⤷ Title: CitrixBleed 2: CVE-2025-5777 Joins CISA’s KEV Catalog Amid Active Exploitation Storm, PoC Available
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:13:28 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ADC #CISA KEV #Citrix #Citrix Bleed 2 #CVE_2025_5777 #cybersecurity #Exploited in Wild #Gateway #MFA Bypass #NetScaler #out_of_bounds read #Session Hijacking #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:13:28 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ADC #CISA KEV #Citrix #Citrix Bleed 2 #CVE_2025_5777 #cybersecurity #Exploited in Wild #Gateway #MFA Bypass #NetScaler #out_of_bounds read #Session Hijacking #Vulnerability
Daily CyberSecurity
CitrixBleed 2: CVE-2025-5777 Joins CISA’s KEV Catalog Amid Active Exploitation Storm, PoC Available
CISA adds critical CitrixBleed 2 (CVE-2025-5777, CVSS 9.2) to KEV, confirming active exploitation. Attackers are extracting session tokens to bypass MFA and hijack sessions on NetScaler ADC/Gateway
⤷ Title: Apache HTTP Server 2.4.64 Released: Patches 8 Vulnerabilities, Including HTTP Splitting, SSRF & DoS
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 01:47:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #apache #Apache HTTP Server #CVE_2024_42516 #CVE_2024_43204 #CVE_2024_43394 #CVE_2024_47252 #CVE_2025_23048 #CVE_2025_49630 #CVE_2025_49812 #CVE_2025_53020 #dos #HTTP Response Splitting #HTTPD #Log Injection #security patch #ssrf #tls #Vulnerability #web server
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 01:47:56 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #apache #Apache HTTP Server #CVE_2024_42516 #CVE_2024_43204 #CVE_2024_43394 #CVE_2024_47252 #CVE_2025_23048 #CVE_2025_49630 #CVE_2025_49812 #CVE_2025_53020 #dos #HTTP Response Splitting #HTTPD #Log Injection #security patch #ssrf #tls #Vulnerability #web server
Daily CyberSecurity
Apache HTTP Server 2.4.64 Released: Patches 8 Vulnerabilities, Including HTTP Splitting, SSRF & DoS
Apache HTTP Server 2.4.64 patches 8 vulnerabilities, including HTTP Response Splitting, SSRF, DoS, and TLS desync attacks. Upgrade immediately!
⤷ Title: Git Scanner : A Journey Through the Wild West of Exposed Git Repositories
════════════════════════
𐀪 Author: jpe1e
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:19:17 GMT
════════════════════════
⌗ Tags: #bug_bounty #github #secrets
════════════════════════
𐀪 Author: jpe1e
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:19:17 GMT
════════════════════════
⌗ Tags: #bug_bounty #github #secrets
Medium
Git Scanner : A Journey Through the Wild West of Exposed Git Repositories
The Harsh Reality
⤷ Title: ️ Building an Incident Response Plan for DDoS Attacks
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:05:02 GMT
════════════════════════
⌗ Tags: #incident_response #ddos #hacking #bug_bounty #cybersecurity
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:05:02 GMT
════════════════════════
⌗ Tags: #incident_response #ddos #hacking #bug_bounty #cybersecurity
Medium
🛡️ Building an Incident Response Plan for DDoS Attacks
Distributed Denial of Service (DDoS) attacks can disrupt services, damage reputation, and cause financial loss. A strong Incident Response…
⤷ Title: From Informative To Medium (6.5)
════════════════════════
𐀪 Author: Muhammad Wageh
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 01:46:59 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #vulnerability #bug_bounty_tips #cybersecurity #bug_bounty
════════════════════════
𐀪 Author: Muhammad Wageh
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 01:46:59 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #vulnerability #bug_bounty_tips #cybersecurity #bug_bounty
Medium
From Informative To Medium (6.5)
## First Learn The App
❤2
⤷ Title: The Email I Wasn’t Supposed to Get — A Cybersecurity Awareness Lesson
════════════════════════
𐀪 Author: DarKVoicE
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 00:59:56 GMT
════════════════════════
⌗ Tags: #cyber_security_training #cyber_security_awareness #infosec #cybersecurity #ethical_hacking
════════════════════════
𐀪 Author: DarKVoicE
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 00:59:56 GMT
════════════════════════
⌗ Tags: #cyber_security_training #cyber_security_awareness #infosec #cybersecurity #ethical_hacking
Medium
The Email I Wasn’t Supposed to Get — A Cybersecurity Awareness Lesson
When Confidentiality breaks, So Does Trust.
⤷ Title: OpenSSH RCE Vulnerability (CVE-2024–6387): What You Need to Know
════════════════════════
𐀪 Author: AerieWhole123
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:48:05 GMT
════════════════════════
⌗ Tags: #cybersecurity #rce #vulnerability
════════════════════════
𐀪 Author: AerieWhole123
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:48:05 GMT
════════════════════════
⌗ Tags: #cybersecurity #rce #vulnerability
Medium
OpenSSH RCE Vulnerability (CVE-2024–6387): What You Need to Know
> About Author Hi, I’m Sharon, a product manager at Chaitin Tech. We build SafeLine, an open-source Web Application Firewall built for…
⤷ Title: FBI Sounds Alarm As Airline Cyber Threats Escalate
════════════════════════
𐀪 Author: Darshan
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:37:00 GMT
════════════════════════
⌗ Tags: #aviation #threat_intelligence #tech #cybersecurity #technology
════════════════════════
𐀪 Author: Darshan
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:37:00 GMT
════════════════════════
⌗ Tags: #aviation #threat_intelligence #tech #cybersecurity #technology
Medium
FBI Sounds Alarm As Airline Cyber Threats Escalate
The FBI has issued a high-priority alert warning that a notorious hacker group known as Scattered Spider is actively targeting the airline industry. Previously known for high-profile cyberattacks on…
⤷ Title: What is the Salesforce API Access Control feature and why is it very good for security?
════════════════════════
𐀪 Author: Doug Merrett
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:14:23 GMT
════════════════════════
⌗ Tags: #cybersecurity #salesforce_security #salesforce_api #block_salesforce_api
════════════════════════
𐀪 Author: Doug Merrett
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:14:23 GMT
════════════════════════
⌗ Tags: #cybersecurity #salesforce_security #salesforce_api #block_salesforce_api
Medium
What is the Salesforce API Access Control feature and why is it very good for security?
TL;DR; Get the API Access Control feature enabled in your org, Install all your Connected apps, change their app policies to Admin approved users are pre-authorized and add an “allow access”…
⤷ Title: OSCP Prep: BASHED
════════════════════════
𐀪 Author: Dino
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:10:15 GMT
════════════════════════
⌗ Tags: #ctf_writeup #cybersecurity
════════════════════════
𐀪 Author: Dino
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:10:15 GMT
════════════════════════
⌗ Tags: #ctf_writeup #cybersecurity
Medium
OSCP Prep: BASHED
Enumeration
- Nmap to identify port 80 is the only open
- Feroxbuster to find the /dev/phpbash.php
- Nmap to identify port 80 is the only open
- Feroxbuster to find the /dev/phpbash.php
⤷ Title: Strategic Paralysis by Design: Part IV — The Human Firewall is Broken — Cyber Workforce Gaps as a…
════════════════════════
𐀪 Author: Chris Clark
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:09:26 GMT
════════════════════════
⌗ Tags: #national_security #cyber #cyber_workforce #cyber_security_awareness #cybersecurity
════════════════════════
𐀪 Author: Chris Clark
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:09:26 GMT
════════════════════════
⌗ Tags: #national_security #cyber #cyber_workforce #cyber_security_awareness #cybersecurity
Medium
Strategic Paralysis by Design: Part IV — The Human Firewall is Broken — Cyber Workforce Gaps as a…
Despite escalating cyber threats, the United States remains critically under-resourced in its cyber workforce. This is a growing national…
⤷ Title: Os maníacos do IOC atacam novamente.
════════════════════════
𐀪 Author: Thiago
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:01:09 GMT
════════════════════════
⌗ Tags: #cybersecurity #cti #ioc #cyber_threat_intelligence #ransomware
════════════════════════
𐀪 Author: Thiago
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:01:09 GMT
════════════════════════
⌗ Tags: #cybersecurity #cti #ioc #cyber_threat_intelligence #ransomware
Medium
Os maníacos do IOC atacam novamente.
No dia 2 de Julho de 2025 logo após publicar o artigo "Plump Spider: Análise Técnica e Estratégica de um Grupo de Ameaça Avançada Contra o…
⤷ Title: A Shadow from the Stars: The Space Force, Reagan’s Vision, McKinnon’s Revelations, Corso’s Secrets…
════════════════════════
𐀪 Author: Oliviero Mannucci
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 01:56:40 GMT
════════════════════════
⌗ Tags: #cybersecurity #science #space #technology #data_science
════════════════════════
𐀪 Author: Oliviero Mannucci
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 01:56:40 GMT
════════════════════════
⌗ Tags: #cybersecurity #science #space #technology #data_science
Medium
A Shadow from the Stars: The Space Force, Reagan’s Vision, McKinnon’s Revelations, Corso’s Secrets…
On September 21, 1987, President Ronald Reagan stood before the United Nations General Assembly and delivered words that still echo with…
⤷ Title: Viral Posts: The Good and the Bad
════════════════════════
𐀪 Author: Savvy Cyber Kids
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 01:53:12 GMT
════════════════════════
⌗ Tags: #cybersecurity #children #parenting #viral #privacy
════════════════════════
𐀪 Author: Savvy Cyber Kids
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 01:53:12 GMT
════════════════════════
⌗ Tags: #cybersecurity #children #parenting #viral #privacy
Medium
Viral Posts: The Good and the Bad
By Jasmine London-Thomas
⤷ Title: What is ChatGPT and What Are Its Effects on Privacy?
════════════════════════
𐀪 Author: Savvy Cyber Kids
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 01:52:53 GMT
════════════════════════
⌗ Tags: #chatgpt #cybersecurity #children #parenting #privacy
════════════════════════
𐀪 Author: Savvy Cyber Kids
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 01:52:53 GMT
════════════════════════
⌗ Tags: #chatgpt #cybersecurity #children #parenting #privacy
Medium
What is ChatGPT and What Are Its Effects on Privacy?
By Megan Farnam
⤷ Title: Evil-GPT v2: Write-Up
════════════════════════
𐀪 Author: A Learner
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 01:46:46 GMT
════════════════════════
⌗ Tags: #writeup #ai #penetration_testing #llm #tryhackme
════════════════════════
𐀪 Author: A Learner
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 01:46:46 GMT
════════════════════════
⌗ Tags: #writeup #ai #penetration_testing #llm #tryhackme
Medium
Evil-GPT v2: Write-Up
Sequel to “Evil-GPT” TryHackMe room, which focuses on how exposure of Ollama API endpoints can be abused for system prompt disclosure.
⤷ Title: PortSwigger Lab: Cross-site WebSocket hijacking writeup (Websockets)
════════════════════════
𐀪 Author: awes0meness
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 01:03:21 GMT
════════════════════════
⌗ Tags: #cybersecurity #burpsuite #web_app_security #penetration_testing #portswigger
════════════════════════
𐀪 Author: awes0meness
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 01:03:21 GMT
════════════════════════
⌗ Tags: #cybersecurity #burpsuite #web_app_security #penetration_testing #portswigger
Medium
PortSwigger Lab: Cross-site WebSocket hijacking writeup (Websockets)
This online shop has a live chat feature implemented using WebSockets.
⤷ Title: Metya官方推特中英文双语账号均获“双金V认证”
════════════════════════
𐀪 Author: METYA丨DatingFI
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:43:59 GMT
════════════════════════
⌗ Tags: #推特 #datingfi #xs #metya
════════════════════════
𐀪 Author: METYA丨DatingFI
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 02:43:59 GMT
════════════════════════
⌗ Tags: #推特 #datingfi #xs #metya
Medium
Metya官方推特中英文双语账号均获“双金V认证”
“双金V认证”是推特官方账号的最高级别认证。
⤷ Title: Call of Duty: WWII Pulled from Microsoft Store Due to Critical RCE Hack
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 03:33:07 +0000
════════════════════════
⌗ Tags: #Vulnerability #Activision #Call of Duty WWII #cybersecurity #Game Pass #gaming #hacking #Microsoft Store #RCE #remote code execution #vulnerability
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 03:33:07 +0000
════════════════════════
⌗ Tags: #Vulnerability #Activision #Call of Duty WWII #cybersecurity #Game Pass #gaming #hacking #Microsoft Store #RCE #remote code execution #vulnerability
Penetration Testing Tools
Call of Duty: WWII Pulled from Microsoft Store Due to Critical RCE Hack
Activision has pulled Call of Duty: WWII from the Microsoft Store/Game Pass after hackers exploited a critical RCE flaw, compromising players' PCs.
⤷ Title: $500,000 Crypto Stolen: Fake AI Extension Targets Blockchain Devs via Open VSX
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 03:30:08 +0000
════════════════════════
⌗ Tags: #Cybercriminals #blockchain #cryptocurrency #Cursor AI #cybersecurity #Infostealer #kaspersky #malware #Open VSX #Solidity #supply chain attack #VS Code
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 03:30:08 +0000
════════════════════════
⌗ Tags: #Cybercriminals #blockchain #cryptocurrency #Cursor AI #cybersecurity #Infostealer #kaspersky #malware #Open VSX #Solidity #supply chain attack #VS Code
Penetration Testing Tools
$500,000 Crypto Stolen: Fake AI Extension Targets Blockchain Devs via Open VSX
A Russian blockchain developer lost $500,000 to a malicious VS Code extension disguised as a Solidity tool on Open VSX, highlighting supply chain risks for devs.
⤷ Title: AMD Discloses Vulnerabilities: New Processor Flaws Leak Sensitive Data via Speculative Side Channels
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 03:28:19 +0000
════════════════════════
⌗ Tags: #Vulnerability #AMD #CVE #cybersecurity #information leakage #L1D cache #processors #side_channel attack #speculative execution #Transient Scheduler Attacks #TSA #UMIP #vulnerability
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 11 Jul 2025 03:28:19 +0000
════════════════════════
⌗ Tags: #Vulnerability #AMD #CVE #cybersecurity #information leakage #L1D cache #processors #side_channel attack #speculative execution #Transient Scheduler Attacks #TSA #UMIP #vulnerability
Penetration Testing Tools
AMD Discloses Vulnerabilities: New Processor Flaws Leak Sensitive Data via Speculative Side Channels
AMD unveils new "Transient Scheduler Attacks" (TSA) affecting a wide range of CPUs. These speculative side-channel flaws can leak sensitive information across privilege boundaries.