⤷ Title: SilentMoonwalk: PoC Implementation of a fully dynamic call stack spoofer
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:17:32 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #dynamic call stack spoofer
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:17:32 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #dynamic call stack spoofer
Penetration Testing Tools
SilentMoonwalk: PoC Implementation of a fully dynamic call stack spoofer
SilentMoonwalk is a PoC implementation of a fully dynamic call stack spoofer, implementing a technique to remove the original caller from the call stack
⤷ Title: agneyastra: Firebase Misconfiguration Detection Toolkit
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:16:43 +0000
════════════════════════
⌗ Tags: #Vulnerability Assessment #agneyastra #bug bounty #cloud security #cybersecurity tools #firebase #misconfiguration #mobile security #Penetration Testing #security #web security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:16:43 +0000
════════════════════════
⌗ Tags: #Vulnerability Assessment #agneyastra #bug bounty #cloud security #cybersecurity tools #firebase #misconfiguration #mobile security #Penetration Testing #security #web security
Penetration Testing Tools
agneyastra: Firebase Misconfiguration Detection Toolkit
Discover Agneyastra, a powerful new tool designed for bug bounty hunters and security pros to find and fix Firebase misconfigurations.
⤷ Title: Chinese Cyberespionage Groups Probe SentinelOne in Sophisticated ShadowPad and PurpleHaze Campaigns
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:45:22 +0000
════════════════════════
⌗ Tags: #Cybercriminals #APT15 #China_nexus #cyber_espionage #cybersecurity #PurpleHaze #SentinelLABS #SentinelOne #ShadowPad #supply chain attack #UNC5174
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:45:22 +0000
════════════════════════
⌗ Tags: #Cybercriminals #APT15 #China_nexus #cyber_espionage #cybersecurity #PurpleHaze #SentinelLABS #SentinelOne #ShadowPad #supply chain attack #UNC5174
Daily CyberSecurity
Chinese Cyberespionage Groups Probe SentinelOne in Sophisticated ShadowPad and PurpleHaze Campaigns
SentinelLABS exposes China-nexus APTs (ShadowPad, PurpleHaze) targeting SentinelOne and over 70 organizations in extensive cyber-espionage.
⤷ Title: Librarian Ghouls APT: The Threat Actor Turning Legitimate Tools into a Cybercrime Toolkit
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:44:43 +0000
════════════════════════
⌗ Tags: #Cybercriminals #APT #CIS #Cryptojacking #cyber_espionage #cyberattack #kaspersky #Librarian Ghouls #phishing #russia #XMRig
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:44:43 +0000
════════════════════════
⌗ Tags: #Cybercriminals #APT #CIS #Cryptojacking #cyber_espionage #cyberattack #kaspersky #Librarian Ghouls #phishing #russia #XMRig
Daily CyberSecurity
Librarian Ghouls APT: The Threat Actor Turning Legitimate Tools into a Cybercrime Toolkit
Librarian Ghouls APT launches a new cyber-espionage and cryptojacking campaign targeting Russia and CIS, using legitimate tools for stealth.
⤷ Title: CVE-2025-48757: Lovable’s Row-Level Security Breakdown Exposes Sensitive Data Across Hundreds of Projects
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:38:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_48757 #cybersecurity #Data Breach #Linkable #Lovable #low_code #RLS #Row_Level Security #Supabase #Vulnerability #Web Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:38:53 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_48757 #cybersecurity #Data Breach #Linkable #Lovable #low_code #RLS #Row_Level Security #Supabase #Vulnerability #Web Security
Daily CyberSecurity
CVE-2025-48757: Lovable’s Row-Level Security Breakdown Exposes Sensitive Data Across Hundreds of Projects
A critical RLS vulnerability (CVSS 9.3) in the Lovable low-code platform exposes sensitive user data and allows unauthorized modification.
⤷ Title: Kimsuky’s AppleSeed Returns: North Korea-Linked APT Targets Korean Users via Social Media
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:32:05 +0000
════════════════════════
⌗ Tags: #Cyber Security #AppleSeed #APT #cyberattack #Cyberespionage #cybersecurity #facebook #Genians #Kimsuky #malware #North Korea #social engineering #Telegram
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:32:05 +0000
════════════════════════
⌗ Tags: #Cyber Security #AppleSeed #APT #cyberattack #Cyberespionage #cybersecurity #facebook #Genians #Kimsuky #malware #North Korea #social engineering #Telegram
Daily CyberSecurity
Kimsuky's AppleSeed Returns: North Korea-Linked APT Targets Korean Users via Social Media
Kimsuky's AppleSeed campaign targets Korean Facebook, email, and Telegram users with evolved social engineering and stealthy malware.
⤷ Title: Operation DRAGONCLONE: China Mobile Tietong Hit by Advanced APT Attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:27:20 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT #China Mobile Tietong #China_aligned threat actors #Cyberespionage #cybersecurity #DLL Sideloading #Earth Lamia #UNC5174 #VELETRIX #VShell
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:27:20 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT #China Mobile Tietong #China_aligned threat actors #Cyberespionage #cybersecurity #DLL Sideloading #Earth Lamia #UNC5174 #VELETRIX #VShell
Daily CyberSecurity
Operation DRAGONCLONE: China Mobile Tietong Hit by Advanced APT Attack
Seqrite Labs uncovers Operation DRAGONCLONE, a sophisticated APT campaign targeting China Mobile Tietong with VELETRIX and VShell malware.
⤷ Title: CVE-2025-41646: Critical Authentication Bypass in RevPi Webstatus Threatens Industrial Systems
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:21:29 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVE_2025_41646 #cybersecurity #ICS #industrial automation #industrial control systems #KUNBUS #RevPi Webstatus #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:21:29 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVE_2025_41646 #cybersecurity #ICS #industrial automation #industrial control systems #KUNBUS #RevPi Webstatus #Vulnerability
Daily CyberSecurity
CVE-2025-41646: Critical Authentication Bypass in RevPi Webstatus Threatens Industrial Systems
A critical authentication bypass (CVE-2025-41646) affects KUNBUS RevPi Webstatus. Exploiting implicit type conversion allows attackers full access.
⤷ Title: APT41 Unleashes Stealthy Malware Using Google Calendar for Covert C2!
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:19:30 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT41 #C2 #Command and Control #Cyberespionage #cybersecurity #Google Calendar #malware #Resecurity #spear_phishing #Taiwan
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:19:30 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT41 #C2 #Command and Control #Cyberespionage #cybersecurity #Google Calendar #malware #Resecurity #spear_phishing #Taiwan
Daily CyberSecurity
APT41 Unleashes Stealthy Malware Using Google Calendar for Covert C2!
APT41 is leveraging Google Calendar as a covert C2 channel in a new multi-stage malware campaign targeting a Taiwanese government website.
⤷ Title: Behind the Followers: Malicious Python Package Harvests Instagram Credentials
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:12:30 +0000
════════════════════════
⌗ Tags: #Malware #Credential Harvesting #cybersecurity #Data Theft #imad213 #Instagram #malware #phishing #scam #social engineering #tech security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:12:30 +0000
════════════════════════
⌗ Tags: #Malware #Credential Harvesting #cybersecurity #Data Theft #imad213 #Instagram #malware #phishing #scam #social engineering #tech security
Daily CyberSecurity
Behind the Followers: Malicious Python Package Harvests Instagram Credentials
Beware 'imad213,' a fake Instagram booster stealing credentials via social engineering and bot services. Learn how to protect your account.
⤷ Title: BladedFeline: Iran-Aligned APT Group Expands Arsenal With Whisper and PrimeCache
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:08:10 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT #BladedFeline #Cyber Threat #Cyberespionage #cybersecurity #ESET #Iran #Iraq #KRG #malware #OilRig #Uzbekistan
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:08:10 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT #BladedFeline #Cyber Threat #Cyberespionage #cybersecurity #ESET #Iran #Iraq #KRG #malware #OilRig #Uzbekistan
Daily CyberSecurity
BladedFeline: Iran-Aligned APT Group Expands Arsenal With Whisper and PrimeCache
ESET uncovers BladedFeline, an Iran-aligned APT group, targeting KRG, Iraq, and Uzbekistan in a sophisticated cyberespionage campaign.
⤷ Title: SoraAI.lnk: Beware of This New Info-Stealer Hiding as OpenAI’s Sora
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:02:42 +0000
════════════════════════
⌗ Tags: #Malware #Cyber Threat #cybersecurity #Data Breach #info_stealer #malware #OpenAI #phishing #SoraAI #tech security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:02:42 +0000
════════════════════════
⌗ Tags: #Malware #Cyber Threat #cybersecurity #Data Breach #info_stealer #malware #OpenAI #phishing #SoraAI #tech security
Daily CyberSecurity
SoraAI.lnk: Beware of This New Info-Stealer Hiding as OpenAI's Sora
A new info-stealer, SoraAI.lnk, is leveraging OpenAI's Sora popularity to infect users. Learn how this sophisticated malware works and how to protect your data.
⤷ Title: Malware Unmasked
════════════════════════
𐀪 Author: Ed-it Editions
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:49:46 GMT
════════════════════════
⌗ Tags: #cybersecurity
════════════════════════
𐀪 Author: Ed-it Editions
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:49:46 GMT
════════════════════════
⌗ Tags: #cybersecurity
Medium
Malware Unmasked
Understanding, Preventing, and Removing Malicious Software
⤷ Title: From Command to Collaboration: A Leadership Evolution in Cybersecurity
════════════════════════
𐀪 Author: Yaroslav
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:21:57 GMT
════════════════════════
⌗ Tags: #leadership #cybersecurity
════════════════════════
𐀪 Author: Yaroslav
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:21:57 GMT
════════════════════════
⌗ Tags: #leadership #cybersecurity
Medium
From Command to Collaboration: A Leadership Evolution in Cybersecurity
When we think of cybersecurity, we often picture high-stakes incidents, red alerts, and critical infrastructure under attack. But beneath…
⤷ Title: How Threat-Savvy Companies Can Defend Against Data Breaches
════════════════════════
𐀪 Author: Financial Poise
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:21:16 GMT
════════════════════════
⌗ Tags: #cybersecurity #business_management #current_events
════════════════════════
𐀪 Author: Financial Poise
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:21:16 GMT
════════════════════════
⌗ Tags: #cybersecurity #business_management #current_events
Medium
How Threat-Savvy Companies Can Defend Against Data Breaches
⤷ Title: We’ve all heard the same privacy advice over and over again:
════════════════════════
𐀪 Author: Lydiah Muigwa
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:05:37 GMT
════════════════════════
⌗ Tags: #digital_privacy #privacy #cybersecurity
════════════════════════
𐀪 Author: Lydiah Muigwa
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 00:05:37 GMT
════════════════════════
⌗ Tags: #digital_privacy #privacy #cybersecurity
Medium
1. The Myth of the “Average User” Is Hurting Privacy
“Use strong passwords.” “Check your app permissions.” “Update your settings.”
⤷ Title: AI Security Posture Management by Palo Alto Networks: A Comprehensive Guide
════════════════════════
𐀪 Author: Juara IT Solutions
════════════════════════
ⴵ Time: Mon, 09 Jun 2025 23:32:11 GMT
════════════════════════
⌗ Tags: #palo_alto_networks #cloud_security #network_security #cybersecurity #ai
════════════════════════
𐀪 Author: Juara IT Solutions
════════════════════════
ⴵ Time: Mon, 09 Jun 2025 23:32:11 GMT
════════════════════════
⌗ Tags: #palo_alto_networks #cloud_security #network_security #cybersecurity #ai
Medium
AI Security Posture Management by Palo Alto Networks: A Comprehensive Guide
As organizations increasingly adopt AI and machine learning to enhance operations, a new layer of risk is emerging — security…
⤷ Title: The Secret Code of the Future: ECC, Web3 Cryptography, and Why Hackers Want to Crack It
════════════════════════
𐀪 Author: Galihabraa
════════════════════════
ⴵ Time: Mon, 09 Jun 2025 23:22:24 GMT
════════════════════════
⌗ Tags: #cybersecurity
════════════════════════
𐀪 Author: Galihabraa
════════════════════════
ⴵ Time: Mon, 09 Jun 2025 23:22:24 GMT
════════════════════════
⌗ Tags: #cybersecurity
Medium
The Secret Code of the Future: ECC, Web3 Cryptography, and Why Hackers Want to Crack It
Imagine you have a magical lock that only you can open, but it’s so clever that even the smartest thief can’t figure out how. That’s kind…
⤷ Title: TryHackMe Walkthrough — Secret Recipe
════════════════════════
𐀪 Author: Nicholas Abundis
════════════════════════
ⴵ Time: Mon, 09 Jun 2025 23:39:59 GMT
════════════════════════
⌗ Tags: #secret_recipe #tryhackme_writeup #tryhackme #tryhackme_walkthrough #soc
════════════════════════
𐀪 Author: Nicholas Abundis
════════════════════════
ⴵ Time: Mon, 09 Jun 2025 23:39:59 GMT
════════════════════════
⌗ Tags: #secret_recipe #tryhackme_writeup #tryhackme #tryhackme_walkthrough #soc
Medium
TryHackMe Walkthrough — Secret Recipe
Perform Registry Forensics to Investigate a case.
⤷ Title: TryHackMe Walkthrough — Disgruntled
════════════════════════
𐀪 Author: Nicholas Abundis
════════════════════════
ⴵ Time: Mon, 09 Jun 2025 20:29:24 GMT
════════════════════════
⌗ Tags: #soc #tryhackme #tryhackme_walkthrough #disgruntled #tryhackme_writeup
════════════════════════
𐀪 Author: Nicholas Abundis
════════════════════════
ⴵ Time: Mon, 09 Jun 2025 20:29:24 GMT
════════════════════════
⌗ Tags: #soc #tryhackme #tryhackme_walkthrough #disgruntled #tryhackme_writeup
Medium
Disgruntled
Use your Linux forensics knowledge to investigate an incident.
⤷ Title: CVSS 9.9: Critical XXE Flaw in GeoTools Exposes Geospatial Data Systems
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 02:34:55 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #Data Breach #geospatial #GeoTools #java #Remote Code Execution #XML External Entity #xxe
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 02:34:55 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #Data Breach #geospatial #GeoTools #java #Remote Code Execution #XML External Entity #xxe
Daily CyberSecurity
CVSS 9.9: Critical XXE Flaw in GeoTools Exposes Geospatial Data Systems
A critical XXE vulnerability (CVSS 9.9) in GeoTools llows data disclosure and RCE. Update immediately to patched versions!