⤷ Title: Windows Kernel Flaws Revealed: SYSTEM-Level Privilege Escalation & PoC Exploits Available Now!
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:55:08 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #Exploit #KTM #PoC #privilege escalation #security vulnerability #Windows 11 #Windows Kernel #Windows Server
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:55:08 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #Exploit #KTM #PoC #privilege escalation #security vulnerability #Windows 11 #Windows Kernel #Windows Server
Daily CyberSecurity
Windows Kernel Flaws Revealed: SYSTEM-Level Privilege Escalation & PoC Exploits Available Now!
Two Windows Kernel vulnerabilities allow SYSTEM-level privilege escalation. PoC exploit code is publicly available.
⤷ Title: High-Severity Flaw in Kibana: Unauthorized Access Possible in Synthetic Monitoring!
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:46:04 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cloud Security #CVE_2024_43706 #cybersecurity #Elastic #Kibana #Observability #security patch #Synthetic Monitoring #Vulnerability #Web Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:46:04 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cloud Security #CVE_2024_43706 #cybersecurity #Elastic #Kibana #Observability #security patch #Synthetic Monitoring #Vulnerability #Web Security
Daily CyberSecurity
High-Severity Flaw in Kibana: Unauthorized Access Possible in Synthetic Monitoring!
A high-severity flaw (CVE-2024-43706) in Kibana's Synthetic Monitoring allows unauthorized access. Upgrade to 8.12.1 or apply mitigations immediately.
⤷ Title: Ivanti Patches High-Severity Credential Decryption Flaws in Workspace Control
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:40:07 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE #Enterprise Security #Hardcoded Keys #Ivanti #security update #Vulnerability #Workspace Control
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:40:07 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE #Enterprise Security #Hardcoded Keys #Ivanti #security update #Vulnerability #Workspace Control
Daily CyberSecurity
Ivanti Patches High-Severity Credential Decryption Flaws in Workspace Control
Ivanti patches three Workspace Control flaws exposing sensitive credentials due to hardcoded keys. Update immediately to secure your enterprise.
⤷ Title: Insyde UEFI Flaw (CVE-2025-4275): Secure Boot Bypass Allows Rootkits & Undetectable Malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:38:17 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CERT/CC #CVE_2025_4275 #cybersecurity #firmware #Insyde H2O #malware #NVRAM #rootkit #Secure Boot #supply chain attack #UEFI #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:38:17 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CERT/CC #CVE_2025_4275 #cybersecurity #firmware #Insyde H2O #malware #NVRAM #rootkit #Secure Boot #supply chain attack #UEFI #Vulnerability
Daily CyberSecurity
Insyde UEFI Flaw (CVE-2025-4275): Secure Boot Bypass Allows Rootkits & Undetectable Malware
A Insyde H2O UEFI flaw (CVE-2025-4275) allows Secure Boot bypass via NVRAM, enabling attackers to inject undetectable malware and rootkits. Update firmware now!
⤷ Title: Salesforce OmniStudio Flaws Expose Encrypted Data
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:36:01 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cloud Security #CVEs #Data Exposure #OmniStudio #Salesforce #security vulnerabilities
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:36:01 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cloud Security #CVEs #Data Exposure #OmniStudio #Salesforce #security vulnerabilities
Daily CyberSecurity
Salesforce OmniStudio Flaws Expose Encrypted Data
High-severity flaws in Salesforce OmniStudio's FlexCard and Data Mapper expose encrypted customer data. Learn how to protect your organization.
⤷ Title: Warning: 40,000+ Internet-Connected Cameras Are Exposed & Streaming Live Globally!
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:30:40 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Bitsight #Cybercrime #cybersecurity #Data Exposure #Home Security #IoT security #Live Streams #privacy #Security Cameras #surveillance
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:30:40 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Bitsight #Cybercrime #cybersecurity #Data Exposure #Home Security #IoT security #Live Streams #privacy #Security Cameras #surveillance
Daily CyberSecurity
Warning: 40,000+ Internet-Connected Cameras Are Exposed & Streaming Live Globally!
A new report reveals over 40,000 internet-connected security cameras are exposed online, streaming live footage without protection, risking privacy globally.
⤷ Title: Chrome Update Alert: Two High-Severity Flaws Patched – Update Now to Stay Safe!
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:22:28 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #chrome #CVE_2025_5958 #CVE_2025_5959 #cybersecurity #google chrome #Media Component #security update #Type Confusion #use after free #V8 #Vulnerability #web browser
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:22:28 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #chrome #CVE_2025_5958 #CVE_2025_5959 #cybersecurity #google chrome #Media Component #security update #Type Confusion #use after free #V8 #Vulnerability #web browser
Daily CyberSecurity
Chrome Update Alert: Two High-Severity Flaws Patched – Update Now to Stay Safe!
Google Chrome 137.0.7151.103/.104 fixes two high-severity flaws in media and V8. Update now to protect your system from potential compromise.
⤷ Title: CVSS 9.8: Backend.AI Critical Flaw Allows Account Takeover via PoC, No Patch Available
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:18:39 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Account Takeover #Backend.AI #container platform #CVE_2025_49653 #cybersecurity #HiddenLayer #HPC #machine_learning #no patch #privilege escalation #proof_of_concept #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:18:39 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Account Takeover #Backend.AI #container platform #CVE_2025_49653 #cybersecurity #HiddenLayer #HPC #machine_learning #no patch #privilege escalation #proof_of_concept #Vulnerability
Daily CyberSecurity
CVSS 9.8: Backend.AI Critical Flaw Allows Account Takeover via PoC, No Patch Available
A critical CVSS 9.8 flaw (CVE-2025-49653) in Backend.AI allows account takeover via PoC, impacting all versions. Vendor has not issued a patch.
⤷ Title: “DanaBleed” Flaw Exposes DanaBot’s Inner Workings for Three Years
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:13:56 +0000
════════════════════════
⌗ Tags: #Malware #Banking Fraud #C2 Server #Cybercrime #cybersecurity #DanaBleed #DanaBot #ddos #Heartbleed #MaaS #Malware_as_a_Service #Memory Leak #Operation Endgame #ThreatLabz
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:13:56 +0000
════════════════════════
⌗ Tags: #Malware #Banking Fraud #C2 Server #Cybercrime #cybersecurity #DanaBleed #DanaBot #ddos #Heartbleed #MaaS #Malware_as_a_Service #Memory Leak #Operation Endgame #ThreatLabz
Daily CyberSecurity
"DanaBleed" Flaw Exposes DanaBot's Inner Workings for Three Years
DanaBot's "DanaBleed" memory leak, active for 3 years, exposed C2 server data, aiding law enforcement in Operation Endgame takedown.
⤷ Title: CoreDNS DoS Flaw: Unauthenticated Attackers Can Crash Servers via DNS-over-QUIC
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:09:54 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #cloud_native #Containerization #CoreDNS #CVE_2025_47950 #cybersecurity #Denial of Service #dns #dos #patch #QUIC #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:09:54 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #cloud_native #Containerization #CoreDNS #CVE_2025_47950 #cybersecurity #Denial of Service #dns #dos #patch #QUIC #Vulnerability
Daily CyberSecurity
CoreDNS DoS Flaw: Unauthenticated Attackers Can Crash Servers via DNS-over-QUIC
A DoS flaw in CoreDNS (CVE-2025-47950) allows unauthenticated attackers to crash servers using DNS-over-QUIC. Update to 1.12.2 immediately or disable QUIC.
⤷ Title: Wasp Framework Patches OAuth Flaw Allowing User Impersonation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:08:33 +0000
════════════════════════
⌗ Tags: #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:08:33 +0000
════════════════════════
⌗ Tags: #Vulnerability
Daily CyberSecurity
Wasp Framework Patches OAuth Flaw Allowing User Impersonation
Wasp framework's OAuth implementation had a critical flaw allowing user impersonation due to case-insensitivity. Update to v0.16.6 now!
⤷ Title: “GhostVendors”: Thousands of Fake Domains Exploit Facebook Ads in Massive Retail Scam
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:02:26 +0000
════════════════════════
⌗ Tags: #Cybercriminals #brand impersonation #Cybercrime #digital fraud #e_commerce #Facebook Marketplace #fake domains #GhostVendors #Online Fraud #phishing #scam #Silent Push
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:02:26 +0000
════════════════════════
⌗ Tags: #Cybercriminals #brand impersonation #Cybercrime #digital fraud #e_commerce #Facebook Marketplace #fake domains #GhostVendors #Online Fraud #phishing #scam #Silent Push
Daily CyberSecurity
"GhostVendors": Thousands of Fake Domains Exploit Facebook Ads in Massive Retail Scam
Silent Push uncovers "GhostVendors," a massive online fraud operation using 4,000+ fake domains and Facebook ads to impersonate brands and scam consumers.
⤷ Title: How Meta’s Bug Bounty Triage Fails Security Researchers — And Why It Matters
════════════════════════
𐀪 Author: D Johnston
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:20:39 GMT
════════════════════════
⌗ Tags: #meta #vulnerability_assessment #cybersecurity #facebook #bug_bounty
════════════════════════
𐀪 Author: D Johnston
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:20:39 GMT
════════════════════════
⌗ Tags: #meta #vulnerability_assessment #cybersecurity #facebook #bug_bounty
Medium
How Meta’s Bug Bounty Triage Fails Security Researchers — And Why It Matters
TL;DR: Meta’s automated bug bounty triage system is deeply flawed. It falsely classifies any report that mentions loopback addresses (like…
⤷ Title: How I Discovered JS Execution Through CSTI and DOM XSS
════════════════════════
𐀪 Author: Ibtissam hammadi
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:04:40 GMT
════════════════════════
⌗ Tags: #bug_bounty #hacking #vuejs #dom_xss #web_security
════════════════════════
𐀪 Author: Ibtissam hammadi
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:04:40 GMT
════════════════════════
⌗ Tags: #bug_bounty #hacking #vuejs #dom_xss #web_security
Medium
How I Discovered JS Execution Through CSTI and DOM XSS
From a Simple Template Injection to Full DOM XSS — How I Chained CSTI, Vue.js, and JS Execution to Earn a Bug Bounty
⤷ Title: Artificial Intelligence and Cyber Security
════════════════════════
𐀪 Author: Mateo Cruz
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 23:02:55 GMT
════════════════════════
⌗ Tags: #hacking #digital_life #artificial_intelligence #future #cybersecurity
════════════════════════
𐀪 Author: Mateo Cruz
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 23:02:55 GMT
════════════════════════
⌗ Tags: #hacking #digital_life #artificial_intelligence #future #cybersecurity
Medium
Artificial Intelligence and Cyber Security
The most important frontier of the Future?
⤷ Title: “CVE List Keyword Search” on CVE.ORG Website Updated
════════════════════════
𐀪 Author: CVE Program Blog
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 23:11:31 GMT
════════════════════════
⌗ Tags: #infosec #cybersecurity #vulnerability_management #vulnerability #information_security
════════════════════════
𐀪 Author: CVE Program Blog
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 23:11:31 GMT
════════════════════════
⌗ Tags: #infosec #cybersecurity #vulnerability_management #vulnerability #information_security
Medium
“CVE List Keyword Search” on CVE.ORG Website Updated
“CVE List Keyword Search” on the CVE.ORG website has been updated based upon feedback from users. As a reminder, this search is for the CVE…
⤷ Title: Even RSA Can be Broken? — RSA Encryption Explained with CTF Walkthrough
════════════════════════
𐀪 Author: EvenBaba
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:18:58 GMT
════════════════════════
⌗ Tags: #rsa_encryption #ctf #cybersecurity #rsa #rsa_algorithm
════════════════════════
𐀪 Author: EvenBaba
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:18:58 GMT
════════════════════════
⌗ Tags: #rsa_encryption #ctf #cybersecurity #rsa #rsa_algorithm
Medium
Even RSA Can be Broken? — RSA Encryption Explained with CTF Walkthrough
In a world increasingly reliant on digital communication, how do we ensure our private messages stay private? How can we be sure that the…
⤷ Title: Drone Fleet Management & Geofencing via Smart Contracts
════════════════════════
𐀪 Author: A-STAR7_DOCTOR
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:13:27 GMT
════════════════════════
⌗ Tags: #technology #cybersecurity #blockchain #programming #business
════════════════════════
𐀪 Author: A-STAR7_DOCTOR
════════════════════════
ⴵ Time: Wed, 11 Jun 2025 00:13:27 GMT
════════════════════════
⌗ Tags: #technology #cybersecurity #blockchain #programming #business
Medium
Drone Fleet Management & Geofencing via Smart Contracts
Autonomous Governance for Next-Gen Aerial Logistics By Aditiya Widodo Putra — Cybersecurity & BlockchainConsultant
⤷ Title: Perl Ultimate Vulnerability in CGI & Opening Pipes Part II: Natas32 Overthewire Write Up
════════════════════════
𐀪 Author: Asrofil Fachrul Riidlo
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 23:56:28 GMT
════════════════════════
⌗ Tags: #overthewire #cybersecurity #ctf_writeup
════════════════════════
𐀪 Author: Asrofil Fachrul Riidlo
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 23:56:28 GMT
════════════════════════
⌗ Tags: #overthewire #cybersecurity #ctf_writeup
Medium
Perl Ultimate Vulnerability in CGI & Opening Pipes Part II: Natas32 Overthewire Write Up
Bismillahirrahmanirrahim
⤷ Title: How One Cyber Espionage Group Infiltrated 70+ Organizations Without Anyone Noticing — Are You Next?”
════════════════════════
𐀪 Author: Cyber-AppSec
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 23:41:43 GMT
════════════════════════
⌗ Tags: #ai #agentic_ai #cybersecurity #information_security #cybercrime
════════════════════════
𐀪 Author: Cyber-AppSec
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 23:41:43 GMT
════════════════════════
⌗ Tags: #ai #agentic_ai #cybersecurity #information_security #cybercrime
Medium
How One Cyber Espionage Group Infiltrated 70+ Organizations Without Anyone Noticing — Are You Next?”
Between June 2024 and March 2025, a stealthy and coordinated campaign tied to China-nexus threat actors quietly breached over 70…
⤷ Title: How Gen AI is Revolutionizing Cyber Attack Strategies
════════════════════════
𐀪 Author: Yash Patel
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 23:40:14 GMT
════════════════════════
⌗ Tags: #awareness #ai #cybersecurity #cyberngo #cyberwarfare_and_defense
════════════════════════
𐀪 Author: Yash Patel
════════════════════════
ⴵ Time: Tue, 10 Jun 2025 23:40:14 GMT
════════════════════════
⌗ Tags: #awareness #ai #cybersecurity #cyberngo #cyberwarfare_and_defense
Medium
How Gen AI is Revolutionizing Cyber Attack Strategies
AI isn’t just powering your favorite apps…….it’s also becoming a weapon in the hands of cybercriminals. In today’s digital landscape, where…