⤷ Title: XChat’s Encrypted Messages Are Not as Secure as They Seem
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 04:18:01 +0000
════════════════════════
⌗ Tags: #Technology #cybersecurity #E2EE #end_to_end encryption #privacy #Signal #XChat
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 04:18:01 +0000
════════════════════════
⌗ Tags: #Technology #cybersecurity #E2EE #end_to_end encryption #privacy #Signal #XChat
Penetration Testing Tools
XChat's Encrypted Messages Are Not as Secure as They Seem
X has launched an end-to-end encrypted chat service, but cryptographers warn it has critical flaws, including server-stored keys and no forward secrecy.
⤷ Title: GhostAction: The Supply Chain Attack That Stole 3,325 GitHub Secrets
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 04:13:38 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CI/CD #cybersecurity #GhostAction #Github #hacking #Secrets #supply chain attack
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 04:13:38 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CI/CD #cybersecurity #GhostAction #Github #hacking #Secrets #supply chain attack
Penetration Testing Tools
GhostAction: The Supply Chain Attack That Stole 3,325 GitHub Secrets
A new report details GhostAction, a major supply chain attack that injected malicious code into GitHub repositories, stealing thousands of secrets.
⤷ Title: Wealthsimple Confirms Data Breach, Cites Third-Party Vulnerability
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 04:11:43 +0000
════════════════════════
⌗ Tags: #Data Leak #cybersecurity #data breach #fintech #privacy #third_party risk #Wealthsimple
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 04:11:43 +0000
════════════════════════
⌗ Tags: #Data Leak #cybersecurity #data breach #fintech #privacy #third_party risk #Wealthsimple
Penetration Testing Tools
Wealthsimple Confirms Data Breach, Cites Third-Party Vulnerability
Wealthsimple confirms a security incident affecting less than 1% of its clients due to a third-party software compromise. No funds or passwords were lost.
⤷ Title: NightshadeC2 Botnet Is Using “UAC Prompt Bombing” to Bypass Defenses
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 04:09:34 +0000
════════════════════════
⌗ Tags: #Malware #BOTNET #cybersecurity #eSentire #hacking #malware #NightshadeC2 #uac
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 04:09:34 +0000
════════════════════════
⌗ Tags: #Malware #BOTNET #cybersecurity #eSentire #hacking #malware #NightshadeC2 #uac
Penetration Testing Tools
NightshadeC2 Botnet Is Using "UAC Prompt Bombing" to Bypass Defenses
A new botnet called NightshadeC2 uses "UAC Prompt Bombing" to force users to approve malicious actions, bypassing Windows Defender and analysis sandboxes.
⤷ Title: Havoc: modern and malleable post-exploitation command and control framework
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 07:21:55 +0000
════════════════════════
⌗ Tags: #Open Source Tool #HavocFramework
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 07:21:55 +0000
════════════════════════
⌗ Tags: #Open Source Tool #HavocFramework
Penetration Testing Tools
Havoc: modern and malleable post-exploitation command and control framework
Havoc is a modern and malleable post-exploitation command and control framework. It handles the listeners, teamserver authentication and payload generation
⤷ Title: CastleRAT: The New MaaS Threat Expanding the Cybercrime Toolkit
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 04:35:29 +0000
════════════════════════
⌗ Tags: #Malware #CastleRAT #cybercrime #cybersecurity #MaaS #malware #Remote Access Trojan
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 04:35:29 +0000
════════════════════════
⌗ Tags: #Malware #CastleRAT #cybercrime #cybersecurity #MaaS #malware #Remote Access Trojan
Penetration Testing Tools
CastleRAT: The New MaaS Threat Expanding the Cybercrime Toolkit
A new remote access trojan, CastleRAT, has been discovered. It's part of a growing MaaS ecosystem and is being used to distribute stealers and other malware.
⤷ Title: EU Fines Google $3.5B for Abusing Its Ad Tech Monopoly
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 04:33:31 +0000
════════════════════════
⌗ Tags: #Google #ad tech #antitrust #digital advertising #European Commission #fine #google #monopoly
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 04:33:31 +0000
════════════════════════
⌗ Tags: #Google #ad tech #antitrust #digital advertising #European Commission #fine #google #monopoly
Penetration Testing Tools
EU Fines Google $3.5B for Abusing Its Ad Tech Monopoly
The EU has fined Google €2.95B for favoring its own ad tech services, a practice that distorted competition and harmed rivals, advertisers, and publishers.
⤷ Title: Hackers Threaten Google: Fire Our Trackers or We’ll Leak Your Data
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 04:30:49 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cybercrime #cybersecurity #Extortion #google #hacking #Scattered LapSus Hunters
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 04:30:49 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cybercrime #cybersecurity #Extortion #google #hacking #Scattered LapSus Hunters
Penetration Testing Tools
Hackers Threaten Google: Fire Our Trackers or We'll Leak Your Data
A hacker group is threatening to leak Google's databases unless the company fires two of its security staff and ceases its investigations.
⤷ Title: The Fall of XSS.is: A Cybercrime Forum Fractured by Toha’s Arrest
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 04:28:56 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cybercrime #cybersecurity #Dark Web #forum #ransomware #Toha #XSS.is
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Sep 2025 04:28:56 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cybercrime #cybersecurity #Dark Web #forum #ransomware #Toha #XSS.is
Penetration Testing Tools
The Fall of XSS.is: A Cybercrime Forum Fractured by Toha's Arrest
The arrest of XSS.is administrator "Toha" has thrown the cybercrime underground into turmoil. A new report details the forum's downfall and its fractured community.
⤷ Title: CVE-2025-40795 (CVSS 9.8): Critical Flaw in Siemens SIVaaS Exposes Network Share Without Authentication
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 15:12:42 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVE_2025_40804 #data leak #Industrial Security #Remote Access #Siemens #SIVaaS #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 15:12:42 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVE_2025_40804 #data leak #Industrial Security #Remote Access #Siemens #SIVaaS #Vulnerability
Daily CyberSecurity
CVE-2025-40795 (CVSS 9.8): Critical Flaw in Siemens SIVaaS Exposes Network Share Without Authentication
Siemens has disclosed a critical flaw in its SIVaaS platform. A network share is exposed without authentication, allowing unauthenticated attackers to access or alter sensitive data.
⤷ Title: Ivanti Patches Two High-Severity RCE Flaws in Endpoint Manager
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 14:55:18 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_9712 #CVE_2025_9872 #cybersecurity #filename validation #Ivanti #Ivanti EPM #rce #Remote Code Execution #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 14:55:18 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_9712 #CVE_2025_9872 #cybersecurity #filename validation #Ivanti #Ivanti EPM #rce #Remote Code Execution #Vulnerability
Daily CyberSecurity
Ivanti Patches Two High-Severity RCE Flaws in Endpoint Manager
Ivanti has released a security update for Endpoint Manager, patching two high-severity RCE flaws (CVSS 8.8) that could allow unauthenticated attackers to execute code.
⤷ Title: Link11 Reports 225% more DDoS attacks in H1 2025 with new tactics against infrastructure
════════════════════════
𐀪 Author: cybernewswire
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 13:00:17 +0000
════════════════════════
⌗ Tags: #Press Release
════════════════════════
𐀪 Author: cybernewswire
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 13:00:17 +0000
════════════════════════
⌗ Tags: #Press Release
Daily CyberSecurity
Link11 Reports 225% more DDoS attacks in H1 2025 with new tactics against infrastructure
Frankfurt am Main, Germany, 9th September 2025, CyberNewsWire
⤷ Title: Signal Solves Its Biggest Flaw with a New Privacy-Focused Cloud Backup
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 10:13:05 +0000
════════════════════════
⌗ Tags: #Technology #cloud backup #encryption #messaging app #privacy #security #Signal #subscription #zero_knowledge
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 10:13:05 +0000
════════════════════════
⌗ Tags: #Technology #cloud backup #encryption #messaging app #privacy #security #Signal #subscription #zero_knowledge
Daily CyberSecurity
Signal Solves Its Biggest Flaw with a New Privacy-Focused Cloud Backup
⤷ Title: Now It Can Listen: Google Gemini Adds Support for Audio File Uploads
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 10:04:06 +0000
════════════════════════
⌗ Tags: #Technology #AI Assistant #audio files #Gemini AI #google #Productivity #software update #summarization #transcription
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 10:04:06 +0000
════════════════════════
⌗ Tags: #Technology #AI Assistant #audio files #Gemini AI #google #Productivity #software update #summarization #transcription
Daily CyberSecurity
Now It Can Listen: Google Gemini Adds Support for Audio File Uploads
Google Gemini now supports audio file uploads for transcription and summarization, a top-requested feature with different usage limits for free and paid users.
⤷ Title: RatOn: The New Android Trojan That Steals Crypto and Uses NFC Relay Attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 09:58:47 +0000
════════════════════════
⌗ Tags: #Malware #Android trojan #ATS #Banking Trojan #cryptocurrency #Cybercrime #mobile security #NFC relay attack #RatOn #ThreatFabric
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 09:58:47 +0000
════════════════════════
⌗ Tags: #Malware #Android trojan #ATS #Banking Trojan #cryptocurrency #Cybercrime #mobile security #NFC relay attack #RatOn #ThreatFabric
Daily CyberSecurity
RatOn: The New Android Trojan That Steals Crypto and Uses NFC Relay Attacks
A new Android banking trojan, RatOn, merges overlay fraud with NFC relay attacks, automated money transfers, and crypto wallet theft, posing a new threat to users.
⤷ Title: CVE-2025-7350: Critical RCE Flaw in Rockwell Stratix Switches Scores CVSS 9.6
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 09:29:59 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_7350 #cybersecurity #industrial switches #rce #Remote Code Execution #Rockwell Automation #Stratix #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 09:29:59 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_7350 #cybersecurity #industrial switches #rce #Remote Code Execution #Rockwell Automation #Stratix #Vulnerability
Daily CyberSecurity
CVE-2025-7350: Critical RCE Flaw in Rockwell Stratix Switches Scores CVSS 9.6
A critical CSRF flaw in Rockwell Stratix switches (CVE-2025-7350) could allow unauthenticated remote attackers to achieve RCE. The flaw has a CVSS score of 9.6.
⤷ Title: SAP Security Patch Day Fixes Four Critical Flaws, Including a CVSS 10.0 RCE (CVE-2025-42944)
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 07:00:50 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_42944 #CVSS 10.0 #cybersecurity #Deserialization #Directory Traversal #rce #SAP #SAP NetWeaver #Security Patch Day #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 07:00:50 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_42944 #CVSS 10.0 #cybersecurity #Deserialization #Directory Traversal #rce #SAP #SAP NetWeaver #Security Patch Day #Vulnerability
Daily CyberSecurity
SAP Security Patch Day Fixes Four Critical Flaws, Including a CVSS 10.0 RCE (CVE-2025-42944)
⤷ Title: Salesforce Breach Through Salesloft Drift Hits Google, Cloudflare, and 750 Firms
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 04:02:33 +0000
════════════════════════
⌗ Tags: #Data Leak #Cloud Security #cybersecurity #Data Breach #Salesforce #Salesloft #Technology #UNC6395
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 04:02:33 +0000
════════════════════════
⌗ Tags: #Data Leak #Cloud Security #cybersecurity #Data Breach #Salesforce #Salesloft #Technology #UNC6395
Daily CyberSecurity
Salesforce Breach Through Salesloft Drift Hits Google, Cloudflare, and 750 Firms
A major breach at Salesloft's Drift platform exposed customer authentication tokens, leading to unauthorized access of Salesforce data at over 750 companies.
⤷ Title: Intel’s 14A Process Will Be Its Most Expensive and Advanced Yet
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 03:54:53 +0000
════════════════════════
⌗ Tags: #Technology #14A #Chip Manufacturing #EUV #intel #lithography #semiconductor
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 03:54:53 +0000
════════════════════════
⌗ Tags: #Technology #14A #Chip Manufacturing #EUV #intel #lithography #semiconductor
Daily CyberSecurity
Intel's 14A Process Will Be Its Most Expensive and Advanced Yet
Intel's upcoming 14A process node will be more expensive than its predecessor due to the use of advanced high-NA EUV lithography machines.
⤷ Title: Google’s AI Search Goes Global: New AI Mode Supports Five Languages
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 03:49:44 +0000
════════════════════════
⌗ Tags: #Technology #AI Mode #AI Search #Gemini #google #multilingual search #Tech News
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 03:49:44 +0000
════════════════════════
⌗ Tags: #Technology #AI Mode #AI Search #Gemini #google #multilingual search #Tech News
Daily CyberSecurity
Google’s AI Search Goes Global: New AI Mode Supports Five Languages
Google is expanding its AI Mode search to five new languages, including Japanese and Korean. The move brings advanced, localized AI to new markets.
⤷ Title: Plex Urges Password Reset After Data Breach
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 03:42:26 +0000
════════════════════════
⌗ Tags: #Data Leak #cybersecurity #Data Breach #Hacking #password reset #Plex #streaming #Technology
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Sep 2025 03:42:26 +0000
════════════════════════
⌗ Tags: #Data Leak #cybersecurity #Data Breach #Hacking #password reset #Plex #streaming #Technology
Daily CyberSecurity
Plex Urges Password Reset After Data Breach
Plex has confirmed a data breach that exposed user data, including hashed passwords. All users are being urged to reset their passwords as a security precaution.