⤷ Title: 12 AWS IAM Security Leaks Hackers Look For (+ How to defend)
════════════════════════
𐀪 Author: Chris St. John
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 01:10:31 GMT
════════════════════════
⌗ Tags: #devops #aws_iam #aws #cloud_computing #cybersecurity
════════════════════════
𐀪 Author: Chris St. John
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 01:10:31 GMT
════════════════════════
⌗ Tags: #devops #aws_iam #aws #cloud_computing #cybersecurity
Medium
12 AWS IAM Security Leaks Hackers Look For (+ How to Defend)
Hunt down IAM misconfigurations before attackers turn your credentials into their playground
⤷ Title: The IoT Device That Wouldn’t Connect (And How I Fixed It)
════════════════════════
𐀪 Author: Odunze Jennifer Oluchukwu
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 01:00:46 GMT
════════════════════════
⌗ Tags: #network #cisco_packet_tracer #cisco #cybersecurity
════════════════════════
𐀪 Author: Odunze Jennifer Oluchukwu
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 01:00:46 GMT
════════════════════════
⌗ Tags: #network #cisco_packet_tracer #cisco #cybersecurity
Medium
The IoT Device That Wouldn’t Connect (And How I Fixed It)
Today, I built a small home network on Cisco Packet Tracer. I couldn’t get the wireless router to connect to the webcam, which is an IoT…
⤷ Title: First AI-Orchestrated Cyber-Espionage: Claude Code Executed 80%+ of China-Linked Intrusion
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 04:00:12 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AICyberEspionage #Anthropic #AutonomousAI #ChinaThreat #ClaudeCode #cybersecurity #GTG1002 #MCP
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 04:00:12 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AICyberEspionage #Anthropic #AutonomousAI #ChinaThreat #ClaudeCode #cybersecurity #GTG1002 #MCP
Penetration Testing Tools
First AI-Orchestrated Cyber-Espionage: Claude Code Executed 80%+ of China-Linked Intrusion
Anthropic confirmed the first AI-orchestrated cyber-espionage case: the China-linked GTG-1002 group used Claude Code to execute 80–90% of the intrusion cycle against 30 global targets.
⤷ Title: KMS38 Loophole Closed: Microsoft Finally Kills Offline Windows Activation Method
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:55:40 +0000
════════════════════════
⌗ Tags: #Technology #Windows #Activation #cybersecurity #gatherosstate.exe #KMS38 #Licensing #MASScript #Microsoft #Windows11
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:55:40 +0000
════════════════════════
⌗ Tags: #Technology #Windows #Activation #cybersecurity #gatherosstate.exe #KMS38 #Licensing #MASScript #Microsoft #Windows11
Penetration Testing Tools
KMS38 Loophole Closed: Microsoft Finally Kills Offline Windows Activation Method
Microsoft closed the KMS38 loophole by removing gatherosstate.exe in Windows Build 26040, killing the offline method that granted Windows activation until 2038.
⤷ Title: C++20 Default: Red Hat Proposes Making the Latest Standard the Default in GCC
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:47:43 +0000
════════════════════════
⌗ Tags: #Technology #C++17 #C++20 #Compiler #GCC #GNU++20 #MarekPolacek #Redhat #SoftwareDevelopment
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:47:43 +0000
════════════════════════
⌗ Tags: #Technology #C++17 #C++20 #Compiler #GCC #GNU++20 #MarekPolacek #Redhat #SoftwareDevelopment
Penetration Testing Tools
C++20 Default: Red Hat Proposes Making the Latest Standard the Default in GCC
Red Hat proposed making C++20 (GNU++20) the default language standard in GCC, replacing C++17. The shift may appear in a version after the upcoming GCC 16 release.
⤷ Title: Uhale Digital Photo Frames Ship with Root Access and Download Hidden Malware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:43:50 +0000
════════════════════════
⌗ Tags: #Vulnerability #AndroidTV #DigitalPhotoFrame #malware #RootAccess #SupplyChainAttack #Uhale #WhaleTV #zeroday
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:43:50 +0000
════════════════════════
⌗ Tags: #Vulnerability #AndroidTV #DigitalPhotoFrame #malware #RootAccess #SupplyChainAttack #Uhale #WhaleTV #zeroday
Penetration Testing Tools
Uhale Digital Photo Frames Ship with Root Access and Download Hidden Malware
Uhale digital photo frames were found to download malware upon startup. Devices ship with root access, SELinux disabled, and 17 flaws (RCE, file upload) from the factory.
⤷ Title: Kraken Ransomware Unleashed: Multi-Platform Threat Benchmarks Systems to Maximize Damage
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:28:02 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CiscoTalos #CrossPlatform #cybercrime #DoubleExtortion #ESXi #HelloKitty #KrakenRansomware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:28:02 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CiscoTalos #CrossPlatform #cybercrime #DoubleExtortion #ESXi #HelloKitty #KrakenRansomware
Penetration Testing Tools
Kraken Ransomware Unleashed: Multi-Platform Threat Benchmarks Systems to Maximize Damage
The Kraken ransomware (linked to HelloKitty) targets Windows, Linux, and ESXi using double extortion. It benchmarks system performance before encrypting to maximize damage.
⤷ Title: GFW Leaks: China’s Firewall is a ‘Techno-Nationalist’ Governance System, Not Just Filters
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:22:28 +0000
════════════════════════
⌗ Tags: #Data Leak #CensorshipExport #ChinaCensorship #DigitalSovereignty #GFW #GreatFirewall #InternetGovernance #TechnoNationalism
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:22:28 +0000
════════════════════════
⌗ Tags: #Data Leak #CensorshipExport #ChinaCensorship #DigitalSovereignty #GFW #GreatFirewall #InternetGovernance #TechnoNationalism
Penetration Testing Tools
GFW Leaks: China's Firewall is a 'Techno-Nationalist' Governance System, Not Just Filters
Leaks confirm the Great Firewall is a state governance model that interweaves censorship with economic policy. It restricts foreign services, promoting domestic and global fragmentation.
⤷ Title: Linux mseal Hits Glibc: New Function Seals Memory Against Corruption and Attacks
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:13:35 +0000
════════════════════════
⌗ Tags: #Linux #aarch64 #glibc #Glibc243 #LinuxKernel #MemorySafety #mseal #SystemCall #x86_64
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:13:35 +0000
════════════════════════
⌗ Tags: #Linux #aarch64 #glibc #Glibc243 #LinuxKernel #MemorySafety #mseal #SystemCall #x86_64
Penetration Testing Tools
Linux mseal Hits Glibc: New Function Seals Memory Against Corruption and Attacks
The Linux kernel's mseal system call has been added to Glibc (v2.43). It allows developers to "seal" memory regions, preventing modification, relocation, or freeing.
⤷ Title: DOJ Launches Strike Force, Seizes $401M to Dismantle ‘Pig Butchering’ Scams in Asia
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:11:47 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AssetSeizure #CryptoScam #cybercrime #DOJ #HumanTrafficking #PigButchering #ScamCenterStrikeForce #SoutheastAsia
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:11:47 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AssetSeizure #CryptoScam #cybercrime #DOJ #HumanTrafficking #PigButchering #ScamCenterStrikeForce #SoutheastAsia
Penetration Testing Tools
DOJ Launches Strike Force, Seizes $401M to Dismantle 'Pig Butchering' Scams in Asia
The DOJ launched the Scam Center Strike Force to dismantle "pig butchering" networks in Southeast Asia. It has already seized $401M in crypto and targeted scam compounds.
⤷ Title: Android Memory Safety Breakthrough: Rust Drops Vulnerability Share Below 20%
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:03:42 +0000
════════════════════════
⌗ Tags: #Android #AndroidKernel #CodeReview #CPlusPlus #google #MemorySafety #Rust #vulnerabilities
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:03:42 +0000
════════════════════════
⌗ Tags: #Android #AndroidKernel #CodeReview #CPlusPlus #google #MemorySafety #Rust #vulnerabilities
Penetration Testing Tools
Android Memory Safety Breakthrough: Rust Drops Vulnerability Share Below 20%
Android reports memory safety defects dropped below 20% due to Rust. Rust-based updates are 25% faster and reduce the likelihood of rollbacks fourfold.
⤷ Title: Alice Blue Partners with AccuKnox for Regulatory Compliance
════════════════════════
𐀪 Author: cybernewswire
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:30:22 +0000
════════════════════════
⌗ Tags: #Press Release
════════════════════════
𐀪 Author: cybernewswire
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:30:22 +0000
════════════════════════
⌗ Tags: #Press Release
Daily CyberSecurity
Alice Blue Partners with AccuKnox for Regulatory Compliance
Menlo Park, CA, 17th November 2025, CyberNewsWire
⤷ Title: End of an Era: Apple Has Reportedly Cancelled the Mac Pro Lineup
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 02:43:04 +0000
════════════════════════
⌗ Tags: #Technology #Apple #M4Ultra #M5Ultra #MacPro #MacStudio #MarkGurman #ProductRoadmap #ProfessionalDesktop
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 02:43:04 +0000
════════════════════════
⌗ Tags: #Technology #Apple #M4Ultra #M5Ultra #MacPro #MacStudio #MarkGurman #ProductRoadmap #ProfessionalDesktop
Daily CyberSecurity
End of an Era: Apple Has Reportedly Cancelled the Mac Pro Lineup
Mark Gurman reports Apple has abandoned the Mac Pro, cancelling the M4 Ultra refresh. The company now views the Mac Studio as the future of its professional desktops.
⤷ Title: Google Ordered to Pay $665 Million in German Antitrust Damages Over Google Shopping
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 02:39:22 +0000
════════════════════════
⌗ Tags: #Technology #Antitrust #EUCompetition #Germany #google #GoogleShopping #Idealo #Producto #SelfPreferencing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 02:39:22 +0000
════════════════════════
⌗ Tags: #Technology #Antitrust #EUCompetition #Germany #google #GoogleShopping #Idealo #Producto #SelfPreferencing
Daily CyberSecurity
Google Ordered to Pay $665 Million in German Antitrust Damages Over Google Shopping
⤷ Title: iPhone Air 2 Cancelled: Apple Shifts to Split Release Cycle for Foldable iPhone
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 02:23:19 +0000
════════════════════════
⌗ Tags: #Technology #A20Chip #Apple #AppleRoadmap #iPhoneAir2 #iPhoneFold #LaunchCadence #MarkGurman #TSMC2nm
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 02:23:19 +0000
════════════════════════
⌗ Tags: #Technology #A20Chip #Apple #AppleRoadmap #iPhoneAir2 #iPhoneFold #LaunchCadence #MarkGurman #TSMC2nm
Daily CyberSecurity
iPhone Air 2 Cancelled: Apple Shifts to Split Release Cycle for Foldable iPhone
Mark Gurman says the iPhone Air 2 is cancelled, confirming Apple will shift to a split release cycle: high-end/Fold in Fall 2026, followed by standard models in Spring 2027.
⤷ Title: Critical pgAdmin Flaws (CVE-2025-12762, CVSS 9.1) Allow Remote Code Execution via PostgreSQL Dump Files
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 02:06:02 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Command Injection #Critical Vulnerability #CVE_2025_12762 #LDAP injection #pgAdmin #PostgreSQL #rce
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 02:06:02 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Command Injection #Critical Vulnerability #CVE_2025_12762 #LDAP injection #pgAdmin #PostgreSQL #rce
Daily CyberSecurity
Critical pgAdmin Flaws (CVE-2025-12762, CVSS 9.1) Allow Remote Code Execution via PostgreSQL Dump Files
pgAdmin patched four flaws. The Critical RCE (CVE-2025-12762) risks arbitrary code execution via malicious PostgreSQL dump files. LDAP Injection (CVE-2025-12764) and TLS Bypass were also fixed. Update to v9.10.
⤷ Title: We should make the Beta public (famous last words)
════════════════════════
𐀪 Author: Louis Shyers
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:27:18 GMT
════════════════════════
⌗ Tags: #hacking #api #cybersecurity #bug_bounty_writeup #bug_bounty
════════════════════════
𐀪 Author: Louis Shyers
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:27:18 GMT
════════════════════════
⌗ Tags: #hacking #api #cybersecurity #bug_bounty_writeup #bug_bounty
Medium
We should make the Beta public (famous last words)
Ever since I read this article from Sam Curry and Rhynorater regarding secondary context bugs i’ve always wanted to find and exploit one…
⤷ Title: Advanced Template Injection Lifecycle From Input Vector Discovery to Command Execution and Post…
════════════════════════
𐀪 Author: Kiza
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:01:01 GMT
════════════════════════
⌗ Tags: #ethical_hacking #bug_bounty #tryhackme #template_injection
════════════════════════
𐀪 Author: Kiza
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:01:01 GMT
════════════════════════
⌗ Tags: #ethical_hacking #bug_bounty #tryhackme #template_injection
Medium
Advanced Template Injection Lifecycle From Input Vector Discovery to Command Execution and Post Exploit Enumeration
Author: https://kiza.online/
⤷ Title: FFUF Interactive Mode ( fuzzing made easy )
════════════════════════
𐀪 Author: Rajesh Sagar
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 02:41:38 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_bounty_tips #ffuf
════════════════════════
𐀪 Author: Rajesh Sagar
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 02:41:38 GMT
════════════════════════
⌗ Tags: #bug_bounty #bug_bounty_tips #ffuf
Medium
FFUF Interactive Mode ( fuzzing made easy )
ffuf interactive mode is really awesome
⤷ Title: Holistic Injection Exploit Report Mapping Vulnerable Input Points to Account Takeover and…
════════════════════════
𐀪 Author: Kiza
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 02:22:20 GMT
════════════════════════
⌗ Tags: #ethical_hacking #bug_bounty #sql_injection #web_application_security #owasp_juice_shop
════════════════════════
𐀪 Author: Kiza
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 02:22:20 GMT
════════════════════════
⌗ Tags: #ethical_hacking #bug_bounty #sql_injection #web_application_security #owasp_juice_shop
Medium
Holistic Injection Exploit Report Mapping Vulnerable Input Points to Account Takeover and Comprehensive Data Exposure
Author: https://kiza.online/
⤷ Title: Strengthening Cybersecurity or Expanding State Power?
════════════════════════
𐀪 Author: cybergriotz
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:30:04 GMT
════════════════════════
⌗ Tags: #privacy #ghana #infosec #cybersecurity
════════════════════════
𐀪 Author: cybergriotz
════════════════════════
ⴵ Time: Mon, 17 Nov 2025 03:30:04 GMT
════════════════════════
⌗ Tags: #privacy #ghana #infosec #cybersecurity
Medium
Strengthening Cybersecurity or Expanding State Power?
My Take on Ghana’s Cybersecurity Amendment Bill, 2025