⤷ Title: RondoDox Botnet Unleashed: New Malware Uses ‘Exploit Shotgun’ to Target 50+ Router and IoT Flaws
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 10 Oct 2025 01:59:52 +0000
════════════════════════
⌗ Tags: #Malware #botnet #Exploit Shotgun #IoT security #Loader_as_a_Service #Mirai #RondoDox #Router Vulnerability #Trend Micro
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 10 Oct 2025 01:59:52 +0000
════════════════════════
⌗ Tags: #Malware #botnet #Exploit Shotgun #IoT security #Loader_as_a_Service #Mirai #RondoDox #Router Vulnerability #Trend Micro
Daily CyberSecurity
RondoDox Botnet Unleashed: New Malware Uses 'Exploit Shotgun' to Target 50+ Router and IoT Flaws
Trend Micro discovered RondoDox, a new botnet leveraging 50+ exploits (including the Pwn2Own TP-Link flaw) in an "exploit shotgun" approach to compromise routers, DVRs, and IoT globally.
⤷ Title: Axis Communications Leaks Azure Credentials in Autodesk Plugin Via Hardcoded SAS Tokens
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 13 Oct 2025 00:26:31 +0000
════════════════════════
⌗ Tags: #Data Leak #Autodesk Revit #Axis Communications #Azure #Credential Leak #SAS Token #Supply Chain #Trend Micro #ZDI_24_1181
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 13 Oct 2025 00:26:31 +0000
════════════════════════
⌗ Tags: #Data Leak #Autodesk Revit #Axis Communications #Azure #Credential Leak #SAS Token #Supply Chain #Trend Micro #ZDI_24_1181
Daily CyberSecurity
Axis Communications Leaks Azure Credentials in Autodesk Plugin Via Hardcoded SAS Tokens
Trend Micro discovered that Axis Communications leaked hardcoded Azure SAS tokens in a signed DLL for its Autodesk Revit plugin, exposing three cloud storage accounts to unauthorized access.
⤷ Title: RondoDox Botnet Firing ‘Exploit Shotgun’: Targets 56 Vulnerabilities Across 30+ Router and IoT Vendors
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 13 Oct 2025 02:37:30 +0000
════════════════════════
⌗ Tags: #Malware #BOTNET #Command Injection #Exploit Shotgun #IoT Security #Mirai #RondoDox #Router Vulnerability #Trend Micro
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 13 Oct 2025 02:37:30 +0000
════════════════════════
⌗ Tags: #Malware #BOTNET #Command Injection #Exploit Shotgun #IoT Security #Mirai #RondoDox #Router Vulnerability #Trend Micro
Penetration Testing Tools
RondoDox Botnet Firing 'Exploit Shotgun': Targets 56 Vulnerabilities Across 30+ Router and IoT Vendors
The RondoDox botnet launched a massive, short-burst campaign, exploiting 56 vulnerabilities in routers and IoT devices with an "exploit shotgun" technique to spread Mirai and Morte malware globally.
⤷ Title: Lumma Stealer Resurfaces After Doxxing with New Browser Fingerprinting to Target High-Value Victims
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 00:10:06 +0000
════════════════════════
⌗ Tags: #Malware #anti_analysis #browser fingerprinting #doxxing #Infostealer #Lumma Stealer #Process injection #Trend Micro
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 00:10:06 +0000
════════════════════════
⌗ Tags: #Malware #anti_analysis #browser fingerprinting #doxxing #Infostealer #Lumma Stealer #Process injection #Trend Micro
Daily CyberSecurity
Lumma Stealer Resurfaces After Doxxing with New Browser Fingerprinting to Target High-Value Victims
Despite a recent doxxing attempt, Lumma Stealer has resurfaced, integrating browser fingerprinting into its C&C to collect WebGL/Canvas signatures for sandbox evasion and victim assessment.
⤷ Title: Water Saci Campaign Uses LLMs to Convert Malware to Python, Spreads Banking Trojan Via WhatsApp Worm
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 00:19:58 +0000
════════════════════════
⌗ Tags: #Malware #AI_Assisted Malware #Banking Trojan #Brazil #LLM Conversion #Trend Micro #Water Saci #WhatsApp Worm
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 04 Dec 2025 00:19:58 +0000
════════════════════════
⌗ Tags: #Malware #AI_Assisted Malware #Banking Trojan #Brazil #LLM Conversion #Trend Micro #Water Saci #WhatsApp Worm
Daily CyberSecurity
Water Saci Campaign Uses LLMs to Convert Malware to Python, Spreads Banking Trojan Via WhatsApp Worm
Trend Micro exposed Water Saci, a campaign using LLMs to convert malware from PowerShell to Python, accelerating its spread via a WhatsApp worm. The multi-stage attack deploys a trojan capable of VNC mirroring and overlay attacks.
⤷ Title: SHADOW-VOID-042 Impersonates Trend Micro in Phishing Campaign to Breach Critical Infrastructure
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 15 Dec 2025 00:38:38 +0000
════════════════════════
⌗ Tags: #Cyber Security #Critical Infrastructure #Impersonation #phishing #RomCom #SHADOW_VOID_042 #spear_phishing #Trend Micro #Void Rabisu
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 15 Dec 2025 00:38:38 +0000
════════════════════════
⌗ Tags: #Cyber Security #Critical Infrastructure #Impersonation #phishing #RomCom #SHADOW_VOID_042 #spear_phishing #Trend Micro #Void Rabisu
Daily CyberSecurity
SHADOW-VOID-042 Impersonates Trend Micro in Phishing Campaign to Breach Critical Infrastructure
SHADOW-VOID-042 impersonated Trend Micro via fake security advisories to breach defense, energy, and chemical firms. Tactics align with Void Rabisu (ROMCOM), using HR lures and targeted exploits.
⤷ Title: Public Exploit Released: Critical Trend Micro Flaw Grants SYSTEM Access
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 02:19:18 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_69258 #DLL hijacking #Enterprise Security #Public Exploit #Remote Code Execution (RCE) #SYSTEM privileges #Tenable #Trend Micro Apex Central
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 09 Jan 2026 02:19:18 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_69258 #DLL hijacking #Enterprise Security #Public Exploit #Remote Code Execution (RCE) #SYSTEM privileges #Tenable #Trend Micro Apex Central
Daily CyberSecurity
Public Exploit Released: Critical Trend Micro Flaw Grants SYSTEM Access
Trend Micro has issued a critical security alert for users of Apex Central (on-premise), patching a dangerous remote code execution (RCE) vulnerability that could allow attackers to hijack systems…
⤷ Title: The Apex Breach: Critical Trend Micro RCE Grants Attackers SYSTEM Control
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 12 Jan 2026 04:15:07 +0000
════════════════════════
⌗ Tags: #Vulnerability #Apex Central #CVE_2025_69258 #DLL Sideloading #InfoSec 2026 #Patch Tuesday #RCE #SYSTEM privileges #Tenable #Trend Micro #Windows Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 12 Jan 2026 04:15:07 +0000
════════════════════════
⌗ Tags: #Vulnerability #Apex Central #CVE_2025_69258 #DLL Sideloading #InfoSec 2026 #Patch Tuesday #RCE #SYSTEM privileges #Tenable #Trend Micro #Windows Security
Information Security News
The Apex Breach: Critical Trend Micro RCE Grants Attackers SYSTEM Control
Trend Micro has remediated a critical vulnerability within the on-premise iteration of Apex Central, a flaw that empowered remote adversaries to execute arbitrary code with SYSTEM-level privileges…
⤷ Title: “TryCloudflare” Abuse: AsyncRAT Exploits Free Tunnels to Build Stealthy WebDAV Network
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 Jan 2026 01:52:42 +0000
════════════════════════
⌗ Tags: #Malware #AsyncRAT #cloudflare #Malware Analysis #phishing #Python Injection #Trend Micro #TryCloudflare #WebDAV
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 Jan 2026 01:52:42 +0000
════════════════════════
⌗ Tags: #Malware #AsyncRAT #cloudflare #Malware Analysis #phishing #Python Injection #Trend Micro #TryCloudflare #WebDAV
Daily CyberSecurity
"TryCloudflare" Abuse: AsyncRAT Exploits Free Tunnels to Build Stealthy WebDAV Network
New AsyncRAT campaign abuses free Cloudflare tunnels for stealthy malware delivery. Learn how phishing emails lead to WebDAV attacks & Python injection.
⤷ Title: The Developer’s Trap: EmEditor Supply Chain Attack Drains Credentials
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 07:57:05 +0000
════════════════════════
⌗ Tags: #Malware #Developer Security #EmEditor #Emurasoft #Google Drive Caching #InfoSec 2026 #Infostealer #PowerShell #supply chain attack #Trend Micro #Watering Hole
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 28 Jan 2026 07:57:05 +0000
════════════════════════
⌗ Tags: #Malware #Developer Security #EmEditor #Emurasoft #Google Drive Caching #InfoSec 2026 #Infostealer #PowerShell #supply chain attack #Trend Micro #Watering Hole
Penetration Testing Tools
The Developer’s Trap: EmEditor Supply Chain Attack Drains Credentials
In late December 2025, the architects of the renowned text editor EmEditor issued a formal advisory regarding the