⤷ Title: TryHackMe | Mr. Phisher | Write-Up
════════════════════════
𐀪 Author: Andrey Dolya
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 23:30:34 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #cybersecurity #tryhackme_writeup #tryhackme #malicious_code
════════════════════════
𐀪 Author: Andrey Dolya
════════════════════════
ⴵ Time: Mon, 21 Jul 2025 23:30:34 GMT
════════════════════════
⌗ Tags: #tryhackme_walkthrough #cybersecurity #tryhackme_writeup #tryhackme #malicious_code
Medium
TryHackMe | Mr. Phisher | Write-Up
I received a suspicious email with a very weird-looking attachment. It keeps on asking me to “Enable Macros.” What are those? I was…
⤷ Title: EncryptHub’s New Web3 Attack: Fake AI Platforms Deploy Fickle Stealer to Rob Crypto Devs
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 01:36:06 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AI Platform #Crypto Wallets #cryptocurrency #EncryptHub #Fickle Stealer #malware #phishing #supply chain attack #Web3
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 01:36:06 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AI Platform #Crypto Wallets #cryptocurrency #EncryptHub #Fickle Stealer #malware #phishing #supply chain attack #Web3
Penetration Testing Tools
EncryptHub's New Web3 Attack: Fake AI Platforms Deploy Fickle Stealer to Rob Crypto Devs
EncryptHub is targeting Web3 developers with fake AI platforms (like Norlax AI) to deploy Fickle Stealer, aiming to steal crypto wallets and sensitive project data.
⤷ Title: FIDO2 Bypass Uncovered: Hackers Exploit Cross-Device Authentication with QR Code Phishing
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 01:31:49 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Authentication #Cross_Device Authentication #cybersecurity #FIDO2 #MFA Bypass #phishing #PoisonSeed #QR code #security key
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 01:31:49 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Authentication #Cross_Device Authentication #cybersecurity #FIDO2 #MFA Bypass #phishing #PoisonSeed #QR code #security key
Penetration Testing Tools
FIDO2 Bypass Uncovered: Hackers Exploit Cross-Device Authentication with QR Code Phishing
Cybercriminals from PoisonSeed are bypassing FIDO2 protection by tricking users into approving cross-device login requests via legitimate QR codes, exploiting a convenient feature.
⤷ Title: Massistant: China’s New Mobile Forensics Tool Harvests Data from Seized Devices
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 01:25:25 +0000
════════════════════════
⌗ Tags: #Data Leak #China #Data Extraction #Law Enforcement #Massistant #Meiya Pico #Mobile Forensics #privacy #Spyware #Surveillance
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 01:25:25 +0000
════════════════════════
⌗ Tags: #Data Leak #China #Data Extraction #Law Enforcement #Massistant #Meiya Pico #Mobile Forensics #privacy #Spyware #Surveillance
Penetration Testing Tools
Massistant: China's New Mobile Forensics Tool Harvests Data from Seized Devices
Lookout uncovers Massistant, a mobile forensics tool from China's SDIC Intelligence (Meiya Pico) used by law enforcement to extract sensitive data from seized devices.
⤷ Title: Chrome for iOS Levels Up: New Features Enhance Data Separation for Work and Personal Accounts
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:54:42 +0000
════════════════════════
⌗ Tags: #Technology #BYOD #chrome #cybersecurity #Data Separation #enterprise #Google Accounts #ios #IT Management #URL Filtering
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:54:42 +0000
════════════════════════
⌗ Tags: #Technology #BYOD #chrome #cybersecurity #Data Separation #enterprise #Google Accounts #ios #IT Management #URL Filtering
Daily CyberSecurity
Chrome for iOS Levels Up: New Features Enhance Data Separation for Work and Personal Accounts
Chrome for iOS now offers enhanced data separation for work and personal Google accounts, alongside new Enterprise controls like URL filtering and audit log streaming for IT.
⤷ Title: ChatGPT Now Handles 2.5 Billion Requests Daily, Challenging Google’s Search Dominance
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:51:04 +0000
════════════════════════
⌗ Tags: #Technology #AI #AI Evolution #artificial intelligence #ChatGPT #google search #OpenAI #Tech Trends #User Engagement
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:51:04 +0000
════════════════════════
⌗ Tags: #Technology #AI #AI Evolution #artificial intelligence #ChatGPT #google search #OpenAI #Tech Trends #User Engagement
Daily CyberSecurity
ChatGPT Now Handles 2.5 Billion Requests Daily, Challenging Google's Search Dominance
OpenAI's ChatGPT now processes 2.5 billion requests daily, with 330 million from the US. This surge signals a rapid shift in AI adoption, challenging traditional search engines like Google.
⤷ Title: Google Teases Pixel 10 Design on Store Page: New Colors, Telephoto Lens for Standard Model
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:43:57 +0000
════════════════════════
⌗ Tags: #Android #Camera #Design #google #Google Store #Pixel 10 #Smartphone #Teaser #Tensor Chip #wireless charging
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:43:57 +0000
════════════════════════
⌗ Tags: #Android #Camera #Design #google #Google Store #Pixel 10 #Smartphone #Teaser #Tensor Chip #wireless charging
Daily CyberSecurity
Google Teases Pixel 10 Design on Store Page: New Colors, Telephoto Lens for Standard Model
Google's own store page subtly revealed the Pixel 10 design, showing a new color, a refined camera module with a telephoto lens, and hinting at a TSMC-made Tensor chip.
⤷ Title: Microsoft 365 UWP App is Dying: Move to Click-to-Run Before October 2025 EOL
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:34:49 +0000
════════════════════════
⌗ Tags: #Technology #App Deprecation #Click_to_Run #Microsoft 365 #Microsoft Store #Productivity #Tech News #UWP #windows
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:34:49 +0000
════════════════════════
⌗ Tags: #Technology #App Deprecation #Click_to_Run #Microsoft 365 #Microsoft Store #Productivity #Tech News #UWP #windows
Daily CyberSecurity
Microsoft 365 UWP App is Dying: Move to Click-to-Run Before October 2025 EOL
Microsoft is deprecating its UWP-based Microsoft 365 app. Functional updates end Oct 2025, security updates Dec 2026. Users must switch to Click-to-Run for continued support.
⤷ Title: Xbox Unleashes “Cross-Device Play History”: Seamless Cloud Gaming Across All Your Devices
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:29:22 +0000
════════════════════════
⌗ Tags: #Technology #Cloud Gaming #Game Progress Sync #gaming #Seamless Experience #Tech Update #windows #Xbox #Xbox Cloud Gaming #Xbox Insiders
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:29:22 +0000
════════════════════════
⌗ Tags: #Technology #Cloud Gaming #Game Progress Sync #gaming #Seamless Experience #Tech Update #windows #Xbox #Xbox Cloud Gaming #Xbox Insiders
Daily CyberSecurity
Xbox Unleashes "Cross-Device Play History": Seamless Cloud Gaming Across All Your Devices
Xbox introduces "Cross-Device Play History" for Insiders, harmonizing gameplay across Xbox and Windows via cloud sync for a seamless, consistent gaming experience.
⤷ Title: India’s Chip Ambition: First “Made in India” Semiconductor & 6 New Fabs by 2025
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:23:11 +0000
════════════════════════
⌗ Tags: #Technology #AI Mission #Chip Manufacturing #electronics #Fab Plants #India #Semiconductors #Supply Chain #Tech Industry
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:23:11 +0000
════════════════════════
⌗ Tags: #Technology #AI Mission #Chip Manufacturing #electronics #Fab Plants #India #Semiconductors #Supply Chain #Tech Industry
Daily CyberSecurity
India's Chip Ambition: First "Made in India" Semiconductor & 6 New Fabs by 2025
India aims to launch its first "Made in India" chip and open six fabs by late 2025 to boost domestic semiconductor manufacturing and reduce 90% import reliance.
⤷ Title: Corning Avoids Massive EU Fine by Ending Exclusive Smartphone Glass Deals
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:18:10 +0000
════════════════════════
⌗ Tags: #Technology #Competition #Corning #EU Antitrust #European Commission #Exclusive Supply #Gorilla Glass #Legal Settlement #Smartphone
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:18:10 +0000
════════════════════════
⌗ Tags: #Technology #Competition #Corning #EU Antitrust #European Commission #Exclusive Supply #Gorilla Glass #Legal Settlement #Smartphone
Daily CyberSecurity
Corning Avoids Massive EU Fine by Ending Exclusive Smartphone Glass Deals
Corning has settled an EU antitrust probe, agreeing to terminate exclusive supply deals for smartphone glass and avoid a substantial fine, ensuring fair competition.
⤷ Title: Urgent Sophos Firewall Update: Two Critical RCE Flaws (CVE-2025-6704, CVE-2025-7624) Patched via Hotfixes
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:07:48 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_6704 #CVE_2025_7624 #cybersecurity #HA Mode #Hotfix #rce #Remote Code Execution #SMTP Proxy #Sophos Firewall #SPX #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:07:48 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_6704 #CVE_2025_7624 #cybersecurity #HA Mode #Hotfix #rce #Remote Code Execution #SMTP Proxy #Sophos Firewall #SPX #Vulnerability
Daily CyberSecurity
Urgent Sophos Firewall Update: Two Critical RCE Flaws (CVE-2025-6704, CVE-2025-7624) Patched via Hotfixes
Sophos patched five flaws in Sophos Firewall, including two critical RCEs (CVE-2025-6704, CVE-2025-7624) allowing remote attackers to take control under specific conditions.
⤷ Title: Basic SSRF against another back-end system [ES] [PortSwigger]
════════════════════════
𐀪 Author: h0lm3s
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:42:04 GMT
════════════════════════
⌗ Tags: #ethical_hacking #bug_bounty #owasp #cybersecurity #portswigger
════════════════════════
𐀪 Author: h0lm3s
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:42:04 GMT
════════════════════════
⌗ Tags: #ethical_hacking #bug_bounty #owasp #cybersecurity #portswigger
Medium
Basic SSRF against another back-end system [ES] [PortSwigger]
En el laboratorio básico de SSRF aprendimos cómo explotar la vulnerabilidad utilizando consultas al bucle invertido para evadir controles…
⤷ Title: XSS and CSRF Chaining
════════════════════════
𐀪 Author: Samuel Parlindungan Ulysses
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:27:40 GMT
════════════════════════
⌗ Tags: #bug_bounty #web_penetration_testing #penetration_testing
════════════════════════
𐀪 Author: Samuel Parlindungan Ulysses
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:27:40 GMT
════════════════════════
⌗ Tags: #bug_bounty #web_penetration_testing #penetration_testing
Medium
XSS and CSRF Chaining
Hi with me again Samuel Parlindungan Ulysses, CEH, EJPT certified. In this opportunity, I would like to make a walkthrough about XSS and…
⤷ Title: How I Accidentally Became a Bug Hunter !..
════════════════════════
𐀪 Author: Writer
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 01:32:09 GMT
════════════════════════
⌗ Tags: #hacking #tech #bug_bounty #cybersecurity #my_first_post
════════════════════════
𐀪 Author: Writer
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 01:32:09 GMT
════════════════════════
⌗ Tags: #hacking #tech #bug_bounty #cybersecurity #my_first_post
Medium
How I Accidentally Became a Bug Hunter 🐞!..
Back in Jan 2024, I wasn’t even aware the word “Bug Bounty” existed.
⤷ Title: Understanding and Identifying Race Conditions in Web Security
════════════════════════
𐀪 Author: Yash Pawar @HackersParadise
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 01:21:26 GMT
════════════════════════
⌗ Tags: #web_application_security #race_condition #exploit_race_conditions #bug_bounty #parallel_request_exploit
════════════════════════
𐀪 Author: Yash Pawar @HackersParadise
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 01:21:26 GMT
════════════════════════
⌗ Tags: #web_application_security #race_condition #exploit_race_conditions #bug_bounty #parallel_request_exploit
Medium
Understanding and Identifying Race Conditions in Web Security
A race condition happens when two things happen at the same time — and the system gets confused or makes bad decisions because it wasn’t…
⤷ Title: Common Mistakes in Web Application Security
════════════════════════
𐀪 Author: Steve Splash
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 01:10:15 GMT
════════════════════════
⌗ Tags: #cybersecurity #secure_coding #wordpress_web_development #application_security #web_security
════════════════════════
𐀪 Author: Steve Splash
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 01:10:15 GMT
════════════════════════
⌗ Tags: #cybersecurity #secure_coding #wordpress_web_development #application_security #web_security
Medium
Common Mistakes in Web Application Security
Hey there, web developers and security enthusiasts! If you’re building or maintaining a web application, you know security is a big deal…
⤷ Title: Tuesday Morning Threat Report: Jul 22, 2025
════════════════════════
𐀪 Author: Mark Maguire
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:02:55 GMT
════════════════════════
⌗ Tags: #cybersecurity #salt_typhoon #hacking #elmo
════════════════════════
𐀪 Author: Mark Maguire
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 02:02:55 GMT
════════════════════════
⌗ Tags: #cybersecurity #salt_typhoon #hacking #elmo
Medium
Tuesday Morning Threat Report: Jul 22, 2025
Chinese hackers breach the National Guard, Microsoft SharePoint is vulnerable, and Louis Vuitton is breached for the third time
⤷ Title: The Attacking Phase: Where Hackers Thrive and Defenders Sleep
════════════════════════
𐀪 Author: Ahmed Awad ( NullC0d3 )
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 01:37:18 GMT
════════════════════════
⌗ Tags: #cybersecurity #life_lessons #hacking #security #life
════════════════════════
𐀪 Author: Ahmed Awad ( NullC0d3 )
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 01:37:18 GMT
════════════════════════
⌗ Tags: #cybersecurity #life_lessons #hacking #security #life
Medium
The Attacking Phase: Where Hackers Thrive and Defenders Sleep
“Most breaches don’t begin with malware. They begin with someone not paying attention.”
⤷ Title: Part II: The Modern CISO In the Trenches
════════════════════════
𐀪 Author: Kalpitha S
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 01:31:49 GMT
════════════════════════
⌗ Tags: #ciso #hacking #information_security #cybersecurity #threat_intelligence
════════════════════════
𐀪 Author: Kalpitha S
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 01:31:49 GMT
════════════════════════
⌗ Tags: #ciso #hacking #information_security #cybersecurity #threat_intelligence
Medium
Part II: The Modern CISO In the Trenches
Veteran CISO says that security professionals must ask themselves: “What do I need to protect?”
⤷ Title: Part I: The Modern CISO
════════════════════════
𐀪 Author: Kalpitha S
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 01:02:00 GMT
════════════════════════
⌗ Tags: #ciso #hacking #supply_chain_attack #artificial_intelligence #cybersecurity
════════════════════════
𐀪 Author: Kalpitha S
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 01:02:00 GMT
════════════════════════
⌗ Tags: #ciso #hacking #supply_chain_attack #artificial_intelligence #cybersecurity
Medium
Part I: The Modern CISO
This article was originally published on Feb 26, 2021, written by Sarah King