⤷ Title: Protecting Business Data From Unauthorized Encryption Threats
════════════════════════
𐀪 Author: Owais Sultan
════════════════════════
ⴵ Time: Thu, 26 Jun 2025 07:51:39 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attack #Cybersecurity #Encryption
════════════════════════
𐀪 Author: Owais Sultan
════════════════════════
ⴵ Time: Thu, 26 Jun 2025 07:51:39 +0000
════════════════════════
⌗ Tags: #Security #Cyber Attack #Cybersecurity #Encryption
Hackread
Protecting Business Data From Unauthorized Encryption Threats
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: New WordPress Malware Hides on Checkout Pages and Imitates Cloudflare
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Wed, 25 Jun 2025 07:15:15 +0000
════════════════════════
⌗ Tags: #Security #Malware #Cyber Attack #Cybersecurity #Plugin #Scam #security #Wordfence #Wordpress
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Wed, 25 Jun 2025 07:15:15 +0000
════════════════════════
⌗ Tags: #Security #Malware #Cyber Attack #Cybersecurity #Plugin #Scam #security #Wordfence #Wordpress
Hackread
New WordPress Malware Hides on Checkout Pages and Imitates Cloudflare
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: SparkKitty Spyware on App Store and Play Store, Steals Photos for Crypto Data
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Tue, 24 Jun 2025 19:57:22 +0000
════════════════════════
⌗ Tags: #Security #Android #Malware #App Store #China #Crypto #Cybersecurity #iOS #Play Store #SparkKitty #Spyware
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Tue, 24 Jun 2025 19:57:22 +0000
════════════════════════
⌗ Tags: #Security #Android #Malware #App Store #China #Crypto #Cybersecurity #iOS #Play Store #SparkKitty #Spyware
Hackread
SparkKitty Spyware on App Store and Play Store, Steals Photos for Crypto Data
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: ZigStrike: New Zig-Based Shellcode Loader Revolutionizes EDR Evasion with Advanced Injection Techniques
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 28 Jun 2025 00:14:58 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Anti_Sandbox #cybersecurity #EDR Bypass #malware #Offensive Security #Payload Delivery #Process injection #shellcode loader #Zig Language #ZigStrike
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 28 Jun 2025 00:14:58 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Anti_Sandbox #cybersecurity #EDR Bypass #malware #Offensive Security #Payload Delivery #Process injection #shellcode loader #Zig Language #ZigStrike
Penetration Testing Tools
ZigStrike: New Zig-Based Shellcode Loader Revolutionizes EDR Evasion with Advanced Injection Techniques
ZigStrike, a new shellcode loader in Zig, offers advanced injection techniques and anti-sandbox features to bypass EDR, providing stealthy execution via local/remote thread and memory mapping.
⤷ Title: Loki: Node.js Command & Control for Script-Jacking Vulnerable Electron Applications
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:59:01 +0000
════════════════════════
⌗ Tags: #Open Source Tool #C2 #Loki #Node.js #Node.js C2
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:59:01 +0000
════════════════════════
⌗ Tags: #Open Source Tool #C2 #Loki #Node.js #Node.js C2
Penetration Testing Tools
Loki: Node.js Command & Control for Script-Jacking Vulnerable Electron Applications
Loki is a stage-1 command and control (C2) framework written in Node.js, built to script-jack vulnerable Electron apps MITRE ATT&CK T1218.015.
⤷ Title: CISA Warns: Critical AMI MegaRAC Firmware Flaw (CVE-2024-54085, CVSS 10.0) Actively Exploited for Server Takeover
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:48:40 +0000
════════════════════════
⌗ Tags: #Vulnerability #AMI MegaRAC #authentication bypass #Baseboard Management Controller #BMC #CISA #CVE_2024_54085 #cybersecurity #Exploited in Wild #firmware #RCE #remote code execution #vulnerability
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:48:40 +0000
════════════════════════
⌗ Tags: #Vulnerability #AMI MegaRAC #authentication bypass #Baseboard Management Controller #BMC #CISA #CVE_2024_54085 #cybersecurity #Exploited in Wild #firmware #RCE #remote code execution #vulnerability
Penetration Testing Tools
CISA Warns: Critical AMI MegaRAC Firmware Flaw (CVE-2024-54085, CVSS 10.0) Actively Exploited for Server Takeover
CISA adds critical AMI MegaRAC firmware flaw (CVE-2024-54085, CVSS 10.0) to KEV, confirming active exploitation. Attackers can bypass authentication to gain full server control.
⤷ Title: Windows 11 Retires Blue Screen of Death: New Black Crash Screen Focuses on Faster Diagnostics
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:45:33 +0000
════════════════════════
⌗ Tags: #Windows #Black Screen of Death #blue screen of death #BSOD #IT Administration #Microsoft #operating system #System Error #Tech News #UI Redesign #Windows 11
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:45:33 +0000
════════════════════════
⌗ Tags: #Windows #Black Screen of Death #blue screen of death #BSOD #IT Administration #Microsoft #operating system #System Error #Tech News #UI Redesign #Windows 11
Penetration Testing Tools
Windows 11 Retires Blue Screen of Death: New Black Crash Screen Focuses on Faster Diagnostics
Microsoft is replacing Windows' iconic Blue Screen of Death with a new black-and-white interface this summer, removing the QR code and emoticon for faster IT diagnosis.
⤷ Title: North Korean APT Launches Massive npm Supply Chain Attack: Typosquatting & Fake Jobs Steal Crypto from Devs
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:42:52 +0000
════════════════════════
⌗ Tags: #Malware #APT #BeaverTail #Crypto Theft #cybersecurity #developers #HexEval #Infostealer #InvisibleFerret #malware #North Korea #npm #Social Engineering #supply chain attack #Typosquatting
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:42:52 +0000
════════════════════════
⌗ Tags: #Malware #APT #BeaverTail #Crypto Theft #cybersecurity #developers #HexEval #Infostealer #InvisibleFerret #malware #North Korea #npm #Social Engineering #supply chain attack #Typosquatting
Penetration Testing Tools
North Korean APT Launches Massive npm Supply Chain Attack: Typosquatting & Fake Jobs Steal Crypto from Devs
North Korean APTs are using 35 typosquatted npm packages and fake job offers to spread HexEval, BeaverTail, and InvisibleFerret malware, stealing crypto and data from developers.
⤷ Title: EvilConwi Unmasked: Hackers Weaponize Signed ConnectWise ScreenConnect Installers for Malware Deployment
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:39:14 +0000
════════════════════════
⌗ Tags: #Malware #Authenticode Stuffing #ConnectWise ScreenConnect #cybersecurity #Digital Signature #EvilConwi #G DATA #malware #phishing #Remote Access #Social Engineering
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:39:14 +0000
════════════════════════
⌗ Tags: #Malware #Authenticode Stuffing #ConnectWise ScreenConnect #cybersecurity #Digital Signature #EvilConwi #G DATA #malware #phishing #Remote Access #Social Engineering
Penetration Testing Tools
EvilConwi Unmasked: Hackers Weaponize Signed ConnectWise ScreenConnect Installers for Malware Deployment
Hackers are weaponizing legitimately signed ConnectWise ScreenConnect installers by using Authenticode stuffing to deploy malware and fake updates, leveraging social engineering.
⤷ Title: “OneClik” APT Unmasked: China-Linked Campaign Abuses Microsoft ClickOnce & AWS Cloud to Target Energy Sector
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:36:07 +0000
════════════════════════
⌗ Tags: #Cybercriminals #APT #AWS #cloud security #Cyberespionage #cybersecurity #Energy Sector #Go Language #malware #Microsoft ClickOnce #Oil and Gas #OneClik #RunnerBeacon #Trellix
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:36:07 +0000
════════════════════════
⌗ Tags: #Cybercriminals #APT #AWS #cloud security #Cyberespionage #cybersecurity #Energy Sector #Go Language #malware #Microsoft ClickOnce #Oil and Gas #OneClik #RunnerBeacon #Trellix
Penetration Testing Tools
"OneClik" APT Unmasked: China-Linked Campaign Abuses Microsoft ClickOnce & AWS Cloud to Target Energy Sector
Trellix uncovers "OneClik," a sophisticated APT campaign abusing Microsoft ClickOnce and AWS cloud services to deploy Go-language backdoors, targeting energy, oil, and gas sectors.
⤷ Title: French Police Bust BreachForums Organizers: “ShinyHunters,” “IntelBroker” & Others Arrested in Major Cybercrime Crackdown
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:32:56 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BreachForums #cybercrime #Cybercrime Forum #cybersecurity #data breach #French Police #Hacker Arrests #IntelBroker #Law Enforcement #ShinyHunters
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:32:56 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BreachForums #cybercrime #Cybercrime Forum #cybersecurity #data breach #French Police #Hacker Arrests #IntelBroker #Law Enforcement #ShinyHunters
Penetration Testing Tools
French Police Bust BreachForums Organizers: "ShinyHunters," "IntelBroker" & Others Arrested in Major Cybercrime Crackdown
French police arrested key BreachForums organizers, including "ShinyHunters" and "IntelBroker," dismantling the major cybercriminal hub and linking them to high-impact data breaches.
⤷ Title: Urgent Citrix NetScaler Alert: Critical Memory Overflow Flaw (CVE-2025-6543, CVSS 9.2) Actively Exploited
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:21:55 +0000
════════════════════════
⌗ Tags: #Vulnerability #ADC #Citrix #CVE_2025_6543 #cybersecurity #Denial of Service #DoS #Exploited in Wild #Gateway #Memory Overflow #NetScaler #Security Patch #vulnerability
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:21:55 +0000
════════════════════════
⌗ Tags: #Vulnerability #ADC #Citrix #CVE_2025_6543 #cybersecurity #Denial of Service #DoS #Exploited in Wild #Gateway #Memory Overflow #NetScaler #Security Patch #vulnerability
Penetration Testing Tools
Urgent Citrix NetScaler Alert: Critical Memory Overflow Flaw (CVE-2025-6543, CVSS 9.2) Actively Exploited
Citrix warns of a critical memory overflow flaw (CVE-2025-6543, CVSS 9.2) in NetScaler ADC/Gateway, actively exploited for DoS. Update to patched versions immediately!
⤷ Title: Notorious Hacker “IntelBroker” (Kai West) Arrested & Charged in US: $25M Damages, Traced by Crypto
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:16:29 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Data Leak #BreachForums #Corporate Hacking #cybercrime #cybersecurity #data breach #FBI #Hacker Arrest #IntelBroker #Kai West #National Security #US DOJ
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:16:29 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Data Leak #BreachForums #Corporate Hacking #cybercrime #cybersecurity #data breach #FBI #Hacker Arrest #IntelBroker #Kai West #National Security #US DOJ
Penetration Testing Tools
Notorious Hacker "IntelBroker" (Kai West) Arrested & Charged in US: $25M Damages, Traced by Crypto
Notorious hacker "IntelBroker" (Kai West) is charged in the US for orchestrating cyberattacks causing $25M in damages. He was traced by the FBI via crypto transactions.
⤷ Title: SonicWall Warns: Trojanized NetExtender VPN Client Stealing Credentials in Active Campaign
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:12:47 +0000
════════════════════════
⌗ Tags: #Malware #Credential Theft #cybersecurity #Digital Signature #Fake Installer #malware #Microsoft Defender #NetExtender #SonicWall #trojan #VPN
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 27 Jun 2025 07:12:47 +0000
════════════════════════
⌗ Tags: #Malware #Credential Theft #cybersecurity #Digital Signature #Fake Installer #malware #Microsoft Defender #NetExtender #SonicWall #trojan #VPN
Penetration Testing Tools
SonicWall Warns: Trojanized NetExtender VPN Client Stealing Credentials in Active Campaign
SonicWall and Microsoft uncover a campaign distributing a trojanized NetExtender VPN client that steals credentials by bypassing certificate validation. Download only from official sources
⤷ Title: Hollowise: New Windows Tool Enables Stealthy Code Execution via Process Hollowing & PPID Spoofing
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 25 Jun 2025 04:20:57 +0000
════════════════════════
⌗ Tags: #Open Source Tool #code analysis #cybersecurity #Debuggers #Hollowise #Network Analysis #Offensive Security #PPID Spoofing #Process Hollowing #Stealth Execution #windows
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 25 Jun 2025 04:20:57 +0000
════════════════════════
⌗ Tags: #Open Source Tool #code analysis #cybersecurity #Debuggers #Hollowise #Network Analysis #Offensive Security #PPID Spoofing #Process Hollowing #Stealth Execution #windows
Penetration Testing Tools
Hollowise: New Windows Tool Enables Stealthy Code Execution via Process Hollowing & PPID Spoofing
Hollowise is a Windows tool enabling stealthy execution of debuggers and code/network analyzers by process hollowing suspended processes and spoofing their parent IDs.
⤷ Title: APT36 Unleashes Advanced Phishing Against Indian Defense Personnel: New Anti-Analysis Malware & NIC Impersonation
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 25 Jun 2025 04:17:35 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Anti_Analysis #APT36 #Cloudflare #Credential Theft #Cyberespionage #CYFIRMA #Defense #DLL Sideloading #India #Keylogging #malware #phishing #Transparent Tribe
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 25 Jun 2025 04:17:35 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Anti_Analysis #APT36 #Cloudflare #Credential Theft #Cyberespionage #CYFIRMA #Defense #DLL Sideloading #India #Keylogging #malware #phishing #Transparent Tribe
Penetration Testing Tools
APT36 Unleashes Advanced Phishing Against Indian Defense Personnel: New Anti-Analysis Malware & NIC Impersonation
APT36 is targeting Indian defense personnel with sophisticated phishing, using fake NIC documents and multi-layered malware to steal sensitive data and evade analysis.
⤷ Title: RapperBot Unleashed: Sophisticated Mirai Variant Targets DVRs, Launches HTTPS DDoS Attacks
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 25 Jun 2025 04:12:08 +0000
════════════════════════
⌗ Tags: #Malware #BOTNET #cyberattack #cybersecurity #DDoS #DVR #Encrypted DNS #hacking #HTTPS DDoS #IoT Security #Mirai #NICT CSRI #RapperBot
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 25 Jun 2025 04:12:08 +0000
════════════════════════
⌗ Tags: #Malware #BOTNET #cyberattack #cybersecurity #DDoS #DVR #Encrypted DNS #hacking #HTTPS DDoS #IoT Security #Mirai #NICT CSRI #RapperBot
Penetration Testing Tools
RapperBot Unleashed: Sophisticated Mirai Variant Targets DVRs, Launches HTTPS DDoS Attacks
RapperBot, an evolved Mirai variant, targets DVRs via brute-force and zero-days, launching sophisticated DDoS attacks with encrypted DNS and HTTPS-based traffic, as revealed by NICT CSRI.
⤷ Title: “Echo Chamber” Attack Uncovered: New Jailbreak Bypasses LLM Safeguards with Subtle Context Manipulation
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 25 Jun 2025 04:08:23 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI Ethics #AI Moderation #AI security #Context Poisoning #cybersecurity #Echo Chamber #Jailbreaking #Large Language Model #LLM #NeuralTrust #Prompt Engineering
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 25 Jun 2025 04:08:23 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI Ethics #AI Moderation #AI security #Context Poisoning #cybersecurity #Echo Chamber #Jailbreaking #Large Language Model #LLM #NeuralTrust #Prompt Engineering
Penetration Testing Tools
"Echo Chamber" Attack Uncovered: New Jailbreak Bypasses LLM Safeguards with Subtle Context Manipulation
NeuralTrust uncovers "Echo Chamber," a new LLM jailbreaking technique bypassing safeguards via subtle, multi-stage context manipulation to generate prohibited content. Over 90% success in tests.
⤷ Title: UK Retail Cyberattacks Cost Up to £440M: Cyber Monitoring Centre Unveils First Damage Assessment
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 25 Jun 2025 04:01:58 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CMC #Co_op #Cyber Monitoring Centre #Cyber Monitoring Matrix #cyberattack #cybersecurity #Economic Impact #Financial Loss #Marks & Spencer #Retail #UK
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 25 Jun 2025 04:01:58 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CMC #Co_op #Cyber Monitoring Centre #Cyber Monitoring Matrix #cyberattack #cybersecurity #Economic Impact #Financial Loss #Marks & Spencer #Retail #UK
Penetration Testing Tools
UK Retail Cyberattacks Cost Up to £440M: Cyber Monitoring Centre Unveils First Damage Assessment
The UK's Cyber Monitoring Centre reveals cyberattacks on retail giants like M&S and Co-op caused £270-£440M in damages, marking its first official incident assessment.
⤷ Title: Bypass OTP for Multiple Accounts without Risk Using Temporary Numbers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 28 Jun 2025 10:33:48 +0000
════════════════════════
⌗ Tags: #Technique
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 28 Jun 2025 10:33:48 +0000
════════════════════════
⌗ Tags: #Technique
Daily CyberSecurity
Bypass OTP for Multiple Accounts without Risk Using Temporary Numbers
⤷ Title: Odyssey Stealer: macOS Under Attack by ClickFix-Driven Infostealer
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 28 Jun 2025 00:20:30 +0000
════════════════════════
⌗ Tags: #Malware #AppleScript #Browser Data #ClickFix #cryptocurrency #cybersecurity #Cyfirma #Infostealer #Keychain #macOS #malware #Odyssey Stealer #passwords
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 28 Jun 2025 00:20:30 +0000
════════════════════════
⌗ Tags: #Malware #AppleScript #Browser Data #ClickFix #cryptocurrency #cybersecurity #Cyfirma #Infostealer #Keychain #macOS #malware #Odyssey Stealer #passwords
Daily CyberSecurity
Odyssey Stealer: macOS Under Attack by ClickFix-Driven Infostealer
CYFIRMA uncovers "Odyssey Stealer," a new macOS malware using fake App Store prompts & typosquatting to steal crypto wallets, passwords, and browser data from Western users.