⤷ Title: StreamIO-HTB Writeup
════════════════════════
𐀪 Author: Alts
════════════════════════
ⴵ Time: Sun, 30 Nov 2025 13:41:56 GMT
════════════════════════
⌗ Tags: #htb_walkthrough #hackthebox #hackthebox_walkthrough #htb_writeup #hackthebox_writeup
════════════════════════
𐀪 Author: Alts
════════════════════════
ⴵ Time: Sun, 30 Nov 2025 13:41:56 GMT
════════════════════════
⌗ Tags: #htb_walkthrough #hackthebox #hackthebox_walkthrough #htb_writeup #hackthebox_writeup
Medium
StreamIO
Windows · Medium
⤷ Title: Operation Hanoi Thief: Hackers Use ‘Pseudo-Polyglot’ LNK/Image to Deploy LOTUSHARVEST Stealer via DLL Sideloading
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:42:31 +0000
════════════════════════
⌗ Tags: #Cybercriminals #DLL Sideloading #information stealer #LNK Exploit #LOTUSHARVEST #Operation Hanoi Thief #Pseudo_Polyglot #Recruitment Scam #Vietnam
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:42:31 +0000
════════════════════════
⌗ Tags: #Cybercriminals #DLL Sideloading #information stealer #LNK Exploit #LOTUSHARVEST #Operation Hanoi Thief #Pseudo_Polyglot #Recruitment Scam #Vietnam
Daily CyberSecurity
Operation Hanoi Thief: Hackers Use 'Pseudo-Polyglot' LNK/Image to Deploy LOTUSHARVEST Stealer via DLL Sideloading
Operation Hanoi Thief targets Vietnam with a pseudo-polyglot LNK/image file that executes malicious code via ftp.exe. The attack deploys LOTUSHARVEST stealer via DLL sideloading to steal Chrome/Edge credentials.
⤷ Title: Critical Devolutions Server Flaw (CVE-2025-13757) Allows Authenticated SQL Injection to Steal All Passwords
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:37:36 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Credential Theft #Critical Vulnerability #CVE_2025_13757 #Devolutions Server #password manager #sql injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:37:36 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Credential Theft #Critical Vulnerability #CVE_2025_13757 #Devolutions Server #password manager #sql injection
Daily CyberSecurity
Critical Devolutions Server Flaw (CVE-2025-13757) Allows Authenticated SQL Injection to Steal All Passwords
Devolutions Server patched a Critical SQLi flaw (CVE-2025-13757) allowing authenticated users to exfiltrate or modify data via log parameters. Update to v2025.2.21 or v2025.3.9 immediately.
⤷ Title: New TangleCrypt Packer Hides EDR Killer, But Coding Flaws Cause Ransomware to Crash Unexpectedly
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:32:07 +0000
════════════════════════
⌗ Tags: #Malware #Coding Flaws #EDR Killer #Obfuscation #Qilin #Ransomware Packer #STONESTOP #TangleCrypt #WithSecure
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:32:07 +0000
════════════════════════
⌗ Tags: #Malware #Coding Flaws #EDR Killer #Obfuscation #Qilin #Ransomware Packer #STONESTOP #TangleCrypt #WithSecure
Daily CyberSecurity
New TangleCrypt Packer Hides EDR Killer, But Coding Flaws Cause Ransomware to Crash Unexpectedly
WithSecure exposed TangleCrypt, a new ransomware packer that uses LZ78/XOR and embedded PE resources to hide the STONESTOP EDR killer. However, coding flaws cause unexpected crashes.
⤷ Title: Russian Tomiris APT Adopts “Polyglot” Strategy, Hijacking Telegram/Discord as Covert C2 for Diplomatic Spies
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:27:01 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #C2 Hijacking #cyber_espionage #Discord #Government Targets #kaspersky #Polyglot Malware #Telegram #Tomiris APT
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:27:01 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #C2 Hijacking #cyber_espionage #Discord #Government Targets #kaspersky #Polyglot Malware #Telegram #Tomiris APT
Daily CyberSecurity
Russian Tomiris APT Adopts "Polyglot" Strategy, Hijacking Telegram/Discord as Covert C2 for Diplomatic Spies
Kaspersky exposed Tomiris APT using a "polyglot" strategy (Go/Rust/Python) and Telegram/Discord for covert C2. The group targets foreign ministries with implants that steal file paths and reconnaissance data.
⤷ Title: High-Severity GeoServer Flaw (CVE-2025-58360) Allows Unauthenticated XXE for File Theft and SSRF
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:22:33 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Critical Vulnerability #File Exfiltration #GeoServer #ssrf #unauthenticated #WMS GetMap #XML External Entity #xxe
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:22:33 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Critical Vulnerability #File Exfiltration #GeoServer #ssrf #unauthenticated #WMS GetMap #XML External Entity #xxe
Daily CyberSecurity
High-Severity GeoServer Flaw (CVE-2025-58360) Allows Unauthenticated XXE for File Theft and SSRF
GeoServer patched a High-severity XXE flaw (CVE-2025-58360, CVSS 8.2) in its WMS GetMap operation. The flaw allows unauthenticated remote attackers to read arbitrary files and perform SSRF. Update to v2.27.0.
⤷ Title: New MaaS Operator TAG-150 Uses ClickFix Lure and Custom CastleLoader to Compromise 469 US Devices
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:19:22 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CastleLoader #CastleRAT #ClickFix #Darktrace #MaaS #Remote Access Trojan #social engineering #TAG_150
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:19:22 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CastleLoader #CastleRAT #ClickFix #Darktrace #MaaS #Remote Access Trojan #social engineering #TAG_150
Daily CyberSecurity
New MaaS Operator TAG-150 Uses ClickFix Lure and Custom CastleLoader to Compromise 469 US Devices
Darktrace exposed TAG-150, a new MaaS operator compromising 469+ US devices in months. The group uses ClickFix to trick victims into running malicious PowerShell that deploys the CastleLoader/CastleRAT backdoor.
⤷ Title: North Korea’s “Contagious Interview” Floods npm with 200 New Packages, Using Fake Crypto Jobs to Deploy OtterCookie Spyware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:13:02 +0000
════════════════════════
⌗ Tags: #Cyber Security #BeaverTail #Contagious Interview #Job Scam #North Korea APT #NPM Supply Chain #OtterCookie #Typosquatting #Web3 Theft
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:13:02 +0000
════════════════════════
⌗ Tags: #Cyber Security #BeaverTail #Contagious Interview #Job Scam #North Korea APT #NPM Supply Chain #OtterCookie #Typosquatting #Web3 Theft
Daily CyberSecurity
North Korea's "Contagious Interview" Floods npm with 200 New Packages, Using Fake Crypto Jobs to Deploy OtterCookie Spyware
North Korean APTs added 197 malicious npm packages to the "Contagious Interview" campaign. The operation uses fake crypto job assignments to deploy the OtterCookie/BeaverTail hybrid to steal credentials cross-platform.
⤷ Title: ShadowV2 Mirai Botnet Launched Coordinated IoT Test Attack During Global AWS Outage
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:05:41 +0000
════════════════════════
⌗ Tags: #Malware #AWS Outage #Coordinated Attack #ddos #Denial of Service #FortiGuard #IoT Malware #Mirai botnet #ShadowV2
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:05:41 +0000
════════════════════════
⌗ Tags: #Malware #AWS Outage #Coordinated Attack #ddos #Denial of Service #FortiGuard #IoT Malware #Mirai botnet #ShadowV2
Daily CyberSecurity
ShadowV2 Mirai Botnet Launched Coordinated IoT Test Attack During Global AWS Outage
FortiGuard exposed ShadowV2, a new Mirai botnet variant that launched an IoT test attack specifically during a global AWS outage. The XOR-encoded malware targets routers and uses a hardcoded fallback C2 for resilience.
⤷ Title: Bloody Wolf APT Expands to Central Asia, Deploys NetSupport RAT via Custom Java Droppers and Geo-Fencing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:00:21 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT #Bloody Wolf #Central Asia #Espionage #Java Dropper #NetSupport RAT #spear_phishing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:00:21 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT #Bloody Wolf #Central Asia #Espionage #Java Dropper #NetSupport RAT #spear_phishing
Daily CyberSecurity
Bloody Wolf APT Expands to Central Asia, Deploys NetSupport RAT via Custom Java Droppers and Geo-Fencing
Bloody Wolf APT is targeting Central Asia using custom Java droppers to deploy the NetSupport RAT. The group uses geo-fencing and fake Ministry of Justice lures to achieve stealthy, persistent access for espionage.
⤷ Title: Hack The Box|Editor Walkthrough
════════════════════════
𐀪 Author: NV
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:08:35 GMT
════════════════════════
⌗ Tags: #hackthebox #hacking #hackthebox_walkthrough #ethical_hacking
════════════════════════
𐀪 Author: NV
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:08:35 GMT
════════════════════════
⌗ Tags: #hackthebox #hacking #hackthebox_walkthrough #ethical_hacking
Medium
Hack The Box|Editor Walkthrough
Hello everyone, today we are going to work on the “Editor” machine from Hack The Box. First, we are going to perform a reconnaissance using…
⤷ Title: DTMAF and VPAFT: The Emerging Digital Psychological Violence Behind Crypto-Romance Fraud, and Why…
════════════════════════
𐀪 Author: Quiscalus Asi (The Quiscalus Project)
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 01:33:15 GMT
════════════════════════
⌗ Tags: #mental_health #cybersecurity #online_scams #public_health #digital_violence
════════════════════════
𐀪 Author: Quiscalus Asi (The Quiscalus Project)
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 01:33:15 GMT
════════════════════════
⌗ Tags: #mental_health #cybersecurity #online_scams #public_health #digital_violence
Medium
DTMAF and VPAFT: The Emerging Digital Psychological Violence Behind Crypto-Romance Fraud, and Why the WHO Must Recognize It Now
How a modern form of emotional and financial manipulation has become a global public-health issue that still has no official name.
⤷ Title: OSINT Under the Hood: What Your Files Are Secretly Saying About You
════════════════════════
𐀪 Author: Rabail Zaheer
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 01:22:03 GMT
════════════════════════
⌗ Tags: #osint_investigation #cybersecurity #osint #cyber_security_awareness #technology
════════════════════════
𐀪 Author: Rabail Zaheer
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 01:22:03 GMT
════════════════════════
⌗ Tags: #osint_investigation #cybersecurity #osint #cyber_security_awareness #technology
Medium
OSINT Under the Hood: What Your Files Are Secretly Saying About You
Your files are keeping a diary.
⤷ Title: WiFi Hacking 1O1, learn everything u need
════════════════════════
𐀪 Author: Mainekhacker
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 01:21:52 GMT
════════════════════════
⌗ Tags: #wifi #wifihacking #wifi_router #cybersecurity #hacker
════════════════════════
𐀪 Author: Mainekhacker
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 01:21:52 GMT
════════════════════════
⌗ Tags: #wifi #wifihacking #wifi_router #cybersecurity #hacker
Medium
WiFi Hacking 1O1, learn everything u need
Learn to attack WPA(2) networks! Ideally you’ll want a smartphone with you for this, preferably one that supports hosting wifi hotspots so…
⤷ Title: AI Agents as Insiders: Securing the Next Generation of Enterprise AI Infrastructure
════════════════════════
𐀪 Author: Ahmed Sallam
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 01:17:49 GMT
════════════════════════
⌗ Tags: #cybersecurity #insider_threat #below_os_protection #data_security #ai_safety
════════════════════════
𐀪 Author: Ahmed Sallam
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 01:17:49 GMT
════════════════════════
⌗ Tags: #cybersecurity #insider_threat #below_os_protection #data_security #ai_safety
Medium
AI Agents as Insiders: Securing the Next Generation of Enterprise AI Infrastructure
AI is becoming the most privileged “employee” inside the enterprise. The security model must evolve with it from the cloud layer down to…
⤷ Title: A10 Networks: The Short Squeeze Candidate Wall Street Is Ignoring — Until It Isn’t
════════════════════════
𐀪 Author: Bradley Susser
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 01:14:14 GMT
════════════════════════
⌗ Tags: #ai #stock_market #cybersecurity #technology #investment
════════════════════════
𐀪 Author: Bradley Susser
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 01:14:14 GMT
════════════════════════
⌗ Tags: #ai #stock_market #cybersecurity #technology #investment
Medium
A10 Networks: The Short Squeeze Candidate Wall Street Is Ignoring — Until It Isn’t
A10 Networks: Microsoft’s AI Infrastructure Choice Trading at 6x EBITDA — The Short Squeeze Candidate Wall Street Is Ignoring
⤷ Title: Why Smart People Fall for Scams: The Psychology No One Talks About
════════════════════════
𐀪 Author: Richard Buchfink
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 01:08:18 GMT
════════════════════════
⌗ Tags: #scams_to_avoid #psychology #decision_making #human_behavior #cybersecurity
════════════════════════
𐀪 Author: Richard Buchfink
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 01:08:18 GMT
════════════════════════
⌗ Tags: #scams_to_avoid #psychology #decision_making #human_behavior #cybersecurity
Medium
Why Smart People Fall for Scams: The Psychology No One Talks About
Scams are no longer a niche criminal category.
They’re a global industry — fast, adaptive, organized, and frighteningly effective.
They’re a global industry — fast, adaptive, organized, and frighteningly effective.
⤷ Title: Shellcode, Payloads, and the Future of Deep Packet Inspection: How Modern Networks Detect and Stop…
════════════════════════
𐀪 Author: Ahmed Sallam
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 01:08:05 GMT
════════════════════════
⌗ Tags: #deep_learning #malware #cloud_computing #cybersecurity #network_security
════════════════════════
𐀪 Author: Ahmed Sallam
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 01:08:05 GMT
════════════════════════
⌗ Tags: #deep_learning #malware #cloud_computing #cybersecurity #network_security
Medium
Shellcode, Payloads, and the Future of Deep Packet Inspection: How Modern Networks Detect and Stop…
Understanding DPI from endpoints to the cloud, and why it remains the backbone of modern cybersecurity
⤷ Title: Testing Account Discovery Detection with Atomic Red Team
════════════════════════
𐀪 Author: Raynard Waits
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 01:02:09 GMT
════════════════════════
⌗ Tags: #soc_analyst_training #cybersecurity #blue_team #homelab #soc_analyst
════════════════════════
𐀪 Author: Raynard Waits
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 01:02:09 GMT
════════════════════════
⌗ Tags: #soc_analyst_training #cybersecurity #blue_team #homelab #soc_analyst
Medium
Testing Account Discovery Detection with Atomic Red Team
After my previous tests with custom PowerShell payloads, I wanted to validate my detection coverage using a standardized framework. Enter…
⤷ Title: Social Media Risks Every User Should Understand
════════════════════════
𐀪 Author: Geoffrey Wenger
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:35:06 GMT
════════════════════════
⌗ Tags: #information_technology #social_media #cybersecurity #information_security
════════════════════════
𐀪 Author: Geoffrey Wenger
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:35:06 GMT
════════════════════════
⌗ Tags: #information_technology #social_media #cybersecurity #information_security
Medium
Social Media Risks Every User Should Understand
Social media makes communication fast and convenient, yet that same speed creates real security gaps. Attackers use fake identities, rushed…
⤷ Title: (NEWSLETTER) Pulando a fogueira digital
════════════════════════
𐀪 Author: Antônio Augusto
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:04:16 GMT
════════════════════════
⌗ Tags: #cybersecurity #cibersegurança #são_joão #newsletter #community_management
════════════════════════
𐀪 Author: Antônio Augusto
════════════════════════
ⴵ Time: Mon, 01 Dec 2025 00:04:16 GMT
════════════════════════
⌗ Tags: #cybersecurity #cibersegurança #são_joão #newsletter #community_management
Medium
(NEWSLETTER) Pulando a fogueira digital
Seja no lume da fogueira, ou numa noite de forró, o pé deve continuar no chão; São João também é época de crimes digitais.