⤷ Title: China APT UNC5174 Hijacks Discord API as Covert C2 Channel to Evade Detection and Conduct Espionage
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 06 Dec 2025 00:00:18 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #APT #Critical Infrastructure #cyber_espionage #Discord C2 #DiscordGo #Go malware #UNC5174
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 06 Dec 2025 00:00:18 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #APT #Critical Infrastructure #cyber_espionage #Discord C2 #DiscordGo #Go malware #UNC5174
Daily CyberSecurity
China APT UNC5174 Hijacks Discord API as Covert C2 Channel to Evade Detection and Conduct Espionage
China-linked APT UNC5174 is using a Go-based backdoor that abuses the Discord API as a covert C2 channel. This method allows the lightweight malware to execute arbitrary commands and evade traditional firewall monitoring.
⤷ Title: Silent Supply Chain Attack: Malicious Go Typosquat Siphoned Data to Pastebin for Four Years Undetected
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:32:24 +0000
════════════════════════
⌗ Tags: #Malware #AES_CFB #backdoor #data exfiltration #dpaste #Go Package #Go Typosquatting #security #Supply Chain
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 00:32:24 +0000
════════════════════════
⌗ Tags: #Malware #AES_CFB #backdoor #data exfiltration #dpaste #Go Package #Go Typosquatting #security #Supply Chain
Daily CyberSecurity
Silent Supply Chain Attack: Malicious Go Typosquat Siphoned Data to Pastebin for Four Years Undetected
A malicious Go package typosquat (bpoorman/uuid) operated for four years, using a hidden Valid function to silently encrypt and exfiltrate sensitive data to dpaste.com.
⤷ Title: The Ghost in the Machine: Master Stealth with the Orsted C2 Framework
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 26 Dec 2025 02:44:26 +0000
════════════════════════
⌗ Tags: #Open Source Tool #AMSI Evasion #Command and Control #cybersecurity #Go_lang #Ligolo_ng #Orsted C2 #Penetration Testing #post_exploitation #red teaming #Sandbox Deception
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 26 Dec 2025 02:44:26 +0000
════════════════════════
⌗ Tags: #Open Source Tool #AMSI Evasion #Command and Control #cybersecurity #Go_lang #Ligolo_ng #Orsted C2 #Penetration Testing #post_exploitation #red teaming #Sandbox Deception
Penetration Testing Tools
The Ghost in the Machine: Master Stealth with the Orsted C2 Framework
Orsted C2 is a modular Go framework featuring sandbox deception, AMSI/ETW evasion, and native Ligolo-ng pivoting for advanced red team simulations.
⤷ Title: The “Go Client” Trap: Why Your RustDesk ID is Currently Under Automated Botnet Siege
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 03 Feb 2026 04:03:24 +0000
════════════════════════
⌗ Tags: #Malware #2FA #botnet attack #cybersecurity alert 2026 #Go Client #IT security tips #Remote Access Malware #remote desktop security #RustDesk #self_hosting RustDesk #social engineering
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 03 Feb 2026 04:03:24 +0000
════════════════════════
⌗ Tags: #Malware #2FA #botnet attack #cybersecurity alert 2026 #Go Client #IT security tips #Remote Access Malware #remote desktop security #RustDesk #self_hosting RustDesk #social engineering
Daily CyberSecurity
The "Go Client" Trap: Why Your RustDesk ID is Currently Under Automated Botnet Siege
A massive botnet is targeting RustDesk users with fake "Go Client" connection requests. Learn how to lock down your ID and prevent unauthorized remote takeovers.
⤷ Title: “Fiber” Optic Failure: Predictable UUIDs Expose Go Web Framework to Hijacking
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Feb 2026 00:48:59 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Backend Development #CSRF #CVE_2025_66630 #Fiber Framework #go #Golang #Patch Alert #Session Hijacking #UUID #Web Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Feb 2026 00:48:59 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Backend Development #CSRF #CVE_2025_66630 #Fiber Framework #go #Golang #Patch Alert #Session Hijacking #UUID #Web Security
Daily CyberSecurity
"Fiber" Optic Failure: Predictable UUIDs Expose Go Web Framework to Hijacking
Critical Fiber framework vulnerability CVE-2025-66630 (CVSS 9.2) causes silent UUID failures, leading to session hijacking. Update to v2.52.11 now.
⤷ Title: Mapping the Blast Radius: Visualize Attack Paths in AWS EKS with This New Go-Based Scanner
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 12 Feb 2026 03:43:18 +0000
════════════════════════
⌗ Tags: #Open Source Tool #attack path visualization #AWS EKS #cloud_native security #DevSecOps #eks_security_scanner #Go #IAM security #Kubernetes security #RBAC audit #Tech News 2026 #Threat Modeling
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 12 Feb 2026 03:43:18 +0000
════════════════════════
⌗ Tags: #Open Source Tool #attack path visualization #AWS EKS #cloud_native security #DevSecOps #eks_security_scanner #Go #IAM security #Kubernetes security #RBAC audit #Tech News 2026 #Threat Modeling
Penetration Testing Tools
Mapping the Blast Radius: Visualize Attack Paths in AWS EKS with This New Go-Based Scanner
Stop guessing your EKS security posture. Use eks-security-scanner to build threat graphs, detect privileged pods, and audit RBAC/IAM access paths instantly.
⤷ Title: The Cryptography Trojan: Malicious Go Module Impersonates Foundational Library to Steal Passwords and Deploy Root Backdoors
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 02 Mar 2026 00:43:46 +0000
════════════════════════
⌗ Tags: #Malware #APT31 #cryptography #CVE_2026 #go #Golang #infosec #Linux Security #malware #Open Source Security #Rekoobe #supply chain attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 02 Mar 2026 00:43:46 +0000
════════════════════════
⌗ Tags: #Malware #APT31 #cryptography #CVE_2026 #go #Golang #infosec #Linux Security #malware #Open Source Security #Rekoobe #supply chain attack
Daily CyberSecurity
The Cryptography Trojan: Malicious Go Module Impersonates Foundational Library to Steal Passwords and Deploy Root Backdoors
Socket uncovers a malicious Go module mimicking golang.org/x/crypto. It steals passwords via ReadPassword and deploys the Rekoobe backdoor on Linux systems.
⤷ Title: The Rise of the AI Mercenary: Team Cymru Unmasks “CyberStrikeAI” and its Ties to State-Sponsored Operations
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Mar 2026 07:35:31 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AI_native hacking #CyberStrikeAI #Ed1s0nZ #Fortinet FortiGate #Go programming language #Knownsec 404 #NetFlow analysis #Offensive Security #privilege escalation #Team Cymru #Tech News 2026
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 05 Mar 2026 07:35:31 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AI_native hacking #CyberStrikeAI #Ed1s0nZ #Fortinet FortiGate #Go programming language #Knownsec 404 #NetFlow analysis #Offensive Security #privilege escalation #Team Cymru #Tech News 2026
Penetration Testing Tools
The Rise of the AI Mercenary: Team Cymru Unmasks "CyberStrikeAI" and its Ties to State-Sponsored Operations
Team Cymru conducts a macroscopic analysis of global network traffic, harnessing the power of aggregated NetFlow data and
⤷ Title: Path Traversal Vulnerability in Go: From Source Code Review to Exploitation
════════════════════════
𐀪 Author: Sanaullah Aman Korai
════════════════════════
ⴵ Time: Sat, 04 Apr 2026 18:47:27 GMT
════════════════════════
⌗ Tags: #penetration_testing #web_security #ethical_hacking #cybersecurity #go_programming
════════════════════════
𐀪 Author: Sanaullah Aman Korai
════════════════════════
ⴵ Time: Sat, 04 Apr 2026 18:47:27 GMT
════════════════════════
⌗ Tags: #penetration_testing #web_security #ethical_hacking #cybersecurity #go_programming
Medium
Path Traversal Vulnerability in Go: From Source Code Review to Exploitation
Introduction
⤷ Title: Trolling as a Service: How the New CrystalX RAT Uses “Prankware” to Torture Its Victims
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 09:15:50 +0000
════════════════════════
⌗ Tags: #Malware #CrystalX RAT #Cyber Trolling #Go malware #infosec #kaspersky #MaaS #Malware Analysis #Prankware #Remote Access Trojan #spyware #Telegram #Webcrystal RAT
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 07 Apr 2026 09:15:50 +0000
════════════════════════
⌗ Tags: #Malware #CrystalX RAT #Cyber Trolling #Go malware #infosec #kaspersky #MaaS #Malware Analysis #Prankware #Remote Access Trojan #spyware #Telegram #Webcrystal RAT
Daily CyberSecurity
Trolling as a Service: How the New CrystalX RAT Uses "Prankware" to Torture Its Victims
Kaspersky uncovers CrystalX RAT, a malicious MaaS on Telegram that pairs data theft with "prankware" to troll victims and lock systems. Patch now!