⤷ Title: Code Antivirus: OpenAI Unveils Aardvark AI to Autonomously Find and Fix Software Vulnerabilities
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 04:15:32 +0000
════════════════════════
⌗ Tags: #Technology #Aardvark #AI security #Code Auditing #CodeMender #DevSecOps #GPT_5 #OpenAI #vulnerability management
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 04:15:32 +0000
════════════════════════
⌗ Tags: #Technology #Aardvark #AI security #Code Auditing #CodeMender #DevSecOps #GPT_5 #OpenAI #vulnerability management
Penetration Testing Tools
Code Antivirus: OpenAI Unveils Aardvark AI to Autonomously Find and Fix Software Vulnerabilities
OpenAI launched Aardvark, a GPT-5 powered agent that autonomously detects, reproduces, and generates fixes for software vulnerabilities in real time.
⤷ Title: The Shrink Ray: Developer Runs Windows 7 at a Record-Low 69 Megabytes
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 04:09:43 +0000
════════════════════════
⌗ Tags: #Windows #Minimalism #OS Optimization #Proof of Concept #System Reduction #Tiny11 #Ultra_Compact #Windows 7
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 04:09:43 +0000
════════════════════════
⌗ Tags: #Windows #Minimalism #OS Optimization #Proof of Concept #System Reduction #Tiny11 #Ultra_Compact #Windows 7
Penetration Testing Tools
The Shrink Ray: Developer Runs Windows 7 at a Record-Low 69 Megabytes
A developer managed to shrink a fully bootable Windows 7 copy to 69MB—smaller than a mobile app. The feat demonstrates the limits of OS minimalism.
⤷ Title: Tap-and-Steal: New NFC Banking Malware Exploits Android’s HCE for Ghost Payments
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 04:07:58 +0000
════════════════════════
⌗ Tags: #Malware #Android Security #banking trojan #Contactless Payment #Eastern Europe #EMV #HCE #Mobile fraud #NFC
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 04:07:58 +0000
════════════════════════
⌗ Tags: #Malware #Android Security #banking trojan #Contactless Payment #Eastern Europe #EMV #HCE #Mobile fraud #NFC
Penetration Testing Tools
Tap-and-Steal: New NFC Banking Malware Exploits Android’s HCE for Ghost Payments
A surge of 760+ Android apps in Eastern Europe use NFC relay/HCE mechanisms to bypass payment security and execute fraudulent contactless transactions.
⤷ Title: CISA Warning: Linux Kernel Bug (CVE-2024-1086) Actively Exploited by Ransomware for Root Access
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 04:06:07 +0000
════════════════════════
⌗ Tags: #Linux #Vulnerability #CISA KEV #CVE_2024_1086 #Linux Kernel #Netfilter #privilege escalation #ransomware #use_after_free
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 04:06:07 +0000
════════════════════════
⌗ Tags: #Linux #Vulnerability #CISA KEV #CVE_2024_1086 #Linux Kernel #Netfilter #privilege escalation #ransomware #use_after_free
Penetration Testing Tools
CISA Warning: Linux Kernel Bug (CVE-2024-1086) Actively Exploited by Ransomware for Root Access
CISA confirms active exploitation of Linux kernel flaw (CVE-2024-1086) for root access via ransomware. The 10-year-old bug affects most major Linux distributions.
⤷ Title: Data Leak Flaw: Critical Bug Lets Attackers Trick Claude AI Into Exfiltrating User Data
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 04:03:12 +0000
════════════════════════
⌗ Tags: #Data Leak #Vulnerability #AI Vulnerability #Anthropic #Claude #cybersecurity #Data Exfiltration #HackerOne #Prompt Injection #Sandbox
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 04:03:12 +0000
════════════════════════
⌗ Tags: #Data Leak #Vulnerability #AI Vulnerability #Anthropic #Claude #cybersecurity #Data Exfiltration #HackerOne #Prompt Injection #Sandbox
Penetration Testing Tools
Data Leak Flaw: Critical Bug Lets Attackers Trick Claude AI Into Exfiltrating User Data
A critical flaw allows indirect prompt injection to trick Claude into exfiltrating user data via its File API by substituting an attacker's access key. Anthropic warns users.
⤷ Title: New Threat Landscape: AI Browsers Create Agentic Vulnerabilities & Amplified Data Risk
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 04:01:58 +0000
════════════════════════
⌗ Tags: #Vulnerability #Agentic AI #AI Browsers #browser security #ChatGPT Atlas #data leak #Perplexity Comet #zero_day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 04:01:58 +0000
════════════════════════
⌗ Tags: #Vulnerability #Agentic AI #AI Browsers #browser security #ChatGPT Atlas #data leak #Perplexity Comet #zero_day
Penetration Testing Tools
New Threat Landscape: AI Browsers Create Agentic Vulnerabilities & Amplified Data Risk
AI browsers like Edge Copilot & ChatGPT Atlas create new risks. Researchers warn agentic automation amplifies data theft via hidden instructions and zero-day vulnerabilities.
⤷ Title: AI Compute Race: Microsoft Secures $9.7 Billion GPU Deal with IREN for Cloud Expansion
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 03:33:02 +0000
════════════════════════
⌗ Tags: #Technology #AI Infrastructure #Azure #Cloud Compute #Data Center #IREN #Microsoft #Nscale #NVIDIA GB300
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 03:33:02 +0000
════════════════════════
⌗ Tags: #Technology #AI Infrastructure #Azure #Cloud Compute #Data Center #IREN #Microsoft #Nscale #NVIDIA GB300
Daily CyberSecurity
AI Compute Race: Microsoft Secures $9.7 Billion GPU Deal with IREN for Cloud Expansion
Microsoft signed a 5-year, $9.7B deal with IREN for NVIDIA GB300 GPU compute capacity, part of a strategy to meet surging global demand for its Azure AI services.
⤷ Title: Cloud Wars: OpenAI Signs $38 Billion Computing Deal with AWS, Ending Microsoft Exclusivity
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 03:27:59 +0000
════════════════════════
⌗ Tags: #Technology #AI Infrastructure #Amazon #Anthropic #AWS #Cloud Computing #Graviton #Microsoft #OpenAI #Sam Altman
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 03:27:59 +0000
════════════════════════
⌗ Tags: #Technology #AI Infrastructure #Amazon #Anthropic #AWS #Cloud Computing #Graviton #Microsoft #OpenAI #Sam Altman
Daily CyberSecurity
Cloud Wars: OpenAI Signs $38 Billion Computing Deal with AWS, Ending Microsoft Exclusivity
OpenAI signed a $38B deal with AWS for cloud computing infrastructure, diversifying its resources after ending exclusivity with Microsoft. AWS gains a major AI client.
⤷ Title: Streamlined? Microsoft Strips Critical Info from Windows Update Names, Causing IT Backlash
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 03:23:45 +0000
════════════════════════
⌗ Tags: #Windows #IT Administration #KB5065789 #Microsoft #naming convention #readability #Windows Update
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 03:23:45 +0000
════════════════════════
⌗ Tags: #Windows #IT Administration #KB5065789 #Microsoft #naming convention #readability #Windows Update
Daily CyberSecurity
Streamlined? Microsoft Strips Critical Info from Windows Update Names, Causing IT Backlash
Microsoft is simplifying Windows Update names by removing OS version, date, and architecture—a change criticized by admins for degrading readability and context.
⤷ Title: The 69 MB Challenge: Developer Strips Windows 7 to Its Bare Minimum—And It Still Boots
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 03:17:13 +0000
════════════════════════
⌗ Tags: #Windows #Minimalism #OS Optimization #PC Modding #proof_of_concept #System Reduction #Tiny11 #Windows 7
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 03:17:13 +0000
════════════════════════
⌗ Tags: #Windows #Minimalism #OS Optimization #PC Modding #proof_of_concept #System Reduction #Tiny11 #Windows 7
Daily CyberSecurity
The 69 MB Challenge: Developer Strips Windows 7 to Its Bare Minimum—And It Still Boots
Developer @XenoPanther created a Windows 7 build that occupies just 69 MB. The ultra-compact OS successfully boots but is primarily a fascinating proof of concept.
⤷ Title: Access Denied: Microsoft Authenticator to Purge Entra ID Credentials on Rooted Devices
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 03:13:20 +0000
════════════════════════
⌗ Tags: #Technology #Azure AD #enterprise #Entra ID #Jailbroken #MFA #Microsoft Authenticator #Rooted #security policy
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 03:13:20 +0000
════════════════════════
⌗ Tags: #Technology #Azure AD #enterprise #Entra ID #Jailbroken #MFA #Microsoft Authenticator #Rooted #security policy
Daily CyberSecurity
Access Denied: Microsoft Authenticator to Purge Entra ID Credentials on Rooted Devices
Microsoft Authenticator will purge Entra ID credentials from jailbroken/rooted devices starting Feb 2026 to block token theft, enforcing security for enterprise accounts.
⤷ Title: Years Late: Apple Finally Launches Full Web-Based App Store Homepage with Search & Discovery
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 03:06:38 +0000
════════════════════════
⌗ Tags: #Technology #App Store #Apple #discovery #interface #ios #macOS #Search #web
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 03:06:38 +0000
════════════════════════
⌗ Tags: #Technology #App Store #Apple #discovery #interface #ios #macOS #Search #web
Daily CyberSecurity
Years Late: Apple Finally Launches Full Web-Based App Store Homepage with Search & Discovery
Apple unveiled a fully featured web-based App Store homepage with search, cross-platform toggles (iOS, macOS, watchOS), and a curated "Today" section.
⤷ Title: Passwordless Future: Microsoft Edge 142 Rolls Out Cross-Platform Passkey Sync
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 03:02:35 +0000
════════════════════════
⌗ Tags: #Technology #authentication #microsoft edge #Passkeys #Passwordless #security #Synchronization #windows
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 03:02:35 +0000
════════════════════════
⌗ Tags: #Technology #authentication #microsoft edge #Passkeys #Passwordless #security #Synchronization #windows
Daily CyberSecurity
Passwordless Future: Microsoft Edge 142 Rolls Out Cross-Platform Passkey Sync
Edge v142.0 introduces cross-platform passkey sync, letting users reuse passkeys securely across devices with a PIN, enhancing passwordless authentication.
⤷ Title: Clarity Fix: iOS 26.1 Launches with Liquid Glass Tint Option & Camera Gesture Toggle
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 02:59:12 +0000
════════════════════════
⌗ Tags: #Technology #AirPods #Apple #Camera Gesture #Communication Safety #features #iOS 26.1 #iphone #Liquid Glass
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 02:59:12 +0000
════════════════════════
⌗ Tags: #Technology #AirPods #Apple #Camera Gesture #Communication Safety #features #iOS 26.1 #iphone #Liquid Glass
Daily CyberSecurity
Clarity Fix: iOS 26.1 Launches with Liquid Glass Tint Option & Camera Gesture Toggle
Apple has officially released iOS 26.1, introducing two noteworthy new features. First, users can now disable the translucent “Liquid Glass” effect, increasing background opacity for improved clar…
⤷ Title: Model Pulled: Google Removes Gemma AI After Fabricating Defamatory Claims About U.S. Senator
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 02:50:33 +0000
════════════════════════
⌗ Tags: #Technology #AI Hallucination #Gemma #Generative AI #google #Google AI Studio #Marsha Blackburn #Misinformation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 02:50:33 +0000
════════════════════════
⌗ Tags: #Technology #AI Hallucination #Gemma #Generative AI #google #Google AI Studio #Marsha Blackburn #Misinformation
Daily CyberSecurity
Model Pulled: Google Removes Gemma AI After Fabricating Defamatory Claims About U.S. Senator
Gemma is an open-source artificial intelligence model developed by Google, available to all developers through Google AI Studio and other distribution channels. However, developers may now find it…
⤷ Title: SesameOp Backdoor Hijacks OpenAI Assistants API for Covert C2 and Espionage
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 02:32:40 +0000
════════════════════════
⌗ Tags: #Malware #.NET AppDomainManager #AI API Misuse #C2 Hijacking #Espionage #Microsoft DART #OpenAI API #SesameOp
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 02:32:40 +0000
════════════════════════
⌗ Tags: #Malware #.NET AppDomainManager #AI API Misuse #C2 Hijacking #Espionage #Microsoft DART #OpenAI API #SesameOp
Daily CyberSecurity
SesameOp Backdoor Hijacks OpenAI Assistants API for Covert C2 and Espionage
In an example of how threat actors are adapting to modern AI ecosystems, Microsoft’s Incident Response – Detection and Response Team (DART) has uncovered a sophisticated espionage-focused backdoor…
⤷ Title: AI-Discovered Flaw: Redis Flaw (CVE-2025-62507) Allows Remote Code Execution via Stack Buffer Overflow
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 02:09:57 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_62507 #Data Platform #Google Big Sleep #rce #Redis #Stack Buffer Overflow #Stream #XACKDEL
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 02:09:57 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_62507 #Data Platform #Google Big Sleep #rce #Redis #Stack Buffer Overflow #Stream #XACKDEL
Daily CyberSecurity
AI-Discovered Flaw: Redis Flaw (CVE-2025-62507) Allows Remote Code Execution via Stack Buffer Overflow
Redis, the world’s leading in-memory data platform, has issued an urgent patch addressing a high-severity vulnerability (CVE-2025-62507, CVSSv4 7.7) that could allow remote code execution (RCE) un…
⤷ Title: Cyber-Enabled Cargo Theft: Hackers Hijack Logistics Firms with RMM Tools to Steal Physical Shipments
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 02:00:40 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cargo Theft #Freight Fraud #Logistics Supply Chain #Remote Hijacking #RMM Abuse #ScreenConnect
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 02:00:40 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Cargo Theft #Freight Fraud #Logistics Supply Chain #Remote Hijacking #RMM Abuse #ScreenConnect
Daily CyberSecurity
Cyber-Enabled Cargo Theft: Hackers Hijack Logistics Firms with RMM Tools to Steal Physical Shipments
Proofpoint exposed cyber-enabled cargo theft where criminals use phishing to deliver RMM tools (ScreenConnect, SimpleHelp). They hijack load boards and dispatch systems to steal physical freight worth millions.
⤷ Title: The Ghost in the Machine: How I Found IDORs That Were Hiding in Plain Sight
════════════════════════
𐀪 Author: Iski
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 04:32:45 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty #bug_bounty_tips #cybersecurity #money
════════════════════════
𐀪 Author: Iski
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 04:32:45 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty #bug_bounty_tips #cybersecurity #money
Medium
The Ghost in the Machine: How I Found IDORs That Were Hiding in Plain Sight 👻🔍
Hey there!😁
⤷ Title: Hit Your Mark with “Bulleye” — The CTF Challenge You Can’t Skip
════════════════════════
𐀪 Author: Pentester Club
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 04:29:41 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty #cybersecurity #ctf #blockchain
════════════════════════
𐀪 Author: Pentester Club
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 04:29:41 GMT
════════════════════════
⌗ Tags: #hacking #bug_bounty #cybersecurity #ctf #blockchain
Medium
Hit Your Mark with “Bulleye” — The CTF Challenge You Can’t Skip 🎯
If you’re ready to elevate your bug bounty and pentesting game, it’s time to lock in on the challenge that’s got the community buzzing…
⤷ Title: BROKEN OBJECT LEVEL AUTHORIZATION(BOLA)
════════════════════════
𐀪 Author: Jei Ess
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 04:26:32 GMT
════════════════════════
⌗ Tags: #software_development #api #cybersecurity #web_development #hacking
════════════════════════
𐀪 Author: Jei Ess
════════════════════════
ⴵ Time: Tue, 04 Nov 2025 04:26:32 GMT
════════════════════════
⌗ Tags: #software_development #api #cybersecurity #web_development #hacking
Medium
BROKEN OBJECT LEVEL AUTHORIZATION(BOLA)
Ahoy fellow hunters🏹;