⤷ Title: Building a Home Lab SIEM: From Simple Honeypot to Complex Project
════════════════════════
𐀪 Author: Samuel Damon
════════════════════════
ⴵ Time: Wed, 04 Jun 2025 20:26:33 GMT
════════════════════════
⌗ Tags: #siem #cybersecurity #soc_home_lab #learning_cybersecurity #projects
════════════════════════
𐀪 Author: Samuel Damon
════════════════════════
ⴵ Time: Wed, 04 Jun 2025 20:26:33 GMT
════════════════════════
⌗ Tags: #siem #cybersecurity #soc_home_lab #learning_cybersecurity #projects
Medium
Building a Home Lab SIEM: From Simple Honeypot to Complex Project
Simple Idea became something much bigger than expected. Building a home lab by my own methods started with this simple idea. To create a…
⤷ Title: Kiba — TryHackMe
════════════════════════
𐀪 Author: Yulia Popov
════════════════════════
ⴵ Time: Wed, 04 Jun 2025 20:59:18 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme_walkthrough #kiba #tryhackme #kiba_tryhackme
════════════════════════
𐀪 Author: Yulia Popov
════════════════════════
ⴵ Time: Wed, 04 Jun 2025 20:59:18 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme_walkthrough #kiba #tryhackme #kiba_tryhackme
Medium
Kiba — TryHackMe
The Kiba machine focuses on a vulnerability related to JavaScript, specifically how prototype-based inheritance handles objects. This…
⤷ Title: OWASP® Top 10 Security Vulnerabilities Across Domains
════════════════════════
𐀪 Author: Kishor Kalivarapu
════════════════════════
ⴵ Time: Wed, 04 Jun 2025 20:54:25 GMT
════════════════════════
⌗ Tags: #owasp #api_security #gen_ai_security #mobile_security #ci_cd_security
════════════════════════
𐀪 Author: Kishor Kalivarapu
════════════════════════
ⴵ Time: Wed, 04 Jun 2025 20:54:25 GMT
════════════════════════
⌗ Tags: #owasp #api_security #gen_ai_security #mobile_security #ci_cd_security
Medium
OWASP® Top 10 Security Vulnerabilities Across Domains
The OWASP® Foundation remains at the forefront of ensuring the security of contemporary technology environments.
⤷ Title: Analysis of Spyware That Helped to Compromise a Syrian Army from Within
════════════════════════
𐀪 Author: mh
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 07:53:42 +0000
════════════════════════
⌗ Tags: #Malware #espionage #SpyMax #spyware
════════════════════════
𐀪 Author: mh
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 07:53:42 +0000
════════════════════════
⌗ Tags: #Malware #espionage #SpyMax #spyware
Mobile Hacker
Analysis of Spyware That Helped to Compromise a Syrian Army from Within - Mobile Hacker
The investigation into the collapse of the Assad regime reveals a significant technical dimension, particularly a spyware application named STFD-686 that was distributed among Syrian army officers via Telegram. This is a fascinating story where Android SpyMax…
⤷ Title: Critical Cisco ISE Auth Bypass Flaw Impacts Cloud Deployments on AWS, Azure, and OCI
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 11:07:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 11:07:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Feds Seize BidenCash Carding Market and Its Crypto Profits
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Wed, 04 Jun 2025 22:42:46 +0000
════════════════════════
⌗ Tags: #Cyber Crime #BidenCash #credit card #Crypto #Cybersecurity #USA
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Wed, 04 Jun 2025 22:42:46 +0000
════════════════════════
⌗ Tags: #Cyber Crime #BidenCash #credit card #Crypto #Cybersecurity #USA
Hackread
Feds Seize BidenCash Carding Market and Its Crypto Profits
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: sh4d0wup: Signing-key abuse and update exploitation framework
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 00:31:59 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #update exploitation framework
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 00:31:59 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #update exploitation framework
Penetration Testing Tools
sh4d0wup: Signing-key abuse and update exploitation framework
sh4d0wup is a malicious http/https update server that acts as a reverse proxy in front of a legitimate server and can infect + sign various artifact formats
⤷ Title: SadGuard: Dynamic Code Analysis + Supply Chain Detection Attack
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 00:16:13 +0000
════════════════════════
⌗ Tags: #Code Assessment #Vulnerability Assessment #AI #CI/CD #code analysis #cybersecurity #Malware Detection #Pull Request Security #SadGuard #Self_Hosted #Software Development #Supply Chain Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 00:16:13 +0000
════════════════════════
⌗ Tags: #Code Assessment #Vulnerability Assessment #AI #CI/CD #code analysis #cybersecurity #Malware Detection #Pull Request Security #SadGuard #Self_Hosted #Software Development #Supply Chain Security
Penetration Testing Tools
SadGuard: Dynamic Code Analysis + Supply Chain Detection Attack
SadGuard leverages AI to secure software supply chains, detecting malicious code in pull requests via diff analysis & runtime monitoring.
⤷ Title: CRITICAL (CVSS 9.4) Python ‘tarfile’ Vulnerability: Arbitrary Filesystem Writes Possible!
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 08:38:15 +0000
════════════════════════
⌗ Tags: #Vulnerability #CPython #cybersecurity #Python #Remote Code Execution #security advisory #tarfile
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 08:38:15 +0000
════════════════════════
⌗ Tags: #Vulnerability #CPython #cybersecurity #Python #Remote Code Execution #security advisory #tarfile
Daily CyberSecurity
CRITICAL (CVSS 9.4) Python 'tarfile' Vulnerability: Arbitrary Filesystem Writes Possible!
Critical and high-severity flaws in Python's tarfile module allow arbitrary filesystem writes and bypasses. Update to the latest patched version immediately.
⤷ Title: Reddit Sues Anthropic: Battling Unauthorized AI Data Scraping!
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 07:28:03 +0000
════════════════════════
⌗ Tags: #Technology #AI #Anthropic #artificial intelligence #content licensing #copyright infringement #data scraping #Lawsuit #online forum #Reddit #robots.txt
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 07:28:03 +0000
════════════════════════
⌗ Tags: #Technology #AI #Anthropic #artificial intelligence #content licensing #copyright infringement #data scraping #Lawsuit #online forum #Reddit #robots.txt
Daily CyberSecurity
Reddit Sues Anthropic: Battling Unauthorized AI Data Scraping!
Reddit is suing AI firm Anthropic for unauthorized data scraping to train AI models, alleging violations of its user agreement and seeking damages.
⤷ Title: Apple vs. EU: AirDrop, AirPlay & Seamless Pairing at Risk in Europe!
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 07:23:13 +0000
════════════════════════
⌗ Tags: #Technology #AirDrop #AirPlay #android #Apple #Digital Markets Act #ecosystem #EU #Interoperability #legal appeal #privacy #regulation #User Experience
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 07:23:13 +0000
════════════════════════
⌗ Tags: #Technology #AirDrop #AirPlay #android #Apple #Digital Markets Act #ecosystem #EU #Interoperability #legal appeal #privacy #regulation #User Experience
Daily CyberSecurity
Apple vs. EU: AirDrop, AirPlay & Seamless Pairing at Risk in Europe!
Apple may suspend AirDrop, AirPlay, and seamless device pairing in the EU due to Digital Markets Act mandates, citing privacy and user experience concerns.
⤷ Title: Google Proposes New Browser Security: Your Local Network, Your Permission!
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 07:18:59 +0000
════════════════════════
⌗ Tags: #Technology #browser security #github #google chrome #internet privacy #local network access #PNA #privacy #Private Network Access #user control #web permissions
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 07:18:59 +0000
════════════════════════
⌗ Tags: #Technology #browser security #github #google chrome #internet privacy #local network access #PNA #privacy #Private Network Access #user control #web permissions
Daily CyberSecurity
Google Proposes New Browser Security: Your Local Network, Your Permission!
Google proposes restricting websites from accessing local network devices without explicit user permission. This enhances privacy and user control over web access.
⤷ Title: ChatGPT Supercharged: New Enterprise Features for Business Productivity!
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 07:12:33 +0000
════════════════════════
⌗ Tags: #Technology #AI Tools #business productivity #ChatGPT Enterprise #cloud integration #Deep Research connectors #enterprise solutions #IT administrators #MCP #meeting transcription #OpenAI
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 07:12:33 +0000
════════════════════════
⌗ Tags: #Technology #AI Tools #business productivity #ChatGPT Enterprise #cloud integration #Deep Research connectors #enterprise solutions #IT administrators #MCP #meeting transcription #OpenAI
Daily CyberSecurity
ChatGPT Supercharged: New Enterprise Features for Business Productivity!
ChatGPT Enterprise gains powerful new features: cloud integrations (OneDrive, Google Drive), meeting transcription, Deep Research connectors & MCP for advanced analysis.
⤷ Title: OpenAI vs. Court Order: The Battle to Protect Your ChatGPT Privacy
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 07:07:41 +0000
════════════════════════
⌗ Tags: #Technology #API #ChatGPT #copyright infringement #data retention #Data Security #lawsuits #legal challenge #OpenAI #privacy #user logs
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 07:07:41 +0000
════════════════════════
⌗ Tags: #Technology #API #ChatGPT #copyright infringement #data retention #Data Security #lawsuits #legal challenge #OpenAI #privacy #user logs
Daily CyberSecurity
OpenAI vs. Court Order: The Battle to Protect Your ChatGPT Privacy
OpenAI is fighting a court order to retain all ChatGPT user logs, including deleted conversations, due to copyright infringement claims. This could impact global user privacy.
⤷ Title: Amazon’s $10 Billion AI Boost: North Carolina Lands Major Tech Expansion!
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 07:00:26 +0000
════════════════════════
⌗ Tags: #Technology #Amazon #artificial intelligence #AWS #community investment #data centers #economic development #job creation #North Carolina #renewable energy #STEM education
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 07:00:26 +0000
════════════════════════
⌗ Tags: #Technology #Amazon #artificial intelligence #AWS #community investment #data centers #economic development #job creation #North Carolina #renewable energy #STEM education
Daily CyberSecurity
Amazon's $10 Billion AI Boost: North Carolina Lands Major Tech Expansion!
Amazon is investing $10B in North Carolina for AI infrastructure, creating 500+ high-skilled jobs and boosting the local economy and STEM education.
⤷ Title: Microsoft 365 Update Channels – Major Changes Ahead for IT Admins!
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 06:56:29 +0000
════════════════════════
⌗ Tags: #Technology #Current Channel #deprecation #Enterprise Updates #feature updates #IT Administration #Microsoft 365 #Microsoft 365 Admin Center #Monthly Enterprise Channel #Security Updates #Semi_Annual Enterprise Channel #support lifecycle #unattended devices
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 06:56:29 +0000
════════════════════════
⌗ Tags: #Technology #Current Channel #deprecation #Enterprise Updates #feature updates #IT Administration #Microsoft 365 #Microsoft 365 Admin Center #Monthly Enterprise Channel #Security Updates #Semi_Annual Enterprise Channel #support lifecycle #unattended devices
Daily CyberSecurity
Microsoft 365 Update Channels - Major Changes Ahead for IT Admins!
Microsoft 365 update channels are changing! Semi-Annual Enterprise Channel support is reduced, and Preview is deprecated. IT admins must review & adjust immediately for smooth deployment.
⤷ Title: CVE-2025-49113: Roundcube RCE Exploit Unveiled—The Swiss Army Knife of Webmail Just Got a Weaponized Blade
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 03:42:08 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_49113 #PHP Object Injection #Remote Code Execution #Roundcube #Webmail Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 03:42:08 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_49113 #PHP Object Injection #Remote Code Execution #Roundcube #Webmail Security
Daily CyberSecurity
CVE-2025-49113: Roundcube RCE Exploit Unveiled—The Swiss Army Knife of Webmail Just Got a Weaponized Blade
A critical RCE flaw (CVE-2025-49113) in Roundcube is under active exploitation with PoC sold on forums. Patch immediately to v1.5.10 or v1.6.11!
⤷ Title: Cisco Patches Two Vulnerabilities in CCP and ISE: Proof-of-Concept Exploits Publicly Available
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 03:16:03 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary File Upload #Cisco Vulnerability #CVE_2025_20129 #CVE_2025_20130 #Information Disclosure
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 03:16:03 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Arbitrary File Upload #Cisco Vulnerability #CVE_2025_20129 #CVE_2025_20130 #Information Disclosure
Daily CyberSecurity
Cisco Patches Two Vulnerabilities in CCP and ISE: Proof-of-Concept Exploits Publicly Available
Cisco addresses CVE-2025-20129 and CVE-2025-20130 in CCP and ISE platforms. PoC exploits are public. Admins urged to migrate to fixed versions.
⤷ Title: 12.2TB of User Data Exposed in Passion.io Breach: Over 3.6 Million Records Left Unprotected
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 03:05:18 +0000
════════════════════════
⌗ Tags: #Data Leak #App Platform #cybersecurity #Data Breach #Financial Data #Influencers #Passion.io #PII #security incident #Unprotected Database
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 03:05:18 +0000
════════════════════════
⌗ Tags: #Data Leak #App Platform #cybersecurity #Data Breach #Financial Data #Influencers #Passion.io #PII #security incident #Unprotected Database
Daily CyberSecurity
12.2TB of User Data Exposed in Passion.io Breach: Over 3.6 Million Records Left Unprotected
12TB of unencrypted user data, including PII and financial records, allegedly from Passion.io, was exposed online. A critical security reminder for all!
⤷ Title: Critical Dell Bug (CVSS 9.8) Lets Unauthenticated Attackers Fully Compromise the System
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 01:51:17 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #Data Security #dell #NAS #NFS #OneFS #patch #PowerScale #sql injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 01:51:17 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #Data Security #dell #NAS #NFS #OneFS #patch #PowerScale #sql injection
Daily CyberSecurity
Critical Dell Bug (CVSS 9.8) Lets Unauthenticated Attackers Fully Compromise the System
Unauthenticated attackers can fully compromise Dell PowerScale OneFS. Patch now to stop critical NFS access flaws.
⤷ Title: CVE-2025-48951: Critical Deserialization Flaw in Auth0 PHP SDK Threatens Millions of Applications
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 01:32:24 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Auth0 #cybersecurity #Deserialization #Laravel #patch #php #rce #SDK #Symfony #Vulnerability #Web Security #wordpress
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Jun 2025 01:32:24 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Auth0 #cybersecurity #Deserialization #Laravel #patch #php #rce #SDK #Symfony #Vulnerability #Web Security #wordpress
Daily CyberSecurity
CVE-2025-48951: Critical Deserialization Flaw in Auth0 PHP SDK Threatens Millions of Applications
A critical Auth0 PHP SDK deserialization flaw (CVE-2025-48951, CVSS 9.3) allows unauthenticated RCE in web apps. Patch to v8.14.0+ immediately!