⤷ Title: MS Sentinel: Introduction
════════════════════════
𐀪 Author: Jawstar
════════════════════════
ⴵ Time: Mon, 07 Jul 2025 22:09:48 GMT
════════════════════════
⌗ Tags: #linux #penetration_testing #cybersecurity #microsoft #soc
════════════════════════
𐀪 Author: Jawstar
════════════════════════
ⴵ Time: Mon, 07 Jul 2025 22:09:48 GMT
════════════════════════
⌗ Tags: #linux #penetration_testing #cybersecurity #microsoft #soc
Medium
MS Sentinel: Introduction
What is Microsoft Sentinel and how does it fit into the role of a Security Operations Analyst?
⤷ Title: What Is a VPN and Do You Really Need One?
════════════════════════
𐀪 Author: Timonéofearth
════════════════════════
ⴵ Time: Mon, 07 Jul 2025 22:03:10 GMT
════════════════════════
⌗ Tags: #tech #vpn #cybersecurity #digital_privacy #online_privacy
════════════════════════
𐀪 Author: Timonéofearth
════════════════════════
ⴵ Time: Mon, 07 Jul 2025 22:03:10 GMT
════════════════════════
⌗ Tags: #tech #vpn #cybersecurity #digital_privacy #online_privacy
Medium
What Is a VPN and Do You Really Need One?
Discover what a VPN is, how it works, and whether you actually need one in 2025.
⤷ Title: Think Your SOC Is Smart? It Might Be Running on Outdated AI
════════════════════════
𐀪 Author: Cyber-AppSec
════════════════════════
ⴵ Time: Mon, 07 Jul 2025 21:53:01 GMT
════════════════════════
⌗ Tags: #ai #cybersecurity #soc #compliance #information_security
════════════════════════
𐀪 Author: Cyber-AppSec
════════════════════════
ⴵ Time: Mon, 07 Jul 2025 21:53:01 GMT
════════════════════════
⌗ Tags: #ai #cybersecurity #soc #compliance #information_security
Medium
Think Your SOC Is Smart? It Might Be Running on Outdated AI
If you’ve been shopping for AI-powered SOC platforms lately, you’re probably hearing the same promises: “Cut alert fatigue,” “Boost…
⤷ Title: The Four Quadrants of AI: Why Security Will Define the Winners of the Agentic Era
════════════════════════
𐀪 Author: Jaz Lin
════════════════════════
ⴵ Time: Mon, 07 Jul 2025 21:25:10 GMT
════════════════════════
⌗ Tags: #cybersecurity #agentic_sec #agentic_security #agentic_ai #agentic
════════════════════════
𐀪 Author: Jaz Lin
════════════════════════
ⴵ Time: Mon, 07 Jul 2025 21:25:10 GMT
════════════════════════
⌗ Tags: #cybersecurity #agentic_sec #agentic_security #agentic_ai #agentic
Medium
The Four Quadrants of AI: Why Security Will Define the Winners of the Agentic Era
From billboards to boardroom decisions, AI is everywhere — but without governance and guardrails, most initiatives wouldn’t be able to…
⤷ Title: My Hacker Copilot Runs Ops with Me
════════════════════════
𐀪 Author: Five Insights
════════════════════════
ⴵ Time: Mon, 07 Jul 2025 21:23:51 GMT
════════════════════════
⌗ Tags: #ai_tools #technology #security #offensive_security #cybersecurity
════════════════════════
𐀪 Author: Five Insights
════════════════════════
ⴵ Time: Mon, 07 Jul 2025 21:23:51 GMT
════════════════════════
⌗ Tags: #ai_tools #technology #security #offensive_security #cybersecurity
Medium
My Hacker Copilot Runs Ops with Me
Why Red Teamers Still Struggle with Tactical Decision-Making — and What Needs to Change Before AI Can Actually Help.
⤷ Title: The CTI Dispatch #03: Weekly Cyber Threat Intel - Ivanti APTs, Ransomware, Supply Chain Attacks….
════════════════════════
𐀪 Author: Uddip Ranjan Das
════════════════════════
ⴵ Time: Mon, 07 Jul 2025 21:11:25 GMT
════════════════════════
⌗ Tags: #cybersecurity #threat_intelligence #security #ransomware #malware
════════════════════════
𐀪 Author: Uddip Ranjan Das
════════════════════════
ⴵ Time: Mon, 07 Jul 2025 21:11:25 GMT
════════════════════════
⌗ Tags: #cybersecurity #threat_intelligence #security #ransomware #malware
Medium
The CTI Dispatch
The CTI Dispatch is a weekly threat intelligence summary that highlights critical events, attacker behavior, and defender takeaways.
⤷ Title: Nmap Post Port Scans — TryHackMe
════════════════════════
𐀪 Author: sercan timocin
════════════════════════
ⴵ Time: Mon, 07 Jul 2025 21:07:53 GMT
════════════════════════
⌗ Tags: #tryhackme #network_security #security #penetration_testing #nmap
════════════════════════
𐀪 Author: sercan timocin
════════════════════════
ⴵ Time: Mon, 07 Jul 2025 21:07:53 GMT
════════════════════════
⌗ Tags: #tryhackme #network_security #security #penetration_testing #nmap
Medium
Nmap Post Port Scans — TryHackMe
Task 1: Introduction
⤷ Title: Nimhawk: Advanced Nim-Based C2 Framework Revolutionizes Red Team Operations
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:36:18 +0000
════════════════════════
⌗ Tags: #Open Source Tool #C2 #Command and Control #cybersecurity #Implant #malware #Nim Language #Nimhawk #NimPlant #Offensive Security #open source #Red Team
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:36:18 +0000
════════════════════════
⌗ Tags: #Open Source Tool #C2 #Command and Control #cybersecurity #Implant #malware #Nim Language #Nimhawk #NimPlant #Offensive Security #open source #Red Team
Penetration Testing Tools
Nimhawk: Advanced Nim-Based C2 Framework Revolutionizes Red Team Operations
Nimhawk, an advanced Nim-based C2 framework built on NimPlant, offers modularity, enhanced evasion, a new GUI, and robust features for red team operations.
⤷ Title: NetSupport RAT Returns: Weaponized via WordPress & “ClickFix” for Remote Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:44:44 +0000
════════════════════════
⌗ Tags: #Malware #ClickFix #Cybereason #cybersecurity #malware #NetSupport Manager #phishing #rat #Remote Access Trojan #social engineering #wordpress
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:44:44 +0000
════════════════════════
⌗ Tags: #Malware #ClickFix #Cybereason #cybersecurity #malware #NetSupport Manager #phishing #rat #Remote Access Trojan #social engineering #wordpress
Daily CyberSecurity
NetSupport RAT Returns: Weaponized via WordPress & "ClickFix" for Remote Access
Cybereason exposes a deceptive malware campaign using compromised WordPress sites and the "ClickFix" technique to deliver weaponized NetSupport Manager RAT clients for remote access.
⤷ Title: New BERT Ransomware Unleashed: Multi-Threaded Attacks Hit Windows, Linux & ESXi with REvil Links
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:41:45 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BERT #cybersecurity #ESXi #Linux #powershell #ransomware #REvil #threat actor #Trend Micro #vmware #Water Pombero #windows
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:41:45 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BERT #cybersecurity #ESXi #Linux #powershell #ransomware #REvil #threat actor #Trend Micro #vmware #Water Pombero #windows
Daily CyberSecurity
New BERT Ransomware Unleashed: Multi-Threaded Attacks Hit Windows, Linux & ESXi with REvil Links
Trend Micro uncovers BERT ransomware (Water Pombero) deploying multi-threaded variants against Windows, Linux, and ESXi systems, showing code similarities to REvil's Linux variant.
⤷ Title: RedLine Stealer Unleashed: Inno Setup Installers Abused for Stealthy Data Theft & Cryptowallet Draining
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:38:47 +0000
════════════════════════
⌗ Tags: #Malware #browser credentials #crypto wallets #Cryptojacking #cybersecurity #Data Theft #HijackLoader #Inno Setup #living_off_the_land #malware #Monero #Pascal Scripting #powershell #Redline stealer #scheduled tasks #Splunk
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:38:47 +0000
════════════════════════
⌗ Tags: #Malware #browser credentials #crypto wallets #Cryptojacking #cybersecurity #Data Theft #HijackLoader #Inno Setup #living_off_the_land #malware #Monero #Pascal Scripting #powershell #Redline stealer #scheduled tasks #Splunk
Daily CyberSecurity
RedLine Stealer Unleashed: Inno Setup Installers Abused for Stealthy Data Theft & Cryptowallet Draining
Splunk exposes a campaign weaponizing Inno Setup installers to deploy RedLine Stealer, using obfuscated Pascal scripts and HijackLoader to steal browser/crypto data.
⤷ Title: Critical Frauscher Flaws (CVE-2025-3626 CVSS 9.1, CVE-2025-3705 CVSS 6.8): OS Command Injection Threatens Railway Systems
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:31:51 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CERT@VDE #cybersecurity #FDS_SNMP101 #FDS101 #FDS102 #Frauscher #ICS #industrial control systems #os command injection #Railway #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:31:51 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CERT@VDE #cybersecurity #FDS_SNMP101 #FDS101 #FDS102 #Frauscher #ICS #industrial control systems #os command injection #Railway #Vulnerability
Daily CyberSecurity
Critical Frauscher Flaws (CVE-2025-3626 CVSS 9.1, CVE-2025-3705 CVSS 6.8): OS Command Injection Threatens Railway Systems
CERT@VDE warns of critical OS command injection flaws (CVE-2025-3626, CVE-2025-3705) in Frauscher railway systems, allowing remote admin compromise or physical attack via USB.
⤷ Title: NordDragonScan: New Infostealer Hits Via Weaponized HTAs, Stealing Browser Data & Documents!
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:28:41 +0000
════════════════════════
⌗ Tags: #Malware #Browser Theft #cybersecurity #data exfiltration #FortiGuard Labs #HTA #Infostealer #LNK Shortcut #malware #NordDragonScan #reconnaissance #russia #Ukraine
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:28:41 +0000
════════════════════════
⌗ Tags: #Malware #Browser Theft #cybersecurity #data exfiltration #FortiGuard Labs #HTA #Infostealer #LNK Shortcut #malware #NordDragonScan #reconnaissance #russia #Ukraine
Daily CyberSecurity
NordDragonScan: New Infostealer Hits Via Weaponized HTAs, Stealing Browser Data & Documents!
FortiGuard Labs exposes NordDragonScan, a new infostealer using weaponized HTA scripts in Ukrainian-themed phishing. It performs recon, steals browser profiles, and exfiltrates documents.
⤷ Title: Phishing Alert: Fake WeTransfer & HunCERT Pages Hosted on AWS S3 & Cloudflare Turnstile Stealing Credentials
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:22:42 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AWS S3 #Cloudflare Turnstile #Credential Theft #cybersecurity #Cyble #File Sharing Scam #HunCERT #Hungary #LogoKit #phishing #WeTransfer
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:22:42 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AWS S3 #Cloudflare Turnstile #Credential Theft #cybersecurity #Cyble #File Sharing Scam #HunCERT #Hungary #LogoKit #phishing #WeTransfer
Daily CyberSecurity
hishing Alert: Fake WeTransfer & HunCERT Pages Hosted on AWS S3 & Cloudflare Turnstile Stealing Credentials
A phishing campaign impersonates HunCERT & WeTransfer, using LogoKit on AWS S3 with Cloudflare Turnstile to steal credentials. The active domain has zero VirusTotal detections.
⤷ Title: XMRig Cryptojacking Surges: New Campaign Uses LOLBAS, Steals Monero Undetected
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:19:57 +0000
════════════════════════
⌗ Tags: #Malware #Cryptojacking #cybersecurity #G DATA #living_off_the_land #LOLBAS #malware #Monero #powershell #scheduled tasks #Threat Report #XMRig
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:19:57 +0000
════════════════════════
⌗ Tags: #Malware #Cryptojacking #cybersecurity #G DATA #living_off_the_land #LOLBAS #malware #Monero #powershell #scheduled tasks #Threat Report #XMRig
Daily CyberSecurity
XMRig Cryptojacking Surges: New Campaign Uses LOLBAS, Steals Monero Undetected
XMRig cryptojacking is surging, leveraging LOLBAS techniques, PowerShell, and Scheduled Tasks to mine Monero undetected, with a 45% rally in XMR price driving the attacks.
⤷ Title: Critical Vulnerabilities Found in Nimesa Backup and Recovery Software
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:13:18 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AWS #CVE_2025_48501 #CVE_2025_53473 #cybersecurity #Disaster Recovery #JPCERT/CC #Nimesa Backup #rce #Remote Code Execution #Server_Side Request Forgery #ssrf #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:13:18 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AWS #CVE_2025_48501 #CVE_2025_53473 #cybersecurity #Disaster Recovery #JPCERT/CC #Nimesa Backup #rce #Remote Code Execution #Server_Side Request Forgery #ssrf #Vulnerability
Daily CyberSecurity
Critical Vulnerabilities Found in Nimesa Backup and Recovery Software
JPCERT/CC warns of critical flaws in Nimesa Backup and Recovery (CVE-2025-48501, CVSS 9.8 RCE; CVE-2025-53473 SSRF). Unsupported versions pose severe risk to AWS data.
⤷ Title: XwormRAT Resurfaces with Steganography-Powered Attack Chain
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:08:48 +0000
════════════════════════
⌗ Tags: #Malware #.NET Loader #ASEC #cybersecurity #Image Hiding #malware #phishing #powershell #rat #Remote Access Trojan #steganography #XwormRAT
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:08:48 +0000
════════════════════════
⌗ Tags: #Malware #.NET Loader #ASEC #cybersecurity #Image Hiding #malware #phishing #powershell #rat #Remote Access Trojan #steganography #XwormRAT
Daily CyberSecurity
XwormRAT Resurfaces with Steganography-Powered Attack Chain
ASEC uncovers XwormRAT delivered via phishing emails using steganography, hiding sophisticated .NET malware within JPG images for stealthy execution and full system control.
⤷ Title: CVE-2025-41672 (CVSS 10): Critical JWT Certificate Flaw in WAGO Device Sphere Allows Full Remote Takeover
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:00:09 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVSS 10.0 #cybersecurity #Device Sphere #ICS #industrial automation #JWT #Remote Control #SCADA #Shared Credentials #Vulnerability #WAGO
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:00:09 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVSS 10.0 #cybersecurity #Device Sphere #ICS #industrial automation #JWT #Remote Control #SCADA #Shared Credentials #Vulnerability #WAGO
Daily CyberSecurity
CVE-2025-41672 (CVSS 10): Critical JWT Certificate Flaw in WAGO Device Sphere Allows Full Remote Takeover
A critical flaw (CVE-2025-41672, CVSS 10.0) in WAGO Device Sphere allows unauthenticated attackers full admin control via shared default JWT certificates. Update to v1.0.1 immediately!
⤷ Title: The Great Wall of the Bug Bounty Beginner: How to Climb It and Reach the Top
════════════════════════
𐀪 Author: 0m3g4___
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:54:20 GMT
════════════════════════
⌗ Tags: #pentesting #bug_bounty #cybersecurity
════════════════════════
𐀪 Author: 0m3g4___
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:54:20 GMT
════════════════════════
⌗ Tags: #pentesting #bug_bounty #cybersecurity
Medium
The Great Wall of the Bug Bounty Beginner: How to Climb It and Reach the Top
Hey there, digital explorer! 🚀
⤷ Title: Guía Completa de Broken Access Control: Hacking, Bug Bounty y Prevención en Aplicaciones Web
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:02:56 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_development #bug_bounty #ethical_hacking #penetration_testing
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Tue, 08 Jul 2025 00:02:56 GMT
════════════════════════
⌗ Tags: #cybersecurity #web_development #bug_bounty #ethical_hacking #penetration_testing
Medium
Guía Completa de Broken Access Control: Hacking, Bug Bounty y Prevención en Aplicaciones Web
Domina el Broken Access Control: Hacking, Bug Bounty y Prevención. Descubre cómo se explotan las fallas de acceso y cómo proteger tus sistem
⤷ Title: 0$ Bug Bounty
════════════════════════
𐀪 Author: Sevada797
════════════════════════
ⴵ Time: Mon, 07 Jul 2025 23:52:31 GMT
════════════════════════
⌗ Tags: #bug_bounty #bugs #mail_injection #hacking #cybersecurity
════════════════════════
𐀪 Author: Sevada797
════════════════════════
ⴵ Time: Mon, 07 Jul 2025 23:52:31 GMT
════════════════════════
⌗ Tags: #bug_bounty #bugs #mail_injection #hacking #cybersecurity
Medium
0$ Bug Bounty
Hey there, how’s it going :D (you can reply in comments).