⤷ Title: Brazilian Banking Trojan Uses Python WhatsApp Worm and IMAP C2 for In-Memory Credential Theft
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:11:04 +0000
════════════════════════
⌗ Tags: #Malware #AutoIt Loader #Brazilian Banking Trojan #IMAP C2 #In_Memory Injection #Python #WhatsApp Worm #WPPConnect
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:11:04 +0000
════════════════════════
⌗ Tags: #Malware #AutoIt Loader #Brazilian Banking Trojan #IMAP C2 #In_Memory Injection #Python #WhatsApp Worm #WPPConnect
Daily CyberSecurity
Brazilian Banking Trojan Uses Python WhatsApp Worm and IMAP C2 for In-Memory Credential Theft
K7 Labs exposed a Brazilian campaign using a Python WhatsApp worm for self-propagation. The in-memory AutoIt loader deploys a banking trojan that uses IMAP email as a covert C2 channel to steal banking credentials.
⤷ Title: North Korea’s Operation DreamJob Hits Europe: WhatsApp Job Lure Delivers Evolved MISTPEN/BURNBOOK Backdoors
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:05:42 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #BURNBOOK #DLL Sideloading #DPRK APT #DreamJob #MISTPEN #Pass_the_hash #UNC2970 #WhatsApp Lure
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:05:42 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #BURNBOOK #DLL Sideloading #DPRK APT #DreamJob #MISTPEN #Pass_the_hash #UNC2970 #WhatsApp Lure
Daily CyberSecurity
North Korea's Operation DreamJob Hits Europe: WhatsApp Job Lure Delivers Evolved MISTPEN/BURNBOOK Backdoors
⤷ Title: ShinyHunters Claims Salesforce Ecosystem Breach via Stolen OAuth Tokens from Gainsight
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 03:32:39 +0000
════════════════════════
⌗ Tags: #Data Leak #AppExchange #cybercrime #Gainsight #HubSpot #OAuth Tokens #Salesforce #Salesforce Gainsight Breach #ShinyHunters #supply chain attack #Zendesk
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 03:32:39 +0000
════════════════════════
⌗ Tags: #Data Leak #AppExchange #cybercrime #Gainsight #HubSpot #OAuth Tokens #Salesforce #Salesforce Gainsight Breach #ShinyHunters #supply chain attack #Zendesk
Penetration Testing Tools
ShinyHunters Claims Salesforce Ecosystem Breach via Stolen OAuth Tokens from Gainsight
ShinyHunters claims responsibility for the Salesforce ecosystem breach, using OAuth tokens stolen from a previous attack to infiltrate Gainsight and access hundreds of customer instances.
⤷ Title: Critical WSUS RCE (CVE-2025-59287) Actively Exploited to Deploy ShadowPad Espionage Tool
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 03:30:12 +0000
════════════════════════
⌗ Tags: #Vulnerability #AhnLab #China APT #CVE_2025_59287 #Cyber Espionage #Patch Now #RCE #ShadowPad #Windows Server #WSUS
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 03:30:12 +0000
════════════════════════
⌗ Tags: #Vulnerability #AhnLab #China APT #CVE_2025_59287 #Cyber Espionage #Patch Now #RCE #ShadowPad #Windows Server #WSUS
Penetration Testing Tools
Critical WSUS RCE (CVE-2025-59287) Actively Exploited to Deploy ShadowPad Espionage Tool
Threat actors are actively exploiting the critical WSUS RCE flaw (CVE-2025-59287) to gain SYSTEM access and deploy the powerful, Chinese-linked ShadowPad espionage backdoor.
⤷ Title: Matrix Push C2: New Subscription Service Fuels Fileless Browser Push Notification Phishing
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 03:28:53 +0000
════════════════════════
⌗ Tags: #Malware #BlackFog #Browser Hijacking #Cybercrime Service #Fileless Attack #Matrix Push C2 #phishing #Push Notifications #Social Engineering
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 03:28:53 +0000
════════════════════════
⌗ Tags: #Malware #BlackFog #Browser Hijacking #Cybercrime Service #Fileless Attack #Matrix Push C2 #phishing #Push Notifications #Social Engineering
Penetration Testing Tools
Matrix Push C2: New Subscription Service Fuels Fileless Browser Push Notification Phishing
Matrix Push C2 is a new subscription service fueling fileless phishing campaigns by using deceptive browser push notifications to deliver malicious links and steal credentials.
⤷ Title: Mortgage Market Crisis: SitusAMC Breach Exposes Data for Customers of JPMorgan, Citi
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 03:27:51 +0000
════════════════════════
⌗ Tags: #Data Leak #Citi #cybersecurity #data breach #Financial Services #JPMorgan Chase #Mortgage Market #SitusAMC #third_party risk
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 03:27:51 +0000
════════════════════════
⌗ Tags: #Data Leak #Citi #cybersecurity #data breach #Financial Services #JPMorgan Chase #Mortgage Market #SitusAMC #third_party risk
Penetration Testing Tools
Mortgage Market Crisis: SitusAMC Breach Exposes Data for Customers of JPMorgan, Citi
SitusAMC, a key mortgage market contractor, suffered a breach that may have exposed client data from major banks like JPMorgan and Citi, raising fears of supply chain risk.
⤷ Title: NVIDIA 1.6 Tbps Networking Arrives in Linux 6.19 Kernel via Mellanox MLX5
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 03:17:20 +0000
════════════════════════
⌗ Tags: #Linux #1.6 Tbps #AI Workloads #data center #Linux Kernel 6.19 #Mellanox #MLX5 #Networking #Nvidia #RDMA
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 03:17:20 +0000
════════════════════════
⌗ Tags: #Linux #1.6 Tbps #AI Workloads #data center #Linux Kernel 6.19 #Mellanox #MLX5 #Networking #Nvidia #RDMA
Penetration Testing Tools
NVIDIA 1.6 Tbps Networking Arrives in Linux 6.19 Kernel via Mellanox MLX5
NVIDIA is adding 1.6 Tbps networking support to the Linux 6.19 kernel via the Mellanox MLX5 driver, utilizing eight 200 Gbps lanes for next-gen data center speed.
⤷ Title: CRITICAL: Fluent Bit Flaws Enable RCE and Telemetry Tampering in Major Orgs
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 03:07:31 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Command Injection #CVE_2025_12972 #Fluent Bit #Kubernetes Security #Log Tampering #Oligo Security #Remote Code Execution #Telemetry Agent
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 03:07:31 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Command Injection #CVE_2025_12972 #Fluent Bit #Kubernetes Security #Log Tampering #Oligo Security #Remote Code Execution #Telemetry Agent
Daily CyberSecurity
CRITICAL: Fluent Bit Flaws Enable RCE and Telemetry Tampering in Major Orgs
A critical chain of Fluent Bit vulnerabilities allows RCE, path traversal, and log tampering by exploiting tag handling and an auth bypass. Update to v4.1.1 now.
⤷ Title: Apache Syncope Flaw (CVE-2025-65998) Exposes Encrypted User Passwords Due to Hard-Coded AES Key
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 02:52:45 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache Syncope #Critical Flaw #CVE_2025_65998 #Hard_Coded Key #Identity Management #Password Encryption
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 02:52:45 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache Syncope #Critical Flaw #CVE_2025_65998 #Hard_Coded Key #Identity Management #Password Encryption
Daily CyberSecurity
Apache Syncope Flaw (CVE-2025-65998) Exposes Encrypted User Passwords Due to Hard-Coded AES Key
Apache warned of a Critical flaw (CVE-2025-65998) in Syncope. When AES is enabled for password storage, a hard-coded key allows attackers with database access to decrypt all user passwords. Update immediately.
⤷ Title: CISA Emergency Alert: Commercial Spyware Exploiting Zero-Click and Malicious QR Codes to Hijack Messaging Apps
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 02:42:03 +0000
════════════════════════
⌗ Tags: #Malware #CISA #commercial spyware #messaging app #Pegasus #QR code phishing #Signal #WhatsApp #Zero_Click
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 02:42:03 +0000
════════════════════════
⌗ Tags: #Malware #CISA #commercial spyware #messaging app #Pegasus #QR code phishing #Signal #WhatsApp #Zero_Click
Daily CyberSecurity
CISA Emergency Alert: Commercial Spyware Exploiting Zero-Click and Malicious QR Codes to Hijack Messaging Apps
CISA issued an urgent alert: Commercial spyware is actively exploiting zero-click flaws and malicious QR codes to hijack messaging apps (Signal, WhatsApp) for espionage against government and civil society targets.
⤷ Title: CISA Warns of Active Spyware Campaigns Hijacking High-Value Signal and WhatsApp Users
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 12:12:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 12:12:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Golden dMSA: tool exploits Golden DMSA attack against delegated Managed Service Accounts.
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 08:48:06 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Golden dMSA #Golden DMSA attack
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 08:48:06 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Golden dMSA #Golden DMSA attack
Penetration Testing Tools
Golden dMSA: tool exploits Golden DMSA attack against delegated Managed Service Accounts.
Golden dMSA tool exploits Golden DMSA attack against delegated Managed Service Accounts.
⤷ Title: Understanding signal-to-noise for vulnerability management success
════════════════════════
𐀪 Author: Eleanor Barlow
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:00:00 GMT
════════════════════════
⌗ Tags: #Business Insights
════════════════════════
𐀪 Author: Eleanor Barlow
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:00:00 GMT
════════════════════════
⌗ Tags: #Business Insights
Intigriti
Understanding signal-to-noise for vulnerability management success
Turn your signal-to-noise ratio into a key metric, learn how to score it, and identify challenges regarding scope, policy, staff, rewards, researchers, and processes.
⤷ Title: 3 SOC Challenges You Need to Solve Before 2026
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 17:00:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 17:00:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Hackers Hijack Blender 3D Assets to Deploy StealC V2 Data-Stealing Malware
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 16:58:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 16:58:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Stop Putting Your Passwords Into Random Websites (Yes, Seriously, You Are The Problem)
════════════════════════
𐀪 Author: Jake Knott (@inkmoro)
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 11:01:15 GMT
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Jake Knott (@inkmoro)
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 11:01:15 GMT
════════════════════════
⌗ Tags: No_Tags
watchTowr Labs
Stop Putting Your Passwords Into Random Websites (Yes, Seriously, You Are The Problem)
Welcome to watchTowr vs the Internet, part 68.
That feeling you’re experiencing? Dread. You should be used to it by now.
As is fast becoming an unofficial and, apparently, frowned upon tradition - we identified incredible amounts of publicly exposed passwords…
That feeling you’re experiencing? Dread. You should be used to it by now.
As is fast becoming an unofficial and, apparently, frowned upon tradition - we identified incredible amounts of publicly exposed passwords…
⤷ Title: Pi‑hole on Android: Turn Your Spare Smartphone into a Network‑Wide Ad‑Blocker
════════════════════════
𐀪 Author: mh
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 12:38:33 +0000
════════════════════════
⌗ Tags: #Privacy #Raspberry Pi #Wi_Fi #ad_blocker #Android #Pi_Hole
════════════════════════
𐀪 Author: mh
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 12:38:33 +0000
════════════════════════
⌗ Tags: #Privacy #Raspberry Pi #Wi_Fi #ad_blocker #Android #Pi_Hole
Mobile Hacker
Pi‑hole on Android: Turn Your Spare Smartphone into a Network‑Wide Ad‑Blocker - Mobile Hacker
In this blog, I’ll walk you through: If you’re a tech‑savvy security enthusiast who loves practical, low‑cost hardening tips, this one’s for you. Pi‑hole 101: A DNS “sinkhole” for ads, trackers and junk Pi‑hole is a network‑level ad and tracker blocker. Instead…
⤷ Title: ToddyCat’s New Hacking Tools Steal Outlook Emails and Microsoft 365 Access Tokens
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 17:06:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 17:06:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Thinking Beyond Price: What Tech Teams Should Look for in a Hosting Provider
════════════════════════
𐀪 Author: Owais Sultan
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 13:24:10 +0000
════════════════════════
⌗ Tags: #Technology #Cybersecurity #GDPR #Hosting
════════════════════════
𐀪 Author: Owais Sultan
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 13:24:10 +0000
════════════════════════
⌗ Tags: #Technology #Cybersecurity #GDPR #Hosting
Hackread
Thinking Beyond Price: What Tech Teams Should Look for in a Hosting Provider
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: Update Firefox to Patch CVE-2025-13016 Vulnerability Affecting 180 Million Users
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 12:45:44 +0000
════════════════════════
⌗ Tags: #Security #AISLE #Browser #Coding #Cybersecurity #Firefox #Mozilla #Privacy #Vulnerability
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 12:45:44 +0000
════════════════════════
⌗ Tags: #Security #AISLE #Browser #Coding #Cybersecurity #Firefox #Mozilla #Privacy #Vulnerability
Hackread
Update Firefox to Patch CVE-2025-13016 Vulnerability Affecting 180 Million Users
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: JackFix Uses Fake Windows Update Pop-Ups on Adult Sites to Deliver Multiple Stealers
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 19:48:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 19:48:00 +0530
════════════════════════
⌗ Tags: No_Tags