⤷ Title: Exploited Routers: Flaw in Milesight Industrial Devices Used for Mass Smishing in Europe
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 03:50:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CVE_2023_43261 #cybersecurity #Milesight #router #SEKOIA #Smishing #SMS API #vulnerability
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 03:50:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CVE_2023_43261 #cybersecurity #Milesight #router #SEKOIA #Smishing #SMS API #vulnerability
Penetration Testing Tools
Exploited Routers: Flaw in Milesight Industrial Devices Used for Mass Smishing in Europe
A critical flaw in Milesight industrial routers is being exploited to launch mass smishing campaigns across Europe, exposing 572 devices and using SMS APIs to send phishing links.
⤷ Title: Chrome 141 Stable Released: Fixes High-Severity WebGPU and Video Heap Overflow Flaws
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 03:48:22 +0000
════════════════════════
⌗ Tags: #Google #Vulnerability #Chrome 141 #Code Execution #CVE_2025_11205 #Google Chrome #Heap Overflow #security update #V8 engine #WebGPU
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 03:48:22 +0000
════════════════════════
⌗ Tags: #Google #Vulnerability #Chrome 141 #Code Execution #CVE_2025_11205 #Google Chrome #Heap Overflow #security update #V8 engine #WebGPU
Penetration Testing Tools
Chrome 141 Stable Released: Fixes High-Severity WebGPU and Video Heap Overflow Flaws
Google promoted Chrome 141 to Stable, patching 21 flaws, including two High-severity Heap Overflows in WebGPU (CVE-2025-11205) and Video, which could lead to RCE.
⤷ Title: Meta Denies Microphone Spying, Confirms AI Chat Data Will Now Be Used for Targeted Ads
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 03:46:07 +0000
════════════════════════
⌗ Tags: #Data Leak #Adam Mosseri #AI Chatbot #Conspiracy Theory #Instagram #Meta #microphone #privacy #Targeted Ads
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 03:46:07 +0000
════════════════════════
⌗ Tags: #Data Leak #Adam Mosseri #AI Chatbot #Conspiracy Theory #Instagram #Meta #microphone #privacy #Targeted Ads
Penetration Testing Tools
Meta Denies Microphone Spying, Confirms AI Chat Data Will Now Be Used for Targeted Ads
Instagram head Adam Mosseri debunked the microphone myth but confirmed Meta will use user interactions with its AI chatbot to create hyper-targeted ads starting Dec. 16.
⤷ Title: Web3 Crisis: Sub-$1k Hardware Attack Fully Extracts Intel SGX Attestation Key, Compromising Encrypted Blockchains
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 03:43:13 +0000
════════════════════════
⌗ Tags: #Vulnerability #blockchain #confidential computing #Crust #DCAP #Hardware Attack #Intel SGX #Phala #Secret #TEE Bypass #Web3
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 03:43:13 +0000
════════════════════════
⌗ Tags: #Vulnerability #blockchain #confidential computing #Crust #DCAP #Hardware Attack #Intel SGX #Phala #Secret #TEE Bypass #Web3
Penetration Testing Tools
Web3 Crisis: Sub-$1k Hardware Attack Fully Extracts Intel SGX Attestation Key, Compromising Encrypted Blockchains
Researchers extracted the Intel SGX DCAP attestation key using a sub-$1k hardware interposer. This attack breaks the root of trust, allowing attackers to forge quotes and compromise Web3 ecosystems.
⤷ Title: OpenAI Says the World Needs 10 Billion GPUs for an ‘Always-On’ AI “Supermind”
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 03:41:19 +0000
════════════════════════
⌗ Tags: #Technology #AI #Compute Scarcity #GPU #Greg Brockman #Jensen Huang #Nvidia #OpenAI #Sam Altman #Supermind
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 03:41:19 +0000
════════════════════════
⌗ Tags: #Technology #AI #Compute Scarcity #GPU #Greg Brockman #Jensen Huang #Nvidia #OpenAI #Sam Altman #Supermind
Penetration Testing Tools
OpenAI Says the World Needs 10 Billion GPUs for an 'Always-On' AI "Supermind"
OpenAI's Greg Brockman stated that the world is 3 orders of magnitude from achieving an 'always-on' AI supermind, requiring nearly 10 billion GPUs and sparking a compute scarcity.
⤷ Title: TaskHound: New Open-Source Tool Audits Windows Scheduled Tasks for Privileged Credentials and Tier-0 Risks
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 03:36:35 +0000
════════════════════════
⌗ Tags: #Open Source Tool #BloodHound #cybersecurity #privilege escalation #Scheduled Tasks #Security Audit #TaskHound #TrustedSec #windows
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 03:36:35 +0000
════════════════════════
⌗ Tags: #Open Source Tool #BloodHound #cybersecurity #privilege escalation #Scheduled Tasks #Security Audit #TaskHound #TrustedSec #windows
Penetration Testing Tools
TaskHound: New Open-Source Tool Audits Windows Scheduled Tasks for Privileged Credentials and Tier-0 Risks
TaskHound is a new C# tool for auditing Windows scheduled tasks over SMB. It surfaces high-value tasks running with privileged accounts and exports data to BloodHound for analysis.
⤷ Title: Actively Exploited: Critical Flaw CVE-2025-6388 (CVSS 9.8) Allows Authentication Bypass in WordPress Plugin
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 03:24:41 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Account Takeover #Authentication Bypass #Critical Vulnerability #CVE_2025_6388 #Spirit Framework #Wordfence #wordpress
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 03:24:41 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Account Takeover #Authentication Bypass #Critical Vulnerability #CVE_2025_6388 #Spirit Framework #Wordfence #wordpress
Daily CyberSecurity
Actively Exploited: Critical Flaw CVE-2025-6388 (CVSS 9.8) Allows Authentication Bypass in WordPress Plugin
A Critical (CVSS 9.8) flaw (CVE-2025-6388) in the Spirit Framework WordPress plugin is being actively exploited, allowing unauthenticated attackers to hijack admin accounts.
⤷ Title: Yoast SEO Premium Flaw: Stored XSS Bug (CVE-2025-11241) Exposes Millions of WordPress Sites
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 03:13:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_11241 #security update #Stored Cross_Site Scripting #wordpress #WordPress Plugin #XSS #Yoast SEO
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 03:13:05 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_11241 #security update #Stored Cross_Site Scripting #wordpress #WordPress Plugin #XSS #Yoast SEO
Daily CyberSecurity
Yoast SEO Premium Flaw: Stored XSS Bug (CVE-2025-11241) Exposes Millions of WordPress Sites
Yoast SEO Premium has a stored XSS flaw (CVE-2025-11241) that allows Contributor+ users to inject malicious scripts into posts. All users are urged to upgrade to v26.0 immediately.
⤷ Title: GreyNoise Detects Coordinated Surge Exploiting Grafana Path Traversal Flaw (CVE-2021-43798)
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 02:13:40 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Coordinated Attack #CVE_2021_43798 #cybersecurity #exploitation #Grafana #GreyNoise #Path Traversal #scanning
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 02:13:40 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Coordinated Attack #CVE_2021_43798 #cybersecurity #exploitation #Grafana #GreyNoise #Path Traversal #scanning
Daily CyberSecurity
GreyNoise Detects Coordinated Surge Exploiting Grafana Path Traversal Flaw (CVE-2021-43798)
Recently, GreyNoise observed a sudden and highly coordinated wave of exploitation attempts targeting CVE-2021-43798, a Grafana path traversal vulnerability that allows arbitrary file reads. The su…
⤷ Title: A New Home for Free Learning: Introducing Live.dinesh049.shop
════════════════════════
𐀪 Author: TEAM DH49
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 02:50:06 GMT
════════════════════════
⌗ Tags: #bug_zero #bugs #bug_bounty_tips #bug_bounty_writeup #bug_bounty
════════════════════════
𐀪 Author: TEAM DH49
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 02:50:06 GMT
════════════════════════
⌗ Tags: #bug_zero #bugs #bug_bounty_tips #bug_bounty_writeup #bug_bounty
Medium
A New Home for Free Learning: Introducing Live.dinesh049.shop
The internet has always been a powerful place for learning, sharing, and growing. Over the years, many platforms have provided valuable…
⤷ Title: Windows: From User to Root
════════════════════════
𐀪 Author: Ops4Windows
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 03:42:06 GMT
════════════════════════
⌗ Tags: #hacking #admin #windows #privesc #security
════════════════════════
𐀪 Author: Ops4Windows
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 03:42:06 GMT
════════════════════════
⌗ Tags: #hacking #admin #windows #privesc #security
Medium
Windows: From User to Root
Navigating the intricate landscape of Windows environments, from standard user privileges to the ultimate administrative control, known…
⤷ Title: How Cybersecurity OEMs Can Win the Trust of the Next-Gen Workforce
════════════════════════
𐀪 Author: Dr. Deep Pandey
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 03:46:44 GMT
════════════════════════
⌗ Tags: #cloud_security #cybersecurity #oem_manufacturers #iso_42001 #ai_security
════════════════════════
𐀪 Author: Dr. Deep Pandey
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 03:46:44 GMT
════════════════════════
⌗ Tags: #cloud_security #cybersecurity #oem_manufacturers #iso_42001 #ai_security
Medium
How Cybersecurity OEMs Can Win the Trust of the Next-Gen Workforce
⤷ Title: MCP Security: Strengthening Trust in the Model Context Protocol
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 02:59:15 GMT
════════════════════════
⌗ Tags: #ai #information_technology #model_context_protocol #mcp_security #cybersecurity
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 02:59:15 GMT
════════════════════════
⌗ Tags: #ai #information_technology #model_context_protocol #mcp_security #cybersecurity
Medium
MCP Security: Strengthening Trust in the Model Context Protocol
The rapid rise of large language models (LLMs) has unlocked new possibilities for automation, reasoning, and decision support. However, to…
⤷ Title: Experiment with building a simple SOC lab using Wazuh, complete with custom rules, threat…
════════════════════════
𐀪 Author: Andry Maulana Akbar
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 02:58:21 GMT
════════════════════════
⌗ Tags: #threat_detection #soc_lab #wazuh #siem #cybersecurity
════════════════════════
𐀪 Author: Andry Maulana Akbar
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 02:58:21 GMT
════════════════════════
⌗ Tags: #threat_detection #soc_lab #wazuh #siem #cybersecurity
Medium
Experiment with building a simple SOC lab using Wazuh, complete with custom rules, threat…
In this project, I built a mini SOC lab using Wazuh to learn how end-to-end security detection and monitoring systems work. I set up two…
⤷ Title: TryHackMe Walkthrough: Network Security Essentials
════════════════════════
𐀪 Author: Tanwietayim A
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 02:57:53 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #cybersecurity #tryhackme_walkthrough #tryhackme #networking
════════════════════════
𐀪 Author: Tanwietayim A
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 02:57:53 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #cybersecurity #tryhackme_walkthrough #tryhackme #networking
Medium
TryHackMe Walkthrough: Network Security Essentials
The networks are the backbone of every modern organization. Servers, workstations, applications, and security devices don’t exist in…
⤷ Title: LLMs can be tricked — and that’s a bigger deal than you might think.
════════════════════════
𐀪 Author: Akhilesh Yadav
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 02:41:17 GMT
════════════════════════
⌗ Tags: #cybersecurity #llm_security #ai_security #defensive_ai #prompt_injection
════════════════════════
𐀪 Author: Akhilesh Yadav
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 02:41:17 GMT
════════════════════════
⌗ Tags: #cybersecurity #llm_security #ai_security #defensive_ai #prompt_injection
Medium
LLMs can be tricked — and that’s a bigger deal than you might think.
A plain-language guide to understanding prompt injection attacks, why they matter for AI security, and what we can do about them.
⤷ Title: Fortifying Your Django API: A Practical Guide to Rate Limiting and Bot Protection
════════════════════════
𐀪 Author: TheHopeson
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 02:40:03 GMT
════════════════════════
⌗ Tags: #api_security #rate_limiting #django #cybersecurity #bot_attack
════════════════════════
𐀪 Author: TheHopeson
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 02:40:03 GMT
════════════════════════
⌗ Tags: #api_security #rate_limiting #django #cybersecurity #bot_attack
Medium
Fortifying Your Django API: A Practical Guide to Rate Limiting and Bot Protection
Introduction
⤷ Title: TryHackMe: Network Discovery Detection
════════════════════════
𐀪 Author: Tanwietayim A
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 02:30:51 GMT
════════════════════════
⌗ Tags: #tryhackme #cybersecurity #tryhackme_walkthrough #networking #tryhackme_writeup
════════════════════════
𐀪 Author: Tanwietayim A
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 02:30:51 GMT
════════════════════════
⌗ Tags: #tryhackme #cybersecurity #tryhackme_walkthrough #networking #tryhackme_writeup
Medium
TryHackMe: Network Discovery Detection
This room will equip us with the knowledge on how attackers discover assets in a network, and how to detect their activity.
⤷ Title: Advanced Static Analysis
════════════════════════
𐀪 Author: Tony Khalil Rodgers
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 02:07:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #tryhackme_writeup #tryhackme #tryhackme_walkthrough
════════════════════════
𐀪 Author: Tony Khalil Rodgers
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 02:07:01 GMT
════════════════════════
⌗ Tags: #cybersecurity #tryhackme_writeup #tryhackme #tryhackme_walkthrough
Medium
Advanced Static Analysis
⤷ Title: Dutch Court Orders Meta to Fix Algorithmic Feed, Citing DSA Violation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 04:12:33 +0000
════════════════════════
⌗ Tags: #Technology #Algorithmic Feed #court ruling #Dark Patterns #Digital Services Act #DSA #facebook #Instagram #Meta #Netherlands
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 04:12:33 +0000
════════════════════════
⌗ Tags: #Technology #Algorithmic Feed #court ruling #Dark Patterns #Digital Services Act #DSA #facebook #Instagram #Meta #Netherlands
Daily CyberSecurity
Dutch Court Orders Meta to Fix Algorithmic Feed, Citing DSA Violation
A Dutch court ruled that Meta's algorithmic feed violates the DSA and ordered Meta to provide a persistent, non-algorithmic viewing option for Facebook and Instagram users.
⤷ Title: Google Announces $4 Billion Arkansas Investment for New AI Data Center and 600 MW Solar Project
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 04:06:04 +0000
════════════════════════
⌗ Tags: #Technology #AI #Arkansas #Cloud Infrastructure #Data Center #Entergy #google #investment #Solar Power #workforce development
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 03 Oct 2025 04:06:04 +0000
════════════════════════
⌗ Tags: #Technology #AI #Arkansas #Cloud Infrastructure #Data Center #Entergy #google #investment #Solar Power #workforce development
Daily CyberSecurity
Google Announces $4 Billion Arkansas Investment for New AI Data Center and 600 MW Solar Project
Google announced a $4B investment in Arkansas, building its first data center in West Memphis and a 600 MW solar plant to power its expanding cloud and AI infrastructure.