⤷ Title: Impact vs Sophistication: A different Way to Map Threat Actors
════════════════════════
𐀪 Author: TΞLΞMΞTRY
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 21:04:46 GMT
════════════════════════
⌗ Tags: #threat_intelligence #cyber_threat_intelligence #cybersecurity #intelligence #threat_actor
════════════════════════
𐀪 Author: TΞLΞMΞTRY
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 21:04:46 GMT
════════════════════════
⌗ Tags: #threat_intelligence #cyber_threat_intelligence #cybersecurity #intelligence #threat_actor
Medium
Impact vs Sophistication: A different Way to Map Threat Actors
Correlating impact, sophistication, and attack volume using your own incident data
⤷ Title: EN 18031 Security Assets Clarified— with 24 Examples Not Present in the Standards
════════════════════════
𐀪 Author: Dr. Guillaume Dupont
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 20:24:59 GMT
════════════════════════
⌗ Tags: #cybersecurity #compliance #embedded_systems #iot #cryptography
════════════════════════
𐀪 Author: Dr. Guillaume Dupont
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 20:24:59 GMT
════════════════════════
⌗ Tags: #cybersecurity #compliance #embedded_systems #iot #cryptography
Medium
EN 18031 Security Assets Clarified— with 24 Examples Not Present in the Standards
Have you identified security assets in your radio equipment? If not, you may find it challenging to begin your EN 18031 Technical…
⤷ Title: Mastering JWT Auth in Laravel from Zero — Part 2
════════════════════════
𐀪 Author: Ali Mousavi
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 20:06:34 GMT
════════════════════════
⌗ Tags: #php #laravel_framework #backend_development #api_security #jwt_authentication
════════════════════════
𐀪 Author: Ali Mousavi
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 20:06:34 GMT
════════════════════════
⌗ Tags: #php #laravel_framework #backend_development #api_security #jwt_authentication
Medium
Mastering JWT Auth in Laravel from Zero — Part 2
Set up JWT authentication in Laravel from scratch — no third-party packages, just clean, maintainable code
⤷ Title: Python — Blind SSTI Filters Bypass
════════════════════════
𐀪 Author: Aderogbarufai
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 23:39:01 GMT
════════════════════════
⌗ Tags: #hacking #ctf #ctf_writeup #bug_bounty
════════════════════════
𐀪 Author: Aderogbarufai
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 23:39:01 GMT
════════════════════════
⌗ Tags: #hacking #ctf #ctf_writeup #bug_bounty
Medium
Python — Blind SSTI Filters Bypass
This company’s site offers to apply for their private bug bounty program. To show them that you are the right candidate for them, exploit…
⤷ Title: Proving Grounds - MedJed
════════════════════════
𐀪 Author: jniket
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 23:39:34 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #windows #provinggrounds #hacking
════════════════════════
𐀪 Author: jniket
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 23:39:34 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #windows #provinggrounds #hacking
Medium
Proving Grounds - MedJed
Summary
⤷ Title: Decoding the UXLINK Attack: NyxSwap as an Exit Vector
════════════════════════
𐀪 Author: CryptoGuard
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 23:23:06 GMT
════════════════════════
⌗ Tags: #hacking #ethereum #cybersecurity #bitcoin #cryptocurrency
════════════════════════
𐀪 Author: CryptoGuard
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 23:23:06 GMT
════════════════════════
⌗ Tags: #hacking #ethereum #cybersecurity #bitcoin #cryptocurrency
Medium
Decoding the UXLINK Attack: NyxSwap as an Exit Vector
What happened
⤷ Title: Credential Provider DLL Hijacking for Persistence
════════════════════════
𐀪 Author: S12 - 0x12Dark Development
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 21:59:25 GMT
════════════════════════
⌗ Tags: #pentesting #cybercrime #hacking #cybersecurity #malware
════════════════════════
𐀪 Author: S12 - 0x12Dark Development
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 21:59:25 GMT
════════════════════════
⌗ Tags: #pentesting #cybercrime #hacking #cybersecurity #malware
Medium
Credential Provider DLL Hijacking for Persistence
Welcome to this new Medium post. In this one, I have an interesting way to get the persistence in Windows that I’ve never seen anywhere, so…
⤷ Title: Today’s News (November 16, 2025)
════════════════════════
𐀪 Author: Tim O'Brien
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 23:53:51 GMT
════════════════════════
⌗ Tags: #information_security #machine_learning #infosec
════════════════════════
𐀪 Author: Tim O'Brien
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 23:53:51 GMT
════════════════════════
⌗ Tags: #information_security #machine_learning #infosec
Medium
Today’s News (November 16, 2025)
Sleepy Pickle Attack Exposes Critical Vulnerability in Machine Learning Supply Chain
⤷ Title: How to Host a Website for Free on Linux | Legal & Secure Methods
════════════════════════
𐀪 Author: Shahzaib
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 23:49:05 GMT
════════════════════════
⌗ Tags: #free_web_hosting #ethical_hacking #cybersecurity #linux_for_beginners #security
════════════════════════
𐀪 Author: Shahzaib
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 23:49:05 GMT
════════════════════════
⌗ Tags: #free_web_hosting #ethical_hacking #cybersecurity #linux_for_beginners #security
Medium
How to Host a Website for Free on Linux | Legal & Secure Methods
Your Step-by-Step Guide from Blank Screen to Live Website Without Spending a Dime
⤷ Title: The Future of Cybersecurity Education: What Students Need to Know
════════════════════════
𐀪 Author: Aj
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 23:48:09 GMT
════════════════════════
⌗ Tags: #education #future_of_cybersecurity #future_technology #students #cybersecurity
════════════════════════
𐀪 Author: Aj
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 23:48:09 GMT
════════════════════════
⌗ Tags: #education #future_of_cybersecurity #future_technology #students #cybersecurity
Medium
The Future of Cybersecurity Education: What Students Need to Know
Why Your Textbook is Already Outdated and What Really Matters Now
⤷ Title: Wi-Fi Güvenliği 101: EAPOL Handshake ve Parola Doğrulama Mekanizması
════════════════════════
𐀪 Author: Enes Berk Yetim
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 23:35:30 GMT
════════════════════════
⌗ Tags: #pentesting #siber_guvenlik #wifi #cybersecurity
════════════════════════
𐀪 Author: Enes Berk Yetim
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 23:35:30 GMT
════════════════════════
⌗ Tags: #pentesting #siber_guvenlik #wifi #cybersecurity
Medium
Wi-Fi Güvenliği 101: EAPOL Handshake ve Parola Doğrulama Mekanizması
Bu yazı, WPA/WPA2 kablosuz ağlarda kullanılan EAPOL 4-Way Handshake sürecini ve Kali Linux üzerinde gerçekleştirilen yetkili sızma…
⤷ Title: Summit — THM Challenge Writeup
════════════════════════
𐀪 Author: Radulescu Alexandru-Gabriel
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 23:19:20 GMT
════════════════════════
⌗ Tags: #thm_walkthrough #thm #security #thm_writeup #cybersecurity
════════════════════════
𐀪 Author: Radulescu Alexandru-Gabriel
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 23:19:20 GMT
════════════════════════
⌗ Tags: #thm_walkthrough #thm #security #thm_writeup #cybersecurity
Medium
Summit — THM Challenge Writeup
Question 1
⤷ Title: The Future of SIEM: Streaming Analytics and Real-Time Correlation
════════════════════════
𐀪 Author: Eric Howard, Ph. D.
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 22:37:39 GMT
════════════════════════
⌗ Tags: #cybersecurity_news #cybersecurity_awareness #cybercrime #cybersecurity #networking
════════════════════════
𐀪 Author: Eric Howard, Ph. D.
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 22:37:39 GMT
════════════════════════
⌗ Tags: #cybersecurity_news #cybersecurity_awareness #cybercrime #cybersecurity #networking
Medium
The Future of SIEM: Streaming Analytics and Real-Time Correlation
From Log Warehouses to Streaming Graphs
⤷ Title: Mobile Hacking Lab - TokenBleed
════════════════════════
𐀪 Author: Anas Ibrahim
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 22:25:21 GMT
════════════════════════
⌗ Tags: #android_pentesting #penetration_testing #mobile_pentesting #mobilehackinglab #cybersecurity
════════════════════════
𐀪 Author: Anas Ibrahim
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 22:25:21 GMT
════════════════════════
⌗ Tags: #android_pentesting #penetration_testing #mobile_pentesting #mobilehackinglab #cybersecurity
Medium
Mobile Hacking Lab - TokenBleed
بِسْمِ اللَّهِ الرَّحْمَٰنِ الرَّحِيمِ، وَالصَّلَاةُ وَالسَّلَامُ عَلَىٰ رَسُولِ اللَّهِ
⤷ Title: Cicada — HTB Writeups
════════════════════════
𐀪 Author: Alts
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 22:24:41 GMT
════════════════════════
⌗ Tags: #hackthebox #htb_writeup #hackthebox_walkthrough #hackthebox_writeup #htb_walkthrough
════════════════════════
𐀪 Author: Alts
════════════════════════
ⴵ Time: Sun, 16 Nov 2025 22:24:41 GMT
════════════════════════
⌗ Tags: #hackthebox #htb_writeup #hackthebox_walkthrough #hackthebox_writeup #htb_walkthrough
Medium
Cicada — HTB Writeups
Windows-Easy
⤷ Title: AIPAC Discloses Data Breach, Says Hundreds Affected
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 01:23:58 +0000
════════════════════════
⌗ Tags: #Cyber Attacks #Hacking News #Security #AIPAC #Cyber Attack #Cybersecurity #data breach #Israel #PII #Privacy #Supply Chain #USA
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 01:23:58 +0000
════════════════════════
⌗ Tags: #Cyber Attacks #Hacking News #Security #AIPAC #Cyber Attack #Cybersecurity #data breach #Israel #PII #Privacy #Supply Chain #USA
Hackread
AIPAC Discloses Data Breach, Says Hundreds Affected
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: High-Severity Memos Flaw (CVE-2024-21635) Allows Hackers to Stay Logged In After Password Change
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 01:48:18 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Access Token #CVE_2024_21635 #Memos #Session Management #Token Invalidation #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 01:48:18 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Access Token #CVE_2024_21635 #Memos #Session Management #Token Invalidation #Vulnerability
Daily CyberSecurity
High-Severity Memos Flaw (CVE-2024-21635) Allows Hackers to Stay Logged In After Password Change
A High-severity flaw (CVE-2024-21635) in Memos fails to invalidate Access Tokens upon password change, allowing attackers to maintain access to the knowledge base. Update to v0.25.2.
⤷ Title: HelloKitty Successor Kraken Ransomware Hits Windows/ESXi, Benchmarks Victim Performance Before Encryption
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 00:38:38 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Benchmarking #Cloudflared #Cross_Platform #ESXi #HelloKitty #Kraken Ransomware #RaaS #SSHFS
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 00:38:38 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Benchmarking #Cloudflared #Cross_Platform #ESXi #HelloKitty #Kraken Ransomware #RaaS #SSHFS
Daily CyberSecurity
HelloKitty Successor Kraken Ransomware Hits Windows/ESXi, Benchmarks Victim Performance Before Encryption
Cisco Talos reports Kraken, a HelloKitty successor, is a cross-platform RaaS targeting Windows/ESXi. The malware uniquely benchmarks CPU/IO to optimize encryption speed and uses Cloudflared/SSHFS for persistence.
⤷ Title: Critical IBM AIX RCE (CVE-2025-36250, CVSS 10.0) Flaw Exposes NIM Private Keys and Risks Directory Traversal
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 00:32:26 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Critical Vulnerability #Directory Traversal #Enterprise Security #IBM AIX #NIM Private Key #rce #VIOS
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 00:32:26 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Critical Vulnerability #Directory Traversal #Enterprise Security #IBM AIX #NIM Private Key #rce #VIOS
Daily CyberSecurity
Critical IBM AIX RCE (CVE-2025-36250, CVSS 10.0) Flaw Exposes NIM Private Keys and Risks Directory Traversal
IBM patched four critical flaws in AIX/VIOS. The RCE (CVSS 10.0) in nimesis and CVE-2025-36096 allow remote attackers to execute commands and obtain NIM private keys. Update immediately.
⤷ Title: North Korea’s Contagious Interview APT Uses JSON Keeper and GitLab to Deliver BeaverTail Spyware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 00:30:41 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #BeaverTail #Contagious Interview #DPRK #gitlab #InvisibleFerret #JSON Storage #Supply Chain #Web3
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 00:30:41 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #BeaverTail #Contagious Interview #DPRK #gitlab #InvisibleFerret #JSON Storage #Supply Chain #Web3
Daily CyberSecurity
North Korea's Contagious Interview APT Uses JSON Keeper and GitLab to Deliver BeaverTail Spyware
NVISO exposed the Contagious Interview APT using JSON Keeper and npoint.io as covert C2 channels. The North Korean group uses fake job lures on GitLab to deploy BeaverTail to steal Web3 credentials.
⤷ Title: Record Supply Chain Attack: 150,000+ Malicious npm Packages Flooded Registry for Token Farming Rewards
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 00:25:32 +0000
════════════════════════
⌗ Tags: #Malware #Automated Abuse #AWS Inspector #npm #Registry Pollution #supply chain attack #tea.xyz #Token Farming
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 00:25:32 +0000
════════════════════════
⌗ Tags: #Malware #Automated Abuse #AWS Inspector #npm #Registry Pollution #supply chain attack #tea.xyz #Token Farming
Daily CyberSecurity
Record Supply Chain Attack: 150,000+ Malicious npm Packages Flooded Registry for Token Farming Rewards
AWS Inspector exposed the largest npm supply chain incident ever: 150,000+ malicious packages were uploaded in a coordinated campaign to exploit tea.xyz token rewards via tea.yaml files.