⤷ Title: Bluetooth “Heartbleed” and DoS Flaws Found in Xiaomi Redmi Buds, No Patch
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:19:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Audio Security #Bluetooth security #CERT/CC #CVE_2025_13328 #CVE_2025_13834 #Denial of Service #Heartbleed #Privacy Leak #Redmi Buds #Xiaomi
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:19:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Audio Security #Bluetooth security #CERT/CC #CVE_2025_13328 #CVE_2025_13834 #Denial of Service #Heartbleed #Privacy Leak #Redmi Buds #Xiaomi
Daily CyberSecurity
Bluetooth “Heartbleed” and DoS Flaws Found in Xiaomi Redmi Buds, No Patch
A pair of critical vulnerabilities has been discovered in Xiaomi’s popular Redmi Buds series, exposing users to privacy leaks and persistent denial-of-service (DoS) attacks. According to a new vul…
⤷ Title: Grid Sabotage: “Static Tundra” Hits Poland’s Energy Sector with DynoWiper
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 03 Feb 2026 03:47:22 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Berserk Bear #CERT Polska #Critical Infrastructure #Cyber Sabotage #DynoWiper #energy sector #LazyWiper #Mikronika #Moxa NPort #OT Security #Poland #Static Tundra
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 03 Feb 2026 03:47:22 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Berserk Bear #CERT Polska #Critical Infrastructure #Cyber Sabotage #DynoWiper #energy sector #LazyWiper #Mikronika #Moxa NPort #OT Security #Poland #Static Tundra
Daily CyberSecurity
Grid Sabotage: "Static Tundra" Hits Poland's Energy Sector with DynoWiper
CERT Polska reveals destructive attacks on energy infrastructure. "Static Tundra" used DynoWiper and LazyWiper to brick OT devices. Read more.
⤷ Title: Beyond Blackouts: The ELECTRUM Strike on Poland and the New Era of “Digital Arson”
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 03 Feb 2026 04:55:47 +0000
════════════════════════
⌗ Tags: #Cyber Security #CERT Polska #Distributed Energy Resources (DER) #Dragos #DynoWiper #ELECTRUM #grid stability #Industrial Control Systems #Operational Technology (OT) #Polish power grid #Sandworm #Tech News
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 03 Feb 2026 04:55:47 +0000
════════════════════════
⌗ Tags: #Cyber Security #CERT Polska #Distributed Energy Resources (DER) #Dragos #DynoWiper #ELECTRUM #grid stability #Industrial Control Systems #Operational Technology (OT) #Polish power grid #Sandworm #Tech News
Penetration Testing Tools
Beyond Blackouts: The ELECTRUM Strike on Poland and the New Era of "Digital Arson"
A cyberattack that initially garnered scant attention in Poland has since emerged as a pivotal signal for the
⤷ Title: Three-Day Turnaround: How APT28 Rapidly Weaponized the Latest Microsoft Office Zero-Day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:04:24 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability #APT28 #CERT_UA #Covenant Grunt #CVE_2026_21509 #Microsoft Office #MiniDoor #Operation Neusploit #PixyNetLoader #RTF exploit #Steganography #Ukraine #Zscaler
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Feb 2026 04:04:24 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability #APT28 #CERT_UA #Covenant Grunt #CVE_2026_21509 #Microsoft Office #MiniDoor #Operation Neusploit #PixyNetLoader #RTF exploit #Steganography #Ukraine #Zscaler
Penetration Testing Tools
Three-Day Turnaround: How APT28 Rapidly Weaponized the Latest Microsoft Office Zero-Day
The sophisticated threat actor APT28 has commenced the exploitation of a nascent Microsoft Office vulnerability almost immediately following
⤷ Title: Factory Flaw: Critical WAGO Switch Vulnerabilities (CVSS 9.8) Allow Remote Takeover
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Feb 2026 00:27:08 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #buffer overflow #CERT@VDE #CVE_2026_22904 #CVE_2026_22906 #Hardcoded Encryption Key #ICS security #Industrial Managed Switch #OT Security #SCADA #WAGO 852 Series
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Feb 2026 00:27:08 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #buffer overflow #CERT@VDE #CVE_2026_22904 #CVE_2026_22906 #Hardcoded Encryption Key #ICS security #Industrial Managed Switch #OT Security #SCADA #WAGO 852 Series
Daily CyberSecurity
Factory Flaw: Critical WAGO Switch Vulnerabilities (CVSS 9.8) Allow Remote Takeover
Critical flaws in WAGO 852 switches (CVSS 9.8) allow remote takeover via hardcoded keys & buffer overflows. Update firmware 2.64 immediately.
⤷ Title: The CAPTCHA Trap: How a Fake “ClickFix” Prompt Unleashed Latrodectus & Supper Malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 23 Feb 2026 00:43:04 +0000
════════════════════════
⌗ Tags: #Malware #CERT Polska #ClickFix #Cyber Security #DLL side_loading #fake CAPTCHA #infosec #Latrodectus #Malware Analysis #phishing #Supper Malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 23 Feb 2026 00:43:04 +0000
════════════════════════
⌗ Tags: #Malware #CERT Polska #ClickFix #Cyber Security #DLL side_loading #fake CAPTCHA #infosec #Latrodectus #Malware Analysis #phishing #Supper Malware
Daily CyberSecurity
The CAPTCHA Trap: How a Fake "ClickFix" Prompt Unleashed Latrodectus & Supper Malware
CERT Polska reveals how a fake "ClickFix" CAPTCHA campaign tricked users into deploying evasive Latrodectus and Supper malware. Protect your network now.
⤷ Title: Shadows in the Inbox: Ukraine’s CERT-UA Unmasks the UAC-0252 Phishing Blitz and its “PalachPro” Ties
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Mar 2026 07:24:57 +0000
════════════════════════
⌗ Tags: #Cyber Security #CERT_UA #CVE_2025_8088 #cyber warfare 2026 #DEAFTICK #Infostealer #PalachPro #SALATSTEALER #SHADOWSNIFF #Spear Phishing #UAC_0252 #Ukraine #WinRAR exploit
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Mar 2026 07:24:57 +0000
════════════════════════
⌗ Tags: #Cyber Security #CERT_UA #CVE_2025_8088 #cyber warfare 2026 #DEAFTICK #Infostealer #PalachPro #SALATSTEALER #SHADOWSNIFF #Spear Phishing #UAC_0252 #Ukraine #WinRAR exploit
Penetration Testing Tools
Shadows in the Inbox: Ukraine’s CERT-UA Unmasks the UAC-0252 Phishing Blitz and its "PalachPro" Ties
In early 2026, malicious actors initiated a mass dissemination of emails masquerading as official communications from Ukrainian state
⤷ Title: Agencies Issue Urgent Warning on INC Ransom Healthcare Attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Mar 2026 00:22:11 +0000
════════════════════════
⌗ Tags: #Cybercriminals #ACSC #CERT Tonga #cybersecurity #Double Extortion #healthcare security #INC Ransom #infosec #NCSC New Zealand #ransomware #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 10 Mar 2026 00:22:11 +0000
════════════════════════
⌗ Tags: #Cybercriminals #ACSC #CERT Tonga #cybersecurity #Double Extortion #healthcare security #INC Ransom #infosec #NCSC New Zealand #ransomware #threat intelligence
Daily CyberSecurity
Agencies Issue Urgent Warning on INC Ransom Healthcare Attacks
A joint advisory warns of INC Ransom's devastating pivot to the Pacific. Discover how this RaaS group uses double extortion to target healthcare sectors.
⤷ Title: The EU’s AWS “Master Key”: How a Compromised Trivy Update Leaked 340GB of Data
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 03 Apr 2026 09:40:11 +0000
════════════════════════
⌗ Tags: #Data Leak #API Key Theft #aws security #CERT_EU #CI/CD security #data leak #EU Security #European Commission #infosec #ShinyHunters #supply chain attack #TeamPCP #Trivy
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 03 Apr 2026 09:40:11 +0000
════════════════════════
⌗ Tags: #Data Leak #API Key Theft #aws security #CERT_EU #CI/CD security #data leak #EU Security #European Commission #infosec #ShinyHunters #supply chain attack #TeamPCP #Trivy
Daily CyberSecurity
The EU’s AWS "Master Key": How a Compromised Trivy Update Leaked 340GB of Data
A massive supply-chain attack hit the European Commission via a compromised Trivy update. 340GB of data was leaked by ShinyHunters. Rotate your AWS keys!
⤷ Title: Critical RCE and SQLi Flaws Shatter mbCONNECT24 Industrial Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 13:11:00 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CERT@VDE #CVE_2026_33613 #firmware update #ICS security #Industrial Security #MB Connect Line #mbCONNECT24 #mymbCONNECT24 #rce #Remote Service Platform #sql injection #sqli
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 06 Apr 2026 13:11:00 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CERT@VDE #CVE_2026_33613 #firmware update #ICS security #Industrial Security #MB Connect Line #mbCONNECT24 #mymbCONNECT24 #rce #Remote Service Platform #sql injection #sqli
Daily CyberSecurity
Critical RCE and SQLi Flaws Shatter mbCONNECT24 Industrial Security
CERT@VDE warns of critical RCE and SQLi flaws in MB Connect Line's mbCONNECT24 (up to v2.19.4). Unauthenticated attackers can gain full system control. Patch now!