⤷ Title: New “PowMix” Botnet Preys on Czech Workforce with Lure of Compliance
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 20 Apr 2026 09:11:43 +0000
════════════════════════
⌗ Tags: #Malware #AMSI Bypass #botnet #Cisco Talos #cyber_espionage #Czech Republic #EDEKA Phishing #Heroku Abuse #infosec #Malware Analysis #PowerShell Malware #PowMix #REST API Mimicry
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 20 Apr 2026 09:11:43 +0000
════════════════════════
⌗ Tags: #Malware #AMSI Bypass #botnet #Cisco Talos #cyber_espionage #Czech Republic #EDEKA Phishing #Heroku Abuse #infosec #Malware Analysis #PowerShell Malware #PowMix #REST API Mimicry
Daily CyberSecurity
New "PowMix" Botnet Preys on Czech Workforce with Lure of Compliance
Cisco Talos uncovers PowMix, a stealthy botnet targeting Czech HR via AMSI bypass and Heroku-hosted C2. Learn how this malware evades modern EDR systems.
⤷ Title: AI Hype Hijacked: How a Fake Claude Installer Blinds Windows Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 21 Apr 2026 06:30:25 +0000
════════════════════════
⌗ Tags: #Malware #AMSI Bypass #Claude AI #ClickFix #cybersecurity #infosec #malware #mshta.exe #MSIX #phishing #powershell #Rapid7
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 21 Apr 2026 06:30:25 +0000
════════════════════════
⌗ Tags: #Malware #AMSI Bypass #Claude AI #ClickFix #cybersecurity #infosec #malware #mshta.exe #MSIX #phishing #powershell #Rapid7
Daily CyberSecurity
AI Hype Hijacked: How a Fake Claude Installer Blinds Windows Security
Rapid7 uncovers a fake Claude AI installer using ClickFix techniques to bypass AMSI and inject shellcode. Stay safe from this sophisticated AI-themed threat.
⤷ Title: When the EDR Stays Silent: Hunting FIN7’s Fileless PowerShell Foothold
════════════════════════
𐀪 Author: Myra Moses Gomba
════════════════════════
ⴵ Time: Wed, 22 Apr 2026 12:56:14 GMT
════════════════════════
⌗ Tags: #powershell_scripting #ethical_hacking #cybersecurity #incident_response #programming
════════════════════════
𐀪 Author: Myra Moses Gomba
════════════════════════
ⴵ Time: Wed, 22 Apr 2026 12:56:14 GMT
════════════════════════
⌗ Tags: #powershell_scripting #ethical_hacking #cybersecurity #incident_response #programming
Medium
When the EDR Stays Silent: Hunting FIN7’s Fileless PowerShell Foothold
A threat intelligence feed lit up with a FIN7-linked IP address was actively communicating with the network. The EDR stayed quiet. No…
⤷ Title: The Shadow Chain (Part II): PowerShell, SSL/TLS, and the Art of Bypassing Corporate Firewalls
════════════════════════
𐀪 Author: Frank Mccausland
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 10:11:08 GMT
════════════════════════
⌗ Tags: #cybersecurity #powershell #blue_team #infosec #red_team
════════════════════════
𐀪 Author: Frank Mccausland
════════════════════════
ⴵ Time: Fri, 24 Apr 2026 10:11:08 GMT
════════════════════════
⌗ Tags: #cybersecurity #powershell #blue_team #infosec #red_team
Medium
The Shadow Chain (Part II): PowerShell, SSL/TLS, and the Art of Bypassing Corporate Firewalls
Introduction
⤷ Title: Inside BlueNoroff’s “Self-Reinforcing” Deepfake Meeting Trap
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 08:30:25 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Arctic Wolf #BlueNoroff #ClickFix #crypto security #Deepfakes #DPRK #infosec #Lazarus Group #powershell #social engineering #Web3 #Zoom Typo_squatting
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 08:30:25 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Arctic Wolf #BlueNoroff #ClickFix #crypto security #Deepfakes #DPRK #infosec #Lazarus Group #powershell #social engineering #Web3 #Zoom Typo_squatting
Daily CyberSecurity
Inside BlueNoroff’s "Self-Reinforcing" Deepfake Meeting Trap
BlueNoroff uses a "self-reinforcing" deepfake pipeline to target crypto CEOs. Fake Zoom meetings and stolen footage lead to a 5-minute system compromise.
⤷ Title: TAMECAT: Iranian APT42 Group New PowerShell Backdoor Targeting Military and Government Officials
════════════════════════
𐀪 Author: Excalibra
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 19:44:12 GMT
════════════════════════
⌗ Tags: #powershell #malware #hacking #cybersecurity
════════════════════════
𐀪 Author: Excalibra
════════════════════════
ⴵ Time: Tue, 28 Apr 2026 19:44:12 GMT
════════════════════════
⌗ Tags: #powershell #malware #hacking #cybersecurity
Medium
TAMECAT: APT42’s New PowerShell Backdoor Targeting Military and Government Officials
The Iranian APT42 group is conducting espionage attacks against high-ranking military and government officials using the TAMECAT…
⤷ Title: Earning Their Keep: Audit Your Microsoft Sentinel Log Value with “Log Horizon”
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 30 Apr 2026 08:23:23 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Azure Sentinel #Cost Optimization #Defender XDR #FinOps #Infosec Tools #KQL #Log Analytics #Log Horizon #Microsoft Sentinel #PowerShell #Security Operations #SIEM #SoC
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 30 Apr 2026 08:23:23 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Azure Sentinel #Cost Optimization #Defender XDR #FinOps #Infosec Tools #KQL #Log Analytics #Log Horizon #Microsoft Sentinel #PowerShell #Security Operations #SIEM #SoC
Penetration Testing Tools
Earning Their Keep: Audit Your Microsoft Sentinel Log Value with "Log Horizon"
Stop burning money in your SIEM. Log Horizon analyzes Microsoft Sentinel tables to score security value vs. cost, providing concrete saving recommendations.
⤷ Title: eCPPT Powershell for Pentesters INE’s CTF 1 : A Practical Attack Story
════════════════════════
𐀪 Author: The.Flying.Wolf
════════════════════════
ⴵ Time: Fri, 01 May 2026 08:53:31 GMT
════════════════════════
⌗ Tags: #ethical_hacking_tools #powershell #penetration_testing #hacking #red_team
════════════════════════
𐀪 Author: The.Flying.Wolf
════════════════════════
ⴵ Time: Fri, 01 May 2026 08:53:31 GMT
════════════════════════
⌗ Tags: #ethical_hacking_tools #powershell #penetration_testing #hacking #red_team
Medium
eCPPT Powershell for Pentesters INE’s CTF 1 : A Practical Attack Story
This wasn’t just another lab. It felt like walking into a poorly guarded building, where every unlocked door revealed something more…
⤷ Title: PowerShell for Pentesters Walkthrough Notes | TryHackMe
════════════════════════
𐀪 Author: Sle3pyHead
════════════════════════
ⴵ Time: Sun, 03 May 2026 15:41:33 GMT
════════════════════════
⌗ Tags: #powershell #cybersecurity #tryhackme_walkthrough #tryhackme_writeup #tryhackme
════════════════════════
𐀪 Author: Sle3pyHead
════════════════════════
ⴵ Time: Sun, 03 May 2026 15:41:33 GMT
════════════════════════
⌗ Tags: #powershell #cybersecurity #tryhackme_walkthrough #tryhackme_writeup #tryhackme
Medium
PowerShell for Pentesters Walkthrough Notes | TryHackMe
Hands-on PowerShell practice for Windows checks and AD tasks.
⤷ Title: Living Off The Registry: Master AD CS Enumeration with the Native LOLBAS Toolkit
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 06 May 2026 08:38:36 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Active Directory #AD CS #certreq.exe #certutil.exe #Credential Theft #LOLBAS #NET Framework #Pentesting #PowerShell #red teaming #RSAT #Windows Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 06 May 2026 08:38:36 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Active Directory #AD CS #certreq.exe #certutil.exe #Credential Theft #LOLBAS #NET Framework #Pentesting #PowerShell #red teaming #RSAT #Windows Security
Penetration Testing Tools
Living Off The Registry: Master AD CS Enumeration with the Native LOLBAS Toolkit
Exploit Active Directory Certificate Services using only built-in Windows tools. No 3rd-party binaries—just certreq, certutil, and native PowerShell power.