⤷ Title: Stealthy SquidLoader Malware Targets Hong Kong Financial Firms with Evasive Cobalt Strike Attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 00:28:19 +0000
════════════════════════
⌗ Tags: #Malware #Cobalt Strike #cyberattack #cybersecurity #Financial services #Hong Kong #malware #SquidLoader #threat intelligence #Trellix
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 00:28:19 +0000
════════════════════════
⌗ Tags: #Malware #Cobalt Strike #cyberattack #cybersecurity #Financial services #Hong Kong #malware #SquidLoader #threat intelligence #Trellix
Daily CyberSecurity
Stealthy SquidLoader Malware Targets Hong Kong Financial Firms with Evasive Cobalt Strike Attacks
Trellix has uncovered SquidLoader, a highly obfuscated malware targeting Hong Kong financial institutions to deploy Cobalt Strike beacons for persistent control.
⤷ Title: Critical Flaws in Alcatel-Lucent OmniAccess Stellar WLAN APs Allow Full Remote Takeover, PoC Releases
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 00:22:06 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Alcatel_Lucent Enterprise #Command Injection #cybersecurity #OmniAccess Stellar #rce #Session Hijacking #Vulnerability #WLAN AP
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 00:22:06 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Alcatel_Lucent Enterprise #Command Injection #cybersecurity #OmniAccess Stellar #rce #Session Hijacking #Vulnerability #WLAN AP
Daily CyberSecurity
Critical Flaws in Alcatel-Lucent OmniAccess Stellar WLAN APs Allow Full Remote Takeover, PoC Releases
Multiple critical vulnerabilities (CVSS up to 9.8) in Alcatel-Lucent OmniAccess Stellar WLAN APs enable unauthenticated remote code execution and full device takeover. Patch immediately!
⤷ Title: Microsoft Unveils RedirectionGuard: A New Windows 11 Defense Against Privilege Escalation Attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 00:17:41 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Windows #cybersecurity #file system #Junctions #Microsoft #privilege escalation #RedirectionGuard #Security Mitigation #Windows 11
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 00:17:41 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Windows #cybersecurity #file system #Junctions #Microsoft #privilege escalation #RedirectionGuard #Security Mitigation #Windows 11
Daily CyberSecurity
Microsoft Unveils RedirectionGuard: A New Windows 11 Defense Against Privilege Escalation Attacks
Microsoft introduces RedirectionGuard for Windows 11, a new mitigation feature designed to block filesystem redirection attacks using junctions, preventing privilege escalation.
⤷ Title: NVIDIA Plugs Critical Flaws in Container Toolkit and GPU Operator: CVE-2025-23266 & CVE-2025-23267
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 00:11:52 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Container Toolkit #cybersecurity #dos #GPU Operator #Kubernetes #nvidia #privilege escalation #rce #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 00:11:52 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Container Toolkit #cybersecurity #dos #GPU Operator #Kubernetes #nvidia #privilege escalation #rce #Vulnerability
Daily CyberSecurity
NVIDIA Plugs Critical Flaws in Container Toolkit and GPU Operator: CVE-2025-23266 & CVE-2025-23267
NVIDIA patched critical vulnerabilities in its Container Toolkit and GPU Operator, allowing privilege escalation, data tampering, and DoS in containerized environments.
⤷ Title: Hidden Protestware Found in 28+ npm Packages: Silently Targeting Russian Users
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 00:06:14 +0000
════════════════════════
⌗ Tags: #Malware #Cyber_activism #cybersecurity #javascript #npm #open_source #Protestware #russia #supply chain attack #Ukraine
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 00:06:14 +0000
════════════════════════
⌗ Tags: #Malware #Cyber_activism #cybersecurity #javascript #npm #open_source #Protestware #russia #supply chain attack #Ukraine
Daily CyberSecurity
Hidden Protestware Found in 28+ npm Packages: Silently Targeting Russian Users
Socket researchers uncovered widespread "protestware" in 28+ npm packages, silently disabling mouse interactions and playing the Ukrainian anthem for Russian-language users.
⤷ Title: Google’s Big Sleep AI Foils Live Zero-Day Exploit in SQLite (CVE-2025-6965)
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 00:00:14 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI #Big Sleep #cybersecurity #google #Proactive Defense #SQLite #Threat Analysis Group #Vulnerability #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 00:00:14 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI #Big Sleep #cybersecurity #google #Proactive Defense #SQLite #Threat Analysis Group #Vulnerability #zero_day
Daily CyberSecurity
Google's Big Sleep AI Foils Live Zero-Day Exploit in SQLite (CVE-2025-6965)
Google's Big Sleep AI agent successfully identified and neutralized a critical SQLite vulnerability (CVE-2025-6965) before it could be exploited in the wild, marking a new era in AI-powered proactive defense.
⤷ Title: CTF Day(33)
════════════════════════
𐀪 Author: Ahmed Narmer
════════════════════════
ⴵ Time: Wed, 16 Jul 2025 23:52:53 GMT
════════════════════════
⌗ Tags: #web_penetration_testing #cybersecurity #bug_bounty #web_pen_testing #ctf
════════════════════════
𐀪 Author: Ahmed Narmer
════════════════════════
ⴵ Time: Wed, 16 Jul 2025 23:52:53 GMT
════════════════════════
⌗ Tags: #web_penetration_testing #cybersecurity #bug_bounty #web_pen_testing #ctf
Medium
CTF Day(33)
picoCTF Web Exploitation: More SQLi
⤷ Title: Securing Your Go Backend the Right Way: SQL Injection Protection with Bun ORM
════════════════════════
𐀪 Author: Mohammad Dipo Sultan
════════════════════════
ⴵ Time: Wed, 16 Jul 2025 23:07:48 GMT
════════════════════════
⌗ Tags: #golang #application_security #postgresql #secure_coding #fintech
════════════════════════
𐀪 Author: Mohammad Dipo Sultan
════════════════════════
ⴵ Time: Wed, 16 Jul 2025 23:07:48 GMT
════════════════════════
⌗ Tags: #golang #application_security #postgresql #secure_coding #fintech
Medium
Securing Your Go Backend the Right Way: SQL Injection Protection with Bun ORM
Go + PostgreSQL security best practices using Bun ORM to avoid SQL injection.
⤷ Title: What is a Honeypot? How Cybersecurity Experts are Fighting Back
════════════════════════
𐀪 Author: Spokeo People Search
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 00:01:50 GMT
════════════════════════
⌗ Tags: #security #cybersecurity #cybercrime #hacking
════════════════════════
𐀪 Author: Spokeo People Search
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 00:01:50 GMT
════════════════════════
⌗ Tags: #security #cybersecurity #cybercrime #hacking
Medium
What is a Honeypot? How Cybersecurity Experts are Fighting Back
When it comes to luring people to certain things, nothing works quite like a “honeypot.” For Winnie-the-Pooh, his honey pot was a literal…
⤷ Title: Inside LockBit 3 (“LockBit Black”): Lab Detonation Diary & Lessons for Defenders
════════════════════════
𐀪 Author: Achuth Chandra
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 00:43:00 GMT
════════════════════════
⌗ Tags: #malware #cybersecurity #ransomware #security #lockbit_ransomware
════════════════════════
𐀪 Author: Achuth Chandra
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 00:43:00 GMT
════════════════════════
⌗ Tags: #malware #cybersecurity #ransomware #security #lockbit_ransomware
Medium
Inside LockBit 3 (“LockBit Black”): Lab Detonation Diary & Lessons for Defenders
TL;DR: I obtained the leaked LockBit 3 builder (the same toolkit spilled online by a disgruntled developer in Sept 2022), generated a…
⤷ Title: Unlocking Digital Identity: A Look at the Ethereum Name Service (ENS)
In the bustling world of…
════════════════════════
𐀪 Author: Idrees Bin Adam
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 00:19:56 GMT
════════════════════════
⌗ Tags: #defi #cybersecurity #web3 #ethereum #blockchain
In the bustling world of…
════════════════════════
𐀪 Author: Idrees Bin Adam
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 00:19:56 GMT
════════════════════════
⌗ Tags: #defi #cybersecurity #web3 #ethereum #blockchain
Medium
Unlocking Digital Identity: A Look at the Ethereum Name Service (ENS) In the bustling world of…
Unlocking Digital Identity: A Look at the Ethereum Name Service (ENS) In the bustling world of Web3, where hexadecimal addresses and complex wallet identifiers are the norm, imagine trying to send crypto or interact with a decentralized application (dApp)…
⤷ Title: HPE Morpheus Enterprise Software: A Comprehensive Guide
════════════════════════
𐀪 Author: Juara IT Solutions
════════════════════════
ⴵ Time: Wed, 16 Jul 2025 23:31:10 GMT
════════════════════════
⌗ Tags: #hpe #cloud_security #network_security #cloud #cybersecurity
════════════════════════
𐀪 Author: Juara IT Solutions
════════════════════════
ⴵ Time: Wed, 16 Jul 2025 23:31:10 GMT
════════════════════════
⌗ Tags: #hpe #cloud_security #network_security #cloud #cybersecurity
Medium
HPE Morpheus Enterprise Software: A Comprehensive Guide
As hybrid cloud adoption accelerates across industries, managing complex IT environments has become a critical challenge for enterprises…
⤷ Title: Bridging the Divide: Uniting Data Analytics and Cybersecurity to Safeguard Financial Futures
════════════════════════
𐀪 Author: Dr. Geethamanikanta Jakka
════════════════════════
ⴵ Time: Wed, 16 Jul 2025 23:24:15 GMT
════════════════════════
⌗ Tags: #big_data_analytics #cybersecurity
════════════════════════
𐀪 Author: Dr. Geethamanikanta Jakka
════════════════════════
ⴵ Time: Wed, 16 Jul 2025 23:24:15 GMT
════════════════════════
⌗ Tags: #big_data_analytics #cybersecurity
Medium
Bridging the Divide: Uniting Data Analytics and Cybersecurity to Safeguard Financial Futures
Abstract
⤷ Title: Navigating the Icy Terrain: 7 Pain Points in Snowflake Every Data Engineer Should Know
════════════════════════
𐀪 Author: Dr. Geethamanikanta Jakka
════════════════════════
ⴵ Time: Wed, 16 Jul 2025 23:23:09 GMT
════════════════════════
⌗ Tags: #cybersecurity #snowflake
════════════════════════
𐀪 Author: Dr. Geethamanikanta Jakka
════════════════════════
ⴵ Time: Wed, 16 Jul 2025 23:23:09 GMT
════════════════════════
⌗ Tags: #cybersecurity #snowflake
Medium
Navigating the Icy Terrain: 7 Pain Points in Snowflake Every Data Engineer Should Know
Abstract
⤷ Title: The Most Dangerous File in Your Repo? It’s Not What You Think
════════════════════════
𐀪 Author: Cyber-AppSec
════════════════════════
ⴵ Time: Wed, 16 Jul 2025 23:09:30 GMT
════════════════════════
⌗ Tags: #secrets #ai #github #cybersecurity #information_security
════════════════════════
𐀪 Author: Cyber-AppSec
════════════════════════
ⴵ Time: Wed, 16 Jul 2025 23:09:30 GMT
════════════════════════
⌗ Tags: #secrets #ai #github #cybersecurity #information_security
Medium
The Most Dangerous File in Your Repo? It’s Not What You Think
While we’ve all been worrying about phishing emails and ransomware, a stealthier threat has been lurking right under our noses — one…
⤷ Title: IDOR Vulnerabilities
════════════════════════
𐀪 Author: Anthony Mazyck
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 00:03:35 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #tryhackme #security_vulnerabilities #web_vulnerabilities
════════════════════════
𐀪 Author: Anthony Mazyck
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 00:03:35 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #tryhackme #security_vulnerabilities #web_vulnerabilities
Medium
IDOR Vulnerabilities
What is an IDOR?
⤷ Title: HazyBeacon: New Windows Backdoor Uses AWS Lambda for Stealthy Cyber-Espionage in Southeast Asia
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 02:56:32 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AWS Lambda #C2 #Cyber Espionage #DLL Sideloading #Government #HazyBeacon #malware #Palo Alto Networks #Southeast Asia
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 02:56:32 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AWS Lambda #C2 #Cyber Espionage #DLL Sideloading #Government #HazyBeacon #malware #Palo Alto Networks #Southeast Asia
Penetration Testing Tools
HazyBeacon: New Windows Backdoor Uses AWS Lambda for Stealthy Cyber-Espionage in Southeast Asia
Palo Alto Networks' Unit 42 reveals HazyBeacon, a new Windows backdoor targeting Southeast Asian governments, using AWS Lambda for covert command and control.
⤷ Title: AsyncRAT’s Dark Evolution: How Open-Source Code Fuels a Growing Malware Empire
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 02:53:36 +0000
════════════════════════
⌗ Tags: #Malware #AsyncRAT #C++ #cybercrime #cybersecurity #ESET #malware #open source #RAT #Remote Access Trojan #threat analysis
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 02:53:36 +0000
════════════════════════
⌗ Tags: #Malware #AsyncRAT #C++ #cybercrime #cybersecurity #ESET #malware #open source #RAT #Remote Access Trojan #threat analysis
Penetration Testing Tools
AsyncRAT's Dark Evolution: How Open-Source Code Fuels a Growing Malware Empire
ESET reveals how AsyncRAT, an open-source C# RAT, has spawned dozens of sophisticated malware forks like DCRat and Venom RAT, fueling a dangerous cybercrime ecosystem.
⤷ Title: Ex-US Army Soldier “kiberphant0m” Pleads Guilty to $1M Telecom Hacking & Extortion
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 02:51:42 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cybercrime #Data Theft #Extortion #hacking #Kiberphant0m #Legal #SIM Swapping #Telecom #US Army
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 02:51:42 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cybercrime #Data Theft #Extortion #hacking #Kiberphant0m #Legal #SIM Swapping #Telecom #US Army
Penetration Testing Tools
Ex-US Army Soldier "kiberphant0m" Pleads Guilty to $1M Telecom Hacking & Extortion
Former US Army soldier Cameron John Wagenius (kiberphant0m) pleaded guilty to hacking telecom companies, extorting over $1M, and selling stolen data.
⤷ Title: Cloudflare Q2 2025: DDoS Attack Volume Drops, But Hyper-Volumetric Assaults Skyrocket
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 02:50:00 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cloudflare #cyberattack #cybersecurity #DDoS #DemonBot #Hyper_Volumetric #Ransom DDoS #Threat Report
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 02:50:00 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cloudflare #cyberattack #cybersecurity #DDoS #DemonBot #Hyper_Volumetric #Ransom DDoS #Threat Report
Penetration Testing Tools
Cloudflare Q2 2025: DDoS Attack Volume Drops, But Hyper-Volumetric Assaults Skyrocket
Cloudflare's Q2 2025 report shows a sharp drop in overall DDoS attacks, but a massive surge in hyper-volumetric incidents, including a 7.3 Tbps record-breaker.
⤷ Title: Hidden in Plain Sight: Hackers Conceal Malware and AI Prompts in DNS Records
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 02:48:36 +0000
════════════════════════
⌗ Tags: #Malware #AI security #Covert Delivery #cybersecurity #DNS #DNS over HTTPS #DNS over TLS #Info_stealer #malware #Prompt Injection
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 02:48:36 +0000
════════════════════════
⌗ Tags: #Malware #AI security #Covert Delivery #cybersecurity #DNS #DNS over HTTPS #DNS over TLS #Info_stealer #malware #Prompt Injection
Penetration Testing Tools
Hidden in Plain Sight: Hackers Conceal Malware and AI Prompts in DNS Records
Hackers are hiding malware binaries (like Joke Screenmate) and AI prompt injection commands directly within DNS TXT records, bypassing traditional security and leveraging encrypted DNS.