⤷ Title: Don’t Panic Yet: Breaking Down the Latest Apache Solr RCE Vulnerability
════════════════════════
𐀪 Author: AerieWhole123
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 02:35:22 GMT
════════════════════════
⌗ Tags: #rce #vulnerability #safeline_waf
════════════════════════
𐀪 Author: AerieWhole123
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 02:35:22 GMT
════════════════════════
⌗ Tags: #rce #vulnerability #safeline_waf
Medium
Don’t Panic Yet: Breaking Down the Latest Apache Solr RCE Vulnerability
> About Author Hi, I’m Sharon, a product manager at Chaitin Tech. We build SafeLine, an open-source Web Application Firewall built for…
⤷ Title: DOJ Charges 22-Year-Old for Running RapperBot Botnet Behind 370,000 DDoS Attacks
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 09:49:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 09:49:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: PyPI Fights Back: New Security Feature Prevents Account Takeovers via Expired Domains
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:41:56 +0000
════════════════════════
⌗ Tags: #Information Security #cybersecurity #Domain Resurrection #open source #PyPI #python #security #supply chain attack
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:41:56 +0000
════════════════════════
⌗ Tags: #Information Security #cybersecurity #Domain Resurrection #open source #PyPI #python #security #supply chain attack
Penetration Testing Tools
PyPI Fights Back: New Security Feature Prevents Account Takeovers via Expired Domains
PyPI is now checking for expired domains to prevent "domain resurrection attacks," a major step in securing the Python Package Index from account takeovers.
⤷ Title: Beyond the Inbox: How a New Phishing Campaign Leverages Copyright Claims to Deliver Noodlophile Malware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:40:01 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #Data Theft #DLL Sideloading #malware #Morphisec #Noodlophile #phishing #Telegram
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:40:01 +0000
════════════════════════
⌗ Tags: #Malware #cybersecurity #Data Theft #DLL Sideloading #malware #Morphisec #Noodlophile #phishing #Telegram
Penetration Testing Tools
Beyond the Inbox: How a New Phishing Campaign Leverages Copyright Claims to Deliver Noodlophile Malware
The Noodlophile malware campaign is now using fake copyright notices and DLL sideloading to steal data from organizations in the US, Europe, and Asia.
⤷ Title: The AI-Nuclear Alliance: Google and TVA Partner to Power Data Centers with Next-Gen Reactors
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:38:04 +0000
════════════════════════
⌗ Tags: #Google #AI #Clean Energy #data centers #google #Kairos Power #Nuclear Energy #SMR #TVA
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:38:04 +0000
════════════════════════
⌗ Tags: #Google #AI #Clean Energy #data centers #google #Kairos Power #Nuclear Energy #SMR #TVA
Penetration Testing Tools
The AI-Nuclear Alliance: Google and TVA Partner to Power Data Centers with Next-Gen Reactors
Google, Kairos Power, and the Tennessee Valley Authority have partnered to power AI data centers with nuclear energy from a new generation of small reactors.
⤷ Title: A “15.8 Million” Account Leak? Hackers Claim New PayPal Data Dump, Company Denies Breach
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:35:05 +0000
════════════════════════
⌗ Tags: #Data Leak #credential stuffing #cybersecurity #Dark Web #data breach #data leak #infostealers #Paypal
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:35:05 +0000
════════════════════════
⌗ Tags: #Data Leak #credential stuffing #cybersecurity #Dark Web #data breach #data leak #infostealers #Paypal
Penetration Testing Tools
A "15.8 Million" Account Leak? Hackers Claim New PayPal Data Dump, Company Denies Breach
Hackers are selling a database of 15.8M PayPal accounts on the dark web. PayPal denies a new breach, saying the data is from a 2022 credential stuffing incident.
⤷ Title: UK Government Drops Demand for iCloud Backdoor
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:33:42 +0000
════════════════════════
⌗ Tags: #Apple #Advanced Data Protection #Backdoor #cybersecurity #Encryption #icloud #privacy #UK government
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:33:42 +0000
════════════════════════
⌗ Tags: #Apple #Advanced Data Protection #Backdoor #cybersecurity #Encryption #icloud #privacy #UK government
Penetration Testing Tools
UK Government Drops Demand for iCloud Backdoor
The UK government has dropped its demand for Apple to install a backdoor in iCloud, a major win for privacy that could see Advanced Data Protection restored.
⤷ Title: A Single Prompt Is All It Takes: Lenovo Chatbot Vulnerability Exposes Customers and Staff
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:32:01 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI #Chatbot #Corporate Security #cybersecurity #data breach #Lenovo #vulnerability #XSS
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:32:01 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI #Chatbot #Corporate Security #cybersecurity #data breach #Lenovo #vulnerability #XSS
Penetration Testing Tools
A Single Prompt Is All It Takes: Lenovo Chatbot Vulnerability Exposes Customers and Staff
A critical XSS vulnerability in Lenovo's corporate chatbot allowed researchers to steal session cookies and access customer support sessions with a single prompt.
⤷ Title: Inside Kimsuky’s GitHub-Powered Cyber-Espionage Campaign
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:28:53 +0000
════════════════════════
⌗ Tags: #Malware #C2 #Cyber Espionage #cybersecurity #Github #Kimsuky #North Korea #Spear Phishing #Trellix
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:28:53 +0000
════════════════════════
⌗ Tags: #Malware #C2 #Cyber Espionage #cybersecurity #Github #Kimsuky #North Korea #Spear Phishing #Trellix
Penetration Testing Tools
Inside Kimsuky's GitHub-Powered Cyber-Espionage Campaign
A new report from Trellix reveals how the Kimsuky group used GitHub and sophisticated spear phishing to conduct a cyber-espionage campaign against diplomatic missions.
⤷ Title: TikTok Shop Is Selling GPS Trackers and Audio Recorders for Stalking Partners
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:23:40 +0000
════════════════════════
⌗ Tags: #Data Leak #cybersecurity #GPS trackers #privacy #Social media #stalkerware #Surveillance #TikTok #TikTok Shop
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:23:40 +0000
════════════════════════
⌗ Tags: #Data Leak #cybersecurity #GPS trackers #privacy #Social media #stalkerware #Surveillance #TikTok #TikTok Shop
Penetration Testing Tools
TikTok Shop Is Selling GPS Trackers and Audio Recorders for Stalking Partners
A 404 Media investigation reveals TikTok Shop is promoting and selling GPS trackers and audio devices explicitly for secretly monitoring partners.
⤷ Title: “Automated and Dangerous”: A New AI Framework Can Run 150+ Hacking Tools Autonomously
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:21:52 +0000
════════════════════════
⌗ Tags: #Open Source Tool #AI Agents #bug bounty #cybersecurity #hacking #HexStrike AI #Penetration Testing #Security Tools
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:21:52 +0000
════════════════════════
⌗ Tags: #Open Source Tool #AI Agents #bug bounty #cybersecurity #hacking #HexStrike AI #Penetration Testing #Security Tools
Penetration Testing Tools
"Automated and Dangerous": A New AI Framework Can Run 150+ Hacking Tools Autonomously
A new AI framework, HexStrike AI, integrates over 150 hacking tools and autonomous agents to automate penetration tests with 98.7% accuracy.
⤷ Title: “A True Nightmare”: Leaked Archive Reveals a Highly Sophisticated Linux Rootkit
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:20:15 +0000
════════════════════════
⌗ Tags: #Malware #cybercrime #cybersecurity #Espionage #Kimsuky #Linux #North Korea #Phrack #rootkit
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:20:15 +0000
════════════════════════
⌗ Tags: #Malware #cybercrime #cybersecurity #Espionage #Kimsuky #Linux #North Korea #Phrack #rootkit
Penetration Testing Tools
"A True Nightmare": Leaked Archive Reveals a Highly Sophisticated Linux Rootkit
A new issue of the hacker magazine Phrack contains a leaked archive detailing a sophisticated Linux rootkit with advanced stealth capabilities used by hackers.
⤷ Title: The Ultimate Betrayal: How Attackers Are Weaponizing Cisco’s Own Safe Links to Phish Users
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:17:00 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cisco Safe Links #Credential Theft #cybersecurity #phishing #raven #Secure Web #Social Engineering
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:17:00 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cisco Safe Links #Credential Theft #cybersecurity #phishing #raven #Secure Web #Social Engineering
Penetration Testing Tools
The Ultimate Betrayal: How Attackers Are Weaponizing Cisco’s Own Safe Links to Phish Users
A new report reveals attackers are weaponizing Cisco’s Safe Links technology, exploiting trust in the "secure-web.cisco.com" domain to bypass email filters.
⤷ Title: Google’s Big Concession: A New Policy Could Upend the Play Store in the EU
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:07:16 +0000
════════════════════════
⌗ Tags: #Technology #Antitrust #App Store #Developers #Digital Markets Act #DMA #EU #google #Google Play #regulation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:07:16 +0000
════════════════════════
⌗ Tags: #Technology #Antitrust #App Store #Developers #Digital Markets Act #DMA #EU #google #Google Play #regulation
Daily CyberSecurity
Google’s Big Concession: A New Policy Could Upend the Play Store in the EU
Google is overhauling its Play Store in the EU to comply with the Digital Markets Act, offering developers new options to steer users to external payment systems.
⤷ Title: ️♂️ Passive Reconnaissance in Penetration Testing: The Art of Staying Unseen (Part 1)
════════════════════════
𐀪 Author: YoungerSibling
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 05:17:41 GMT
════════════════════════
⌗ Tags: #bug_bounty #osint #cybersecurity #penetration_testing #ethical_hacking
════════════════════════
𐀪 Author: YoungerSibling
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 05:17:41 GMT
════════════════════════
⌗ Tags: #bug_bounty #osint #cybersecurity #penetration_testing #ethical_hacking
Medium
🕵️♂️ Passive Reconnaissance in Penetration Testing: The Art of Staying Unseen (Part 1)
When ethical hackers talk about reconnaissance, they don’t just mean scanning ports or brute-forcing login pages. The most skilled…
⤷ Title: Query Gone Wild: How I Turned a Forgotten GraphQL Endpoint into Full Account Access
════════════════════════
𐀪 Author: Iski
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:52:12 GMT
════════════════════════
⌗ Tags: #bug_bounty #money #hacking #cybersecurity #infosec
════════════════════════
𐀪 Author: Iski
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:52:12 GMT
════════════════════════
⌗ Tags: #bug_bounty #money #hacking #cybersecurity #infosec
Medium
🎯 Query Gone Wild: How I Turned a Forgotten GraphQL Endpoint into Full Account Access
Hey there!😁
⤷ Title: Bypassing Authentication with a Single Request: A Real Bug Bounty Story
════════════════════════
𐀪 Author: Aj
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 03:57:11 GMT
════════════════════════
⌗ Tags: #bypassing_authentication #cybersecurity #authentication #hacking #bug_bounty
════════════════════════
𐀪 Author: Aj
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 03:57:11 GMT
════════════════════════
⌗ Tags: #bypassing_authentication #cybersecurity #authentication #hacking #bug_bounty
Medium
Bypassing Authentication with a Single Request: A Real Bug Bounty Story
How one overlooked endpoint turned into a critical payout
⤷ Title: ThunderCipher-Lab[BlueInfect]
════════════════════════
𐀪 Author: Bhuwan Patidar
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:55:13 GMT
════════════════════════
⌗ Tags: #hacking #eternalblue #windows_hacking #learning #cybersecurity
════════════════════════
𐀪 Author: Bhuwan Patidar
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:55:13 GMT
════════════════════════
⌗ Tags: #hacking #eternalblue #windows_hacking #learning #cybersecurity
Medium
ThunderCipher-Lab[BlueInfect]
Hi, I’m Bhuwan Patidar, a VAPT analyst and hacker-mentor from Indore, India, with over 100 reported vulnerabilities and numerous bug bounty…
⤷ Title: Blind XSS — How I Found It
════════════════════════
𐀪 Author: Mejbankadir
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:52:23 GMT
════════════════════════
⌗ Tags: #programming #blind_xss #xss_vulnerability #xss_attack #hacking
════════════════════════
𐀪 Author: Mejbankadir
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 04:52:23 GMT
════════════════════════
⌗ Tags: #programming #blind_xss #xss_vulnerability #xss_attack #hacking
Medium
Blind XSS — How I Found It
Note: This was done under an authorized bug bounty / responsible disclosure program. Everything I share here is for educational, defensive…
⤷ Title: Understanding Operating Systems: Windows and Linux
════════════════════════
𐀪 Author: ZeroCyber
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 05:55:38 GMT
════════════════════════
⌗ Tags: #operating_systems #linux #cybersecurity #windows #cyber_security_awareness
════════════════════════
𐀪 Author: ZeroCyber
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 05:55:38 GMT
════════════════════════
⌗ Tags: #operating_systems #linux #cybersecurity #windows #cyber_security_awareness
Medium
Understanding Operating Systems: Windows and Linux
An operating system (OS) is the software that manages a computer’s hardware and provides the environment where applications run. Without an…
⤷ Title: Why Cyber Security is the Most Demanding Skill in 2025
════════════════════════
𐀪 Author: Yash Mankani
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 05:47:30 GMT
════════════════════════
⌗ Tags: #cybersecurity_classes #cybersecurity
════════════════════════
𐀪 Author: Yash Mankani
════════════════════════
ⴵ Time: Wed, 20 Aug 2025 05:47:30 GMT
════════════════════════
⌗ Tags: #cybersecurity_classes #cybersecurity
Medium
Why Cyber Security is the Most Demanding Skill in 2025
In today’s digital-first world, security is no longer optional — it is a necessity. From small businesses to global enterprises, every…