⤷ Title: How can you write for us? | rootissh
════════════════════════
𐀪 Author: rootissh
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 00:44:20 GMT
════════════════════════
⌗ Tags: #cybersecurity #write_for_us #writer #rootissh_writeups #blog
════════════════════════
𐀪 Author: rootissh
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 00:44:20 GMT
════════════════════════
⌗ Tags: #cybersecurity #write_for_us #writer #rootissh_writeups #blog
Medium
How can you write for us? | rootissh
We at rootissh are all about cybersecurity awareness! We are set on a journey of making the internet a safe place for ourselves and the…
⤷ Title: TryHackMe — Conti Room: Write-up
════════════════════════
𐀪 Author: J Linton
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 00:14:00 GMT
════════════════════════
⌗ Tags: #splunk #tryhackme #ransomware #cybersecurity
════════════════════════
𐀪 Author: J Linton
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 00:14:00 GMT
════════════════════════
⌗ Tags: #splunk #tryhackme #ransomware #cybersecurity
Medium
TryHackMe — Conti Room: Write-up
Room URL: https://tryhackme.com/room/contiransomwarehgh
⤷ Title: DNS Security
════════════════════════
𐀪 Author: Youssef Hossam
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 00:13:40 GMT
════════════════════════
⌗ Tags: #dns_attack #network_security #dns_security #dns_tunneling #cybersecurity
════════════════════════
𐀪 Author: Youssef Hossam
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 00:13:40 GMT
════════════════════════
⌗ Tags: #dns_attack #network_security #dns_security #dns_tunneling #cybersecurity
Medium
DNS Threats: From Malicious DGA to Fast Flux— How Attackers Abuse the Internet’s Phonebook
“DNS is like the address book of the internet. But just as criminals can fake addresses in real life, attackers exploit DNS to hide…
⤷ Title: My Experience with the eJPT Certification — Was It Worth It?
════════════════════════
𐀪 Author: Wev_Sec
════════════════════════
ⴵ Time: Wed, 01 Oct 2025 23:56:40 GMT
════════════════════════
⌗ Tags: #ejpt #certification #penetration_testing #cybersecurity #pentesting
════════════════════════
𐀪 Author: Wev_Sec
════════════════════════
ⴵ Time: Wed, 01 Oct 2025 23:56:40 GMT
════════════════════════
⌗ Tags: #ejpt #certification #penetration_testing #cybersecurity #pentesting
Medium
My Experience with the eJPT Certification — Was It Worth It?
Recently, I had the chance to take the eLearnSecurity Junior Penetration Tester (eJPT) certification, and I wanted to share my honest…
⤷ Title: PhoneSploit-Pro: remotely exploit Android devices using ADB and Metasploit-Framework
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:27:19 +0000
════════════════════════
⌗ Tags: #Open Source Tool #exploit Android devices
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:27:19 +0000
════════════════════════
⌗ Tags: #Open Source Tool #exploit Android devices
Penetration Testing Tools
PhoneSploit-Pro: remotely exploit Android devices using ADB and Metasploit-Framework
An All-In-One hacking tool written in Python to remotely exploit Android devices using ADB (Android Debug Bridge) and Metasploit-Framework.
⤷ Title: Phantom Taurus: New Chinese APT Emerges with Fileless NET-STAR Backdoor Targeting Global Governments and Telecoms
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:24:32 +0000
════════════════════════
⌗ Tags: #Cyber Security #Chinese APT #Espionage #Fileless Malware #IIS Backdoor #NET_STAR #Phantom Taurus #Telecommunications #Unit 42
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:24:32 +0000
════════════════════════
⌗ Tags: #Cyber Security #Chinese APT #Espionage #Fileless Malware #IIS Backdoor #NET_STAR #Phantom Taurus #Telecommunications #Unit 42
Penetration Testing Tools
Phantom Taurus: New Chinese APT Emerges with Fileless NET-STAR Backdoor Targeting Global Governments and Telecoms
Unit 42 uncovers Phantom Taurus, a new Chinese APT using the fileless NET-STAR backdoor to target SQL databases and IIS servers in global espionage campaigns.
⤷ Title: MatrixPDF: New Toolkit Turns Ordinary PDFs Into Interactive Phishing Lures That Bypass Gmail
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:20:33 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Credential Harvesting #email security #JavaScript #MaaS #malware #MatrixPDF #PDF Phishing #Varonis
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:20:33 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Credential Harvesting #email security #JavaScript #MaaS #malware #MatrixPDF #PDF Phishing #Varonis
Penetration Testing Tools
MatrixPDF: New Toolkit Turns Ordinary PDFs Into Interactive Phishing Lures That Bypass Gmail
Varonis discovered MatrixPDF, a new toolkit that weaponizes PDFs with JavaScript and interactive lures to bypass email filters and redirect victims to phishing sites.
⤷ Title: DeepSeek Unveils Sparse Attention: A New LLM Architecture That Slashes AI API Costs by 50%
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:17:59 +0000
════════════════════════
⌗ Tags: #Technology #API Costs #Computational Efficiency #DeepSeek #DeepSeek_V3.2_Exp #Generative AI #LLM #Sparse Attention
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:17:59 +0000
════════════════════════
⌗ Tags: #Technology #API Costs #Computational Efficiency #DeepSeek #DeepSeek_V3.2_Exp #Generative AI #LLM #Sparse Attention
Penetration Testing Tools
DeepSeek Unveils Sparse Attention: A New LLM Architecture That Slashes AI API Costs by 50%
DeepSeek's new experimental model, V3.2-Exp, features a Sparse Attention mechanism designed to cut long-context inference costs and API prices by over 50%.
⤷ Title: Gemini Trifecta: Three Flaws Allowed Hackers to Exploit Google’s AI for Stealthy Data Theft
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:16:43 +0000
════════════════════════
⌗ Tags: #Vulnerability #Cloud Assist #cybersecurity #Data Exfiltration #Gemini AI #Gemini Trifecta #google #Prompt Injection #Tenable
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:16:43 +0000
════════════════════════
⌗ Tags: #Vulnerability #Cloud Assist #cybersecurity #Data Exfiltration #Gemini AI #Gemini Trifecta #google #Prompt Injection #Tenable
Penetration Testing Tools
Gemini Trifecta: Three Flaws Allowed Hackers to Exploit Google's AI for Stealthy Data Theft
Tenable exposed the "Gemini Trifecta": three flaws that allowed attackers to hijack Google's AI via injected search history and poisoned logs for stealthy data theft.
⤷ Title: VS Code Rival Zed Hits Windows Public Beta, Bringing Rust-Powered Speed to the #1 Dev Platform
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:14:22 +0000
════════════════════════
⌗ Tags: #Technology #Code Editor #developer tools #performance #Rust #VS Code Alternative #Windows Beta #WSL #Zed
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:14:22 +0000
════════════════════════
⌗ Tags: #Technology #Code Editor #developer tools #performance #Rust #VS Code Alternative #Windows Beta #WSL #Zed
Penetration Testing Tools
VS Code Rival Zed Hits Windows Public Beta, Bringing Rust-Powered Speed to the #1 Dev Platform
Zed, the super-fast, Rust-based code editor, has released a public Windows beta build, targeting the 49.5% of developers who use the platform. It uses 80% less RAM than VS Code.
⤷ Title: SWIFT Launches Blockchain-Based Infrastructure to Transform Global Cross-Border Payments
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:13:24 +0000
════════════════════════
⌗ Tags: #Technology #blockchain #Consensys #Cross_Border Payments #Distributed Ledger #Financial System #smart contracts #Swift #Tokenized Assets
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:13:24 +0000
════════════════════════
⌗ Tags: #Technology #blockchain #Consensys #Cross_Border Payments #Distributed Ledger #Financial System #smart contracts #Swift #Tokenized Assets
Penetration Testing Tools
SWIFT Launches Blockchain-Based Infrastructure to Transform Global Cross-Border Payments
SWIFT is overhauling its infrastructure with a blockchain-based ledger, partnering with 30 banks to enable instant, 24/7, transparent cross-border payments using smart contracts.
⤷ Title: 48,000 Cisco Firewalls Remain Exposed to Active Zero-Day Attacks, Shadowserver Finds
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:07:12 +0000
════════════════════════
⌗ Tags: #Vulnerability #CISA #Cisco ASA #Exposed Devices #Firepower #NCSC #network security #RCE #Shadowserver #zero_day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:07:12 +0000
════════════════════════
⌗ Tags: #Vulnerability #CISA #Cisco ASA #Exposed Devices #Firepower #NCSC #network security #RCE #Shadowserver #zero_day
Penetration Testing Tools
48,000 Cisco Firewalls Remain Exposed to Active Zero-Day Attacks, Shadowserver Finds
A Shadowserver scan found over 48,000 Cisco ASA/FTD firewalls remain unpatched against two critical zero-day RCE/Unauthorized Access flaws, despite CISA’s emergency directive.
⤷ Title: $50 Hardware Attack Bypass: Researchers Expose Critical Flaw in Intel SGX and AMD SEV-SNP Trusted Computing
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:05:48 +0000
════════════════════════
⌗ Tags: #Vulnerability #AMD SEV_SNP #cloud security #cybersecurity #Hardware Attack #Intel SGX #Raspberry Pi Pico #Side_Channel #TEE #Trusted Execution Environment
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:05:48 +0000
════════════════════════
⌗ Tags: #Vulnerability #AMD SEV_SNP #cloud security #cybersecurity #Hardware Attack #Intel SGX #Raspberry Pi Pico #Side_Channel #TEE #Trusted Execution Environment
Penetration Testing Tools
$50 Hardware Attack Bypass: Researchers Expose Critical Flaw in Intel SGX and AMD SEV-SNP Trusted Computing
Researchers used a $50 hardware interposer to bypass Intel SGX and AMD SEV-SNP. The attack entirely breaks trusted computing guarantees and extracts platform provisioning keys.
⤷ Title: Datzbro Trojan: Spyware-Banking Malware Hijacks Seniors’ Devices with Fake Facebook Lures
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:02:33 +0000
════════════════════════
⌗ Tags: #Malware #Android Trojan #Banking Malware #Datzbro #Remote Access #Senior Scam #Social Engineering #Spyware #ThreatFabric
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:02:33 +0000
════════════════════════
⌗ Tags: #Malware #Android Trojan #Banking Malware #Datzbro #Remote Access #Senior Scam #Social Engineering #Spyware #ThreatFabric
Penetration Testing Tools
Datzbro Trojan: Spyware-Banking Malware Hijacks Seniors’ Devices with Fake Facebook Lures
The Datzbro Android Trojan is targeting seniors via fake Facebook groups and AI content. The hybrid malware can remotely control devices and steal banking credentials.
⤷ Title: VMware Zero-Day (CVE-2025-41244) Exploited by Chinese APT UNC5174 Since October 2024
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:01:18 +0000
════════════════════════
⌗ Tags: #Vulnerability #Aria Operations #Broadcom #Chinese APT #privilege escalation #UNC5174 #vmware #VMware Tools #zero_day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:01:18 +0000
════════════════════════
⌗ Tags: #Vulnerability #Aria Operations #Broadcom #Chinese APT #privilege escalation #UNC5174 #vmware #VMware Tools #zero_day
Penetration Testing Tools
VMware Zero-Day (CVE-2025-41244) Exploited by Chinese APT UNC5174 Since October 2024
Broadcom patched CVE-2025-41244, a zero-day LPE flaw in VMware Aria Operations and Tools. NVISO confirmed exploitation since Oct. 2024 by Chinese APT UNC5174.
⤷ Title: Lunar Spider Campaign: Single Click Leads to Two-Month Intrusion and Domain Admin Theft
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 02:56:28 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Brute Ratel #Cloudflare #Credential Theft #DFIR #Domain Admin #Infostealer #Latrodectus #Lunar Spider
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 02:56:28 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Brute Ratel #Cloudflare #Credential Theft #DFIR #Domain Admin #Infostealer #Latrodectus #Lunar Spider
Penetration Testing Tools
Lunar Spider Campaign: Single Click Leads to Two-Month Intrusion and Domain Admin Theft
Lunar Spider executed a complex, multi-stage attack starting with a single click. The group stole domain admin credentials and persisted for two months to exfiltrate data.
⤷ Title: The Validation Trap: Why Hackers Chase Hall of Fame Instead of Real Bugs
════════════════════════
𐀪 Author: Đeepanshu
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:31:50 GMT
════════════════════════
⌗ Tags: #cybersecurity #infosec #bug_bounty #mindset
════════════════════════
𐀪 Author: Đeepanshu
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:31:50 GMT
════════════════════════
⌗ Tags: #cybersecurity #infosec #bug_bounty #mindset
Medium
The Validation Trap: Why Hackers Chase Hall of Fame Instead of Real Bugs 🏆
Bug bounty hunting is supposed to be about finding vulnerabilities that matter. But let’s be honest — many hackers (maybe even you) aren’t…
⤷ Title: Cybersecurity Awareness Month: Building a Culture of Cyber Resilience
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:22:25 GMT
════════════════════════
⌗ Tags: #bug_bounty #cyber_security_awareness #information_technology #cybersecurity #hacking
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:22:25 GMT
════════════════════════
⌗ Tags: #bug_bounty #cyber_security_awareness #information_technology #cybersecurity #hacking
Medium
Cybersecurity Awareness Month: Building a Culture of Cyber Resilience
Every October, organizations and professionals worldwide recognize Cybersecurity Awareness Month — an initiative launched in 2004 to…
⤷ Title: Errors to API Exposure
════════════════════════
𐀪 Author: SIDDHANT SHUKLA
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:06:00 GMT
════════════════════════
⌗ Tags: #programming #infosec #technology #bug_bounty #cybersecurity
════════════════════════
𐀪 Author: SIDDHANT SHUKLA
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:06:00 GMT
════════════════════════
⌗ Tags: #programming #infosec #technology #bug_bounty #cybersecurity
Medium
Errors to API Exposure
Error Based Hunting for API Exposure
⤷ Title: MCRTA(MULTI-CLOUD RED TEAMING ANALYST)
════════════════════════
𐀪 Author: anonymous.gharti
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:11:05 GMT
════════════════════════
⌗ Tags: #hacking #cloud_penetration_testing #cloud_red_teaming #red_teaming #mcrta
════════════════════════
𐀪 Author: anonymous.gharti
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:11:05 GMT
════════════════════════
⌗ Tags: #hacking #cloud_penetration_testing #cloud_red_teaming #red_teaming #mcrta
Medium
MCRTA(MULTI-CLOUD RED TEAMING ANALYST)
I recently passed my certification of MCRTA from CWL cyber-warfare labs which was given in 90% off prize from them. It was a great day of…
⤷ Title: Bluzor.cc Reviews: Scam Complaints, Warnings, and Recovery Options
════════════════════════
𐀪 Author: Editor
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:47:00 GMT
════════════════════════
⌗ Tags: #crypto_scam_recovery #cybersecurity #crypto_scam #cryptocurrency #crypto_safety
════════════════════════
𐀪 Author: Editor
════════════════════════
ⴵ Time: Thu, 02 Oct 2025 03:47:00 GMT
════════════════════════
⌗ Tags: #crypto_scam_recovery #cybersecurity #crypto_scam #cryptocurrency #crypto_safety
Medium
Bluzor.cc Reviews: Scam Complaints, Warnings, and Recovery Options
A complete guide for anyone searching “Is Bluzor.cc a scam?” and looking for answers.