⤷ Title: PoisonSeed Tricking Users Into Bypassing FIDO Keys With QR Codes
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Fri, 18 Jul 2025 17:21:15 +0000
════════════════════════
⌗ Tags: #Security #Phishing Scam #Cyber Attack #Cybersecurity #Expel #FIDO2 #Fraud #Phishing #Privacy #Scam #security
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Fri, 18 Jul 2025 17:21:15 +0000
════════════════════════
⌗ Tags: #Security #Phishing Scam #Cyber Attack #Cybersecurity #Expel #FIDO2 #Fraud #Phishing #Privacy #Scam #security
Hackread
PoisonSeed Tricking Users Into Bypassing FIDO Keys With QR Codes
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: Years Long Linux Cryptominer Spotted Using Legit Sites to Spread Malware
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Fri, 18 Jul 2025 11:06:24 +0000
════════════════════════
⌗ Tags: #Security #Malware #Cryptominer #Cybersecurity #Linuxsys #Monero #VulnCheck #Vulnerability #Windows #XMR
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Fri, 18 Jul 2025 11:06:24 +0000
════════════════════════
⌗ Tags: #Security #Malware #Cryptominer #Cybersecurity #Linuxsys #Monero #VulnCheck #Vulnerability #Windows #XMR
Hackread
Years Long Linux Cryptominer Spotted Using Legit Sites to Spread Malware
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: New TeleMessage SGNL Flaw Is Actively Being Exploited by Attackers
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 22:14:53 +0000
════════════════════════
⌗ Tags: #Security #CISA #Cybersecurity #Encryption #GreyNoise #Signal #TeleMessage #TeleMessage SGNL #Vulnerability
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 22:14:53 +0000
════════════════════════
⌗ Tags: #Security #CISA #Cybersecurity #Encryption #GreyNoise #Signal #TeleMessage #TeleMessage SGNL #Vulnerability
Hackread
New TeleMessage SGNL Flaw Is Actively Being Exploited by Attackers
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: Massive Data Leak at Texas Adoption Agency Exposes 1.1 Million Records
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 19:55:59 +0000
════════════════════════
⌗ Tags: #Security #Leaks #Adoption #cloud #CRM #Cybersecurity #data breach #Jeremiah Fowler #LEAKS #Misconfiguration #Privacy #Texas #Vulnerability
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 19:55:59 +0000
════════════════════════
⌗ Tags: #Security #Leaks #Adoption #cloud #CRM #Cybersecurity #data breach #Jeremiah Fowler #LEAKS #Misconfiguration #Privacy #Texas #Vulnerability
Hackread
Massive Data Leak at Texas Adoption Agency Exposes 1.1 Million Records
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: Police Shut Down 100 Servers Tied to Russian NoName057(16), Arrest 2
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 16:27:35 +0000
════════════════════════
⌗ Tags: #Cyber Crime #Cyber Attack #Cybersecurity #DDOS #europe #Europol #NoName057(16) #Russia #Ukraine
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Thu, 17 Jul 2025 16:27:35 +0000
════════════════════════
⌗ Tags: #Cyber Crime #Cyber Attack #Cybersecurity #DDOS #europe #Europol #NoName057(16) #Russia #Ukraine
Hackread
Police Shut Down 100 Servers Tied to Russian NoName057(16), Arrest 2
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: New SquidLoader Variant Unleashed: Stealthy Malware Hits Hong Kong Financial Sector Undetected
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 19 Jul 2025 02:18:07 +0000
════════════════════════
⌗ Tags: #Malware #Anti_Analysis #APT #Cobalt Strike #cybersecurity #Evasion #Financial Sector #Hong Kong #malware #phishing #SquidLoader
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 19 Jul 2025 02:18:07 +0000
════════════════════════
⌗ Tags: #Malware #Anti_Analysis #APT #Cobalt Strike #cybersecurity #Evasion #Financial Sector #Hong Kong #malware #phishing #SquidLoader
Penetration Testing Tools
New SquidLoader Variant Unleashed: Stealthy Malware Hits Hong Kong Financial Sector Undetected
A new, highly evasive SquidLoader malware variant is targeting Hong Kong's financial institutions via phishing, bypassing antivirus and deploying Cobalt Strike Beacons.
⤷ Title: Microsoft Copilot Gets “Eyes”: New Desktop Share Feature Analyzes Your Screen in Real-Time
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 19 Jul 2025 02:15:37 +0000
════════════════════════
⌗ Tags: #Windows #AI #AI Assistant #Desktop Share #Microsoft Copilot #Productivity #Screen Analysis #Tech News #windows #Windows Insider
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 19 Jul 2025 02:15:37 +0000
════════════════════════
⌗ Tags: #Windows #AI #AI Assistant #Desktop Share #Microsoft Copilot #Productivity #Screen Analysis #Tech News #windows #Windows Insider
Penetration Testing Tools
Microsoft Copilot Gets "Eyes": New Desktop Share Feature Analyzes Your Screen in Real-Time
Microsoft Copilot now features Desktop Share, allowing the AI to "see" and analyze your entire screen in real-time, offering enhanced assistance for projects and app navigation.
⤷ Title: SonicWall SMA 100 Devices Under Persistent Attack: UNC6148 Deploys Stealthy OVERSTEP Rootkit
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 19 Jul 2025 02:07:17 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #OVERSTEP #Persistent Access #rootkit #SMA 100 #SonicWall #threat intelligence #UNC6148 #zero_day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 19 Jul 2025 02:07:17 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #OVERSTEP #Persistent Access #rootkit #SMA 100 #SonicWall #threat intelligence #UNC6148 #zero_day
Penetration Testing Tools
SonicWall SMA 100 Devices Under Persistent Attack: UNC6148 Deploys Stealthy OVERSTEP Rootkit
Google's GTIG reports ongoing attacks on SonicWall SMA 100 devices by UNC6148, using stolen credentials and the new OVERSTEP rootkit for persistent, undetectable control.
⤷ Title: Matanbuchus 3.0: The Evolved Malware-as-a-Service Evading Detection & Exploiting Microsoft Teams
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 19 Jul 2025 02:03:22 +0000
════════════════════════
⌗ Tags: #Malware #Cobalt Strike #cybersecurity #Evasion #Loader #MaaS #Malware_as_a_Service #Matanbuchus #Microsoft Teams #ransomware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 19 Jul 2025 02:03:22 +0000
════════════════════════
⌗ Tags: #Malware #Cobalt Strike #cybersecurity #Evasion #Loader #MaaS #Malware_as_a_Service #Matanbuchus #Microsoft Teams #ransomware
Penetration Testing Tools
Matanbuchus 3.0: The Evolved Malware-as-a-Service Evading Detection & Exploiting Microsoft Teams
Matanbuchus 3.0, an enhanced MaaS loader, is bypassing defenses with new C2 protocols, obfuscation, and leveraging Microsoft Teams to deploy ransomware and Cobalt Strike.
⤷ Title: Golden dMSA: Critical Windows Server 2025 Flaw Allows Full Active Directory Takeover
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 19 Jul 2025 02:01:41 +0000
════════════════════════
⌗ Tags: #Vulnerability #Active Directory #cybersecurity #dMSA #gMSA #Golden dMSA #KDS Root Key #Kerberos #privilege escalation #Windows Server 2025
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 19 Jul 2025 02:01:41 +0000
════════════════════════
⌗ Tags: #Vulnerability #Active Directory #cybersecurity #dMSA #gMSA #Golden dMSA #KDS Root Key #Kerberos #privilege escalation #Windows Server 2025
Penetration Testing Tools
Golden dMSA: Critical Windows Server 2025 Flaw Allows Full Active Directory Takeover
A critical "Golden dMSA" flaw in Windows Server 2025's dMSAs allows attackers to compromise KDS root keys, enabling full, undetectable takeover of Active Directory.
⤷ Title: Paradox.ai Data Breach: “123456” Password & Nexus Stealer Expose Fortune 500 Clients
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 19 Jul 2025 01:53:59 +0000
════════════════════════
⌗ Tags: #Data Leak #Atlassian #cybersecurity #data breach #McDonald's #McHire #Nexus Stealer #Okta #Paradox.ai #supply chain attack #Weak Password
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 19 Jul 2025 01:53:59 +0000
════════════════════════
⌗ Tags: #Data Leak #Atlassian #cybersecurity #data breach #McDonald's #McHire #Nexus Stealer #Okta #Paradox.ai #supply chain attack #Weak Password
Penetration Testing Tools
Paradox.ai Data Breach: "123456" Password & Nexus Stealer Expose Fortune 500 Clients
A trivial "123456" password and Nexus Stealer malware on a Paradox.ai employee's device exposed data, potentially impacting Fortune 500 clients like Lockheed Martin.
⤷ Title: lockc: Making containers more secure with eBPF and Linux Security Modules
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 19 Jul 2025 00:24:04 +0000
════════════════════════
⌗ Tags: #Open Source Tool #lockc
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 19 Jul 2025 00:24:04 +0000
════════════════════════
⌗ Tags: #Open Source Tool #lockc
Penetration Testing Tools
lockc: Making containers more secure with eBPF and Linux Security Modules
lockc is open source software for providing MAC (Mandatory Access Control) type of security audit for container workloads.
⤷ Title: Pwn2Own Berlin: Critical IonMonkey JIT Bug Exposes Firefox to Memory Corruption
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 18 Jul 2025 02:58:21 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_4919 #cybersecurity #Firefox #IonMonkey #JavaScript Engine #JIT Compiler #Mozilla #Pwn2Own #vulnerability
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 18 Jul 2025 02:58:21 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_4919 #cybersecurity #Firefox #IonMonkey #JavaScript Engine #JIT Compiler #Mozilla #Pwn2Own #vulnerability
Penetration Testing Tools
Pwn2Own Berlin: Critical IonMonkey JIT Bug Exposes Firefox to Memory Corruption
A critical vulnerability (CVE-2025-4919) in Firefox's IonMonkey JIT compiler, demonstrated at Pwn2Own Berlin, allows out-of-bounds memory access, posing a significant risk.
⤷ Title: Google’s Big Sleep AI Foils Zero-Day Exploit in SQLite Before Attackers Strike
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 18 Jul 2025 01:55:06 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI #Big Sleep #cybersecurity #google #Preemptive Defense #SQLite #Threat Analysis Group #Vulnerability Discovery #zero_day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 18 Jul 2025 01:55:06 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI #Big Sleep #cybersecurity #google #Preemptive Defense #SQLite #Threat Analysis Group #Vulnerability Discovery #zero_day
Penetration Testing Tools
Google's Big Sleep AI Foils Zero-Day Exploit in SQLite Before Attackers Strike
Google's AI agent, Big Sleep, identified and neutralized a critical SQLite zero-day (CVE-2025-6965) that was actively known to threat actors, preventing its exploitation in the wild.
⤷ Title: Windows Hello for Business Flaw: Biometric Bypass Exposes Enterprise Authentication
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 18 Jul 2025 00:52:30 +0000
════════════════════════
⌗ Tags: #Vulnerability #Authentication #Biometric Security #cybersecurity #Microsoft #privilege escalation #vulnerability #WHfB #Windows Hello for Business
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 18 Jul 2025 00:52:30 +0000
════════════════════════
⌗ Tags: #Vulnerability #Authentication #Biometric Security #cybersecurity #Microsoft #privilege escalation #vulnerability #WHfB #Windows Hello for Business
Penetration Testing Tools
Windows Hello for Business Flaw: Biometric Bypass Exposes Enterprise Authentication
A new study exposes critical architectural flaws in Windows Hello for Business, allowing for biometric bypass and privilege escalation, undermining its passwordless security.
⤷ Title: Beyond Bugs: How Generative AI Ecosystems Can Be Hacked Without Exploits
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 18 Jul 2025 00:51:03 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI security #Claude AI #cybersecurity #Generative AI #Gmail #MCP #Multi_Component Pipeline #Prompt Injection #Shell Server
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 18 Jul 2025 00:51:03 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI security #Claude AI #cybersecurity #Generative AI #Gmail #MCP #Multi_Component Pipeline #Prompt Injection #Shell Server
Penetration Testing Tools
Beyond Bugs: How Generative AI Ecosystems Can Be Hacked Without Exploits
A new attack method demonstrates remote code execution on a secure system by exploiting interactions within a generative AI multi-component pipeline, bypassing traditional vulnerabilities.
⤷ Title: Air Serbia Hit by Major Cyberattack: Internal Systems Disrupted, Active Directory Compromised
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 18 Jul 2025 00:42:19 +0000
════════════════════════
⌗ Tags: #Cybercriminals
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 18 Jul 2025 00:42:19 +0000
════════════════════════
⌗ Tags: #Cybercriminals
Penetration Testing Tools
Air Serbia Hit by Major Cyberattack: Internal Systems Disrupted, Active Directory Compromised
Air Serbia is battling an ongoing cyberattack that has crippled internal operations, disrupted payroll, and potentially compromised Active Directory. An infostealer is suspected.
⤷ Title: hoaxshell: A Windows reverse shell payload generator and handler
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 18 Jul 2025 00:04:00 +0000
════════════════════════
⌗ Tags: #Open Source Tool #hoaxshell #Windows reverse shell
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 18 Jul 2025 00:04:00 +0000
════════════════════════
⌗ Tags: #Open Source Tool #hoaxshell #Windows reverse shell
Penetration Testing Tools
hoaxshell: A Windows reverse shell payload generator and handler
hoaxshell is an unconventional Windows reverse shell, currently undetected by Microsoft Defender and other AV solutions
⤷ Title: Abusing Active Directory Certificate Services (Part 2)
════════════════════════
𐀪 Author: Kassie Kimball
════════════════════════
ⴵ Time: Thu, 12 Oct 2023 15:44:18 +0000
════════════════════════
⌗ Tags: #Alyssa Snow #Blue Team #External/Internal #How_To #Informational #Red Team #Red Team Tools #Active Directory #exploit
════════════════════════
𐀪 Author: Kassie Kimball
════════════════════════
ⴵ Time: Thu, 12 Oct 2023 15:44:18 +0000
════════════════════════
⌗ Tags: #Alyssa Snow #Blue Team #External/Internal #How_To #Informational #Red Team #Red Team Tools #Active Directory #exploit
Black Hills Information Security, Inc.
Abusing Active Directory Certificate Services (Part 2) - Black Hills Information Security, Inc.
Misconfigurations in Active Directory Certificate Services (ADCS) can introduce critical vulnerabilities into an Enterprise Active Directory environment, such as paths of escalation from low privileged accounts to domain administrator.
⤷ Title: Abusing Active Directory Certificate Services (Part 1)
════════════════════════
𐀪 Author: BHIS
════════════════════════
ⴵ Time: Thu, 05 Oct 2023 16:00:00 +0000
════════════════════════
⌗ Tags: #Alyssa Snow #Blue Team #External/Internal #How_To #Informational #Red Team #Red Team Tools #Active Directory #exploit
════════════════════════
𐀪 Author: BHIS
════════════════════════
ⴵ Time: Thu, 05 Oct 2023 16:00:00 +0000
════════════════════════
⌗ Tags: #Alyssa Snow #Blue Team #External/Internal #How_To #Informational #Red Team #Red Team Tools #Active Directory #exploit
Black Hills Information Security, Inc.
Abusing Active Directory Certificate Services (Part 1) - Black Hills Information Security, Inc.
Active Directory Certificate Services (ADCS) is used for public key infrastructure in an Active Directory environment. ADCS is widely used in enterprise Active Directory environments for managing certificates for systems, users, applications, and more.
⤷ Title: Intigriti Bug Bytes #226 - July 2025 🚀
════════════════════════
𐀪 Author: Intigriti
════════════════════════
ⴵ Time: Fri, 18 Jul 2025 00:00:00 GMT
════════════════════════
⌗ Tags: #Bug Bytes
════════════════════════
𐀪 Author: Intigriti
════════════════════════
ⴵ Time: Fri, 18 Jul 2025 00:00:00 GMT
════════════════════════
⌗ Tags: #Bug Bytes
Intigriti
Intigriti Bug Bytes #226 - July 2025 🚀
Hi hackers, Welcome to the latest edition of Bug Bytes! In this month’s issue, we’ll be featuring: Exploiting Log4Shell (Log4J) in 2025 An indispensable GitHub recon tool (not the one you have in mi...