⤷ Title: Living Off the Land: How Attackers Weaponize Trusted Binaries with LOLBins
════════════════════════
𐀪 Author: Zero Day Thirty
════════════════════════
ⴵ Time: Tue, 20 May 2025 22:02:58 GMT
════════════════════════
⌗ Tags: #cyber_threat #information_security #operating_systems #cybersecurity #incident_response
════════════════════════
𐀪 Author: Zero Day Thirty
════════════════════════
ⴵ Time: Tue, 20 May 2025 22:02:58 GMT
════════════════════════
⌗ Tags: #cyber_threat #information_security #operating_systems #cybersecurity #incident_response
Medium
Living Off the Land: How Attackers Weaponize Trusted Binaries with LOLBins
May 17, 2025
⤷ Title: This is a formal personal account of repeated privacy violations and emotional manipulation…
════════════════════════
𐀪 Author: A. Lu
════════════════════════
ⴵ Time: Tue, 20 May 2025 22:01:13 GMT
════════════════════════
⌗ Tags: #cybersecurity #social_media #this_happened_to_me #true_crime #justice
════════════════════════
𐀪 Author: A. Lu
════════════════════════
ⴵ Time: Tue, 20 May 2025 22:01:13 GMT
════════════════════════
⌗ Tags: #cybersecurity #social_media #this_happened_to_me #true_crime #justice
Medium
This is a formal personal account of repeated privacy violations and emotional manipulation…
Digital Harassment, Unauthorized Access & Image Mimicry: A Formal Report on Jade Picon
⤷ Title: The Art of Static Analysis
════════════════════════
𐀪 Author: Iram Jack
════════════════════════
ⴵ Time: Tue, 20 May 2025 22:32:37 GMT
════════════════════════
⌗ Tags: #tryhackme #static_analysis #dynamic_analysis #malware_analysis #miss_robot
════════════════════════
𐀪 Author: Iram Jack
════════════════════════
ⴵ Time: Tue, 20 May 2025 22:32:37 GMT
════════════════════════
⌗ Tags: #tryhackme #static_analysis #dynamic_analysis #malware_analysis #miss_robot
Medium
The Art of Static Analysis
Basic Static Analysis | Part 2
❤2
⤷ Title: mitmproxy2swagger: Automagically reverse-engineer REST APIs
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 01:33:17 +0000
════════════════════════
⌗ Tags: #Reverse Engineering #mitmproxy2swagger
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 01:33:17 +0000
════════════════════════
⌗ Tags: #Reverse Engineering #mitmproxy2swagger
Penetration Testing Tools
mitmproxy2swagger: Automagically reverse-engineer REST APIs
mitmproxy2swagger is a tool that you can automatically reverse-engineer REST APIs by just running the apps and capturing the traffic.
⤷ Title: Porch Pirate: The most comprehensive Postman recon / OSINT client and framework
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 01:30:50 +0000
════════════════════════
⌗ Tags: #OSINT _ Open Source Intelligence #OSINT #Postman
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 01:30:50 +0000
════════════════════════
⌗ Tags: #OSINT _ Open Source Intelligence #OSINT #Postman
Penetration Testing Tools
Porch Pirate: The most comprehensive Postman recon / OSINT client and framework
Porch Pirate started as a tool to quickly uncover Postman secrets, and has slowly begun to evolve into a multi-purpose reconnaissance / OSINT framework
⤷ Title: Critical Remote Code Execution Flaw Hits Lexmark Printers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:50:45 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_1127 #CVSS 9.1 #CWE_22 #CWE_362 #DEVCORE #firmware update #Lexmark #Path Traversal #Printer Vulnerability #Remote Code Execution #ZDI
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:50:45 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_1127 #CVSS 9.1 #CWE_22 #CWE_362 #DEVCORE #firmware update #Lexmark #Path Traversal #Printer Vulnerability #Remote Code Execution #ZDI
Daily CyberSecurity
Critical Remote Code Execution Flaw Hits Lexmark Printers
Lexmark CVE-2025-1127 flaw allows remote code execution via embedded web server. Affects many printer models—patch firmware to version .240.206+ now.
⤷ Title: Critical CVSS 9.8 RCE Flaw in vLLM Exposes AI Hosts to Remote Attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:43:40 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI security #CVE_2025_47277 #CVSS 9.8 #LLM infrastructure #PyNcclPipe #Python Pickle #Remote Code Execution #UC Berkeley #unsafe deserialization #vLLM
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:43:40 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI security #CVE_2025_47277 #CVSS 9.8 #LLM infrastructure #PyNcclPipe #Python Pickle #Remote Code Execution #UC Berkeley #unsafe deserialization #vLLM
Daily CyberSecurity
Critical CVSS 9.8 RCE Flaw in vLLM Exposes AI Hosts to Remote Attacks
Critical CVSS 9.8 flaw in vLLM allows remote code execution via PyNcclPipe. Patch to 0.8.5 now to protect your AI infrastructure.
⤷ Title: Critical containerd Vulnerability: Malicious Images Can Hijack Host Filesystem
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:40:17 +0000
════════════════════════
⌗ Tags: #Vulnerability #container #containerd #CVE_2025_47290 #docker #Kubernetes #security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:40:17 +0000
════════════════════════
⌗ Tags: #Vulnerability #container #containerd #CVE_2025_47290 #docker #Kubernetes #security
Daily CyberSecurity
Critical containerd Vulnerability: Malicious Images Can Hijack Host Filesystem
A critical containerd flaw (CVE-2025-47290) allows malicious container images to hijack the host filesystem. Update to version 2.1.1 now.
⤷ Title: CISA Alerts: Vertiv Products Vulnerable to RCE, Auth Bypass (CVSS 9.8)
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:37:59 +0000
════════════════════════
⌗ Tags: #Vulnerability #Authentication Bypass #CISA advisory #CVE_2025_41426 #CVE_2025_46412 #CVSS 9.8 #industrial cybersecurity #IS_UNITY #Liebert RDU101 #rce #Vertiv
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:37:59 +0000
════════════════════════
⌗ Tags: #Vulnerability #Authentication Bypass #CISA advisory #CVE_2025_41426 #CVE_2025_46412 #CVSS 9.8 #industrial cybersecurity #IS_UNITY #Liebert RDU101 #rce #Vertiv
Daily CyberSecurity
CISA Alerts: Vertiv Products Vulnerable to RCE, Auth Bypass (CVSS 9.8)
CISA warns of critical CVSS 9.8 flaws in Vertiv Liebert devices allowing RCE and auth bypass—patch now to protect OT environments.
⤷ Title: Hazy Hawk: Stealthy Threat Actor Hijacks High-Profile Subdomains
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:33:34 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CNAME hijacking #cybersecurity #DNS Security #Hazy Hawk #Subdomain takeover #threat actor
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:33:34 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CNAME hijacking #cybersecurity #DNS Security #Hazy Hawk #Subdomain takeover #threat actor
Daily CyberSecurity
Hazy Hawk: Stealthy Threat Actor Hijacks High-Profile Subdomains
Hazy Hawk is exploiting DNS misconfigurations and CNAME hijacking to take over subdomains of high-profile organizations for scams and malware.
⤷ Title: PoC Available: TP-Link Archer AX50 Flaw Allows Remote Root Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:29:27 +0000
════════════════════════
⌗ Tags: #Vulnerability #Archer AX50 #CVE_2025_40634 #PoC #Remote Code Execution #router #security #stack_based buffer overflow #TP_Link
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:29:27 +0000
════════════════════════
⌗ Tags: #Vulnerability #Archer AX50 #CVE_2025_40634 #PoC #Remote Code Execution #router #security #stack_based buffer overflow #TP_Link
Daily CyberSecurity
PoC Available: TP-Link Archer AX50 Flaw Allows Remote Root Access
A critical vulnerability (CVE-2025-40634) in TP-Link Archer AX50 routers allows remote code execution as root. A public PoC increases the risk.
⤷ Title: High-Severity Privilege Escalation Threat Hits Atlassian Jira Data Center
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:25:33 +0000
════════════════════════
⌗ Tags: #Vulnerability #Atlassian #CVE_2025_22157 #CVSS 7.2 #cybersecurity #Data Center #Jira #Jira Core #Jira Service Management #privilege escalation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:25:33 +0000
════════════════════════
⌗ Tags: #Vulnerability #Atlassian #CVE_2025_22157 #CVSS 7.2 #cybersecurity #Data Center #Jira #Jira Core #Jira Service Management #privilege escalation
Daily CyberSecurity
High-Severity Privilege Escalation Threat Hits Atlassian Jira Data Center
CVE-2025-22157 is a CVSS 7.2 Jira vulnerability allowing privilege escalation. Update Jira Data Center now to prevent unauthorized access.
⤷ Title: High Risk: PowerDNS DNSdist Flaw Allows Unauthenticated DoS Attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:23:44 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_30193 #Denial of Service #dns #dnsdist #dos #security #unauthenticated
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:23:44 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_30193 #Denial of Service #dns #dnsdist #dos #security #unauthenticated
Daily CyberSecurity
High Risk: PowerDNS DNSdist Flaw Allows Unauthenticated DoS Attacks
A critical DNSdist vulnerability allows unauthenticated attackers to launch DoS attacks, disrupting DNS operations. Update now to secure your system.
⤷ Title: AI Scam Alert: Fake Kling AI Sites Deploy Infostealer, Hide Executables
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:19:14 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #AI #cybersecurity #filename masquerading #Infostealer #Kling AI #Malvertising #scam
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:19:14 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #AI #cybersecurity #filename masquerading #Infostealer #Kling AI #Malvertising #scam
Daily CyberSecurity
AI Scam Alert: Fake Kling AI Sites Deploy Infostealer, Hide Executables
Beware fake Kling AI sites! A new campaign uses deceptive filenames to trick users into downloading infostealers, stealing crypto and browser data.
⤷ Title: Is Your Unix Automation Secure? Critical Broadcom Flaw Poses High Risk
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:14:28 +0000
════════════════════════
⌗ Tags: #Vulnerability #Automation #Broadcom #Cyber Threat #privilege escalation #security #Unix
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:14:28 +0000
════════════════════════
⌗ Tags: #Vulnerability #Automation #Broadcom #Cyber Threat #privilege escalation #security #Unix
Daily CyberSecurity
Is Your Unix Automation Secure? Critical Broadcom Flaw Poses High Risk
A critical flaw in Broadcom's Automic Automation Agent for Unix exposes systems to privilege escalation. Check your version and update to stay secure.
⤷ Title: Microsoft Resolves Windows 10/11 Secure Boot Conflict with Linux UEFI
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:11:20 +0000
════════════════════════
⌗ Tags: #Windows #compatibility #dual_boot #Linux #SBAT #Secure Boot #UEFI #Windows 10 #Windows 11
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:11:20 +0000
════════════════════════
⌗ Tags: #Windows #compatibility #dual_boot #Linux #SBAT #Secure Boot #UEFI #Windows 10 #Windows 11
Daily CyberSecurity
Microsoft Resolves Windows 10/11 Secure Boot Conflict with Linux UEFI
Microsoft's May update addresses the conflict between Secure Boot Advanced Targeting and Linux UEFI, resolving dual-boot startup failures.
⤷ Title: Critical OpenPGP.js Flaw Allows Message Signature Spoofing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:09:21 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_47934 #encryption #messaging #OpenPGP.js #security #signature spoofing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:09:21 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_47934 #encryption #messaging #OpenPGP.js #security #signature spoofing
Daily CyberSecurity
Critical OpenPGP.js Flaw Allows Message Signature Spoofing
A critical OpenPGP.js flaw (CVE-2025-47934) allows attackers to spoof message signatures and manipulate content. Update to fix this risk.
⤷ Title: North Korea-Linked Saja Network Infiltrates Tech Firms with Fake Developers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:05:49 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cyber_espionage #cybersecurity #employment scam #fake profiles #North Korea #Saja Network
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:05:49 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cyber_espionage #cybersecurity #employment scam #fake profiles #North Korea #Saja Network
Daily CyberSecurity
North Korea-Linked Saja Network Infiltrates Tech Firms with Fake Developers
A sophisticated North Korea-linked employment scam, the Saja Network, is using fake developer profiles to infiltrate tech companies.
⤷ Title: How I Earned my Second Bounty of €2000 by Discovering an Authorization Bypass Vulnerability in a…
════════════════════════
𐀪 Author: Risky
════════════════════════
ⴵ Time: Wed, 21 May 2025 01:29:26 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_security #bug_bounty
════════════════════════
𐀪 Author: Risky
════════════════════════
ⴵ Time: Wed, 21 May 2025 01:29:26 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_security #bug_bounty
Medium
💰How I Earned my Second Bounty of €2000 by Discovering an Authorization Bypass Vulnerability in a Document Management Platform
In this blog, I’ll walk you through my second successful bug bounty, a critical Authorization Bypass File Read vulnerability I discovered…
⤷ Title: $2,400 in 60 Minutes: Hacking a Management Backend by Tweaking a Single Response Packet
════════════════════════
𐀪 Author: Invik
════════════════════════
ⴵ Time: Wed, 21 May 2025 01:23:39 GMT
════════════════════════
⌗ Tags: #bug_bounty #web_security #pentesting #bounty_program #hacker
════════════════════════
𐀪 Author: Invik
════════════════════════
ⴵ Time: Wed, 21 May 2025 01:23:39 GMT
════════════════════════
⌗ Tags: #bug_bounty #web_security #pentesting #bounty_program #hacker
Medium
$2,400 in 60 Minutes: Hacking a Management Backend by Tweaking a Single Response Packet
It’s been a while since I last updated. I recently encountered an interesting vulnerability, so I thought I’d share it with you all.
⤷ Title: I Slipped an Item Into a Stranger’s Cart(Well, Almost)
════════════════════════
𐀪 Author: Nizar Kadiri
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:54:11 GMT
════════════════════════
⌗ Tags: #infosec #bug_bounty #cybersecurity #infosec_write_ups
════════════════════════
𐀪 Author: Nizar Kadiri
════════════════════════
ⴵ Time: Wed, 21 May 2025 00:54:11 GMT
════════════════════════
⌗ Tags: #infosec #bug_bounty #cybersecurity #infosec_write_ups
Medium
I Slipped an Item Into a Stranger’s Cart(Well, Almost)
It started the same way most bug bounty journeys begin — with a bit of curiosity, a browser & a proxy, and way too much coffee.