⤷ Title: Kali Linux 2025.2 Is Here: BloodHound CE, CARsenal, and 13 New Tools for Offensive Security Pros
════════════════════════
𐀪 Author: Taha Ex
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 22:00:08 GMT
════════════════════════
⌗ Tags: #cybersecurity #kali_linux #hacking #penetration_testing
════════════════════════
𐀪 Author: Taha Ex
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 22:00:08 GMT
════════════════════════
⌗ Tags: #cybersecurity #kali_linux #hacking #penetration_testing
Medium
🚀 Kali Linux 2025.2 Is Here: BloodHound CE, CARsenal, and 13 New Tools for Offensive Security Pros
The cybersecurity world just got sharper — OffSec has officially released Kali Linux 2025.2, the latest version of its flagship penetration…
⤷ Title: A ilusão do armazenamento seguro: Porque VeraCrypt não te protege.
════════════════════════
𐀪 Author: Molotov Brasil
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 21:31:32 GMT
════════════════════════
⌗ Tags: #hacking #data #osint #technology #opsec
════════════════════════
𐀪 Author: Molotov Brasil
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 21:31:32 GMT
════════════════════════
⌗ Tags: #hacking #data #osint #technology #opsec
Medium
A ilusão do armazenamento seguro: Porque VeraCrypt não te protege.
Nesse artigo, iremos comentar como o armazenamento seguro de dados é importante para todos, e vamos além disso, iremos citar como apenas…
⤷ Title: Mathematical Logic in Hacking
════════════════════════
𐀪 Author: Dr. Sam Fouad
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 21:09:03 GMT
════════════════════════
⌗ Tags: #hacking
════════════════════════
𐀪 Author: Dr. Sam Fouad
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 21:09:03 GMT
════════════════════════
⌗ Tags: #hacking
Medium
Mathematical Logic in Hacking
In the landscape of mathematical logic, the idea of a concept device is not tied to a physical machine, but rather to an abstract formal structure that encapsulates a logical or computational…
⤷ Title: ISC CC Cybersecurity Certification: Everything You Need to Know
════════════════════════
𐀪 Author: saol
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 22:16:11 GMT
════════════════════════
⌗ Tags: #cybersecurity #certification #security #isc2 #exam_preparation
════════════════════════
𐀪 Author: saol
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 22:16:11 GMT
════════════════════════
⌗ Tags: #cybersecurity #certification #security #isc2 #exam_preparation
Medium
ISC CC Cybersecurity Certification: Everything You Need to Know.
I recently passed my ISC CC Cybersecurity Certification, and I wanted to share my experience and offer some tips to help others who are…
⤷ Title: Global Cybercrime Cartels: More Dangerous Than Nation-States?
════════════════════════
𐀪 Author: A-STAR7_DOCTOR
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 22:10:38 GMT
════════════════════════
⌗ Tags: #technology #data_science #business #cybersecurity #science
════════════════════════
𐀪 Author: A-STAR7_DOCTOR
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 22:10:38 GMT
════════════════════════
⌗ Tags: #technology #data_science #business #cybersecurity #science
Medium
Global Cybercrime Cartels: More Dangerous Than Nation-States?
By Aditiya Widodo Putra, Cybersecurity & Blockchain Consultant
⤷ Title: LetsDefend: SOC338 — Lumma Stealer via DLL Side-Loading (Click Fix Phishing)
════════════════════════
𐀪 Author: V0idd
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 21:59:36 GMT
════════════════════════
⌗ Tags: #soc_analyst #blue_team #cybersecurity #lets_defend
════════════════════════
𐀪 Author: V0idd
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 21:59:36 GMT
════════════════════════
⌗ Tags: #soc_analyst #blue_team #cybersecurity #lets_defend
Medium
LetsDefend: SOC338 — Lumma Stealer via DLL Side-Loading (Click Fix Phishing)
In this case, I investigated an alert related to a Lumma Stealer malware infection attempt, delivered through a phishing email exploiting…
⤷ Title: Still Clicking: Why Phishing Scams Keep Winning in Nigeria (And What You Can Do About It)
════════════════════════
𐀪 Author: O. J. Okpabi
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 21:10:41 GMT
════════════════════════
⌗ Tags: #learning #cybersecurity #artificial_intelligence #nigeria #technology
════════════════════════
𐀪 Author: O. J. Okpabi
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 21:10:41 GMT
════════════════════════
⌗ Tags: #learning #cybersecurity #artificial_intelligence #nigeria #technology
Medium
Still Clicking: Why Phishing Scams Keep Winning in Nigeria (And What You Can Do About It)
A Closer Look At Why Nigerians still fall for digital scams and how we can stop it.
⤷ Title: Project [REDACTED]
════════════════════════
𐀪 Author: CyberPrincipals
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 21:04:19 GMT
════════════════════════
⌗ Tags: #autonomous_agent #malware #artificial_intelligence #cyber_security_awareness #cybersecurity
════════════════════════
𐀪 Author: CyberPrincipals
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 21:04:19 GMT
════════════════════════
⌗ Tags: #autonomous_agent #malware #artificial_intelligence #cyber_security_awareness #cybersecurity
Medium
Project [REDACTED]
What happens when malware no longer needs commands? A conceptual framework for autonomous, AI-driven digital threats.
⤷ Title: BinSync: Revolutionizing Reverse Engineering with Git-Based Decompiler Collaboration
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:53:08 +0000
════════════════════════
⌗ Tags: #Reverse Engineering #BinSync #Collaboration #cybersecurity #Decompiler #Git #malware analysis #open source #REA #reverse engineering #Reverse Engineering Artifacts #Shellphish
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:53:08 +0000
════════════════════════
⌗ Tags: #Reverse Engineering #BinSync #Collaboration #cybersecurity #Decompiler #Git #malware analysis #open source #REA #reverse engineering #Reverse Engineering Artifacts #Shellphish
Penetration Testing Tools
BinSync: Revolutionizing Reverse Engineering with Git-Based Decompiler Collaboration
BinSync is a Git-based decompiler collaboration tool that enables fine-grained reverse engineering, syncing function headers, stack variables, structs, enums, and comments.
⤷ Title: gowitness: website screenshot utility written in Golang
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:06:30 +0000
════════════════════════
⌗ Tags: #OSINT _ Open Source Intelligence #gowitness #website screenshot
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:06:30 +0000
════════════════════════
⌗ Tags: #OSINT _ Open Source Intelligence #gowitness #website screenshot
Penetration Testing Tools
gowitness: website screenshot utility written in Golang
gowitness is a website screenshot utility written in Golang, that uses Chrome Headless to generate screenshots of web interfaces
⤷ Title: High-Severity Flaw Exposes ASUS Armoury Crate to Authentication Bypass
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:42:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Armoury Crate #ASUS #Authentication Bypass #cybersecurity #Gaming PC #privilege escalation #race condition #security update #TOCTOU #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:42:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Armoury Crate #ASUS #Authentication Bypass #cybersecurity #Gaming PC #privilege escalation #race condition #security update #TOCTOU #Vulnerability
Daily CyberSecurity
High-Severity Flaw Exposes ASUS Armoury Crate to Authentication Bypass
ASUS warns of a high-severity flaw in Armoury Crate that allows authentication bypass and privilege escalation. Update immediately!
⤷ Title: Team46 (TaxOff) Exploits Google Chrome Zero-Day (CVE-2025-2783) in Sophisticated Phishing Campaign
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:40:37 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability Report #APT #CVE_2025_2783 #Cyberespionage #google chrome #malware #phishing #Positive Technologies #Sandbox Escape #TaxOff #Team46 #Trinper #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:40:37 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability Report #APT #CVE_2025_2783 #Cyberespionage #google chrome #malware #phishing #Positive Technologies #Sandbox Escape #TaxOff #Team46 #Trinper #zero_day
Daily CyberSecurity
Team46 (TaxOff) Exploits Google Chrome Zero-Day (CVE-2025-2783) in Sophisticated Phishing Campaign
Team46 (TaxOff) is exploiting a Google Chrome sandbox escape zero-day (CVE-2025-2783) to deploy the multi-layered Trinper malware via phishing campaigns
⤷ Title: Critical Teleport Flaw (CVSS 9.8): Remote Authentication Bypass Threatens Infrastructure Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:36:09 +0000
════════════════════════
⌗ Tags: #Vulnerability #Authentication Bypass #CVE_2025_49825 #CVSS 9.8 #cybersecurity #Infrastructure Access #Remote Access #security #Teleport #Zero Trust
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:36:09 +0000
════════════════════════
⌗ Tags: #Vulnerability #Authentication Bypass #CVE_2025_49825 #CVSS 9.8 #cybersecurity #Infrastructure Access #Remote Access #security #Teleport #Zero Trust
Daily CyberSecurity
Critical Teleport Flaw (CVSS 9.8): Remote Authentication Bypass Threatens Infrastructure Access
Teleport disclosed a critical remote authentication bypass flaw (CVE-2025-49825) affecting self-hosted instances. Upgrade Proxies and agents immediately!
⤷ Title: CVE-2025-49596: Critical RCE Vulnerability in MCP Inspector Exposes AI Developer Environments
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:35:13 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI Development #AI security #CVE_2025_49596 #cybersecurity #Machine Context Protocol #MCP #MCP Inspector #Open Standard #rce #Remote Code Execution #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:35:13 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI Development #AI security #CVE_2025_49596 #cybersecurity #Machine Context Protocol #MCP #MCP Inspector #Open Standard #rce #Remote Code Execution #Vulnerability
Daily CyberSecurity
CVE-2025-49596: Critical RCE Vulnerability in MCP Inspector Exposes AI Developer Environments
A critical flaw (CVE-2025-49596, CVSS 9.4) in MCP Inspector allows unauthenticated remote code execution, threatening AI application development environments.
⤷ Title: Two sslh Flaws Disclosed: Remote DoS Attacks Possible via Protocol Multiplexer
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:31:52 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_46806 #CVE_2025_46807 #cybersecurity #Denial of Service #https #openvpn #Protocol Multiplexer #Remote DoS #ssh #sslh #SUSE #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:31:52 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_46806 #CVE_2025_46807 #cybersecurity #Denial of Service #https #openvpn #Protocol Multiplexer #Remote DoS #ssh #sslh #SUSE #Vulnerability
Daily CyberSecurity
Two sslh Flaws Disclosed: Remote DoS Attacks Possible via Protocol Multiplexer
SUSE disclosed flaws in sslh (CVE-2025-46807, CVE-2025-46806) allowing remote DoS attacks via file descriptor exhaustion and unsafe memory access.
⤷ Title: Unauthenticated RCE in BeyondTrust Tools: Chat Feature Opens Door to Server Takeover
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:30:13 +0000
════════════════════════
⌗ Tags: #Vulnerability #BeyondTrust #Chat Feature #cybersecurity #PRA #Privileged Remote Access #rce #Remote Code Execution #Remote Support #Server Side Template Injection #ssti
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:30:13 +0000
════════════════════════
⌗ Tags: #Vulnerability #BeyondTrust #Chat Feature #cybersecurity #PRA #Privileged Remote Access #rce #Remote Code Execution #Remote Support #Server Side Template Injection #ssti
Daily CyberSecurity
Unauthenticated RCE in BeyondTrust Tools: Chat Feature Opens Door to Server Takeover
BeyondTrust warns of a high-severity unauthenticated RCE flaw in Remote Support and PRA, exploitable via the built-in chat feature. Patch immediately
⤷ Title: Fileless AsyncRAT Campaign Targets German Users with Stealthy PowerShell Payload
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:28:08 +0000
════════════════════════
⌗ Tags: #Malware #AsyncRAT #ClickFix #CloudSEK #cybersecurity #Fileless Malware #German Users #powershell #rat #Remote Access Trojan #social engineering #Windows Defender Bypass
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:28:08 +0000
════════════════════════
⌗ Tags: #Malware #AsyncRAT #ClickFix #CloudSEK #cybersecurity #Fileless Malware #German Users #powershell #rat #Remote Access Trojan #social engineering #Windows Defender Bypass
Daily CyberSecurity
Fileless AsyncRAT Campaign Targets German Users with Stealthy PowerShell Payload
A fileless AsyncRAT campaign, dubbed "Clickfix," targets German-speaking users, luring them into executing obfuscated PowerShell payloads via fake verification prompts.
⤷ Title: Water Curse: GitHub Supply Chain Attack Spreads Malware via Fake Tools, Targets Devs & Gamers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:22:02 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #cybersecurity #Developers #Gamers #github #malware #open_source #Red Team #social engineering #supply chain attack #threat actor #Trend Micro #Water Curse
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:22:02 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #cybersecurity #Developers #Gamers #github #malware #open_source #Red Team #social engineering #supply chain attack #threat actor #Trend Micro #Water Curse
Daily CyberSecurity
Water Curse: GitHub Supply Chain Attack Spreads Malware via Fake Tools, Targets Devs & Gamers
Water Curse is using GitHub to distribute malicious open-source projects, weaponizing 76 accounts with multi-stage malware targeting developers, red teamers, and gamers.
⤷ Title: Apache Tomcat Patches 4 Flaws: DoS, Privilege Bypass, & Installer Risks Addressed
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:19:36 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #apache Tomcat #CVE_2025_48976 #CVE_2025_48988 #CVE_2025_49124 #CVE_2025_49125 #Denial of Service #dos #Installer #java #Privilege Bypass #Vulnerability #web server
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:19:36 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #apache Tomcat #CVE_2025_48976 #CVE_2025_48988 #CVE_2025_49124 #CVE_2025_49125 #Denial of Service #dos #Installer #java #Privilege Bypass #Vulnerability #web server
Daily CyberSecurity
Apache Tomcat Patches 4 Flaws: DoS, Privilege Bypass, & Installer Risks Addressed
Apache Tomcat patched four vulnerabilities affecting versions 9.0, 10.1, and 11.0, ranging from DoS to privilege bypass. Update immediately
⤷ Title: Zero-Click to Root: CISA Flags Active Exploits in Apple iOS and TP-Link Routers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:16:47 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA #Command Injection #CVE_2023_33538 #CVE_2025_43200 #cybersecurity #iCloud Link #ios #KEV Catalog #rce #Remote Code Execution #spyware #TP_Link #Vulnerability #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:16:47 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA #Command Injection #CVE_2023_33538 #CVE_2025_43200 #cybersecurity #iCloud Link #ios #KEV Catalog #rce #Remote Code Execution #spyware #TP_Link #Vulnerability #zero_day
Daily CyberSecurity
Zero-Click to Root: CISA Flags Active Exploits in Apple iOS and TP-Link Routers
CISA adds two actively exploited zero-days to KEV: an iOS zero-click flaw used by spyware (CVE-2025-43200) and a command injection in TP-Link routers
⤷ Title: OneLogin AD Connector Flaw Exposes Credentials & Allows Account Impersonation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:16:04 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Account Impersonation #active directory #AD #AWS #cybersecurity #IAM #Identity and Access Management #OneLogin #S3 bucket #SpecterOps #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Jun 2025 00:16:04 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Account Impersonation #active directory #AD #AWS #cybersecurity #IAM #Identity and Access Management #OneLogin #S3 bucket #SpecterOps #Vulnerability
Daily CyberSecurity
OneLogin AD Connector Flaw Exposes Credentials & Allows Account Impersonation
A critical flaw in OneLogin's AD Connector exposed API keys, allowing attackers to impersonate users across organizations via unclaimed S3 buckets and forged JWT tokens.