⤷ Title: Fake NPM Package With 206K Downloads Targeted GitHub for Credentials (UPDATED)
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 11:45:13 +0000
════════════════════════
⌗ Tags: #Malware #Security #Cyber Attack #Cybersecurity #data breach #GitHub #NPM #Supply Chain #Typosquatting
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 11:45:13 +0000
════════════════════════
⌗ Tags: #Malware #Security #Cyber Attack #Cybersecurity #data breach #GitHub #NPM #Supply Chain #Typosquatting
Hackread
Fake NPM Package With 206K Downloads Targeted GitHub for Credentials (UPDATED)
Veracode Threat Research exposed a targeted typosquatting attack on npm, where the malicious package @acitons/artifact stole GitHub tokens. Learn how this supply chain failure threatened the GitHub organisation's code.
⤷ Title: When Six Zeros Broke a Food Delivery Empire
════════════════════════
𐀪 Author: Jackson Mittag
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 23:18:45 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #2fa_bypass #bug_bounty_writeup #bug_bounty
════════════════════════
𐀪 Author: Jackson Mittag
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 23:18:45 GMT
════════════════════════
⌗ Tags: #bug_bounty_tips #2fa_bypass #bug_bounty_writeup #bug_bounty
Medium
When Six Zeros Broke a Food Delivery Empire
The Story of a Critical 2FA Bypass That Should Never Have Existed
⤷ Title: Mighty Hacker Recovery / Bitcoin Recovery Expert WhatsApp is +14042456415.
════════════════════════
𐀪 Author: Baron Wilson
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 22:35:57 GMT
════════════════════════
⌗ Tags: #hacking #investing
════════════════════════
𐀪 Author: Baron Wilson
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 22:35:57 GMT
════════════════════════
⌗ Tags: #hacking #investing
Medium
Mighty Hacker Recovery / Bitcoin Recovery Expert WhatsApp is +14042456415.
BITCOIN RECOVERY EXPERT
USDT RECOVERY EXPERT
ETH RECOVERY EXPERT
how to hire a hacker to recover stolen crypto
Best recovery experts for…
USDT RECOVERY EXPERT
ETH RECOVERY EXPERT
how to hire a hacker to recover stolen crypto
Best recovery experts for…
⤷ Title: Abusing Sudo Rights on NeedRestart for Escalation
════════════════════════
𐀪 Author: Aniket Das
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 21:54:12 GMT
════════════════════════
⌗ Tags: #linux #hacking #cybersecurity #penetration_testing #information_security
════════════════════════
𐀪 Author: Aniket Das
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 21:54:12 GMT
════════════════════════
⌗ Tags: #linux #hacking #cybersecurity #penetration_testing #information_security
Medium
Abusing Sudo Rights on NeedRestart for Escalation
Hey everyone, welcome back! Took some time away to really grind and level up my skills and also preparing up for my Masters. So, I’m back…
⤷ Title: Controllable AI: Teaching Robots Not to Be Jerks (And Why It’s Harder Than You Think)
════════════════════════
𐀪 Author: Twinkle Jaineera
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 23:35:45 GMT
════════════════════════
⌗ Tags: #controllable_ai #ai #cybersecurity #ai_agent
════════════════════════
𐀪 Author: Twinkle Jaineera
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 23:35:45 GMT
════════════════════════
⌗ Tags: #controllable_ai #ai #cybersecurity #ai_agent
Medium
Controllable AI: Teaching Robots Not to Be Jerks (And Why It’s Harder Than You Think)
or: my journey into realizing that “just make it safe lol” is not actually a viable engineering strategy
⤷ Title: OWASP Top 10:2025 Sürüm Adayı
════════════════════════
𐀪 Author: hadi cicek
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 23:26:22 GMT
════════════════════════
⌗ Tags: #cybersecurity #siber_guvenlik #owasp #technology
════════════════════════
𐀪 Author: hadi cicek
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 23:26:22 GMT
════════════════════════
⌗ Tags: #cybersecurity #siber_guvenlik #owasp #technology
Medium
OWASP Top 10:2025 Sürüm Adayı
Herkese merhabalar. Bu blog postta daha önce 2021 listesini incelediğimiz OWASP Top 10 listesinin 2025 sürüm adayı versiyonuna göz…
⤷ Title: First Post
════════════════════════
𐀪 Author: Sanishsinghmaharjan
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 23:17:12 GMT
════════════════════════
⌗ Tags: #cybersecurity
════════════════════════
𐀪 Author: Sanishsinghmaharjan
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 23:17:12 GMT
════════════════════════
⌗ Tags: #cybersecurity
Medium
First Post
Checking what can i do.
⤷ Title: Fusion Corp — Walkthrough (TryHackMe)
════════════════════════
𐀪 Author: Muhammad Usman Faridi
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 23:03:47 GMT
════════════════════════
⌗ Tags: #cybersecurity #red_team #ethical_hacking #shell #active_directory
════════════════════════
𐀪 Author: Muhammad Usman Faridi
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 23:03:47 GMT
════════════════════════
⌗ Tags: #cybersecurity #red_team #ethical_hacking #shell #active_directory
Medium
Fusion Corp — Walkthrough (TryHackMe)
Target: 10.10.126.68 (AD / Windows)
⤷ Title: When a Job Offer Becomes a Cyberattack
════════════════════════
𐀪 Author: Dmytro J. Medvid
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 22:57:57 GMT
════════════════════════
⌗ Tags: #cybersecurity #web3 #technology #crypto #scam
════════════════════════
𐀪 Author: Dmytro J. Medvid
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 22:57:57 GMT
════════════════════════
⌗ Tags: #cybersecurity #web3 #technology #crypto #scam
Medium
🎭 When a Job Offer Becomes a Cyberattack
How I Almost Got Hacked by a “CTO Opportunity” on LinkedIn
⤷ Title: Weird Is Wonderful
════════════════════════
𐀪 Author: Matthew Stevens
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 22:51:08 GMT
════════════════════════
⌗ Tags: #detection_engineering #cybercrime #cybersecurity_training #cybersecurity #cyber
════════════════════════
𐀪 Author: Matthew Stevens
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 22:51:08 GMT
════════════════════════
⌗ Tags: #detection_engineering #cybercrime #cybersecurity_training #cybersecurity #cyber
Medium
Weird Is Wonderful
The art of detecting the unusual
⤷ Title: Atlantic Council Cyber Statecraft Initiative,
════════════════════════
𐀪 Author: Talha Özcan
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 22:46:42 GMT
════════════════════════
⌗ Tags: #cybersecurity
════════════════════════
𐀪 Author: Talha Özcan
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 22:46:42 GMT
════════════════════════
⌗ Tags: #cybersecurity
Medium
Atlantic Council Cyber Statecraft Initiative,
Atlantic Council Cyber Statecraft Initiative, EXECUTIVE SUMMARY: Field-programmable gate arrays (FPGAs) are specialized computer chips critical to the US economy and national security. FPGAs are …
⤷ Title: Security and Human Behavior
════════════════════════
𐀪 Author: Talha Özcan
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 22:45:49 GMT
════════════════════════
⌗ Tags: #cybersecurity
════════════════════════
𐀪 Author: Talha Özcan
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 22:45:49 GMT
════════════════════════
⌗ Tags: #cybersecurity
Medium
Security and Human Behavior
Welcome to the 18th Security and Human Behavior. The write-up below is a live-blog of the workshop.
⤷ Title: How to Prevent AI Adoption from Becoming Shadow AI
════════════════════════
𐀪 Author: Audacia
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 22:41:07 GMT
════════════════════════
⌗ Tags: #cybersecurity #generative_ai_tools #ai
════════════════════════
𐀪 Author: Audacia
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 22:41:07 GMT
════════════════════════
⌗ Tags: #cybersecurity #generative_ai_tools #ai
Medium
How to Prevent AI Adoption from Becoming Shadow AI
Generative AI tools have slipped into everyday workflows with astonishing speed. What started as small‐scale pilots in 2023 has become an…
⤷ Title: Day 11: System Hardening — Building a Strong Defense with Patch Management, Account Policies, and…
════════════════════════
𐀪 Author: HackTrace
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 22:36:55 GMT
════════════════════════
⌗ Tags: #cybersecurity #networking
════════════════════════
𐀪 Author: HackTrace
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 22:36:55 GMT
════════════════════════
⌗ Tags: #cybersecurity #networking
Medium
Day 11: System Hardening — Building a Strong Defense with Patch Management, Account Policies, and…
Introduction
⤷ Title: X Rewards Walkthrough — November 2025
════════════════════════
𐀪 Author: Jason
Gregory
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 23:37:51 GMT
════════════════════════
⌗ Tags: #walkthrough #blockchain #crypto #rewards #xs
════════════════════════
𐀪 Author: Jason
Gregory
════════════════════════
ⴵ Time: Tue, 11 Nov 2025 23:37:51 GMT
════════════════════════
⌗ Tags: #walkthrough #blockchain #crypto #rewards #xs
Medium
💰 How To Claim X Airdrop — Step By Step Guide [November 2025]
Your complete tutorial for maximizing X opportunities this November.
⤷ Title: Critical Apache OFBiz Flaw (CVE-2025-59118) Allows Remote Command Execution via Unrestricted File Upload
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 01:48:54 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache OFBiz #Critical Vulnerability #CVE_2025_59118 #ERP #rce #Unrestricted Upload #XSS
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 01:48:54 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache OFBiz #Critical Vulnerability #CVE_2025_59118 #ERP #rce #Unrestricted Upload #XSS
Daily CyberSecurity
Critical Apache OFBiz Flaw (CVE-2025-59118) Allows Remote Command Execution via Unrestricted File Upload
Apache patched a Critical RCE flaw (CVE-2025-59118) in OFBiz ERP that allows remote attackers to upload arbitrary files with dangerous types. A reflected XSS flaw was also fixed.
⤷ Title: November Patch Tuesday: Microsoft Fixes 68 Flaws, Including Kernel Zero-Day Under Active Exploitation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 01:40:49 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Windows #CVE_2025_62215 #Microsoft #Patch Tuesday #privilege escalation #rce #Windows Kernel #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 01:40:49 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Windows #CVE_2025_62215 #Microsoft #Patch Tuesday #privilege escalation #rce #Windows Kernel #zero_day
Daily CyberSecurity
November Patch Tuesday: Microsoft Fixes 68 Flaws, Including Kernel Zero-Day Under Active Exploitation
Microsoft's November Patch Tuesday fixes 68 vulnerabilities, including CVE-2025-62215, an actively exploited Windows Kernel zero-day allowing local attackers to gain SYSTEM privileges via a race condition.
⤷ Title: Critical Authentication Bypass Vulnerability Found in Milvus Proxy (CVE-2025-64513, CVSS 9.3)
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:16:17 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI security #Authentication Bypass #Critical Vulnerability #CVE_2025_64513 #Milvus #Vector Database
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:16:17 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI security #Authentication Bypass #Critical Vulnerability #CVE_2025_64513 #Milvus #Vector Database
Daily CyberSecurity
Critical Authentication Bypass Vulnerability Found in Milvus Proxy (CVE-2025-64513, CVSS 9.3)
A Critical (CVSS 9.3) Auth Bypass flaw (CVE-2025-64513) in Milvus Proxy allows unauthenticated attackers to gain full administrative control over the vector database cluster. Update to v2.6.5.
⤷ Title: Rockwell Automation Fixes Critical Privilege Escalation Flaw in Verve Asset Manager (CVE-2025-11862, CVSS 9.9)
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:12:25 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CriticalVulnerability #CVE_2025_11862 #ICS #OTSecurity #PrivilegeEscalation #RockwellAutomation #VerveAssetManager
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:12:25 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CriticalVulnerability #CVE_2025_11862 #ICS #OTSecurity #PrivilegeEscalation #RockwellAutomation #VerveAssetManager
Daily CyberSecurity
Rockwell Automation Fixes Critical Privilege Escalation Flaw in Verve Asset Manager (CVE-2025-11862, CVSS 9.9)
Rockwell patched a critical API flaw (CVE-2025-11862, CVSS 9.9) in Verve Asset Manager, allowing read-only users to escalate privileges and fully compromise OT systems.
⤷ Title: Meta Open-Sources Omnilingual ASR: State-of-the-Art Speech Recognition for 1,600+ Languages
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:09:36 +0000
════════════════════════
⌗ Tags: #Technology #ASR #DigitalDivide #LLMASR #MetaFAIR #OmnilingualASR #OpenSourceAI #SpeechRecognition #wav2vec2
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:09:36 +0000
════════════════════════
⌗ Tags: #Technology #ASR #DigitalDivide #LLMASR #MetaFAIR #OmnilingualASR #OpenSourceAI #SpeechRecognition #wav2vec2
Daily CyberSecurity
Meta Open-Sources Omnilingual ASR: State-of-the-Art Speech Recognition for 1,600+ Languages
Meta's FAIR team open-sourced Omnilingual ASR, an LLM-based system offering SOTA speech recognition for 1,600+ languages, including a "Bring Your Own Language" feature.
⤷ Title: Galaxy S26 Standard Model Gets Thicker: Hinting at a Possible Battery Upgrade
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:08:49 +0000
════════════════════════
⌗ Tags: #Android #Technology #BatteryUpgrade #Dimensions #Exynos2600 #GalaxyS26 #samsung #SmartphoneLeak #Snapdragon8EliteGen5
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:08:49 +0000
════════════════════════
⌗ Tags: #Android #Technology #BatteryUpgrade #Dimensions #Exynos2600 #GalaxyS26 #samsung #SmartphoneLeak #Snapdragon8EliteGen5
Daily CyberSecurity
Galaxy S26 Standard Model Gets Thicker: Hinting at a Possible Battery Upgrade
Samsung reportedly made last-minute Galaxy S26 dimension changes, making it slightly thicker. This suggests a potential battery upgrade for the standard model.