⤷ Title: Holiday Heist: 200,000 Fake Shops & Amazon Clones Target Black Friday
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 00:00:24 +0000
════════════════════════
⌗ Tags: #Cybercriminals
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 00:00:24 +0000
════════════════════════
⌗ Tags: #Cybercriminals
Daily CyberSecurity
Holiday Heist: 200,000 Fake Shops & Amazon Clones Target Black Friday
CloudSEK exposes a massive network of Amazon clones and 200k fake .shop domains targeting Black Friday shoppers. Learn how to spot these holiday scams.
⤷ Title: GitLab Patch: Fixes CI/CD Credential Theft & Unauthenticated DoS Attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 26 Nov 2025 23:17:52 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CI/CD security #CVE_2024_9183 #CVE_2025_12571 #Denial of Service #DevOps Security #gitlab #security patch
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 26 Nov 2025 23:17:52 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CI/CD security #CVE_2024_9183 #CVE_2025_12571 #Denial of Service #DevOps Security #gitlab #security patch
Daily CyberSecurity
GitLab Patch: Fixes CI/CD Credential Theft & Unauthenticated DoS Attacks
Critical GitLab updates (18.6.1/18.5.3) fix severe CI/CD credential theft (CVE-2024-9183) & unauthenticated DoS flaws. Upgrade immediately.
⤷ Title: How to Fix Wireshark Errors on Linux (The Complete Guide)
════════════════════════
𐀪 Author: ghostyjoe
════════════════════════
ⴵ Time: Wed, 26 Nov 2025 23:20:10 GMT
════════════════════════
⌗ Tags: #pentesting #troubleshooting #wireshark #networking #bug_bounty
════════════════════════
𐀪 Author: ghostyjoe
════════════════════════
ⴵ Time: Wed, 26 Nov 2025 23:20:10 GMT
════════════════════════
⌗ Tags: #pentesting #troubleshooting #wireshark #networking #bug_bounty
Medium
How to Fix Wireshark Errors on Linux (The Complete Guide)
By ghostyjoe
⤷ Title: How to Pick the Right Bug Bounty Target
════════════════════════
𐀪 Author: Appsec.pt
════════════════════════
ⴵ Time: Wed, 26 Nov 2025 23:14:26 GMT
════════════════════════
⌗ Tags: #programming #cybersecurity #bug_bounty_writeup #bug_bounty_tips #bug_bounty
════════════════════════
𐀪 Author: Appsec.pt
════════════════════════
ⴵ Time: Wed, 26 Nov 2025 23:14:26 GMT
════════════════════════
⌗ Tags: #programming #cybersecurity #bug_bounty_writeup #bug_bounty_tips #bug_bounty
Medium
How to Pick the Right Bug Bounty Target
With the thousands of Bug Bounty Programs currently hosted on Intigriti, HackerOne, Bugcrowd and other platforms, it is very easy to get…
⤷ Title: Deploy Self-Hosted WAF for your Homelab and Web Applications using SafeLine.
════════════════════════
𐀪 Author: Pwndec0c0
════════════════════════
ⴵ Time: Wed, 26 Nov 2025 22:40:48 GMT
════════════════════════
⌗ Tags: #bug_bounty #web_development #firewall #software_development #web_application_firewall
════════════════════════
𐀪 Author: Pwndec0c0
════════════════════════
ⴵ Time: Wed, 26 Nov 2025 22:40:48 GMT
════════════════════════
⌗ Tags: #bug_bounty #web_development #firewall #software_development #web_application_firewall
⤷ Title: Building a Detection Lab: Active Directory, Splunk, and Kali Linux
════════════════════════
𐀪 Author: tdashadow
════════════════════════
ⴵ Time: Wed, 26 Nov 2025 23:30:22 GMT
════════════════════════
⌗ Tags: #cybersecurity #technology
════════════════════════
𐀪 Author: tdashadow
════════════════════════
ⴵ Time: Wed, 26 Nov 2025 23:30:22 GMT
════════════════════════
⌗ Tags: #cybersecurity #technology
Medium
Building a Detection Lab: Active Directory, Splunk, and Kali Linux
In the world of cybersecurity, theory only gets you so far. To truly understand the cat-and-mouse game between attackers and defenders, you…
⤷ Title: Italy’s Elite Duped By A Billion‑Euro AI Ruse
════════════════════════
𐀪 Author: O. J. Okpabi
════════════════════════
ⴵ Time: Wed, 26 Nov 2025 23:15:47 GMT
════════════════════════
⌗ Tags: #true_crime #artificial_intelligence #technology #cybersecurity #money
════════════════════════
𐀪 Author: O. J. Okpabi
════════════════════════
ⴵ Time: Wed, 26 Nov 2025 23:15:47 GMT
════════════════════════
⌗ Tags: #true_crime #artificial_intelligence #technology #cybersecurity #money
Medium
Italy’s Elite Duped By A Billion‑Euro AI Ruse
Whispers From Rome
⤷ Title: Good morning dear USA.
════════════════════════
𐀪 Author: Redartdit
════════════════════════
ⴵ Time: Wed, 26 Nov 2025 23:00:44 GMT
════════════════════════
⌗ Tags: #economics #media #world #cybersecurity #life
════════════════════════
𐀪 Author: Redartdit
════════════════════════
ⴵ Time: Wed, 26 Nov 2025 23:00:44 GMT
════════════════════════
⌗ Tags: #economics #media #world #cybersecurity #life
Medium
Good morning dear USA.
Good morning dear USA. I have a proof about Azerbaijan Polis Department and him collectively uniformed and create illegally actions ,& this names make illegaly acts from Azerbaijan Polis …
⤷ Title: Congress Wants Answers on AI Attacks. We Have a Framework.
════════════════════════
𐀪 Author: AstraSync AI
════════════════════════
ⴵ Time: Wed, 26 Nov 2025 22:48:10 GMT
════════════════════════
⌗ Tags: #cybersecurity #ai #ai_agent #congress #knowyouragent
════════════════════════
𐀪 Author: AstraSync AI
════════════════════════
ⴵ Time: Wed, 26 Nov 2025 22:48:10 GMT
════════════════════════
⌗ Tags: #cybersecurity #ai #ai_agent #congress #knowyouragent
Medium
Congress Wants Answers on AI Attacks. We Have a Framework.
The first Congressional hearing on autonomous AI cyberattacks is scheduled for December 17. The questions they’re asking are the right…
⤷ Title: Ransomware attacks targeting SAP systems are increasing worldwide, and SAP landscapes are uniquely…
════════════════════════
𐀪 Author: José López
════════════════════════
ⴵ Time: Wed, 26 Nov 2025 22:45:26 GMT
════════════════════════
⌗ Tags: #sap #cybersecurity #ransomware
════════════════════════
𐀪 Author: José López
════════════════════════
ⴵ Time: Wed, 26 Nov 2025 22:45:26 GMT
════════════════════════
⌗ Tags: #sap #cybersecurity #ransomware
Medium
Ransomware attacks targeting SAP systems are increasing worldwide, and SAP landscapes are uniquely…
A strong defense requires a multi-layered, SAP-specific security strategy combining hardening, monitoring, network segmentation, incident…
⤷ Title: Critical Ray AI Flaw Exposes Devs via Safari & Firefox (CVE-2025-62593)
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 00:35:17 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI security #CVE_2025_62593 #DNS Rebinding #firefox #machine_learning #Python #Ray #Remote Code Execution #Safari
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 00:35:17 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI security #CVE_2025_62593 #DNS Rebinding #firefox #machine_learning #Python #Ray #Remote Code Execution #Safari
Daily CyberSecurity
Critical Ray AI Flaw Exposes Devs via Safari & Firefox (CVE-2025-62593)
A critical remote code execution (RCE) vulnerability has been discovered in the Ray framework, putting AI and Python developers at risk of having their systems compromised. The vulnerability, trac…
⤷ Title: Water Gamayun Weaponizes “MSC EvilTwin” Zero-Day for Stealthy Backdoor Attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 00:28:11 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability Report #CVE_2025_26633 #cyber_espionage #EncryptHub #malware #MSC EvilTwin #Water Gamayun #zero_day #Zscaler
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 00:28:11 +0000
════════════════════════
⌗ Tags: #Cyber Security #Vulnerability Report #CVE_2025_26633 #cyber_espionage #EncryptHub #malware #MSC EvilTwin #Water Gamayun #zero_day #Zscaler
Daily CyberSecurity
Water Gamayun Weaponizes “MSC EvilTwin” Zero-Day for Stealthy Backdoor Attacks
A sophisticated new cyber espionage campaign has been uncovered by Zscaler Threat Hunting, revealing how a Russia-aligned Advanced Persistent Threat (APT) group known as Water Gamayun is weaponizi…
⤷ Title: Fragging Your Data: Fake ‘Battlefield 6’ Cracks & Trainers Spread Infostealers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 00:22:37 +0000
════════════════════════
⌗ Tags: #Malware #Battlefield 6 #Bitdefender #Cybercrime #Fake Crack #Game Security #Infostealer #InsaneRamZes #malware #RUNE
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 00:22:37 +0000
════════════════════════
⌗ Tags: #Malware #Battlefield 6 #Bitdefender #Cybercrime #Fake Crack #Game Security #Infostealer #InsaneRamZes #malware #RUNE
Daily CyberSecurity
Fragging Your Data: Fake ‘Battlefield 6’ Cracks & Trainers Spread Infostealers
The highly anticipated October release of EA’s Battlefield 6 has become a digital minefield for gamers. Bitdefender Labs has identified multiple active malware campaigns exploiting the shooter’s p…
⤷ Title: Hidden Danger in 3D: Malicious Blender Files Unleash StealC V2 Infostealer
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 00:19:01 +0000
════════════════════════
⌗ Tags: #Malware #3D Modeling #Blender #cybersecurity #Infostealer #malware #Morphisec #Python Scripts #StealC V2
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 00:19:01 +0000
════════════════════════
⌗ Tags: #Malware #3D Modeling #Blender #cybersecurity #Infostealer #malware #Morphisec #Python Scripts #StealC V2
Daily CyberSecurity
Hidden Danger in 3D: Malicious Blender Files Unleash StealC V2 Infostealer
Alert: Malicious Blender files are delivering StealC V2 infostealer. 3D artists downloading from free sites are at risk. Disable auto-run scripts now.
⤷ Title: Zero-Day Warning: Unpatched Twonky Server Flaws Expose Media to Total Takeover
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 00:14:23 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_13315 #CVE_2025_13316 #IoT security #Media Server #Rapid7 #Twonky Server #Unpatched Vulnerability #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 00:14:23 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_13315 #CVE_2025_13316 #IoT security #Media Server #Rapid7 #Twonky Server #Unpatched Vulnerability #zero_day
Daily CyberSecurity
Zero-Day Warning: Unpatched Twonky Server Flaws Expose Media to Total Takeover
Critical alert: Twonky Server suffers unpatched flaws (CVE-2025-13315/16) allowing full takeover. Vendor has no fix; isolate your server immediately.
⤷ Title: UNMASKED: Massive Leak Exposes Iran’s ‘Department 40’ Cyber-Terror Unit
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 00:10:38 +0000
════════════════════════
⌗ Tags: #Cyber Security #Data Leak #Abbas Rahrovi #APT35 #Assassination Plot #Charming Kitten #Cyber Terrorism #cybersecurity #Department 40 #Iran #IRGC #Nariman Gharib
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 00:10:38 +0000
════════════════════════
⌗ Tags: #Cyber Security #Data Leak #Abbas Rahrovi #APT35 #Assassination Plot #Charming Kitten #Cyber Terrorism #cybersecurity #Department 40 #Iran #IRGC #Nariman Gharib
Daily CyberSecurity
UNMASKED: Massive Leak Exposes Iran's 'Department 40' Cyber-Terror Unit
A massive leak exposes Iran's Department 40 (APT35). Discover how IRGC hackers build target packages for assassination squads and drone strikes.
⤷ Title: Angular Alert: Protocol-Relative URLs Leak XSRF Tokens (CVE-2025-66035)
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 00:05:42 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Angular #CSRF #CVE_2025_66035 #Front_end Security #HTTP Client #javascript #Web Security #XSRF
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 00:05:42 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Angular #CSRF #CVE_2025_66035 #Front_end Security #HTTP Client #javascript #Web Security #XSRF
Daily CyberSecurity
Angular Alert: Protocol-Relative URLs Leak XSRF Tokens (CVE-2025-66035)
CVE-2025-66035: Angular protocol-relative URLs leak XSRF tokens, bypassing CSRF protection. Update to v19.2.16, v20.3.14, or v21.0.1 now.
⤷ Title: JWT Privilege Escalation to Container RCE via Jinja2 SSTI “ Intigriti challenge”
════════════════════════
𐀪 Author: Adham Heinrich
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 01:05:18 GMT
════════════════════════
⌗ Tags: #ctf_writeup #bugbounty_writeup #bug_bounty_tips #bug_bounty #cybersecurity
════════════════════════
𐀪 Author: Adham Heinrich
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 01:05:18 GMT
════════════════════════
⌗ Tags: #ctf_writeup #bugbounty_writeup #bug_bounty_tips #bug_bounty #cybersecurity
Medium
JWT Privilege Escalation to Container RCE via Jinja2 SSTI “ Intigriti challenge”
The application is a Flask-based e-commerce platform running inside a Docker container. The attack chain combines a JWT role forgery…
⤷ Title: Kali Linux: First Steps and Must-Have Tweaks
════════════════════════
𐀪 Author: Aj
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 01:24:49 GMT
════════════════════════
⌗ Tags: #beginners_guide #penetration_testing #kali_linux #hacking #cybersecurity
════════════════════════
𐀪 Author: Aj
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 01:24:49 GMT
════════════════════════
⌗ Tags: #beginners_guide #penetration_testing #kali_linux #hacking #cybersecurity
Medium
Kali Linux: First Steps and Must-Have Tweaks
Your first stop in ethical hacking.
⤷ Title: How I Used Ligolo-ng to Pivot into Internal Networks During OSCP Labs
════════════════════════
𐀪 Author: Got Root?
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 01:24:37 GMT
════════════════════════
⌗ Tags: #linux #cybersecurity #technology #hacking #information_security
════════════════════════
𐀪 Author: Got Root?
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 01:24:37 GMT
════════════════════════
⌗ Tags: #linux #cybersecurity #technology #hacking #information_security
Medium
How I Used Ligolo-ng to Pivot into Internal Networks During OSCP Labs
During my OSCP labs and internal network simulations, I struggled with traditional pivoting tools like SSH tunneling and Chisel — either…
⤷ Title: HackTheBox DCSync: When Your User Account Thinks It’s a Domain Controller
════════════════════════
𐀪 Author: Cybersecurity Simplified
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 00:32:11 GMT
════════════════════════
⌗ Tags: #information_security #hackthebox #hacking #women_in_tech #cybersecurity
════════════════════════
𐀪 Author: Cybersecurity Simplified
════════════════════════
ⴵ Time: Thu, 27 Nov 2025 00:32:11 GMT
════════════════════════
⌗ Tags: #information_security #hackthebox #hacking #women_in_tech #cybersecurity
Medium
HackTheBox DCSync: When Your User Account Thinks It’s a Domain Controller
DCSync is one of those attacks that sounds more complicated than it actually is. Here’s the concept: if an attacker has an account with the…