⤷ Title: HackTheBox Walkthrough: Responder
════════════════════════
𐀪 Author: Eliyauergas
════════════════════════
ⴵ Time: Wed, 30 Jul 2025 21:12:08 GMT
════════════════════════
⌗ Tags: #hackthebox_walkthrough #hackthebox_writeup #hackthebox
════════════════════════
𐀪 Author: Eliyauergas
════════════════════════
ⴵ Time: Wed, 30 Jul 2025 21:12:08 GMT
════════════════════════
⌗ Tags: #hackthebox_walkthrough #hackthebox_writeup #hackthebox
Medium
HackTheBox Walkthrough: Responder
Step 1 — respond to me
⤷ Title: ArmouryLoader: New Sophisticated Malware Evades EDRs by Exploiting ASUS Gaming Software and OpenCL GPU Decryption
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:24:26 +0000
════════════════════════
⌗ Tags: #Malware #ArmouryLoader #ASUS Armoury Crate #cybersecurity #EDR evasion #GPU Decryption #malware #OpenCL #privilege escalation #trojan
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:24:26 +0000
════════════════════════
⌗ Tags: #Malware #ArmouryLoader #ASUS Armoury Crate #cybersecurity #EDR evasion #GPU Decryption #malware #OpenCL #privilege escalation #trojan
Penetration Testing Tools
ArmouryLoader: New Sophisticated Malware Evades EDRs by Exploiting ASUS Gaming Software and OpenCL GPU Decryption
ArmouryLoader is a highly sophisticated malware using OpenCL GPU decryption and advanced obfuscation to bypass EDRs, gaining privilege escalation by hijacking ASUS Armoury Crate.
⤷ Title: Raven Stealer Unmasked: New MaaS Infostealer Plunders Data via Reflective Process Hollowing & Telegram Exfil
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:19:59 +0000
════════════════════════
⌗ Tags: #Malware #C++ #cybersecurity #Data Exfiltration #Delphi #Infostealer #MaaS #Malware_as_a_Service #Process Hollowing #Raven Stealer #Telegram
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:19:59 +0000
════════════════════════
⌗ Tags: #Malware #C++ #cybersecurity #Data Exfiltration #Delphi #Infostealer #MaaS #Malware_as_a_Service #Process Hollowing #Raven Stealer #Telegram
Penetration Testing Tools
Raven Stealer Unmasked: New MaaS Infostealer Plunders Data via Reflective Process Hollowing & Telegram Exfil
Cyfirma reveals Raven Stealer, a new, lightweight MaaS infostealer built in Delphi/C++, using reflective process hollowing and Telegram bots for stealthy data exfiltration from browsers.
⤷ Title: Evilent PoC Exposes Windows Event Log Vulnerability, Leaking NetNTLMv2 Credentials via SMB Share
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:05:46 +0000
════════════════════════
⌗ Tags: #Open Source Tool #credential leak #cybersecurity #Event Log #Evilent #NetNTLMv2 #NTLM Coercion #PoC #RPC #SMB #windows
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:05:46 +0000
════════════════════════
⌗ Tags: #Open Source Tool #credential leak #cybersecurity #Event Log #Evilent #NetNTLMv2 #NTLM Coercion #PoC #RPC #SMB #windows
Penetration Testing Tools
Evilent PoC Exposes Windows Event Log Vulnerability, Leaking NetNTLMv2 Credentials via SMB Share
Evilent, a new PoC tool, exploits the Windows Event Log service to coerce connections to an attacker-controlled SMB share, potentially leaking NetNTLMvLMv2 credentials from antivirus scans.
⤷ Title: Critical Flaws (CVSS 9.8) in Honeywell’s Niagara Framework Expose Smart Buildings & Industrial Systems to Root Access
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 30 Jul 2025 23:58:30 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #Honeywell #ICS #Industrial Control Systems #MITM #Niagara Framework #remote code execution #Smart Buildings #Tridium #vulnerability
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 30 Jul 2025 23:58:30 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #Honeywell #ICS #Industrial Control Systems #MITM #Niagara Framework #remote code execution #Smart Buildings #Tridium #vulnerability
Penetration Testing Tools
Critical Flaws (CVSS 9.8) in Honeywell's Niagara Framework Expose Smart Buildings & Industrial Systems to Root Access
Over a dozen critical vulnerabilities (CVSS 9.8) in Honeywell's Niagara Framework expose smart buildings and industrial systems to root-level control via misconfigurations and MitM attacks.
⤷ Title: Critical Gemini CLI Flaw: Google’s AI Tool Allowed Silent Code Execution via Prompt Injection
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 30 Jul 2025 23:30:41 +0000
════════════════════════
⌗ Tags: #Google #Vulnerability #AI #Command Line Interface #cybersecurity #Gemini CLI #google #Prompt Injection #RCE #remote code execution #Tracebit #vulnerability
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 30 Jul 2025 23:30:41 +0000
════════════════════════
⌗ Tags: #Google #Vulnerability #AI #Command Line Interface #cybersecurity #Gemini CLI #google #Prompt Injection #RCE #remote code execution #Tracebit #vulnerability
Penetration Testing Tools
Critical Gemini CLI Flaw: Google's AI Tool Allowed Silent Code Execution via Prompt Injection
Tracebit uncovered a critical flaw in Google's Gemini CLI (v0.1.14 patch available): it allowed silent code execution and data exfiltration via hidden prompt injections in files like README.md.
⤷ Title: ToolShell: Microsoft SharePoint Zero-Day Chain Actively Exploited Globally – Auth Bypass & RCE Confirmed
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 30 Jul 2025 23:18:51 +0000
════════════════════════
⌗ Tags: #Vulnerability #authentication bypass #cybersecurity #Deserialization #exploitation #Microsoft #RCE #SharePoint #ToolShell #vulnerability #zero_day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 30 Jul 2025 23:18:51 +0000
════════════════════════
⌗ Tags: #Vulnerability #authentication bypass #cybersecurity #Deserialization #exploitation #Microsoft #RCE #SharePoint #ToolShell #vulnerability #zero_day
Penetration Testing Tools
ToolShell: Microsoft SharePoint Zero-Day Chain Actively Exploited Globally – Auth Bypass & RCE Confirmed
Kaspersky reports the ToolShell exploit chain (CVE-2025-49706, -49704, -53770, -53771) actively targets SharePoint servers globally, enabling unauthenticated RCE and auth bypass.
⤷ Title: Kaspersky Uncovers Stealthy Cyberespionage: Russia & Asia Targeted by DLL Hijacking & Social Media C2
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:28:14 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BugSplatRc64.dll #Cobalt Strike #Cyberespionage #DLL hijacking #IT Companies #kaspersky #malware #russia #Social Media
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:28:14 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BugSplatRc64.dll #Cobalt Strike #Cyberespionage #DLL hijacking #IT Companies #kaspersky #malware #russia #Social Media
Daily CyberSecurity
Kaspersky Uncovers Stealthy Cyberespionage: Russia & Asia Targeted by DLL Hijacking & Social Media C2
Kaspersky exposes a stealthy cyberespionage campaign targeting Russian IT firms and global businesses, using DLL hijacking, social media C2, and obfuscation to deploy Cobalt Strike.
⤷ Title: Unseen Threat: Group-IB Exposes How Hackers Use Linux Bind Mounts to Hide ATM Attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:22:44 +0000
════════════════════════
⌗ Tags: #Cybercriminals #anti_forensics #ATM #Bind Mounts #cyberattack #Group_IB #Linux #MITRE ATT&CK #Raspberry Pi #TINYSHELL #UNC2891
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:22:44 +0000
════════════════════════
⌗ Tags: #Cybercriminals #anti_forensics #ATM #Bind Mounts #cyberattack #Group_IB #Linux #MITRE ATT&CK #Raspberry Pi #TINYSHELL #UNC2891
Daily CyberSecurity
Unseen Threat: Group-IB Exposes How Hackers Use Linux Bind Mounts to Hide ATM Attack
Group-IB uncovers how UNC2891 used Linux bind mounts (MITRE T1564.013) to hide a physical ATM cyberattack, involving a Raspberry Pi and a plan to tamper with HSMs for fraudulent withdrawals.
⤷ Title: GOLD BLADE Unleashes RedLoader with Novel Attack Chain: LNK Files + WebDAV + DLL Sideloading Evades Detection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:15:51 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #DLL Sideloading #evasion #GOLD BLADE #LNK File #malware #RedLoader #Sophos #threat actor #WebDAV
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:15:51 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #DLL Sideloading #evasion #GOLD BLADE #LNK File #malware #RedLoader #Sophos #threat actor #WebDAV
Daily CyberSecurity
GOLD BLADE Unleashes RedLoader with Novel Attack Chain: LNK Files + WebDAV + DLL Sideloading Evades Detection
Sophos uncovers a new infection chain for GOLD BLADE's RedLoader malware, combining LNK files, WebDAV, and DLL sideloading to bypass defenses and deploy payloads stealthily.
⤷ Title: JSCEAL Malware Unmasked: Check Point Reveals Massive Campaign Targeting Crypto Users via Malvertising & Node.js
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:10:58 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Check Point Research #crypto #cryptocurrency #cybersecurity #info_stealer #JSCEAL #Malvertising #malware #Node.js
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:10:58 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Check Point Research #crypto #cryptocurrency #cybersecurity #info_stealer #JSCEAL #Malvertising #malware #Node.js
Daily CyberSecurity
JSCEAL Malware Unmasked: Check Point Reveals Massive Campaign Targeting Crypto Users via Malvertising & Node.js
Check Point Research exposes JSCEAL, a stealthy malware campaign using malvertising and fake apps to steal crypto credentials and wallets via compiled JavaScript payloads.
⤷ Title: NOVABLIGHT: New NodeJS Infostealer-as-a-Service Unmasked, Fueled by Fake Games & Disguised as “Educational”
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:07:32 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #Discord #Electron #Infostealer #MaaS #Malware_as_a_Service #nodejs #NOVABLIGHT #Sordeal Group #Telegram
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:07:32 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #Discord #Electron #Infostealer #MaaS #Malware_as_a_Service #nodejs #NOVABLIGHT #Sordeal Group #Telegram
Daily CyberSecurity
NOVABLIGHT: New NodeJS Infostealer-as-a-Service Unmasked, Fueled by Fake Games & Disguised as "Educational"
Elastic Security Labs exposes NOVABLIGHT, a NodeJS-based infostealer-botnet MaaS disguised as an "educational tool," actively distributed via Telegram and targeting victims with fake game installers.
⤷ Title: Opera Sues Microsoft in Brazil, Alleges Anti-Competitive Bundling of Edge with Windows
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:02:59 +0000
════════════════════════
⌗ Tags: #Technology #Antitrust #Brazil #Browser Competition #Bundling #Digital Markets Act #microsoft edge #Opera #windows
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:02:59 +0000
════════════════════════
⌗ Tags: #Technology #Antitrust #Brazil #Browser Competition #Bundling #Digital Markets Act #microsoft edge #Opera #windows
Daily CyberSecurity
Opera Sues Microsoft in Brazil, Alleges Anti-Competitive Bundling of Edge with Windows
Opera has filed an antitrust complaint against Microsoft in Brazil, accusing it of anti-competitive practices by bundling Edge with Windows and hindering rival browsers.
⤷ Title: onsemi & NVIDIA Partner to Revolutionize AI Data Centers with 800VDC Power for Extreme Efficiency
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:00:41 +0000
════════════════════════
⌗ Tags: #Technology #800VDC #AI Data Centers #energy efficiency #High_Performance Computing #HPC #nvidia #onsemi #Power Architecture #Power Management #Sustainability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:00:41 +0000
════════════════════════
⌗ Tags: #Technology #800VDC #AI Data Centers #energy efficiency #High_Performance Computing #HPC #nvidia #onsemi #Power Architecture #Power Management #Sustainability
Daily CyberSecurity
onsemi & NVIDIA Partner to Revolutionize AI Data Centers with 800VDC Power for Extreme Efficiency
onsemi and NVIDIA are collaborating to accelerate AI data centers' shift to an 800VDC power architecture, aiming for massive energy efficiency and power density gains.
⤷ Title: 12 ~/.bashrc Hacks Hackers Can’t Live Without
════════════════════════
𐀪 Author: Very Lazy Tech
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:31:52 GMT
════════════════════════
⌗ Tags: #hacking #bash #bug_bounty #red_team #penetration_testing
════════════════════════
𐀪 Author: Very Lazy Tech
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:31:52 GMT
════════════════════════
⌗ Tags: #hacking #bash #bug_bounty #red_team #penetration_testing
Medium
🧠 12 ~/.bashrc Hacks Hackers Can’t Live Without
Boost your speed, stealth, and shell-fu. These .bashrc hacks aren’t just about aesthetics — they’re about power, precision, and getting…
⤷ Title: Protecting Citrix NetScaler from CitrixBleed 2: Detection and Mitigation Strategies for…
════════════════════════
𐀪 Author: Criminal IP
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:34:16 GMT
════════════════════════
⌗ Tags: #criminal_ip #citrix #threat_intelligence #citrixbleed2 #cybersecurity
════════════════════════
𐀪 Author: Criminal IP
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:34:16 GMT
════════════════════════
⌗ Tags: #criminal_ip #citrix #threat_intelligence #citrixbleed2 #cybersecurity
Medium
Protecting Citrix NetScaler from CitrixBleed 2: Detection and Mitigation Strategies for…
In July 2025, a proof-of-concept (PoC) code for a memory leak vulnerability (CVE-2025–5777) affecting Citrix NetScaler ADC and Gateway…
⤷ Title: Top Private Messaging Applications 2025: Session versus Briar Detailed Analysis
════════════════════════
𐀪 Author: BiyteLüm
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:16:45 GMT
════════════════════════
⌗ Tags: #technology #privacy #messaging #encryption #cybersecurity
════════════════════════
𐀪 Author: BiyteLüm
════════════════════════
ⴵ Time: Thu, 31 Jul 2025 00:16:45 GMT
════════════════════════
⌗ Tags: #technology #privacy #messaging #encryption #cybersecurity
Medium
Top Private Messaging Applications 2025: Session versus Briar Detailed Analysis
Envision this scenario: You’re a reporter in 2025, contacts sharing classified information that could expose corruption. Your device…
⤷ Title: Privacy, Promotion, and Platform Pitfalls: The Case of How Telegram’s Marketing Approach…
════════════════════════
𐀪 Author: Rabel Catayoc, DM
════════════════════════
ⴵ Time: Wed, 30 Jul 2025 23:37:31 GMT
════════════════════════
⌗ Tags: #telegram #cybersecurity #promotion #platform #marketing
════════════════════════
𐀪 Author: Rabel Catayoc, DM
════════════════════════
ⴵ Time: Wed, 30 Jul 2025 23:37:31 GMT
════════════════════════
⌗ Tags: #telegram #cybersecurity #promotion #platform #marketing
Medium
Privacy, Promotion, and Platform Pitfalls: The Case of How Telegram’s Marketing Approach Inadvertently Attracted Illicit Actors
DOI: https://doi.org/10.47175/rissj.v6i2.1127 (read more)
⤷ Title: The Digital Con Game: Why “Digital Dynasties” Captures Our Tech-Obsessed Moment
════════════════════════
𐀪 Author: Ludostuartdouglas
════════════════════════
ⴵ Time: Wed, 30 Jul 2025 23:28:02 GMT
════════════════════════
⌗ Tags: #technology #artificial_intelligence #books #programming #cybersecurity
════════════════════════
𐀪 Author: Ludostuartdouglas
════════════════════════
ⴵ Time: Wed, 30 Jul 2025 23:28:02 GMT
════════════════════════
⌗ Tags: #technology #artificial_intelligence #books #programming #cybersecurity
Medium
The Digital Con Game: Why “Digital Dynasties” Captures Our Tech-Obsessed Moment
The final chapter of Quentin Drummond Anderson’s More Short Stories from Tech delivers a masterclass in contemporary crime fiction that…
⤷ Title: OSCP Prep: DOG
════════════════════════
𐀪 Author: Dino
════════════════════════
ⴵ Time: Wed, 30 Jul 2025 23:16:38 GMT
════════════════════════
⌗ Tags: #ctf #cybersecurity
════════════════════════
𐀪 Author: Dino
════════════════════════
ⴵ Time: Wed, 30 Jul 2025 23:16:38 GMT
════════════════════════
⌗ Tags: #ctf #cybersecurity
Medium
OSCP Prep: DOG
Reconnaissance:
- Nmap to see port 22 and port 80 are open also noticing a .git
- Ferox buster to determine additional web pages noticing…
- Nmap to see port 22 and port 80 are open also noticing a .git
- Ferox buster to determine additional web pages noticing…
⤷ Title: Don’t Click That PyPI Email — It Could Be a Supply Chain Time Bomb
════════════════════════
𐀪 Author: Cyber-AppSec
════════════════════════
ⴵ Time: Wed, 30 Jul 2025 22:56:54 GMT
════════════════════════
⌗ Tags: #ai #cybersecurity #information_security #python #philosophy
════════════════════════
𐀪 Author: Cyber-AppSec
════════════════════════
ⴵ Time: Wed, 30 Jul 2025 22:56:54 GMT
════════════════════════
⌗ Tags: #ai #cybersecurity #information_security #python #philosophy
Medium
Don’t Click That PyPI Email — It Could Be a Supply Chain Time Bomb
It’s 2025, and your package manager login might be your biggest security risk.