⤷ Title: Cap: HackTheBox Retired Machine
════════════════════════
𐀪 Author: Bridget
════════════════════════
ⴵ Time: Thu, 21 Aug 2025 22:01:54 GMT
════════════════════════
⌗ Tags: #linpeas #privilege_escalation #hackthebox #hackthebox_writeup #idor
════════════════════════
𐀪 Author: Bridget
════════════════════════
ⴵ Time: Thu, 21 Aug 2025 22:01:54 GMT
════════════════════════
⌗ Tags: #linpeas #privilege_escalation #hackthebox #hackthebox_writeup #idor
Medium
Cap: HackTheBox Retired Machine
Exploiting Insecure Direct Object Reference and Linux Capabilities through Privilege escalation using Linpeas in the Cap HackTheBox machine
⤷ Title: Advancing Vulnerability Assessment and Ethical Challenges
════════════════════════
𐀪 Author: Cyber Security Research
════════════════════════
ⴵ Time: Thu, 21 Aug 2025 22:04:06 GMT
════════════════════════
⌗ Tags: #security_testing #ethical_hacking #vulnerability_assessment #information_security #cybersecurity_ethics
════════════════════════
𐀪 Author: Cyber Security Research
════════════════════════
ⴵ Time: Thu, 21 Aug 2025 22:04:06 GMT
════════════════════════
⌗ Tags: #security_testing #ethical_hacking #vulnerability_assessment #information_security #cybersecurity_ethics
Medium
Advancing Vulnerability Assessment and Ethical Challenges
The digital landscape continuously evolves, making robust vulnerability assessment more critical than ever before. As organizations face…
⤷ Title: HTTP Host header attacks
════════════════════════
𐀪 Author: Usama Hanif
════════════════════════
ⴵ Time: Thu, 21 Aug 2025 22:09:23 GMT
════════════════════════
⌗ Tags: #ssrf #host_header_injection #portswigger #portswigger_lab #http_host_header_attack
════════════════════════
𐀪 Author: Usama Hanif
════════════════════════
ⴵ Time: Thu, 21 Aug 2025 22:09:23 GMT
════════════════════════
⌗ Tags: #ssrf #host_header_injection #portswigger #portswigger_lab #http_host_header_attack
Medium
HTTP Host header attacks
APPERENTICE-PRACTITIONER Labs
⤷ Title: CVE-2025-55746: Critical Directus Flaw Exposes Servers to Unauthenticated File Upload and RCE
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:30:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_55746 #cybersecurity #Directus #file upload #open_source #rce #Vulnerability #Web Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:30:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_55746 #cybersecurity #Directus #file upload #open_source #rce #Vulnerability #Web Security
Daily CyberSecurity
CVE-2025-55746: Critical Directus Flaw Exposes Servers to Unauthenticated File Upload and RCE
A critical vulnerability in the Directus API (CVE-2025-55746) allows unauthenticated attackers to silently upload and modify files, leading to webshells and RCE.
⤷ Title: CVE-2024-36401 Exploited in Stealthy Bandwidth-Monetization Campaign
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:28:54 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Vulnerability Report #CVE_2024_36401 #Cybercrime #cybersecurity #GeoServer #passive income #rce #Remote Code Execution #Unit 42 #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:28:54 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Vulnerability Report #CVE_2024_36401 #Cybercrime #cybersecurity #GeoServer #passive income #rce #Remote Code Execution #Unit 42 #Vulnerability
Daily CyberSecurity
CVE-2024-36401 Exploited in Stealthy Bandwidth-Monetization Campaign
A new report reveals a stealthy attack on GeoServer using a critical RCE flaw. Instead of ransomware, attackers are hijacking servers to earn passive income.
⤷ Title: UAC-0057 Targets Ukraine and Poland with Weaponized Archives and Evolving Implants
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:23:53 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cyber_espionage #cybersecurity #Disinformation #Ghostwriter #HarfangLab #malware #Poland #threat actor #UAC_0057 #Ukraine
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:23:53 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cyber_espionage #cybersecurity #Disinformation #Ghostwriter #HarfangLab #malware #Poland #threat actor #UAC_0057 #Ukraine
Daily CyberSecurity
UAC-0057 Targets Ukraine and Poland with Weaponized Archives and Evolving Implants
A new report from HarfangLab details two recent UAC-0057 (Ghostwriter) campaigns targeting Ukraine and Poland with malicious archives and multi-stage implants.
⤷ Title: CVE-2025-9288: Critical Flaw in Popular JavaScript Library Threatens Global Web Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:18:55 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #cryptographic #CVE_2025_9288 #cybersecurity #hash collision #javascript #Node.js #sha.js #Vulnerability #Web Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:18:55 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #cryptographic #CVE_2025_9288 #cybersecurity #hash collision #javascript #Node.js #sha.js #Vulnerability #Web Security
Daily CyberSecurity
CVE-2025-9288: Critical Flaw in Popular JavaScript Library Threatens Global Web Security
A critical flaw in the widely used sha.js library (CVE-2025-9288) can lead to hash collisions and private key extraction, threatening web applications.
⤷ Title: ClickFix and CORNFLAKE.V3: Mandiant Uncovers a New Wave of Access-as-a-Service Campaigns
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:11:05 +0000
════════════════════════
⌗ Tags: #Cybercriminals #access_as_a_service #CORNFLAKE #Cybercrime #cybersecurity #malware #phishing #social engineering #threat intelligence #UNC5518
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:11:05 +0000
════════════════════════
⌗ Tags: #Cybercriminals #access_as_a_service #CORNFLAKE #Cybercrime #cybersecurity #malware #phishing #social engineering #threat intelligence #UNC5518
Daily CyberSecurity
ClickFix and CORNFLAKE.V3: Mandiant Uncovers a New Wave of Access-as-a-Service Campaigns
UNC5518 is using "ClickFix," a new technique that weaponizes fake CAPTCHAs to trick users into launching malware and providing access to other criminal groups.
⤷ Title: DDoS Onslaught: Hacktivists and Botnets Drive Massive Surge in Cyber Attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:05:28 +0000
════════════════════════
⌗ Tags: #Cybercriminals #botnet #cyber attack #cybersecurity #ddos #Hacktivism #internet security #NETSCOUT #NoName057(16) #Threat Report
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:05:28 +0000
════════════════════════
⌗ Tags: #Cybercriminals #botnet #cyber attack #cybersecurity #ddos #Hacktivism #internet security #NETSCOUT #NoName057(16) #Threat Report
Daily CyberSecurity
DDoS Onslaught: Hacktivists and Botnets Drive Massive Surge in Cyber Attacks
⤷ Title: Spear-Phishing Campaign Targets CFOs with Sophisticated Multi-Stage Intrusion
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:00:22 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CFO #cyber attack #cybersecurity #executive protection #finance #MuddyWater #social engineering #spear_phishing #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:00:22 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CFO #cyber attack #cybersecurity #executive protection #finance #MuddyWater #social engineering #spear_phishing #threat intelligence
Daily CyberSecurity
Spear-Phishing Campaign Targets CFOs with Sophisticated Multi-Stage Intrusion
A new report reveals a sophisticated spear-phishing campaign targeting finance executives. The attack uses social engineering and legitimate tools to evade detection.
⤷ Title: FOFA: La Guía Definitiva para el Reconocimiento de Activos en Bug Bounty y OSINT
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:03:34 GMT
════════════════════════
⌗ Tags: #osint #bug_bounty #ethical_hacking #technology #cybersecurity
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:03:34 GMT
════════════════════════
⌗ Tags: #osint #bug_bounty #ethical_hacking #technology #cybersecurity
Medium
FOFA: La Guía Definitiva para el Reconocimiento de Activos en Bug Bounty y OSINT
Aprende a usar FOFA para el reconocimiento de activos, búsqueda de vulnerabilidades y programas de Bug Bounty.
⤷ Title: Cybersecurity guide blog
════════════════════════
𐀪 Author: Labib Yasir
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:15:07 GMT
════════════════════════
⌗ Tags: #darkweb #hacking #cybersecurity
════════════════════════
𐀪 Author: Labib Yasir
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:15:07 GMT
════════════════════════
⌗ Tags: #darkweb #hacking #cybersecurity
Medium
Cybersecurity guide blog
This is why the demand for a hire a hacker service has increased dramatically. Contrary to popular belief, these services aren’t limited to…
⤷ Title: Criminal IP Whitepaper: 7 Ways to Leverage Threat Intelligence in Security Operations
════════════════════════
𐀪 Author: Criminal IP
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:32:37 GMT
════════════════════════
⌗ Tags: #security #cybersecurity #cip #white_papers #threat_intelligence
════════════════════════
𐀪 Author: Criminal IP
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:32:37 GMT
════════════════════════
⌗ Tags: #security #cybersecurity #cip #white_papers #threat_intelligence
Medium
Criminal IP Whitepaper: 7 Ways to Leverage Threat Intelligence in Security Operations
Harnessing Threat Intelligence to Enhance Synergy Across Security Products
⤷ Title: Planning a HomeLab for Cybersecurity and AI
════════════════════════
𐀪 Author: Mike Chung
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:29:43 GMT
════════════════════════
⌗ Tags: #proxmox #cybersecurity #homelab #information_technology #ai
════════════════════════
𐀪 Author: Mike Chung
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:29:43 GMT
════════════════════════
⌗ Tags: #proxmox #cybersecurity #homelab #information_technology #ai
Medium
Planning a HomeLab for Cybersecurity and AI
For those who don’t know, a HomeLab is a setup that you make at home for learning and experimenting with technology. Although companies…
⤷ Title: When Scammers Get Scammed: The Dark World of Fake Fraud Listings
════════════════════════
𐀪 Author: Internet Exposed
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:19:06 GMT
════════════════════════
⌗ Tags: #scam #fraud #2025_crime #cybersecurity #theft
════════════════════════
𐀪 Author: Internet Exposed
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:19:06 GMT
════════════════════════
⌗ Tags: #scam #fraud #2025_crime #cybersecurity #theft
Medium
When Scammers Get Scammed: The Dark World of Fake Fraud Listings
The dark web is often portrayed as a thriving underground economy where illicit goods and services are only a few clicks away. Counterfeit…
⤷ Title: CPTS: THE HARDEST EXAM I’VE EVER FACED
════════════════════════
𐀪 Author: Erick
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:17:23 GMT
════════════════════════
⌗ Tags: #red_team #pentesting #review #cybersecurity #hackthebox
════════════════════════
𐀪 Author: Erick
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:17:23 GMT
════════════════════════
⌗ Tags: #red_team #pentesting #review #cybersecurity #hackthebox
Medium
CPTS: THE HARDEST EXAM I’VE EVER FACED
Some people chase another shiny logo to add on LinkedIn. I found in CPTS an exam that almost broke me… and in the end, made me grow.
⤷ Title: CPTS: EL EXAMEN MÁS DIFÍCIL AL QUE ME HE ENFRENTADO
════════════════════════
𐀪 Author: Erick
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:03:30 GMT
════════════════════════
⌗ Tags: #cybersecurity #review #pentesting #hackthebox #red_team
════════════════════════
𐀪 Author: Erick
════════════════════════
ⴵ Time: Fri, 22 Aug 2025 00:03:30 GMT
════════════════════════
⌗ Tags: #cybersecurity #review #pentesting #hackthebox #red_team
Medium
CPTS: EL EXAMEN MÁS DIFÍCIL AL QUE ME HE ENFRENTADO
Algunos buscan sumar un logo más a LinkedIn, yo encontré en el CPTS un examen que casi me rompe… y que al final me hizo crecer.
⤷ Title: CAT Reloaded CTF — CATF 2025–DFIR Challenges
════════════════════════
𐀪 Author: mostafa mahmoud
════════════════════════
ⴵ Time: Thu, 21 Aug 2025 23:56:15 GMT
════════════════════════
⌗ Tags: #cybersecurity #ctf
════════════════════════
𐀪 Author: mostafa mahmoud
════════════════════════
ⴵ Time: Thu, 21 Aug 2025 23:56:15 GMT
════════════════════════
⌗ Tags: #cybersecurity #ctf
Medium
CAT Reloaded CTF — CATF 2025–DFIR Challenges
Happy to share with you my writeup for solving last DFIR challenges in CAT Reloaded CTF — CATF2025.
⤷ Title: CAT CTF 2025 web challenges writeup
════════════════════════
𐀪 Author: Mohamedelsayed
════════════════════════
ⴵ Time: Thu, 21 Aug 2025 23:44:40 GMT
════════════════════════
⌗ Tags: #cybersecurity #ctf_writeup #web_hacking #ethical_hacking
════════════════════════
𐀪 Author: Mohamedelsayed
════════════════════════
ⴵ Time: Thu, 21 Aug 2025 23:44:40 GMT
════════════════════════
⌗ Tags: #cybersecurity #ctf_writeup #web_hacking #ethical_hacking
Medium
CAT CTF 2025 web challenges writeup
بسم الله الرحمن الرحيم
⤷ Title: Why Enterprise AI Browser is the Key to Connecting AI with Business Operations
════════════════════════
𐀪 Author: Mammoth Cyber
════════════════════════
ⴵ Time: Thu, 21 Aug 2025 23:33:26 GMT
════════════════════════
⌗ Tags: #information_security #cybersecurity #artificial_intelligence #information_technology #ai
════════════════════════
𐀪 Author: Mammoth Cyber
════════════════════════
ⴵ Time: Thu, 21 Aug 2025 23:33:26 GMT
════════════════════════
⌗ Tags: #information_security #cybersecurity #artificial_intelligence #information_technology #ai
Medium
Why Enterprise AI Browser is the Key to Connecting AI with Business Operations
AI’s Blind Spot: Context Matters
⤷ Title: Nmap Live Host Discovery
════════════════════════
𐀪 Author: Anthony Mazyck
════════════════════════
ⴵ Time: Thu, 21 Aug 2025 23:24:10 GMT
════════════════════════
⌗ Tags: #nmap_live_host_discovery #tryhackme #nmap #tryhackme_walkthrough
════════════════════════
𐀪 Author: Anthony Mazyck
════════════════════════
ⴵ Time: Thu, 21 Aug 2025 23:24:10 GMT
════════════════════════
⌗ Tags: #nmap_live_host_discovery #tryhackme #nmap #tryhackme_walkthrough
Medium
Nmap Live Host Discovery