⤷ Title: Getting Started with Microsoft Defender XDR
════════════════════════
𐀪 Author: Eyad Hasanato
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 21:11:36 GMT
════════════════════════
⌗ Tags: #cybersecurity #cloud_computing #microsoft #microsoft_defender_xdr #cloud_security
════════════════════════
𐀪 Author: Eyad Hasanato
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 21:11:36 GMT
════════════════════════
⌗ Tags: #cybersecurity #cloud_computing #microsoft #microsoft_defender_xdr #cloud_security
Medium
Getting Started with Microsoft Defender XDR
What is Microsoft Dedender XDR
⤷ Title: Server-side Attacks — Skills Assessment HackTheBox
════════════════════════
𐀪 Author: Hasan Huseynov
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 22:59:22 GMT
════════════════════════
⌗ Tags: #hackthebox #hackthebox_writeup #hackthebox_academy #hackthebox_walkthrough
════════════════════════
𐀪 Author: Hasan Huseynov
════════════════════════
ⴵ Time: Sun, 20 Jul 2025 22:59:22 GMT
════════════════════════
⌗ Tags: #hackthebox #hackthebox_writeup #hackthebox_academy #hackthebox_walkthrough
Medium
Server-side Attacks — Skills Assessment HackTheBox
Hər kəsə salam,Bu məqalədə HackTheBox-dakı Server-Side Attacks modulundakı Skills Assessment hissəsini edib,əlimdən gəldiyi qədər izah…
⤷ Title: NativeDump: Stealthy LSASS Dumping Tool Bypasses EDRs Using Only NTAPIs
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:29:01 +0000
════════════════════════
⌗ Tags: #Open Source Tool #credential dumping #cybersecurity #Evasion #LSASS #Mimikatz #NativeDump #Offensive Security #pypykatz #Red Team #Windows Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:29:01 +0000
════════════════════════
⌗ Tags: #Open Source Tool #credential dumping #cybersecurity #Evasion #LSASS #Mimikatz #NativeDump #Offensive Security #pypykatz #Red Team #Windows Security
Penetration Testing Tools
NativeDump: Stealthy LSASS Dumping Tool Bypasses EDRs Using Only NTAPIs
NativeDump is a new tool for stealthy LSASS process dumping using only NTAPIs, bypassing EDRs to extract credentials for tools like Mimikatz or Pypykatz.
⤷ Title: Intel Axes High-Performance Clear Linux: End of an Era for a Decade of Innovation
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:22:51 +0000
════════════════════════
⌗ Tags: #Linux #Clear Linux #Discontinuation #Intel #Linux Community #Linux distribution #open source #performance #Tech News
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:22:51 +0000
════════════════════════
⌗ Tags: #Linux #Clear Linux #Discontinuation #Intel #Linux Community #Linux distribution #open source #performance #Tech News
Penetration Testing Tools
Intel Axes High-Performance Clear Linux: End of an Era for a Decade of Innovation
Intel has officially discontinued Clear Linux, its high-performing Linux distribution, as part of cost-cutting. Users are urged to migrate immediately.
⤷ Title: Akira Ransomware Unleashes Double Extortion Barrage on 12 Global Companies in 72 Hours
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:20:07 +0000
════════════════════════
⌗ Tags: #Malware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:20:07 +0000
════════════════════════
⌗ Tags: #Malware
Penetration Testing Tools
Akira Ransomware Unleashes Double Extortion Barrage on 12 Global Companies in 72 Hours
The Akira ransomware group intensified attacks, adding 12 new companies to its leak site in 3 days, using double extortion to steal and encrypt data from diverse global industries.
⤷ Title: New Linuxsys Cryptominer Campaign Exploits Apache HTTP Server & Other Critical Flaws
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:12:29 +0000
════════════════════════
⌗ Tags: #Malware #Apache HTTP Server #Cryptominer #CVE_2021_41773 #cybersecurity #h2miner #Linux #Linuxsys #malware #ransomware #windows
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:12:29 +0000
════════════════════════
⌗ Tags: #Malware #Apache HTTP Server #Cryptominer #CVE_2021_41773 #cybersecurity #h2miner #Linux #Linuxsys #malware #ransomware #windows
Penetration Testing Tools
New Linuxsys Cryptominer Campaign Exploits Apache HTTP Server & Other Critical Flaws
VulnCheck reveals a new Linuxsys cryptominer campaign exploiting Apache HTTP Server CVE-2021-41773 and other critical flaws to deploy malware, including the Lcrypt0rx ransomware.
⤷ Title: Three High-Severity Privilege Escalation Flaws Patched in Sophos Intercept X for Windows
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:41:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2024_13972 #CVE_2025_7433 #CVE_2025_7472 #cybersecurity #endpoint security #LPE #patch #privilege escalation #Sophos Intercept X #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:41:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2024_13972 #CVE_2025_7433 #CVE_2025_7472 #cybersecurity #endpoint security #LPE #patch #privilege escalation #Sophos Intercept X #Vulnerability
Daily CyberSecurity
Three High-Severity Privilege Escalation Flaws Patched in Sophos Intercept X for Windows
Sophos has patched three high-severity LPE vulnerabilities in Intercept X for Windows (CVE-2024-13972, CVE-2025-7433, CVE-2025-7472), allowing local users to gain SYSTEM privileges.
⤷ Title: Critical Livewire RCE (CVE-2025-54068) Threatens Millions of Laravel Apps – Patch Immediately!
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:40:45 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_54068 #cybersecurity #Laravel #Livewire #php #rce #Remote Code Execution #Vulnerability #web development
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:40:45 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_54068 #cybersecurity #Laravel #Livewire #php #rce #Remote Code Execution #Vulnerability #web development
Daily CyberSecurity
Critical Livewire RCE (CVE-2025-54068) Threatens Millions of Laravel Apps – Patch Immediately!
A critical RCE (CVE-2025-54068) in Livewire v3.6.3 and earlier allows unauthenticated attackers to execute arbitrary code on millions of Laravel applications. Update now!
⤷ Title: Scanception: Global QR Code Phishing Campaign Bypasses Enterprise Security, Steals Credentials at Scale
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:40:41 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AiTM #Credential Harvesting #cybersecurity #Cyble #mobile security #phishing #QR code phishing #Quishing #Scanception
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:40:41 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AiTM #Credential Harvesting #cybersecurity #Cyble #mobile security #phishing #QR code phishing #Quishing #Scanception
Daily CyberSecurity
Scanception: Global QR Code Phishing Campaign Bypasses Enterprise Security, Steals Credentials at Scale
Scanception campaign uses QR code-based phishing in PDFs to bypass traditional security, targeting high-value industries globally for credential and 2FA theft.
⤷ Title: Katz Stealer: The $100/Month MaaS Threat Plundering Digital Identities Undetected
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:36:34 +0000
════════════════════════
⌗ Tags: #Malware #Credential Theft #crypto wallets #cybersecurity #evasion #info_stealer #Katz Stealer #MaaS #Malware_as_a_Service #Process Hollowing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:36:34 +0000
════════════════════════
⌗ Tags: #Malware #Credential Theft #crypto wallets #cybersecurity #evasion #info_stealer #Katz Stealer #MaaS #Malware_as_a_Service #Process Hollowing
Daily CyberSecurity
Katz Stealer: The $100/Month MaaS Threat Plundering Digital Identities Undetected
Katz Stealer is a dangerous MaaS info-stealer (starting at $100/month) that plunders digital identities, evades detection with stealthy techniques, and targets a vast array of sensitive data.
⤷ Title: Windows Zero-Day Actively Exploited by Ransomware Gangs – PoC Available!
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:33:06 +0000
════════════════════════
⌗ Tags: #Vulnerability #CLFS #cybersecurity #Exploit #PoC #privilege escalation #windows #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:33:06 +0000
════════════════════════
⌗ Tags: #Vulnerability #CLFS #cybersecurity #Exploit #PoC #privilege escalation #windows #zero_day
Daily CyberSecurity
Windows Zero-Day Actively Exploited by Ransomware Gangs – PoC Available!
A Windows CLFS zero-day (CVE-2025-29824) actively exploited by RansomEXX and Play ransomware gangs for privilege escalation, with a public PoC. Patch now!
⤷ Title: Matanbuchus 3.0 Levels Up: New Stealthy Malware Loader Exploits Microsoft Teams
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:31:13 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #EDR evasion #loader #MaaS #malware #Matanbuchus #Microsoft Teams #social engineering #Threat Actors
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:31:13 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #EDR evasion #loader #MaaS #malware #Matanbuchus #Microsoft Teams #social engineering #Threat Actors
Daily CyberSecurity
Matanbuchus 3.0 Levels Up: New Stealthy Malware Loader Exploits Microsoft Teams
Matanbuchus 3.0, a new sophisticated malware loader, is using social engineering via Microsoft Teams to infiltrate enterprise systems with advanced evasion tactics.
⤷ Title: Two Vulnerabilities in 7-Zip Could Trigger Denial of Service
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:24:30 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #7_Zip #CVE_2025_53816 #CVE_2025_53817 #cybersecurity #Denial of Service #dos #File Archiver #memory corruption #open_source #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:24:30 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #7_Zip #CVE_2025_53816 #CVE_2025_53817 #cybersecurity #Denial of Service #dos #File Archiver #memory corruption #open_source #Vulnerability
Daily CyberSecurity
Two Vulnerabilities in 7-Zip Could Trigger Denial of Service
Two new medium-severity vulnerabilities (CVE-2025-53816, -53817) in 7-Zip versions prior to 25.0.0 risk memory corruption and denial of service. Update immediately.
⤷ Title: UNG0002: Stealthy South Asian APT Group Unleashes New Malware in Cyber Espionage Campaigns Across Asia
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:20:56 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT #Blister DLL #china #cyber_espionage #Hong Kong #INET RAT #malware #Pakistan #Shadow RAT #South Asia #UNG0002
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:20:56 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT #Blister DLL #china #cyber_espionage #Hong Kong #INET RAT #malware #Pakistan #Shadow RAT #South Asia #UNG0002
Daily CyberSecurity
UNG0002: Stealthy South Asian APT Group Unleashes New Malware in Cyber Espionage Campaigns Across Asia
Seqrite Labs uncovers UNG0002, a South Asian APT group using advanced social engineering and new malware like Shadow RAT to target various sectors across Asia.
⤷ Title: ToolShell: New SharePoint RCE Zero-Day Chain Under Active Global Exploitation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:20:02 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_49704 #CVE_2025_49706 #cybersecurity #exploitation #Microsoft #rce #Remote Code Execution #Sharepoint #ToolShell #Vulnerability #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:20:02 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_49704 #CVE_2025_49706 #cybersecurity #exploitation #Microsoft #rce #Remote Code Execution #Sharepoint #ToolShell #Vulnerability #zero_day
Daily CyberSecurity
ToolShell: New SharePoint RCE Zero-Day Chain Under Active Global Exploitation
An unauthenticated SharePoint RCE chain dubbed ToolShell (CVE-2025-49704, CVE-2025-49706) is being actively exploited globally, granting attackers full control of on-premise servers.
⤷ Title: China-Aligned APTs Intensify Cyber Espionage on Taiwan’s Semiconductor Industry
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:16:56 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT #china #Cobalt Strike #cyber_espionage #malware #phishing #semiconductor #Supply Chain #Taiwan #Voldemort
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:16:56 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT #china #Cobalt Strike #cyber_espionage #malware #phishing #semiconductor #Supply Chain #Taiwan #Voldemort
Daily CyberSecurity
China-Aligned APTs Intensify Cyber Espionage on Taiwan's Semiconductor Industry
Proofpoint reveals a surge in China-aligned cyber espionage targeting Taiwan's semiconductor industry with spearphishing, Cobalt Strike, and new malware like Voldemort.
⤷ Title: DuckDuckGo Battles AI Slop: New Filter Lets Users Hide AI-Generated Images from Search Results
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:15:46 +0000
════════════════════════
⌗ Tags: #Technology #AI Filter #AI Images #DuckDuckGo #Image Search #open_source #privacy #Search Engine #Synthetic Content #user control
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:15:46 +0000
════════════════════════
⌗ Tags: #Technology #AI Filter #AI Images #DuckDuckGo #Image Search #open_source #privacy #Search Engine #Synthetic Content #user control
Daily CyberSecurity
DuckDuckGo Battles AI Slop: New Filter Lets Users Hide AI-Generated Images from Search Results
DuckDuckGo introduces a new feature allowing users to filter AI-generated images from search results, leveraging open-source blocklists to combat misleading content.
⤷ Title: Lenovo Vantage Flaws Allow Local Privilege Escalation on PCs
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:11:39 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Configuration File Manipulation #cybersecurity #Lenovo Commercial Vantage #Lenovo Vantage #privilege escalation #Registry Hijack #sql injection #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:11:39 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Configuration File Manipulation #cybersecurity #Lenovo Commercial Vantage #Lenovo Vantage #privilege escalation #Registry Hijack #sql injection #Vulnerability
Daily CyberSecurity
Lenovo Vantage Flaws Allow Local Privilege Escalation on PCs
Lenovo issued patches for three vulnerabilities in Lenovo Vantage (CVE-2025-6230, CVE-2025-6231, CVE-2025-6232) allowing local privilege escalation on PCs. Update immediately.
⤷ Title: LibreOffice Accuses Microsoft of Deliberate “Lock-in” Through Complex File Formats
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:10:16 +0000
════════════════════════
⌗ Tags: #Technology #Interoperability #LibreOffice #Microsoft 365 #ODF #Office Open XML #OOXML #open_source #OpenDocument Format #Vendor Lock_in
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:10:16 +0000
════════════════════════
⌗ Tags: #Technology #Interoperability #LibreOffice #Microsoft 365 #ODF #Office Open XML #OOXML #open_source #OpenDocument Format #Vendor Lock_in
Daily CyberSecurity
LibreOffice Accuses Microsoft of Deliberate "Lock-in" Through Complex File Formats
LibreOffice claims Microsoft uses overly complex OOXML file formats to intentionally lock users into its ecosystem, hindering migration and interoperability with open-source alternatives.
⤷ Title: Fake Receipts, Real Damage: Group-IB Uncovers Fraud-as-a-Service Empire Behind MaisonReceipts
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:07:39 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cybercrime #cybersecurity #digital fraud #Fake Receipts #Fraud_as_a_Service #Group_IB #MaisonReceipts #Scams #Telegram #TikTok
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:07:39 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cybercrime #cybersecurity #digital fraud #Fake Receipts #Fraud_as_a_Service #Group_IB #MaisonReceipts #Scams #Telegram #TikTok
Daily CyberSecurity
Fake Receipts, Real Damage: Group-IB Uncovers Fraud-as-a-Service Empire Behind MaisonReceipts
Group-IB exposes MaisonReceipts, a subscription service selling fake receipts for major brands via Telegram and TikTok, fueling widespread digital fraud.
⤷ Title: Trump Signs “GENIUS Act”: Landmark Law Reshapes US Stablecoin Market, Boosts Dollar Dominance
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:04:33 +0000
════════════════════════
⌗ Tags: #Technology #Blockchain #cryptocurrency #Donald Trump #Financial Technology #FinTech #GENIUS Act #regulation #stablecoin #US Dollar
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 00:04:33 +0000
════════════════════════
⌗ Tags: #Technology #Blockchain #cryptocurrency #Donald Trump #Financial Technology #FinTech #GENIUS Act #regulation #stablecoin #US Dollar
Daily CyberSecurity
Trump Signs "GENIUS Act": Landmark Law Reshapes US Stablecoin Market, Boosts Dollar Dominance
President Trump signed the bipartisan "GENIUS Act," a landmark law creating a clear regulatory framework for the US stablecoin market, aiming to secure the dollar's digital dominance.