⤷ Title: X de Elon Musk presenta una función de ubicación real para combatir las cuentas falsas y la…
════════════════════════
𐀪 Author: Sherlock
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 01:53:20 GMT
════════════════════════
⌗ Tags: #elon_musk #chatgpt #xs
════════════════════════
𐀪 Author: Sherlock
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 01:53:20 GMT
════════════════════════
⌗ Tags: #elon_musk #chatgpt #xs
Medium
X de Elon Musk presenta una función de ubicación real para combatir las cuentas falsas y la…
Elon Musk revoluciona el panorama de las redes sociales una vez más con la última actualización de su plataforma, X. La nueva función "…
⤷ Title: DCOMRunAs: Covert Technique for Remote Code Execution in a Logged-on Session
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:31:40 +0000
════════════════════════
⌗ Tags: #Open Source Tool #DCOM #DCOMRunAs #DLL hijacking #Lateral Movement #post_exploitation #remote code execution #Windows Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:31:40 +0000
════════════════════════
⌗ Tags: #Open Source Tool #DCOM #DCOMRunAs #DLL hijacking #Lateral Movement #post_exploitation #remote code execution #Windows Security
Penetration Testing Tools
DCOMRunAs: Covert Technique for Remote Code Execution in a Logged-on Session
DCOMRunAs is a covert technique that exploits DCOM and DLL hijacking to execute payloads in the context of a remote, logged-on user's session without new process creation.
⤷ Title: GTA VI ‘Leaks’ Go Viral: Users Mistake AI-Generated Gameplay for Real Footage
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:22:24 +0000
════════════════════════
⌗ Tags: #Data Leak #AI Generation #Fake Leak #Gaming News #Generative Content #Grand Theft Auto #GTA VI #Rockstar Games #Social media
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:22:24 +0000
════════════════════════
⌗ Tags: #Data Leak #AI Generation #Fake Leak #Gaming News #Generative Content #Grand Theft Auto #GTA VI #Rockstar Games #Social media
Penetration Testing Tools
GTA VI 'Leaks' Go Viral: Users Mistake AI-Generated Gameplay for Real Footage
A fresh controversy has unfolded on platform X around the long-awaited Grand Theft Auto VI — users spent
⤷ Title: 1,000+ Amazon Employees Sign Open Letter Against ‘Aggressive’ AI Strategy
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:18:13 +0000
════════════════════════
⌗ Tags: #Technology #AI Dissent #Amazon #Climate Justice #data centers #Employee Activism #Generative AI #layoffs #Tech Ethics
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:18:13 +0000
════════════════════════
⌗ Tags: #Technology #AI Dissent #Amazon #Climate Justice #data centers #Employee Activism #Generative AI #layoffs #Tech Ethics
Penetration Testing Tools
1,000+ Amazon Employees Sign Open Letter Against 'Aggressive' AI Strategy
Amazon is facing a new wave of internal dissent over its rapid embrace of artificial intelligence. The group
⤷ Title: Scattered Lapsus$ Hunters Attack Zendesk Users with 40+ Fake SSO Phishing Portals
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:17:14 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Customer Support #phishing #ReliaQuest #Scattered LapSus Hunters #SSO #supply chain attack #Typosquatting #Zendesk
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:17:14 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Customer Support #phishing #ReliaQuest #Scattered LapSus Hunters #SSO #supply chain attack #Typosquatting #Zendesk
Penetration Testing Tools
Scattered Lapsus$ Hunters Attack Zendesk Users with 40+ Fake SSO Phishing Portals
ReliaQuest specialists have uncovered more than forty fraudulent domains masquerading as Zendesk portals, attributing them to the cyber-criminal
⤷ Title: AI Flunks Security Test: LLMs are Ineffective at Guessing Passwords from Personal Data
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:14:25 +0000
════════════════════════
⌗ Tags: #Information Security #Adversarial AI #AI security #Cyber Security #Falcon #Flan_T5 #LLaMA #LLM #password guessing #research
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:14:25 +0000
════════════════════════
⌗ Tags: #Information Security #Adversarial AI #AI security #Cyber Security #Falcon #Flan_T5 #LLaMA #LLM #password guessing #research
Penetration Testing Tools
AI Flunks Security Test: LLMs are Ineffective at Guessing Passwords from Personal Data
Australian researchers have tested whether large language models can infer passwords from personal information — and found that,
⤷ Title: Tomiris APT Infiltrates Governments Via Phishing, Uses Telegram/Discord for C2 Espionage
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:10:48 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT #CIS #Cyber Espionage #Discord C2 #kaspersky #phishing #reverse shell #Russia #Telegram C2 #Tomiris
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:10:48 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT #CIS #Cyber Espionage #Discord C2 #kaspersky #phishing #reverse shell #Russia #Telegram C2 #Tomiris
Penetration Testing Tools
Tomiris APT Infiltrates Governments Via Phishing, Uses Telegram/Discord for C2 Espionage
The Tomiris group launched a new wave of cyber-espionage in early 2025, targeting high-level political and diplomatic institutions.
⤷ Title: OpenAI Users Warned of Phishing Risk After Mixpanel Analytics Provider Breach
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:08:27 +0000
════════════════════════
⌗ Tags: #Data Leak #Analytics Leak #API Users #data breach #Mixpanel #OpenAI #Phishing Risk #security incident #Third_Party Vendor
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:08:27 +0000
════════════════════════
⌗ Tags: #Data Leak #Analytics Leak #API Users #data breach #Mixpanel #OpenAI #Phishing Risk #security incident #Third_Party Vendor
Penetration Testing Tools
OpenAI Users Warned of Phishing Risk After Mixpanel Analytics Provider Breach
OpenAI has disclosed a security incident at the third-party web-analytics provider Mixpanel that affected a subset of users
⤷ Title: Microsoft Entra ID to Block All Third-Party Scripts on Login Page via Strict CSP
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:07:00 +0000
════════════════════════
⌗ Tags: #Microsoft #Authentication #Azure AD #Content Security Policy #CSP #Microsoft Entra ID #Secure Future Initiative #security update #XSS Attack
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:07:00 +0000
════════════════════════
⌗ Tags: #Microsoft #Authentication #Azure AD #Content Security Policy #CSP #Microsoft Entra ID #Secure Future Initiative #security update #XSS Attack
Penetration Testing Tools
Microsoft Entra ID to Block All Third-Party Scripts on Login Page via Strict CSP
Microsoft is tightening the security of Microsoft Entra ID sign-ins, planning to block all third-party script execution on
⤷ Title: Apple Podcasts Auto-Launch Flaw Exposes Users to XSS Attacks via Malicious Shows
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:04:39 +0000
════════════════════════
⌗ Tags: #Apple #Vulnerability #Apple Podcasts #Auto Launch #Cross_Site Scripting #ios #macos #Remote Delivery #security flaw #XSS Attack
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:04:39 +0000
════════════════════════
⌗ Tags: #Apple #Vulnerability #Apple Podcasts #Auto Launch #Cross_Site Scripting #ios #macos #Remote Delivery #security flaw #XSS Attack
Penetration Testing Tools
Apple Podcasts Auto-Launch Flaw Exposes Users to XSS Attacks via Malicious Shows
Apple Podcasts has begun launching itself spontaneously, displaying peculiar religious and “educational” programs and, in some cases, directing
⤷ Title: Asahi Cyberattack: Qilin Ransomware Exposes 1.5M People, Cripples Production
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:00:14 +0000
════════════════════════
⌗ Tags: #Data Leak #Asahi #Customer Data #cybersecurity #data breach #Japan #Production Disruption #Qilin Ransomware #Supply Chain
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:00:14 +0000
════════════════════════
⌗ Tags: #Data Leak #Asahi #Customer Data #cybersecurity #data breach #Japan #Production Disruption #Qilin Ransomware #Supply Chain
Penetration Testing Tools
Asahi Cyberattack: Qilin Ransomware Exposes 1.5M People, Cripples Production
The Japanese brewing giant Asahi has revealed that a September cyberattack resulted in one of the most significant
⤷ Title: Google Cuts Free Daily Quota for Gemini 3 Pro and Nano Banana Pro AI Models
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 02:46:35 +0000
════════════════════════
⌗ Tags: #Google #AI Limits #Compute Strain #Free Quota #Gemini 3 Pro #Generative AI #google #Monetization #Nano Banana Pro
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 02:46:35 +0000
════════════════════════
⌗ Tags: #Google #AI Limits #Compute Strain #Free Quota #Gemini 3 Pro #Generative AI #google #Monetization #Nano Banana Pro
Penetration Testing Tools
Google Cuts Free Daily Quota for Gemini 3 Pro and Nano Banana Pro AI Models
Google continues to recalibrate the terms of its free AI access amid surging demand. The company has reduced
⤷ Title: Teams Guest Phishing Bypass: Attackers Exploit External Tenants to Defeat Microsoft Defender
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 02:45:23 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Email Bypass #Guest Access #Microsoft Defender #Microsoft Teams #Office 365 #Ontinue #phishing #security flaw
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 02:45:23 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Email Bypass #Guest Access #Microsoft Defender #Microsoft Teams #Office 365 #Ontinue #phishing #security flaw
Penetration Testing Tools
Teams Guest Phishing Bypass: Attackers Exploit External Tenants to Defeat Microsoft Defender
Expanding Microsoft Teams’ capabilities for working with external users brings not only convenience, but also new vulnerabilities. The
⤷ Title: Bloody Wolf Hackers Impersonate Government Agencies to Deploy NetSupport RAT in Central Asia
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 02:43:41 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Bloody Wolf #Central Asia #Cyber Espionage #Government Impersonation #Group_IB #Kyrgyzstan #NetSupport RAT #phishing #Uzbekistan
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 02:43:41 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Bloody Wolf #Central Asia #Cyber Espionage #Government Impersonation #Group_IB #Kyrgyzstan #NetSupport RAT #phishing #Uzbekistan
Penetration Testing Tools
Bloody Wolf Hackers Impersonate Government Agencies to Deploy NetSupport RAT in Central Asia
The “Bloody Wolf” group is expanding its targeted campaign across Central Asia, deploying NetSupport RAT and impersonating government
⤷ Title: Is Your IP Hacked? GreyNoise Launches Free IP Check to Detect Botnet Activity
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 02:38:10 +0000
════════════════════════
⌗ Tags: #Malware #Botnet Detection #cybersecurity #GreyNoise #Infosec #IP Check #Network scanner #Online Tool #Residential Proxy
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 02:38:10 +0000
════════════════════════
⌗ Tags: #Malware #Botnet Detection #cybersecurity #GreyNoise #Infosec #IP Check #Network scanner #Online Tool #Residential Proxy
Penetration Testing Tools
Is Your IP Hacked? GreyNoise Launches Free IP Check to Detect Botnet Activity
GreyNoise Labs has unveiled GreyNoise IP Check, an online service that allows users to determine whether their IP
⤷ Title: Google Assembles Foxconn/Samsung Supply Chain for Q4 2026 AI Glasses Launch
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:36:20 +0000
════════════════════════
⌗ Tags: #Android #AI Glasses #Augmented Reality #Foxconn #Gemini AI #google #Project Astra #Qualcomm #samsung #Wearable Tech
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:36:20 +0000
════════════════════════
⌗ Tags: #Android #AI Glasses #Augmented Reality #Foxconn #Gemini AI #google #Project Astra #Qualcomm #samsung #Wearable Tech
Daily CyberSecurity
Google Assembles Foxconn/Samsung Supply Chain for Q4 2026 AI Glasses Launch
Google is accelerating its new AI glasses project (Project Astra), setting up a supply chain (Foxconn/Samsung/Qualcomm) and targeting an ambitious Q4 2026 launch window.
⤷ Title: EU Launches Probe: Are Apple Maps & Apple Ads Next for DMA Gatekeeper Status?
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 02:09:09 +0000
════════════════════════
⌗ Tags: #Technology #Antitrust #Apple Ads #Apple Maps #Digital Markets Act #DMA #EU Tech #European Commission #gatekeeper #Self_Preferencing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 02:09:09 +0000
════════════════════════
⌗ Tags: #Technology #Antitrust #Apple Ads #Apple Maps #Digital Markets Act #DMA #EU Tech #European Commission #gatekeeper #Self_Preferencing
Daily CyberSecurity
EU Launches Probe: Are Apple Maps & Apple Ads Next for DMA Gatekeeper Status?
The EU is investigating if Apple Maps and Apple Ads should be named DMA Gatekeepers, a status Apple denies, claiming negligible market share compared to rivals.
⤷ Title: Critical Alert: Apache Kvrocks ‘RESET’ Command Flaw Grants Admin Privileges
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 01:57:17 +0000
════════════════════════
⌗ Tags: #Vulnerability Report
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 01:57:17 +0000
════════════════════════
⌗ Tags: #Vulnerability Report
Daily CyberSecurity
Critical Alert: Apache Kvrocks 'RESET' Command Flaw Grants Admin Privileges
Critical Apache Kvrocks flaw (CVE-2025-59790) grants admin privileges via RESET command. Update to v2.14.0 now to prevent unauthorized access and leaks.
⤷ Title: CISA Flags Actively Exploited OpenPLC Flaw (CVE-2021-26829)
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 01:40:24 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA #CVE_2021_26829 #cybersecurity news #ICS security #KEV Catalog #OpenPLC #SCADA Security #ScadaBR #Stored XSS
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 01:40:24 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CISA #CVE_2021_26829 #cybersecurity news #ICS security #KEV Catalog #OpenPLC #SCADA Security #ScadaBR #Stored XSS
Daily CyberSecurity
CISA Flags Actively Exploited OpenPLC Flaw (CVE-2021-26829)
CISA warns of active exploitation of OpenPLC ScadaBR (CVE-2021-26829). This critical Stored XSS flaw puts SCADA systems at risk. Update now.
⤷ Title: Hands-On Understanding of OWASP Top 10: Injection
════════════════════════
𐀪 Author: Yoshiyuki Watanabe
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 02:12:33 GMT
════════════════════════
⌗ Tags: #application_security #sql_injection #owasp_top_10 #injection #sre
════════════════════════
𐀪 Author: Yoshiyuki Watanabe
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 02:12:33 GMT
════════════════════════
⌗ Tags: #application_security #sql_injection #owasp_top_10 #injection #sre
Medium
Hands-On Understanding of OWASP Top 10: Injection
Learning Injection from the OWASP Top 10
⤷ Title: The hidden flaw in password reset tokens: Weak Randomness
════════════════════════
𐀪 Author: Mohamed Ahmed
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:29:42 GMT
════════════════════════
⌗ Tags: #security #artificial_intelligence #hacking #safety
════════════════════════
𐀪 Author: Mohamed Ahmed
════════════════════════
ⴵ Time: Sat, 29 Nov 2025 03:29:42 GMT
════════════════════════
⌗ Tags: #security #artificial_intelligence #hacking #safety
Medium
The hidden flaw in password reset tokens: Weak Randomness
Password reset links look secure from the outside ,you click a button, get a code, and that’s it. However, the whole system depends on one…