⤷ Title: House Democrats Official Online Resume Bank Exposed the PII of Thousands of Government Job Seekers
════════════════════════
𐀪 Author: SafetyDetectives Research Team
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 07:18:55 GMT
════════════════════════
⌗ Tags: #government_jobs #resume_bank #data_breach #cybersecurity
════════════════════════
𐀪 Author: SafetyDetectives Research Team
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 07:18:55 GMT
════════════════════════
⌗ Tags: #government_jobs #resume_bank #data_breach #cybersecurity
Medium
House Democrats Official Online Resume Bank Exposed the PII of Thousands of Government Job Seekers
An anonymous cybersecurity researcher reported an unprotected database containing about 7,000 records linked to DomeWatch.us, the official…
⤷ Title: Database Exposure Security Index (DESI)
════════════════════════
𐀪 Author: Dragos C
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 07:01:54 GMT
════════════════════════
⌗ Tags: #data_governance #privacy #data_protection #data_security #cybersecurity
════════════════════════
𐀪 Author: Dragos C
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 07:01:54 GMT
════════════════════════
⌗ Tags: #data_governance #privacy #data_protection #data_security #cybersecurity
Medium
Database Exposure Security Index (DESI)
Introduction
⤷ Title: Detection Engineering Training: Detecting Browser Credential Theft Attacks
════════════════════════
𐀪 Author: Mnik
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 06:59:52 GMT
════════════════════════
⌗ Tags: #blue_team #threat_detection #cybersecurity #detection_engineering #splunk
════════════════════════
𐀪 Author: Mnik
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 06:59:52 GMT
════════════════════════
⌗ Tags: #blue_team #threat_detection #cybersecurity #detection_engineering #splunk
Medium
Detection Engineering Training: Detecting Browser Credential Theft Attacks
Due to work commitments, it’s been a while since I’ve engaged in detection engineering studies and training. Today, I’m attempting the…
⤷ Title: Unit 42 Managed Threat Hunting: A Comprehensive Guide
════════════════════════
𐀪 Author: Juara IT Solutions
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 06:45:04 GMT
════════════════════════
⌗ Tags: #palo_alto_networks #managed_threat_hunting #unit42 #cybersecurity #threat_hunting
════════════════════════
𐀪 Author: Juara IT Solutions
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 06:45:04 GMT
════════════════════════
⌗ Tags: #palo_alto_networks #managed_threat_hunting #unit42 #cybersecurity #threat_hunting
Medium
Unit 42 Managed Threat Hunting: A Comprehensive Guide
In today’s complex digital landscape, cyber threats evolve faster than traditional defense mechanisms can adapt. Attackers now use…
⤷ Title: Kerberos SSO: The Security Protocol That Stops Sending Your Password
════════════════════════
𐀪 Author: Amil Mansurov
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 06:31:27 GMT
════════════════════════
⌗ Tags: #active_directory #information_security #authentication #kerberos #cybersecurity
════════════════════════
𐀪 Author: Amil Mansurov
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 06:31:27 GMT
════════════════════════
⌗ Tags: #active_directory #information_security #authentication #kerberos #cybersecurity
Medium
Kerberos SSO: The Security Protocol That Stops Sending Your Password
I. Introduction
⤷ Title: Why Go-to-Market Strategy Is So Challenging for Cybersecurity Founders
════════════════════════
𐀪 Author: Dan Schoenbaum
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 06:27:59 GMT
════════════════════════
⌗ Tags: #go_to_market #female_founders #founders #cybersecurity #ceo
════════════════════════
𐀪 Author: Dan Schoenbaum
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 06:27:59 GMT
════════════════════════
⌗ Tags: #go_to_market #female_founders #founders #cybersecurity #ceo
Medium
Why Go-to-Market Strategy Is So Challenging for Cybersecurity Founders
Photo by Markus Spiske on Unsplash
⤷ Title: A Complete Guide to Choosing the Right API Security Software
════════════════════════
𐀪 Author: Giribabu V
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 06:26:22 GMT
════════════════════════
⌗ Tags: #api_security
════════════════════════
𐀪 Author: Giribabu V
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 06:26:22 GMT
════════════════════════
⌗ Tags: #api_security
Medium
A Complete Guide to Choosing the Right API Security Software
In today’s connected digital landscape, APIs play a vital role in enabling seamless data exchange between systems, applications, and users…
⤷ Title: CVE-2025–59287 — When your patch server becomes the attack vector
════════════════════════
𐀪 Author: Aditya Bhatt
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 07:56:15 GMT
════════════════════════
⌗ Tags: #cve #cybersecurity #exploit #windows #rce
════════════════════════
𐀪 Author: Aditya Bhatt
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 07:56:15 GMT
════════════════════════
⌗ Tags: #cve #cybersecurity #exploit #windows #rce
Medium
CVE-2025–59287 — When your patch server becomes the attack vector 🗿
Critical unauthenticated RCE in Windows Server Update Services (WSUS) via unsafe deserialization of an AuthorizationCookie, enabling…
❤1
⤷ Title: Chrome Zero-Day Exploited to Deliver Italian Memento Labs' LeetAgent Spyware
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 13:52:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 13:52:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Stealth APT: SideWinder Uses PDF Exploit to Target South Asian Diplomats
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 09:09:54 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT #ClickOnce #Cyberespionage #Diplomatic #SideWinder #South Asia
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 09:09:54 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT #ClickOnce #Cyberespionage #Diplomatic #SideWinder #South Asia
Penetration Testing Tools
Stealth APT: SideWinder Uses PDF Exploit to Target South Asian Diplomats
The SideWinder APT targeted embassies in South Asia, using malicious PDFs and legitimate-signed ClickOnce apps to deploy StealerBot malware.
⤷ Title: The Invisible Threat: Caminho Loader Hides Malware in Image Pixels
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 09:06:01 +0000
════════════════════════
⌗ Tags: #Malware #Brazil #Caminho #Fileless #Loader_as_a_Service #malware #Steganography
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 09:06:01 +0000
════════════════════════
⌗ Tags: #Malware #Brazil #Caminho #Fileless #Loader_as_a_Service #malware #Steganography
Penetration Testing Tools
The Invisible Threat: Caminho Loader Hides Malware in Image Pixels
The Brazilian Caminho malware uses LSB steganography to hide its .NET payload inside image files, running fully in memory to evade antivirus detection.
⤷ Title: The Ransomware Paradox: Payments Plummet to 23% as Insider Bribery Surges
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 09:04:01 +0000
════════════════════════
⌗ Tags: #Malware #Akira #Coveware #cybercrime #Extortion #Insider Threat #ransomware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 09:04:01 +0000
════════════════════════
⌗ Tags: #Malware #Akira #Coveware #cybercrime #Extortion #Insider Threat #ransomware
Penetration Testing Tools
The Ransomware Paradox: Payments Plummet to 23% as Insider Bribery Surges
Coveware reports ransomware payment rates hit a historic low of 23% in Q3, while hackers pivot to insider bribery and targeted social engineering to maintain profits.
⤷ Title: Cyber-Confidence Crisis: 95% of Firms Confident, Yet Only 15% Fully Recover from Ransomware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 08:57:56 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AI Threat #cyber resilience #cybersecurity #deepfakes #OpenText #ransomware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 08:57:56 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AI Threat #cyber resilience #cybersecurity #deepfakes #OpenText #ransomware
Penetration Testing Tools
Cyber-Confidence Crisis: 95% of Firms Confident, Yet Only 15% Fully Recover from Ransomware
A report reveals 95% of firms are confident in ransomware recovery, but only 15% fully restore data, highlighting a growing risk from AI-enhanced attacks and lack of governance.
⤷ Title: LastPass ‘Death Hoax’ Phishing Targets Crypto: New CryptoChameleon Scam
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 08:54:25 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CryptoChameleon #cryptocurrency #LastPass #Password Manager #phishing #Vishing
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 08:54:25 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CryptoChameleon #cryptocurrency #LastPass #Password Manager #phishing #Vishing
Penetration Testing Tools
LastPass ‘Death Hoax’ Phishing Targets Crypto: New CryptoChameleon Scam
CryptoChameleon is using a fake LastPass "death certificate" email, amplified by vishing calls, to steal master passwords and passkeys for crypto theft.
⤷ Title: Chaos at the Border: Thousands Flee KK Park Scam Hub After Military Raid
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 08:51:44 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cybercrime #Human Trafficking #KK Park #Military Junta #Myanmar #Thailand
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 08:51:44 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cybercrime #Human Trafficking #KK Park #Military Junta #Myanmar #Thailand
Penetration Testing Tools
Chaos at the Border: Thousands Flee KK Park Scam Hub After Military Raid
A chaotic raid on KK Park, a notorious scam center in Myanmar, led to thousands of trafficked workers fleeing across the border into Thailand.
⤷ Title: Critical Blunder: HP Update Bricks Corporate Laptops By Deleting Cloud Certs
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 08:49:14 +0000
════════════════════════
⌗ Tags: #Technology #cybersecurity #Entra ID #HP OneAgent #IT Disaster #Microsoft #windows
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 08:49:14 +0000
════════════════════════
⌗ Tags: #Technology #cybersecurity #Entra ID #HP OneAgent #IT Disaster #Microsoft #windows
Penetration Testing Tools
Critical Blunder: HP Update Bricks Corporate Laptops By Deleting Cloud Certs
A flawed HP OneAgent update inadvertently deleted critical Entra ID system certificates on corporate laptops, severing them from the cloud and requiring manual recovery.
⤷ Title: China Unveils UBIOS: A Homegrown Firmware to End Reliance on UEFI/BIOS
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 08:47:35 +0000
════════════════════════
⌗ Tags: #Technology #China #firmware #hardware #Technological Sovereignty #UBIOS #UEFI
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 08:47:35 +0000
════════════════════════
⌗ Tags: #Technology #China #firmware #hardware #Technological Sovereignty #UBIOS #UEFI
Penetration Testing Tools
China Unveils UBIOS: A Homegrown Firmware to End Reliance on UEFI/BIOS
China's Global Computing Consortium launched UBIOS, its first national standard firmware, to replace UEFI/BIOS and secure the nation's core computing infrastructure.
⤷ Title: Scattered Spider: Two Teens Face Trial Over £39M London Transit Cyberattack
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 08:39:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Computer Misuse Act #cyberattack #cybersecurity #London Underground #Scattered Spider #TFL
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 08:39:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Computer Misuse Act #cyberattack #cybersecurity #London Underground #Scattered Spider #TFL
Penetration Testing Tools
Scattered Spider: Two Teens Face Trial Over £39M London Transit Cyberattack
Two British teenagers linked to Scattered Spider are set for trial over a 2024 Transport for London cyberattack that caused an estimated £39M in losses and disrupted transit systems.
⤷ Title: Historic UN Cybercrime Convention Signed in Hanoi by 72 Nations
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 08:37:16 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cybercrime #cybersecurity #Hanoi Convention #International Law #UN #UNODC
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 08:37:16 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cybercrime #cybersecurity #Hanoi Convention #International Law #UN #UNODC
Penetration Testing Tools
Historic UN Cybercrime Convention Signed in Hanoi by 72 Nations
72 nations signed the UN Cybercrime Convention in Hanoi, establishing the first global framework for electronic evidence and criminalizing online exploitation.
⤷ Title: Operation ForumTroll: Chrome Zero-Day (CVE-2025-2783) Used to Deploy Italian Spyware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 08:34:54 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability #APT #chrome #Cyberespionage #Dante #Spyware #zero_day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 08:34:54 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability #APT #chrome #Cyberespionage #Dante #Spyware #zero_day
Penetration Testing Tools
Operation ForumTroll: Chrome Zero-Day (CVE-2025-2783) Used to Deploy Italian Spyware
Kaspersky uncovered Operation ForumTroll, an espionage campaign exploiting a Chrome zero-day (CVE-2025-2783) to install Dante spyware on Russian targets.
⤷ Title: Transparent Tribe APT Deploys DeskRAT to Spy on Indian Government Linux Systems
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 08:31:57 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT36 #Cyberespionage #DeskRAT #India #Linux #Transparent Tribe
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 28 Oct 2025 08:31:57 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT36 #Cyberespionage #DeskRAT #India #Linux #Transparent Tribe
Penetration Testing Tools
Transparent Tribe APT Deploys DeskRAT to Spy on Indian Government Linux Systems
The Transparent Tribe APT is exploiting Indian government targets by deploying the new DeskRAT malware via phishing to steal data from BOSS Linux systems.