⤷ Title: CL-UNK-0979 Exploit Zero-Day Flaw in Ivanti Connect Secure to Gain Access to Networks
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Sun, 19 Jan 2025 00:06:17 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability #CL_UNK_0979 #CVE_2025_0282 #SPAWNSNAIL #SPAWNSNAIL backdoor
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Sun, 19 Jan 2025 00:06:17 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability #CL_UNK_0979 #CVE_2025_0282 #SPAWNSNAIL #SPAWNSNAIL backdoor
Daily CyberSecurity
CL-UNK-0979 Exploit Zero-Day Flaw in Ivanti Connect Secure to Gain Access to Networks
Stay informed about the latest vulnerabilities in Ivanti products. CVE-2025-0282 and CVE-2025-0283 can allow attackers to remotely execute code and escalate privileges.
⤷ Title: CL-STA-0048: Chinese-Linked APT Targets Telecoms in South Asia
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Tue, 04 Feb 2025 02:35:43 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #apache Tomcat #Chinese APT Groups #CL_STA_0048 #Cobalt Strike #Hex Staging #IIS servers #MSSQL server #SoftEther VPN #SQLcmd #Winos4.0 Downloader
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Tue, 04 Feb 2025 02:35:43 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #apache Tomcat #Chinese APT Groups #CL_STA_0048 #Cobalt Strike #Hex Staging #IIS servers #MSSQL server #SoftEther VPN #SQLcmd #Winos4.0 Downloader
Cybersecurity News
CL-STA-0048: Chinese-Linked APT Targets Telecoms in South Asia
Uncover the details of a newly identified cyberespionage campaign, CL-STA-0048, targeting high-value organizations in South Asia.
⤷ Title: North Korean Hackers Deploy RustDoor and Koi Stealer to Target Cryptocurrency Developers on macOS
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Fri, 28 Feb 2025 02:12:23 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Alluring Pisces #BlueNoroff #CL_STA_240 #Contagious Interview #Koi Stealer #macOS #Rustdoor #Sapphire Sleet #visual studio
════════════════════════
𐀪 Author: do son
════════════════════════
ⴵ Time: Fri, 28 Feb 2025 02:12:23 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Alluring Pisces #BlueNoroff #CL_STA_240 #Contagious Interview #Koi Stealer #macOS #Rustdoor #Sapphire Sleet #visual studio
Cybersecurity News
North Korean Hackers Deploy RustDoor and Koi Stealer to Target Cryptocurrency Developers on macOS
Discover the Koi Stealer & RustDoor malware and how it threatens macOS users in the cryptocurrency sector with sophisticated cyberattacks.
⤷ Title: African Financial Institutions Targeted: “CL-CRI-1014” IAB Uses Open-Source Tools & Forged Signatures for Covert Access
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sun, 29 Jun 2025 07:22:09 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Africa #Chisel #CL_CRI_1014 #Classroom Spy #cyberattack #cybersecurity #Financial Institutions #IAB #Initial Access Broker #Palo Alto Networks #PoshC2 #Threat Actor
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sun, 29 Jun 2025 07:22:09 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Africa #Chisel #CL_CRI_1014 #Classroom Spy #cyberattack #cybersecurity #Financial Institutions #IAB #Initial Access Broker #Palo Alto Networks #PoshC2 #Threat Actor
Penetration Testing Tools
African Financial Institutions Targeted: "CL-CRI-1014" IAB Uses Open-Source Tools & Forged Signatures for Covert Access
Palo Alto Networks exposes CL-CRI-1014, an IAB targeting African financial institutions. They use open-source tools like PoshC2 and Classroom Spy, disguised with forged signatures for covert network access.
⤷ Title: Jingle Thief Cybercrime Gang Steals Hundreds of Thousands in Gift Card Fraud via Microsoft 365 Identity Abuse
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 24 Oct 2025 00:22:24 +0000
════════════════════════
⌗ Tags: #Vulnerability #CL_CRI_1032 #Cloud Security #gift card fraud #Identity Abuse #Jingle Thief #Microsoft 365 #Morocco #phishing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 24 Oct 2025 00:22:24 +0000
════════════════════════
⌗ Tags: #Vulnerability #CL_CRI_1032 #Cloud Security #gift card fraud #Identity Abuse #Jingle Thief #Microsoft 365 #Morocco #phishing
Daily CyberSecurity
Jingle Thief Cybercrime Gang Steals Hundreds of Thousands in Gift Card Fraud via Microsoft 365 Identity Abuse
Unit 42 exposed Jingle Thief, a Morocco-linked group exploiting Microsoft 365 credentials via phishing. They maintain 10-month access to issue fraudulent gift cards worth hundreds of thousands of dollars.
⤷ Title: “CL Suite” Deception: Malicious Chrome Extension Steals 2FA Secrets and Meta Business Data
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Feb 2026 00:07:00 +0000
════════════════════════
⌗ Tags: #Malware #2FA Theft #Account Takeover #CL Suite #Cyber Security #Facebook Business #Instagram Business #Malicious Chrome Extension #Meta Business Suite #Socket Threat Research #TOTP Seeds
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 17 Feb 2026 00:07:00 +0000
════════════════════════
⌗ Tags: #Malware #2FA Theft #Account Takeover #CL Suite #Cyber Security #Facebook Business #Instagram Business #Malicious Chrome Extension #Meta Business Suite #Socket Threat Research #TOTP Seeds
Daily CyberSecurity
"CL Suite" Deception: Malicious Chrome Extension Steals 2FA Secrets and Meta Business Data
"CL Suite" Chrome extension steals Meta Business 2FA seeds & data. Attackers bypass security even after uninstall. Reset 2FA immediately.
⤷ Title: CL-UNK-1068: The Stealthy Chinese Threat Actor Haunting Asian Infrastructure
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 00:08:39 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Chinese APT #CL_UNK_1068 #cyber_espionage #cybersecurity #data exfiltration #GodZilla Web Shell #infosec #LOLBins #threat intelligence #Unit 42
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Mar 2026 00:08:39 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Chinese APT #CL_UNK_1068 #cyber_espionage #cybersecurity #data exfiltration #GodZilla Web Shell #infosec #LOLBins #threat intelligence #Unit 42
Daily CyberSecurity
CL-UNK-1068: The Stealthy Chinese Threat Actor Haunting Asian Infrastructure
Unit 42 uncovers CL-UNK-1068, a Chinese APT targeting Asian critical infrastructure using stealthy web shells, LOLBINs, and screen-printed exfiltration.
⤷ Title: Unit 42 Unmasks CL-STA-1087’s Years-Long Cyber Espionage Against Asian Militaries
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Mar 2026 01:54:05 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #AppleChris Backdoor #APT #CL_STA_1087 #cyber_espionage #cybersecurity #infosec #MemFun Backdoor #State_Sponsored Threat #threat intelligence #Unit 42
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 13 Mar 2026 01:54:05 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #AppleChris Backdoor #APT #CL_STA_1087 #cyber_espionage #cybersecurity #infosec #MemFun Backdoor #State_Sponsored Threat #threat intelligence #Unit 42
Daily CyberSecurity
Unit 42 Unmasks CL-STA-1087's Years-Long Cyber Espionage Against Asian Militaries
Unit 42 exposes CL-STA-1087, a suspected Chinese state-sponsored cyber espionage group using custom backdoors to infiltrate Asian military networks.
⤷ Title: State-Sponsored Actors Weaponize Critical PAN-OS Zero-Day for Root
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 07 May 2026 01:55:47 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #buffer overflow #captive portal #CL_STA_1132 #CVE_2026_0300 #cyber_espionage #Edge Security #infosec #Palo Alto Networks #PAN_OS #Root RCE #Unit 42 #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 07 May 2026 01:55:47 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #buffer overflow #captive portal #CL_STA_1132 #CVE_2026_0300 #cyber_espionage #Edge Security #infosec #Palo Alto Networks #PAN_OS #Root RCE #Unit 42 #zero_day
Daily CyberSecurity
State-Sponsored Actors Weaponize Critical PAN-OS Zero-Day for Root
Palo Alto Networks warns of active root RCE (CVE-2026-0300) in PAN-OS. State-sponsored cluster CL-STA-1132 is targeting edge assets. Patch and restrict now!
⤷ Title: TinyRCT Backdoor Attacks Target Asian Critical Infrastructure
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 30 Jun 2026 06:29:28 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CL_STA_1062 #cyber_espionage #malware #Southeast Asia #TinyRCT
════════════════════════
𐀪 Author: Do Son
════════════════════════
ⴵ Time: Tue, 30 Jun 2026 06:29:28 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CL_STA_1062 #cyber_espionage #malware #Southeast Asia #TinyRCT
Daily CyberSecurity
TinyRCT Backdoor Attacks Target Asian Critical Infrastructure
At a glance Actor or Group: CL-STA-1062 (suspected Chinese-speaking actors) Activity Type: Cyber espionage and network infiltration Targets or Victims: Southeast Asian critical energy infrastructu…
⤷ Title: CL-STA-1062 Cyber Espionage Targets Southeast Asia
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Wed, 01 Jul 2026 06:53:56 +0000
════════════════════════
⌗ Tags: #Malware #CL_STA_1062 #Cyber Espionage #Infosec #TinyRCT
════════════════════════
𐀪 Author: Nam Phong
════════════════════════
ⴵ Time: Wed, 01 Jul 2026 06:53:56 +0000
════════════════════════
⌗ Tags: #Malware #CL_STA_1062 #Cyber Espionage #Infosec #TinyRCT
Information Security News
CL-STA-1062 Cyber Espionage Targets Southeast Asia
The Silent Infiltration Strategy A multi-year intelligence operation rarely reveals itself through a single catastrophic breach. Instead, it emerges through a clandestine sequence of quiet infiltr…