⤷ Title: China-Linked Hackers Hit US Tech Firms with BRICKSTORM Malware
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Thu, 25 Sep 2025 09:53:15 +0000
════════════════════════
⌗ Tags: #Security #Malware #0day #BRICKSTORM #China #Cyber Attack #Cybersecurity #Google #Linux #Mandiant #SaaS #UNC5221 #Vulnerability
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Thu, 25 Sep 2025 09:53:15 +0000
════════════════════════
⌗ Tags: #Security #Malware #0day #BRICKSTORM #China #Cyber Attack #Cybersecurity #Google #Linux #Mandiant #SaaS #UNC5221 #Vulnerability
Hackread
China-Linked Hackers Hit US Tech Firms with BRICKSTORM Malware
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: 393 Days Undetected: China-Linked UNC5221 Uses BRICKSTORM Backdoor to Exploit Ivanti Zero-Days
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 26 Sep 2025 04:01:50 +0000
════════════════════════
⌗ Tags: #Cyber Security #Backdoor #BRICKSTORM #China Espionage #cybersecurity #Ivanti #Mandiant #UNC5221 #vmware #zero_day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 26 Sep 2025 04:01:50 +0000
════════════════════════
⌗ Tags: #Cyber Security #Backdoor #BRICKSTORM #China Espionage #cybersecurity #Ivanti #Mandiant #UNC5221 #vmware #zero_day
Penetration Testing Tools
393 Days Undetected: China-Linked UNC5221 Uses BRICKSTORM Backdoor to Exploit Ivanti Zero-Days
China-linked UNC5221 exploited Ivanti zero-days to deploy BRICKSTORM malware, maintaining covert access on unmonitored devices for an average of 393 days.
⤷ Title: Cl0p-Linked Gang Attempts to Extort Oracle E-Business Customers
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 12:17:26 +0000
════════════════════════
⌗ Tags: #Cyber Crime #Cyber Attacks #Security #Cl0p #Cyber Attack #Cybersecurity #FIN11 #Google #Mandiant #Ransomware
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 12:17:26 +0000
════════════════════════
⌗ Tags: #Cyber Crime #Cyber Attacks #Security #Cl0p #Cyber Attack #Cybersecurity #FIN11 #Google #Mandiant #Ransomware
Hackread
Cl0p-Linked Gang Attempts to Extort Oracle E-Business Customers
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: CL0P Extortion: Google/Mandiant Expose Zero-Day RCE in Oracle E-Business Suite (CVE-2025-61882)
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 10 Oct 2025 02:56:41 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Vulnerability Report #Cl0p #CVE_2025_61882 #Cyber Extortion #Google GTIG #Mandiant #Oracle EBS #rce
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 10 Oct 2025 02:56:41 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Vulnerability Report #Cl0p #CVE_2025_61882 #Cyber Extortion #Google GTIG #Mandiant #Oracle EBS #rce
Daily CyberSecurity
CL0P Extortion: Google/Mandiant Expose Zero-Day RCE in Oracle E-Business Suite (CVE-2025-61882)
Google/Mandiant linked CL0P extortion to a Zero-Day RCE flaw (CVE-2025-61882) in Oracle E-Business Suite. Attackers exploited the bug since July to steal corporate data and deploy GOLDVEIN Java shells.
⤷ Title: Nevada Ransomware Attack: Inside the $1.3M Recovery After Zero-Ransom Strategy
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 10 Nov 2025 02:39:21 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cyberattack #DigitalTransparency #GovernmentSecurity #IncidentResponse #Mandiant #Nevada #ransomware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 10 Nov 2025 02:39:21 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cyberattack #DigitalTransparency #GovernmentSecurity #IncidentResponse #Mandiant #Nevada #ransomware
Penetration Testing Tools
Nevada Ransomware Attack: Inside the $1.3M Recovery After Zero-Ransom Strategy
Nevada releases report on a large-scale government ransomware attack. It cost $1.3M and 4,000 overtime hours to restore systems without paying the ransom.
⤷ Title: Critical Triofox Zero-Day (CVE-2025-12480) Under Active Exploit: Host Header Bypass Allows Unauthenticated Admin Takeover
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 02:01:48 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #Gladinet #Host Header Spoofing #Mandiant #Triofox #UNC6485 #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 02:01:48 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #Gladinet #Host Header Spoofing #Mandiant #Triofox #UNC6485 #zero_day
Daily CyberSecurity
Critical Triofox Zero-Day (CVE-2025-12480) Under Active Exploit: Host Header Bypass Allows Unauthenticated Admin Takeover
Mandiant exposed UNC6485 exploiting a Triofox zero-day (CVE-2025-12480). The critical flaw allows unauthenticated admin takeover by spoofing the HTTP Host header to bypass authentication checks.
⤷ Title: Mandiant: Triofox Zero-Day Exploited to Gain SYSTEM Access via Antivirus Feature
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 02:59:46 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_12480 #Gladinet #HTTPHostHeader #Mandiant #RCE #Triofox #UNC6485 #zeroday
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 02:59:46 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_12480 #Gladinet #HTTPHostHeader #Mandiant #RCE #Triofox #UNC6485 #zeroday
Penetration Testing Tools
Mandiant: Triofox Zero-Day Exploited to Gain SYSTEM Access via Antivirus Feature
A critical Triofox zero-day (CVE-2025-12480) was exploited by UNC6485. Attackers bypassed auth via Host header, created an admin, and ran code as SYSTEM via the AV check.
⤷ Title: “IT Support” Imposters: ShinyHunters Vishing Rings Bypass MFA to Steal Data
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 00:40:50 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cloud Security #Corporate Security #Extortion #identity theft #Mandiant #MFA Bypass #ShinyHunters #social engineering #UNC6661 #UNC6671 #Vishing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 04 Feb 2026 00:40:50 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cloud Security #Corporate Security #Extortion #identity theft #Mandiant #MFA Bypass #ShinyHunters #social engineering #UNC6661 #UNC6671 #Vishing
Daily CyberSecurity
"IT Support" Imposters: ShinyHunters Vishing Rings Bypass MFA to Steal Data
Mandiant warns of vishing rings like ShinyHunters impersonating IT support to bypass MFA and steal corporate cloud data. Verify your callers.
⤷ Title: Fake CEO, Real Hack: North Korea Uses AI Deepfakes to Steal Crypto
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Feb 2026 00:32:29 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #AI Threat #CHROMEPUSH #Cryptocurrency Theft #DEEPBREATH #Deepfake Attack #macOS Malware #Mandiant #SILENCELIFT #social engineering #UNC1069
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 11 Feb 2026 00:32:29 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #AI Threat #CHROMEPUSH #Cryptocurrency Theft #DEEPBREATH #Deepfake Attack #macOS Malware #Mandiant #SILENCELIFT #social engineering #UNC1069
Daily CyberSecurity
Fake CEO, Real Hack: North Korea Uses AI Deepfakes to Steal Crypto
North Korean hackers (UNC1069) use AI deepfakes & "ClickFix" tactics to deploy SILENCELIFT malware. Learn how they target crypto firms via Zoom.
⤷ Title: Ghost NICs & Secret Knocks: Dell Zero-Day (CVSS 10) Exploited by UNC6201
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 18 Feb 2026 00:18:33 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability Report #CVE_2026_22769 #Dell RecoverPoint #ESXi Security #Ghost NICs #GRIMBOLT #Mandiant #SLAYSTYLE #UNC6201 #Virtualization Security #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 18 Feb 2026 00:18:33 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability Report #CVE_2026_22769 #Dell RecoverPoint #ESXi Security #Ghost NICs #GRIMBOLT #Mandiant #SLAYSTYLE #UNC6201 #Virtualization Security #zero_day
Daily CyberSecurity
Ghost NICs & Secret Knocks: Dell Zero-Day (CVSS 10) Exploited by UNC6201
Mandiant reveals UNC6201 exploiting Dell RecoverPoint zero-day CVE-2026-22769. Attackers use "Ghost NICs" & GRIMBOLT malware. Patch now.