⤷ Title: Burlando segurança contra XSS (Cross Site Scripting) — Parte 2
════════════════════════
𐀪 Author: Lucas Ferreira
════════════════════════
ⴵ Time: Tue, 31 Dec 2024 22:12:13 GMT
════════════════════════
⌗ Tags: #hacking #unicode #bounty_program #xs #bypass
════════════════════════
𐀪 Author: Lucas Ferreira
════════════════════════
ⴵ Time: Tue, 31 Dec 2024 22:12:13 GMT
════════════════════════
⌗ Tags: #hacking #unicode #bounty_program #xs #bypass
Medium
Burlando segurança contra XSS (Cross Site Scripting) — Parte 2
Bem vindo a parte dois de como burlar filtros de segurança contra XSS, caso não saiba sobre XSS recomendo ler a primeira parte que tem…
⤷ Title: The Homograph Illusion: Phishing Attacks Exploit Lookalike Characters to Bypass Defenses – AI Amplifies the Threat
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Jul 2025 00:40:01 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AI #Content Filtering #Credential Theft #cybersecurity #Homograph Attack #phishing #social engineering #Unicode #Unit 42
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 28 Jul 2025 00:40:01 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AI #Content Filtering #Credential Theft #cybersecurity #Homograph Attack #phishing #social engineering #Unicode #Unit 42
Daily CyberSecurity
The Homograph Illusion: Phishing Attacks Exploit Lookalike Characters to Bypass Defenses – AI Amplifies the Threat
Unit 42 reveals homograph phishing attacks exploiting visually similar characters to bypass defenses and deceive users. AI is amplifying this threat, making malicious emails highly convincing.
⤷ Title: How Hackers Are Outsmarting AI Filters with Emoji Smuggling
════════════════════════
𐀪 Author: Deven Chhajed
════════════════════════
ⴵ Time: Thu, 14 Aug 2025 03:31:44 GMT
════════════════════════
⌗ Tags: #ai_safety #unicode_exploit #cybersecurity #artificial_intelligence #emoji_smuggling
════════════════════════
𐀪 Author: Deven Chhajed
════════════════════════
ⴵ Time: Thu, 14 Aug 2025 03:31:44 GMT
════════════════════════
⌗ Tags: #ai_safety #unicode_exploit #cybersecurity #artificial_intelligence #emoji_smuggling
Medium
How Hackers Are Outsmarting AI Filters with Emoji Smuggling
Artificial intelligence has come a long way in content moderation, but recent research has revealed a subtle yet powerful vulnerability…
⤷ Title: The Invisible Attack: Hidden Characters Can Make Gemini Models Implant Backdoors
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 19 Aug 2025 08:27:58 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI #AI Agents #cybersecurity #Gemini #google #Jules #Prompt Injection #Unicode
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 19 Aug 2025 08:27:58 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI #AI Agents #cybersecurity #Gemini #google #Jules #Prompt Injection #Unicode
Penetration Testing Tools
The Invisible Attack: Hidden Characters Can Make Gemini Models Implant Backdoors
Researchers found that Gemini models interpret invisible Unicode "Tag" characters as commands, allowing attackers to trick AI agents into implanting backdoors.
⤷ Title: BiDi Swap: A Decade-Old Unicode Flaw Still Enables URL Spoofing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 22 Sep 2025 00:32:50 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #BiDi Swap #browser security #cybersecurity #phishing attacks #Unicode #URL spoofing #Varonis
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 22 Sep 2025 00:32:50 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #BiDi Swap #browser security #cybersecurity #phishing attacks #Unicode #URL spoofing #Varonis
Daily CyberSecurity
BiDi Swap: A Decade-Old Unicode Flaw Still Enables URL Spoofing
A decade-old browser flaw, "BiDi Swap," allows attackers to craft deceptive URLs for phishing. The bug, found by Varonis, exploits mixed-text direction.
⤷ Title: ASCII Smuggling Attack Bypasses Filters, Forcing Gemini to Obey Invisible Commands from Calendar Invites
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 13 Oct 2025 02:48:35 +0000
════════════════════════
⌗ Tags: #Vulnerability #ASCII Smuggling #Calendar Spoofing #Data Tampering #FireTail #Gemini #LLM #Prompt Injection #Unicode
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 13 Oct 2025 02:48:35 +0000
════════════════════════
⌗ Tags: #Vulnerability #ASCII Smuggling #Calendar Spoofing #Data Tampering #FireTail #Gemini #LLM #Prompt Injection #Unicode
Penetration Testing Tools
ASCII Smuggling Attack Bypasses Filters, Forcing Gemini to Obey Invisible Commands from Calendar Invites
Researchers at FireTail have discovered the resurrection of an old-class flaw — ASCII Smuggling — now resurfacing in
⤷ Title: GlassWorm Supply Chain Worm Uses Invisible Unicode and Solana Blockchain for Stealth C2
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 20 Oct 2025 01:40:52 +0000
════════════════════════
⌗ Tags: #Malware #Cryptocurrency Theft #GlassWorm #HVNC #Solana Blockchain #supply chain attack #Unicode Injection #VSCode #ZOMBI RAT
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 20 Oct 2025 01:40:52 +0000
════════════════════════
⌗ Tags: #Malware #Cryptocurrency Theft #GlassWorm #HVNC #Solana Blockchain #supply chain attack #Unicode Injection #VSCode #ZOMBI RAT
Daily CyberSecurity
GlassWorm Supply Chain Worm Uses Invisible Unicode and Solana Blockchain for Stealth C2
Koi Security exposed GlassWorm, the first VSCode worm that spreads autonomously, using invisible Unicode to hide malicious code. It uses Solana blockchain and Google Calendar for a resilient C2.
⤷ Title: BiDi Swap: New Phishing Trick Exploits Unicode to Forge Web Addresses
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 30 Oct 2025 02:54:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BiDi Swap #browser security #phishing #RTL #Spoofing #Unicode
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 30 Oct 2025 02:54:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BiDi Swap #browser security #phishing #RTL #Spoofing #Unicode
Penetration Testing Tools
BiDi Swap: New Phishing Trick Exploits Unicode to Forge Web Addresses
The BiDi Swap attack exploits flaws in Unicode's bidirectional text rendering to make malicious URLs look legitimate, tricking users and bypassing browser security.
⤷ Title: How to Avoid AI Detecting Your Text
════════════════════════
𐀪 Author: Zvi Azran
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 17:32:39 GMT
════════════════════════
⌗ Tags: #unicode #security #ai #writing_prompts #cybersecurity
════════════════════════
𐀪 Author: Zvi Azran
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 17:32:39 GMT
════════════════════════
⌗ Tags: #unicode #security #ai #writing_prompts #cybersecurity
Medium
How to Avoid AI Detecting Your Text
Making text readable for humans, but not for AI.
⤷ Title: GlassWorm Worm Resurfaces: Invisible Unicode Malware Re-Infects VS Code Extensions, Spreads to GitHub
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 10 Nov 2025 00:31:19 +0000
════════════════════════
⌗ Tags: #Malware #Code Theft #GitHub Compromise #GlassWorm #Solana C2 #supply chain attack #Unicode Worm #VSCode
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 10 Nov 2025 00:31:19 +0000
════════════════════════
⌗ Tags: #Malware #Code Theft #GitHub Compromise #GlassWorm #Solana C2 #supply chain attack #Unicode Worm #VSCode
Daily CyberSecurity
GlassWorm Worm Resurfaces: Invisible Unicode Malware Re-Infects VS Code Extensions, Spreads to GitHub
GlassWorm resurfaced, infecting 3 new VS Code extensions on OpenVSX. The worm uses invisible Unicode and Solana blockchain C2 to steal credentials and spread via AI-generated malicious commits on GitHub.
⤷ Title: Glassworm Strikes Again: Third Wave of Malicious VS Code Extensions Bypasses Moderation
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 03 Dec 2025 08:11:54 +0000
════════════════════════
⌗ Tags: #Malware #GlassWorm #Infostealer #malware #OpenVSX #supply chain attack #Unicode Obfuscation #Visual Studio Marketplace #VS Code
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 03 Dec 2025 08:11:54 +0000
════════════════════════
⌗ Tags: #Malware #GlassWorm #Infostealer #malware #OpenVSX #supply chain attack #Unicode Obfuscation #Visual Studio Marketplace #VS Code
Penetration Testing Tools
Glassworm Strikes Again: Third Wave of Malicious VS Code Extensions Bypasses Moderation
The Glassworm campaign targeting popular Visual Studio Code extensions has entered yet another phase — researchers are now