inclusion #OCR #screen reader #speech recognition #TalkBack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 09:18:52 +0000
════════════════════════
⌗ Tags: #Android #Technology #accessibility #AI #android #artificial intelligence #captions #chrome #Euphonia #google #inclusion #OCR #screen reader #speech recognition #TalkBack
Daily CyberSecurity
Google Boosts Accessibility with AI: Enhanced TalkBack, Captions, and More
Google uses AI to enhance accessibility! Learn about improved TalkBack image descriptions, expressive captions, and other new Android & Chrome features.
⤷ Title: CVE-2025-47539: Critical Privilege Escalation Flaw Hits 10K+ WordPress Eventin Sites
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 08:01:46 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_47539 #Eventin Plugin #Patchstack #privilege escalation #REST API #Themewinter #Website Security #wordpress #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 08:01:46 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_47539 #Eventin Plugin #Patchstack #privilege escalation #REST API #Themewinter #Website Security #wordpress #zero_day
Daily CyberSecurity
CVE-2025-47539: Critical Privilege Escalation Flaw Hits 10K+ WordPress Eventin Sites
Over 10,000 WordPress sites at risk from Eventin plugin flaw CVE-2025-47539. Attackers can gain admin access via unauthenticated API exploit.
⤷ Title: SnipVex and XRed: Malware Discovered in Procolored Printer Software
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 06:46:36 +0000
════════════════════════
⌗ Tags: #Malware #Cameron Coward #ClipBanker #cybersecurity #File Infector #Karsten Hahn #Printer Malware #Procolored #SnipVex #USB Worm #XRedRAT
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 06:46:36 +0000
════════════════════════
⌗ Tags: #Malware #Cameron Coward #ClipBanker #cybersecurity #File Infector #Karsten Hahn #Printer Malware #Procolored #SnipVex #USB Worm #XRedRAT
Daily CyberSecurity
SnipVex and XRed: Malware Discovered in Procolored Printer Software
Malware found in Procolored printer software includes backdoor XRed and new clipbanker virus SnipVex. Users urged to reformat infected systems.
⤷ Title: iOS Kernel Vulnerability Exposed in Public PoC – Potential Jailbreak and Privilege Escalation Risk
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 02:15:15 +0000
════════════════════════
⌗ Tags: #Vulnerability #Apple Security #CVE_2023_41992 #iOS Vulnerability #jailbreak #Kernel Exploit #macOS #PoC #privilege escalation #TrollStore #watchOS
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 02:15:15 +0000
════════════════════════
⌗ Tags: #Vulnerability #Apple Security #CVE_2023_41992 #iOS Vulnerability #jailbreak #Kernel Exploit #macOS #PoC #privilege escalation #TrollStore #watchOS
Daily CyberSecurity
iOS Kernel Vulnerability Exposed in Public PoC - Potential Jailbreak and Privilege Escalation Risk
PoC for CVE-2023-41992 reveals iOS kernel flaw enabling local privilege escalation. Apple patched it, but risks persist for outdated devices.
⤷ Title: CISA Flags Actively Exploited Vulnerabilities in Chrome, SAP, and DrayTek Routers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 01:52:16 +0000
════════════════════════
⌗ Tags: #Vulnerability #chrome #Chrome vulnerability #CISA #CISA KEV #CVE_2024_12987 #CVE_2025_42999 #CVE_2025_4664 #cybersecurity #cybersecurity alert #DrayTek #DrayTek routers #Exploits #rce #SAP #SAP Exploit #Vulnerabilities #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 01:52:16 +0000
════════════════════════
⌗ Tags: #Vulnerability #chrome #Chrome vulnerability #CISA #CISA KEV #CVE_2024_12987 #CVE_2025_42999 #CVE_2025_4664 #cybersecurity #cybersecurity alert #DrayTek #DrayTek routers #Exploits #rce #SAP #SAP Exploit #Vulnerabilities #zero_day
Daily CyberSecurity
CISA Flags Actively Exploited Vulnerabilities in Chrome, SAP, and DrayTek Routers
CISA adds critical DrayTek router, Chrome, and SAP NetWeaver flaws to its KEV list after in-the-wild exploitation. Federal agencies face a June 5th patch deadline.
⤷ Title: Popular Selenium Library WebDriverManager Hit by Critical XXE Bug (CVE-2025-4641, CVSS 9.3)
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 00:40:03 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_4641 #CVSS 9.3 #Java security #Selenium #ssrf #WebDriverManager #XML parsing #XXE Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 00:40:03 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_4641 #CVSS 9.3 #Java security #Selenium #ssrf #WebDriverManager #XML parsing #XXE Vulnerability
Daily CyberSecurity
Popular Selenium Library WebDriverManager Hit by Critical XXE Bug (CVE-2025-4641, CVSS 9.3)
CVE-2025-4641: XXE flaw in popular WebDriverManager library (CVSS 9.3) exposes test systems to file leaks and SSRF. Patch to 6.0.2 now.
⤷ Title: TransferLoader Malware Unmasked: IPFS-Enabled Loader Deploys Ransomware and Backdoors with Obfuscation Precision
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 00:33:00 +0000
════════════════════════
⌗ Tags: #Malware #anti_analysis #backdoor #COM hijacking #IPFS C2 #malware loader #Morpheus ransomware #TransferLoader #Zscaler ThreatLabz
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 00:33:00 +0000
════════════════════════
⌗ Tags: #Malware #anti_analysis #backdoor #COM hijacking #IPFS C2 #malware loader #Morpheus ransomware #TransferLoader #Zscaler ThreatLabz
Daily CyberSecurity
TransferLoader Malware Unmasked: IPFS-Enabled Loader Deploys Ransomware and Backdoors with Obfuscation Precision
Zscaler reveals TransferLoader: a stealthy malware using IPFS and obfuscation to drop ransomware and backdoors. A new threat in the wild since 2025.
⤷ Title: Pgpool-II Hit by Critical CVE-2025-46801: CVSS 9.8 Risk Lets Attackers Bypass Authentication
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 00:30:25 +0000
════════════════════════
⌗ Tags: #Vulnerability #Authentication Bypass #CVE_2025_46801 #CVSS 9.8 #database security #Pgpool_II #PostgreSQL middleware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 00:30:25 +0000
════════════════════════
⌗ Tags: #Vulnerability #Authentication Bypass #CVE_2025_46801 #CVSS 9.8 #database security #Pgpool_II #PostgreSQL middleware
Daily CyberSecurity
Pgpool-II Hit by Critical CVE-2025-46801: CVSS 9.8 Risk Lets Attackers Bypass Authentication
CVE-2025-46801 in Pgpool-II scores 9.8 CVSS—flaw lets attackers log in as any user. Patch now to prevent database tampering and access.
⤷ Title: Jenkins Plugin Flaws Expose Critical Risks: CVE-2025-47889 Hits 9.8 CVSS with Auth Bypass
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 00:24:56 +0000
════════════════════════
⌗ Tags: #Vulnerability #Authentication Bypass #CI/CD security #CVE_2025_47884 #CVE_2025_47885 #CVE_2025_47889 #Jenkins vulnerabilities #OpenID Connect #plugin security #XSS
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 16 May 2025 00:24:56 +0000
════════════════════════
⌗ Tags: #Vulnerability #Authentication Bypass #CI/CD security #CVE_2025_47884 #CVE_2025_47885 #CVE_2025_47889 #Jenkins vulnerabilities #OpenID Connect #plugin security #XSS
Daily CyberSecurity
Jenkins Plugin Flaws Expose Critical Risks: CVE-2025-47889 Hits 9.8 CVSS with Auth Bypass
Jenkins plugins hit by CVE-2025-47884 (CVSS 9.1) and more—flaws enable impersonation, XSS, and authentication bypass. Patch now to secure pipelines.