⤷ Title: Critical Authentication Bypass Vulnerability Found in Milvus Proxy (CVE-2025-64513, CVSS 9.3)
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:16:17 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI security #Authentication Bypass #Critical Vulnerability #CVE_2025_64513 #Milvus #Vector Database
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:16:17 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI security #Authentication Bypass #Critical Vulnerability #CVE_2025_64513 #Milvus #Vector Database
Daily CyberSecurity
Critical Authentication Bypass Vulnerability Found in Milvus Proxy (CVE-2025-64513, CVSS 9.3)
A Critical (CVSS 9.3) Auth Bypass flaw (CVE-2025-64513) in Milvus Proxy allows unauthenticated attackers to gain full administrative control over the vector database cluster. Update to v2.6.5.
⤷ Title: Rockwell Automation Fixes Critical Privilege Escalation Flaw in Verve Asset Manager (CVE-2025-11862, CVSS 9.9)
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:12:25 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CriticalVulnerability #CVE_2025_11862 #ICS #OTSecurity #PrivilegeEscalation #RockwellAutomation #VerveAssetManager
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:12:25 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CriticalVulnerability #CVE_2025_11862 #ICS #OTSecurity #PrivilegeEscalation #RockwellAutomation #VerveAssetManager
Daily CyberSecurity
Rockwell Automation Fixes Critical Privilege Escalation Flaw in Verve Asset Manager (CVE-2025-11862, CVSS 9.9)
Rockwell patched a critical API flaw (CVE-2025-11862, CVSS 9.9) in Verve Asset Manager, allowing read-only users to escalate privileges and fully compromise OT systems.
⤷ Title: Meta Open-Sources Omnilingual ASR: State-of-the-Art Speech Recognition for 1,600+ Languages
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:09:36 +0000
════════════════════════
⌗ Tags: #Technology #ASR #DigitalDivide #LLMASR #MetaFAIR #OmnilingualASR #OpenSourceAI #SpeechRecognition #wav2vec2
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:09:36 +0000
════════════════════════
⌗ Tags: #Technology #ASR #DigitalDivide #LLMASR #MetaFAIR #OmnilingualASR #OpenSourceAI #SpeechRecognition #wav2vec2
Daily CyberSecurity
Meta Open-Sources Omnilingual ASR: State-of-the-Art Speech Recognition for 1,600+ Languages
Meta's FAIR team open-sourced Omnilingual ASR, an LLM-based system offering SOTA speech recognition for 1,600+ languages, including a "Bring Your Own Language" feature.
⤷ Title: Galaxy S26 Standard Model Gets Thicker: Hinting at a Possible Battery Upgrade
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:08:49 +0000
════════════════════════
⌗ Tags: #Android #Technology #BatteryUpgrade #Dimensions #Exynos2600 #GalaxyS26 #samsung #SmartphoneLeak #Snapdragon8EliteGen5
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:08:49 +0000
════════════════════════
⌗ Tags: #Android #Technology #BatteryUpgrade #Dimensions #Exynos2600 #GalaxyS26 #samsung #SmartphoneLeak #Snapdragon8EliteGen5
Daily CyberSecurity
Galaxy S26 Standard Model Gets Thicker: Hinting at a Possible Battery Upgrade
Samsung reportedly made last-minute Galaxy S26 dimension changes, making it slightly thicker. This suggests a potential battery upgrade for the standard model.
⤷ Title: New Android Rule: Google to Flag Battery-Draining Apps on Play Store Listings
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:06:55 +0000
════════════════════════
⌗ Tags: #Android #android #AndroidVitals #AppDevelopment #BatteryDrain #ExcessiveWakeLock #GooglePlay #samsung
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:06:55 +0000
════════════════════════
⌗ Tags: #Android #android #AndroidVitals #AppDevelopment #BatteryDrain #ExcessiveWakeLock #GooglePlay #samsung
Daily CyberSecurity
New Android Rule: Google to Flag Battery-Draining Apps on Play Store Listings
Google launches the "Excessive Wake Lock" metric. Apps that overuse wake locks (over 2 hours in 24 hrs) will get a red battery drain warning on the Play Store starting Mar 2026.
⤷ Title: AI Boom Creates 2-Year HDD Backlog, Forcing Shift to QLC SSDs and Price Hikes
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:03:18 +0000
════════════════════════
⌗ Tags: #Technology #AI #Datacenter #HardDrives #PriceHikes #QLCNAND #SSDs #StorageShortage #TLCNAND #WesternDigital
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:03:18 +0000
════════════════════════
⌗ Tags: #Technology #AI #Datacenter #HardDrives #PriceHikes #QLCNAND #SSDs #StorageShortage #TLCNAND #WesternDigital
Daily CyberSecurity
AI Boom Creates 2-Year HDD Backlog, Forcing Shift to QLC SSDs and Price Hikes
AI demand caused a 2-year backlog for hard drives, forcing data centers to buy QLC SSDs. This shift threatens consumer SSD supply and drives up memory prices.
⤷ Title: Wikipedia Fights Back: Paid API Launches as AI Traffic Steals 8% of Human Visitors
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:00:55 +0000
════════════════════════
⌗ Tags: #Technology #AI #DataScraping #GenerativeAI #LLM #PaidAPI #TrafficDecline #WikimediaFoundation #Wikipedia
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:00:55 +0000
════════════════════════
⌗ Tags: #Technology #AI #DataScraping #GenerativeAI #LLM #PaidAPI #TrafficDecline #WikimediaFoundation #Wikipedia
Daily CyberSecurity
Wikipedia Fights Back: Paid API Launches as AI Traffic Steals 8% of Human Visitors
Wikipedia launches a paid API for AI companies to stop web scraping and generate revenue after sophisticated AI crawlers caused an 8% drop in human traffic.
⤷ Title: Vulnerabilities in GraphQL API: Exploitation, Discovery, and Mitigation Guide
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:02:24 GMT
════════════════════════
⌗ Tags: #graphql #technology #bug_bounty #hacking #cybersecurity
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:02:24 GMT
════════════════════════
⌗ Tags: #graphql #technology #bug_bounty #hacking #cybersecurity
Medium
Vulnerabilities in GraphQL API: Exploitation, Discovery, and Mitigation Guide
Comprehensive guide to vulnerabilities in GraphQL APIs: endpoint discovery, IDOR flaws, introspection attacks, DoS, and prevention…
⤷ Title: Padronização x Otimização — formatos de dados com JSON e TOON na era IAGen
════════════════════════
𐀪 Author: ISHII (石井)
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 01:36:08 GMT
════════════════════════
⌗ Tags: #ai #llm #cybersecurity #solution_architect #software_architecture
════════════════════════
𐀪 Author: ISHII (石井)
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 01:36:08 GMT
════════════════════════
⌗ Tags: #ai #llm #cybersecurity #solution_architect #software_architecture
Medium
Padronização x Otimização — formatos de dados com JSON e TOON na era IAGen
JSON e TOON são formatos de dados que, apesar de servirem para representar informações estruturadas, surgiram em contextos bem diferentes…
⤷ Title: Proof of Life & Proof of Existence
════════════════════════
𐀪 Author: Ismael Trabuco
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 01:08:50 GMT
════════════════════════
⌗ Tags: #crypto #social_network #investing #web3 #cybersecurity
════════════════════════
𐀪 Author: Ismael Trabuco
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 01:08:50 GMT
════════════════════════
⌗ Tags: #crypto #social_network #investing #web3 #cybersecurity
Medium
Proof of Life & Proof of Existence
Ismael Trabuco · Plexo Natural Foundation · São Paulo, Brazil
⤷ Title: Phishing Analysis Fundamentals — Try Hack Me Walkthrough
════════════════════════
𐀪 Author: Chaitanya Garware
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 01:03:45 GMT
════════════════════════
⌗ Tags: #phishing #tryhackme_walkthrough #phishing_awareness #cybersecurity #tryhackme
════════════════════════
𐀪 Author: Chaitanya Garware
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 01:03:45 GMT
════════════════════════
⌗ Tags: #phishing #tryhackme_walkthrough #phishing_awareness #cybersecurity #tryhackme
Medium
Phishing Analysis Fundamentals — Try Hack Me Walkthrough
## Task 1—Introduction
⤷ Title: Detecting Attacker Behavior with Splunk: The TTP Approach
════════════════════════
𐀪 Author: Cybersecurity Simplified
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:32:00 GMT
════════════════════════
⌗ Tags: #cybersecurity #women_in_tech #splunk #hackthebox #information_security
════════════════════════
𐀪 Author: Cybersecurity Simplified
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 00:32:00 GMT
════════════════════════
⌗ Tags: #cybersecurity #women_in_tech #splunk #hackthebox #information_security
Medium
Detecting Attacker Behavior with Splunk: The TTP Approach
You’ve hunted down a complete compromise. Now let’s build proactive detections. In this post, we’ll explore how to create SPL searches…
⤷ Title: Dirty Pipe: CVE-2022–0847 — Tryhackme
════════════════════════
𐀪 Author: satoshi_nakamura
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 01:28:48 GMT
════════════════════════
⌗ Tags: #tryhackme #kernel_exploitation
════════════════════════
𐀪 Author: satoshi_nakamura
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 01:28:48 GMT
════════════════════════
⌗ Tags: #tryhackme #kernel_exploitation
Medium
Dirty Pipe: CVE-2022–0847 — Tryhackme
berbeda dengan tulisan saya sebelumnya, saya disini akan mengerjakan soal dengan tipe kernel exploitation. hal ini pada dasarnya masih…
⤷ Title: Linux Crypto Speeds Up: New Patches Deliver 53% Faster HCTR2 Mode
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 03:11:38 +0000
════════════════════════
⌗ Tags: #Linux #cryptography #EricBiggers #HCTR2 #KernelPatches #LinuxKernel #PerformanceOptimization #POLYVAL
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 03:11:38 +0000
════════════════════════
⌗ Tags: #Linux #cryptography #EricBiggers #HCTR2 #KernelPatches #LinuxKernel #PerformanceOptimization #POLYVAL
Penetration Testing Tools
Linux Crypto Speeds Up: New Patches Deliver 53% Faster HCTR2 Mode
Google engineer Eric Biggers submitted patches to Linux, accelerating the HCTR2 cryptographic mode by up to 53% by optimizing the underlying POLYVAL implementation.
⤷ Title: Ditch the Terminal: How to Get a Beginner-Friendly App Store on Linux (KDE Discover)
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 03:10:02 +0000
════════════════════════
⌗ Tags: #Linux #AppStore #Discover #GUI #KDE #LinuxBeginner #PackageManager #RaspberryPiOS
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 03:10:02 +0000
════════════════════════
⌗ Tags: #Linux #AppStore #Discover #GUI #KDE #LinuxBeginner #PackageManager #RaspberryPiOS
Penetration Testing Tools
Ditch the Terminal: How to Get a Beginner-Friendly App Store on Linux (KDE Discover)
KDE Discover is a beginner-friendly graphical app store for Linux. Learn how to install it on Raspberry Pi OS to manage, install, and update applications without the terminal.
⤷ Title: Windows 11 Version 26H1 is Coming—But Only for New Snapdragon X2 ARM Chips
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 03:08:06 +0000
════════════════════════
⌗ Tags: #Windows #26H1 #ARM #CanaryChannel #Microsoft #Qualcomm #SnapdragonX2 #Windows11 #WindowsInsider
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 03:08:06 +0000
════════════════════════
⌗ Tags: #Windows #26H1 #ARM #CanaryChannel #Microsoft #Qualcomm #SnapdragonX2 #Windows11 #WindowsInsider
Penetration Testing Tools
Windows 11 Version 26H1 is Coming—But Only for New Snapdragon X2 ARM Chips
Microsoft confirms Windows 11 26H1 (Build 28000). It's a non-general release for platform-level support of new ARM chips, like the forthcoming Snapdragon X2 processor.
⤷ Title: VPN Boom & Ban Threat: Subscriptions Soar 1,400% as US/UK Eye Restrictions
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 03:06:07 +0000
════════════════════════
⌗ Tags: #Technology #AgeVerification #cybersecurity #GoogleWarning #InternetFreedom #OnlineSafetyAct #VPN #VPNBan
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 03:06:07 +0000
════════════════════════
⌗ Tags: #Technology #AgeVerification #cybersecurity #GoogleWarning #InternetFreedom #OnlineSafetyAct #VPN #VPNBan
Penetration Testing Tools
VPN Boom & Ban Threat: Subscriptions Soar 1,400% as US/UK Eye Restrictions
VPN installs surged 1,400% after UK age checks, prompting ban debates in the US/UK. Google warns that threat actors are now disguising spyware as free VPN apps.
⤷ Title: Windows 11 Tests Haptic Feedback: Get a ‘Buzz’ When Snapping Windows
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 03:04:47 +0000
════════════════════════
⌗ Tags: #Windows #HapticFeedback #HapticSignals #InsiderBuild #Microsoft #UIUX #Windows11 #WindowSnapping
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 03:04:47 +0000
════════════════════════
⌗ Tags: #Windows #HapticFeedback #HapticSignals #InsiderBuild #Microsoft #UIUX #Windows11 #WindowSnapping
Penetration Testing Tools
Windows 11 Tests Haptic Feedback: Get a 'Buzz' When Snapping Windows
Microsoft is testing a hidden "Haptic signals" setting in Windows 11 to add subtle vibrations for UI actions like window snapping and object alignment on compatible hardware.
⤷ Title: Mandiant: Triofox Zero-Day Exploited to Gain SYSTEM Access via Antivirus Feature
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 02:59:46 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_12480 #Gladinet #HTTPHostHeader #Mandiant #RCE #Triofox #UNC6485 #zeroday
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 02:59:46 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_12480 #Gladinet #HTTPHostHeader #Mandiant #RCE #Triofox #UNC6485 #zeroday
Penetration Testing Tools
Mandiant: Triofox Zero-Day Exploited to Gain SYSTEM Access via Antivirus Feature
A critical Triofox zero-day (CVE-2025-12480) was exploited by UNC6485. Attackers bypassed auth via Host header, created an admin, and ran code as SYSTEM via the AV check.
⤷ Title: Stalkerware Crisis: Most Android Antivirus Apps Fail to Detect Hidden Surveillance
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 02:58:07 +0000
════════════════════════
⌗ Tags: #Malware #AndroidSecurity #antivirus #EFF #GooglePlayProtect #Malwarebytes #privacy #stalkerware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 02:58:07 +0000
════════════════════════
⌗ Tags: #Malware #AndroidSecurity #antivirus #EFF #GooglePlayProtect #Malwarebytes #privacy #stalkerware
Penetration Testing Tools
Stalkerware Crisis: Most Android Antivirus Apps Fail to Detect Hidden Surveillance
An EFF investigation found that most Android antivirus apps fail to detect stalkerware. Malwarebytes detected 100%, while Google Play Protect found just over half.
⤷ Title: DonPwner: New Dual-Use Tool Automates Credential Attacks on Role-Based Active Directory
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 02:52:56 +0000
════════════════════════
⌗ Tags: #Open Source Tool #ActiveDirectory #CredentialAnalysis #DonPwner #DualUseSoftware #NetExec #Pentesting #SecurityTool
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 12 Nov 2025 02:52:56 +0000
════════════════════════
⌗ Tags: #Open Source Tool #ActiveDirectory #CredentialAnalysis #DonPwner #DualUseSoftware #NetExec #Pentesting #SecurityTool
Penetration Testing Tools
DonPwner: New Dual-Use Tool Automates Credential Attacks on Role-Based Active Directory
DonPwner is a new dual-use tool for automating credential analysis and password spraying against Active Directory, built on DonPAPI for authorized security testing.