⤷ Title: Next-Gen Stealer Arkanix Bypasses Chrome App-Bound Encryption Using C++ Process Injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 02:02:06 +0000
════════════════════════
⌗ Tags: #Malware #App_Bound Encryption #Arkanix Stealer #C# malware #Chrome Elevator #G DATA #Infostealer #Process injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 02:02:06 +0000
════════════════════════
⌗ Tags: #Malware #App_Bound Encryption #Arkanix Stealer #C# malware #Chrome Elevator #G DATA #Infostealer #Process injection
⤷ Title: How I Discovered 8 Header-Injection Weaknesses on a Wix-Hosted Domain
════════════════════════
𐀪 Author: Tyreek Haynes
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 03:42:46 GMT
════════════════════════
⌗ Tags: #infosec #wix #cybersecurity #domains
════════════════════════
𐀪 Author: Tyreek Haynes
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 03:42:46 GMT
════════════════════════
⌗ Tags: #infosec #wix #cybersecurity #domains
Medium
🚨 How I Discovered 8 Header-Injection Weaknesses on a Wix-Hosted Domain
Most people only test for the obvious when looking at website security: SQLi, XSS, broken auth. But sometimes the deeper weaknesses show…
⤷ Title: Shai-Hulud 2.0: Self-Propagating npm Worm Steals Credentials via Pre-Install Scripts
════════════════════════
𐀪 Author: Vinodbokare
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 02:57:08 GMT
════════════════════════
⌗ Tags: #javascript #cybersecurity #infosec #npm #shai_hulud
════════════════════════
𐀪 Author: Vinodbokare
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 02:57:08 GMT
════════════════════════
⌗ Tags: #javascript #cybersecurity #infosec #npm #shai_hulud
Medium
Shai-Hulud 2.0: Self-Propagating npm Worm Steals Credentials via Pre-Install Scripts
Severity: CRITICAL
Date: November 21–24, 2025
Impact: 25,000+ GitHub repos compromised in 72 hours
Date: November 21–24, 2025
Impact: 25,000+ GitHub repos compromised in 72 hours
⤷ Title: Introduction to EDR — TryHackme Walkthrough
════════════════════════
𐀪 Author: Paul koumedzro
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 03:39:03 GMT
════════════════════════
⌗ Tags: #cybersecurity_training #cybersecurity
════════════════════════
𐀪 Author: Paul koumedzro
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 03:39:03 GMT
════════════════════════
⌗ Tags: #cybersecurity_training #cybersecurity
Medium
Introduction to EDR — TryHackme Walkthrough
Task1: Introduction Endpoint Detection and Response (EDR) is a security solution designed to monitor, detect, and respond to advanced…
⤷ Title: Shai-Hulud 2.0: The Attack That Compromised Thousands of GitHub Repositories
════════════════════════
𐀪 Author: Deven Chhajed
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 03:32:19 GMT
════════════════════════
⌗ Tags: #supply_chain_security #javascript #shai_hulud #npm_security #cybersecurity
════════════════════════
𐀪 Author: Deven Chhajed
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 03:32:19 GMT
════════════════════════
⌗ Tags: #supply_chain_security #javascript #shai_hulud #npm_security #cybersecurity
Medium
Shai-Hulud 2.0: The Attack That Compromised Thousands of GitHub Repositories
Software supply chains are supposed to feel predictable. You pull a package, install a dependency and get on with your work. Over the last…
⤷ Title: Hidden Google Play Adware Drains Devices and Disrupts Millions of Users
════════════════════════
𐀪 Author: UK Cyber Defence
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 03:28:03 GMT
════════════════════════
⌗ Tags: #scam #cybersecurity #cyber_security_awareness #google_play
════════════════════════
𐀪 Author: UK Cyber Defence
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 03:28:03 GMT
════════════════════════
⌗ Tags: #scam #cybersecurity #cyber_security_awareness #google_play
Medium
Hidden Google Play Adware Drains Devices and Disrupts Millions of Users
A major Android adware operation, now known as GhostAd, has been uncovered after spreading quietly through Google Play and affecting…
⤷ Title: Technology and the Global Market — Competition and Protective Measures
════════════════════════
𐀪 Author: Kamal Hossen
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 03:23:32 GMT
════════════════════════
⌗ Tags: #technology #global_business #data_security #global_market #cybersecurity
════════════════════════
𐀪 Author: Kamal Hossen
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 03:23:32 GMT
════════════════════════
⌗ Tags: #technology #global_business #data_security #global_market #cybersecurity
Medium
Technology and the Global Market — Competition and Protective Measures
In today’s rapidly evolving world, technology has become the core driving force behind global economic growth, international trade, and…
⤷ Title: Over 2,000 Holiday-Themed Fake Stores Target Shoppers During Black Friday and Festive Sales
════════════════════════
𐀪 Author: UK Cyber Defence
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 03:23:07 GMT
════════════════════════
⌗ Tags: #festive_season #scam #cybersecurity
════════════════════════
𐀪 Author: UK Cyber Defence
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 03:23:07 GMT
════════════════════════
⌗ Tags: #festive_season #scam #cybersecurity
Medium
Over 2,000 Holiday-Themed Fake Stores Target Shoppers During Black Friday and Festive Sales
The holiday shopping season has become one of the most lucrative periods of the year for cybercriminals. Alongside legitimate Black Friday…
⤷ Title: When “Network Security” Becomes Network Sabotage;
════════════════════════
𐀪 Author: Kit Baroness
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 02:27:41 GMT
════════════════════════
⌗ Tags: #data_rights #privacy #cybersecurity #technology #software_engineering
════════════════════════
𐀪 Author: Kit Baroness
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 02:27:41 GMT
════════════════════════
⌗ Tags: #data_rights #privacy #cybersecurity #technology #software_engineering
Medium
When “Network Security” Becomes Network Sabotage;
How ISPs Break Your System While Smiling About Safety
⤷ Title: Linux CLI — Shells Bells
════════════════════════
𐀪 Author: THM{0x416469747961204D6163686972616A75}
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 03:36:58 GMT
════════════════════════
⌗ Tags: #advent_of_cyber_2025 #tryhackme_pre_security #linux #tryhackme_writeup #tryhackme
════════════════════════
𐀪 Author: THM{0x416469747961204D6163686972616A75}
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 03:36:58 GMT
════════════════════════
⌗ Tags: #advent_of_cyber_2025 #tryhackme_pre_security #linux #tryhackme_writeup #tryhackme
Medium
Linux CLI — Shells Bells
Explore the Linux command-line interface and use it to unveil Christmas mysteries.
⤷ Title: BamboozlEDR: New Tool Generates Realistic ETW Events to Test EDR Detection
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:49:34 +0000
════════════════════════
⌗ Tags: #Open Source Tool #BamboozlEDR #blue team #EDR #ETW #Event Tracing for Windows #Red Team #research #security testing #TUI
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:49:34 +0000
════════════════════════
⌗ Tags: #Open Source Tool #BamboozlEDR #blue team #EDR #ETW #Event Tracing for Windows #Red Team #research #security testing #TUI
Penetration Testing Tools
BamboozlEDR: New Tool Generates Realistic ETW Events to Test EDR Detection
BamboozlEDR is a new ETW event generation tool with a TUI interface. It generates realistic security events to test and validate EDR detection capabilities and security monitoring solutions.
⤷ Title: PostHog Hacked: Shai-Hulud 2.0 Worm Steals 25,000+ Developer Secrets via npm
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:44:27 +0000
════════════════════════
⌗ Tags: #Malware #CI/CD #Developer Secrets #Infostealer #npm #PostHog #Shai_Hulud 2.0 #supply chain attack #trufflehog
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:44:27 +0000
════════════════════════
⌗ Tags: #Malware #CI/CD #Developer Secrets #Infostealer #npm #PostHog #Shai_Hulud 2.0 #supply chain attack #trufflehog
Penetration Testing Tools
PostHog Hacked: Shai-Hulud 2.0 Worm Steals 25,000+ Developer Secrets via npm
For the PostHog team, developers of an open-source analytics platform, the recent npm-based attack has become the most
⤷ Title: Standardizing Security: IDF Bans Android, Mandates iPhone for Senior Commanders
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:42:21 +0000
════════════════════════
⌗ Tags: #Technology #Android Ban #Fragmentation #Honeypot Attacks #IDF #iOS Ecosystem #iphone #Military Communications #mobile security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:42:21 +0000
════════════════════════
⌗ Tags: #Technology #Android Ban #Fragmentation #Honeypot Attacks #IDF #iOS Ecosystem #iphone #Military Communications #mobile security
Penetration Testing Tools
Standardizing Security: IDF Bans Android, Mandates iPhone for Senior Commanders
The Israel Defense Forces (IDF) have prohibited senior commanders from using Android smartphones for official communications — from
⤷ Title: PBOC Formally Classifies Stablecoins as Illegal Virtual Currency, Confirms Total Crypto Ban
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:41:22 +0000
════════════════════════
⌗ Tags: #Technology #anti_money laundering #China #Cryptocurrency Ban #Financial Regulation #PBOC #Stablecoins #virtual currency
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:41:22 +0000
════════════════════════
⌗ Tags: #Technology #anti_money laundering #China #Cryptocurrency Ban #Financial Regulation #PBOC #Stablecoins #virtual currency
Penetration Testing Tools
PBOC Formally Classifies Stablecoins as Illegal Virtual Currency, Confirms Total Crypto Ban
The People’s Bank of China has once again made it unmistakably clear that its hardline stance on suppressing
⤷ Title: 4 Million iOS Users at Risk: Abandoned Domains Weaponized for iCalendar Phishing
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:33:15 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Attack Vector #Balada Injector #Bitsight #Calendar Phishing #Domain Abuse #iCalendar #iOS Security #macos #Social Engineering
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:33:15 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Attack Vector #Balada Injector #Bitsight #Calendar Phishing #Domain Abuse #iCalendar #iOS Security #macos #Social Engineering
Penetration Testing Tools
4 Million iOS Users at Risk: Abandoned Domains Weaponized for iCalendar Phishing
Digital calendars have long been a convenient way to stay organized amid daily routines, yet new research from
⤷ Title: Play Ransomware Claims Breach of Defense Contractor ADC Aerospace, Stealing Client Data
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:31:57 +0000
════════════════════════
⌗ Tags: #Data Leak #ADC Aerospace #Aerospace Supply Chain #data breach #Defense Contractor #Financial Data #Play Ransomware #ransomware attack
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:31:57 +0000
════════════════════════
⌗ Tags: #Data Leak #ADC Aerospace #Aerospace Supply Chain #data breach #Defense Contractor #Financial Data #Play Ransomware #ransomware attack
Penetration Testing Tools
Play Ransomware Claims Breach of Defense Contractor ADC Aerospace, Stealing Client Data
The American manufacturer of aerospace and defense components ADC Aerospace has come under scrutiny following a potential cyberattack:
⤷ Title: N. Korea’s Contagious Interview Campaign Targets Job Seekers with 197 Malicious npm Packages
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:30:58 +0000
════════════════════════
⌗ Tags: #Malware #ClickFix #Contagious Interview #DPRK #GolangGhost #Job Seeker Scam #North Korea APT #npm #OtterCookie #supply chain attack
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:30:58 +0000
════════════════════════
⌗ Tags: #Malware #ClickFix #Contagious Interview #DPRK #GolangGhost #Job Seeker Scam #North Korea APT #npm #OtterCookie #supply chain attack
Penetration Testing Tools
N. Korea's Contagious Interview Campaign Targets Job Seekers with 197 Malicious npm Packages
North Korea’s Contagious Interview malware campaign continues to escalate its pressure on the JavaScript-development ecosystem. Threat actors affiliated
⤷ Title: Lazarus Group Stole $1.4B in Crypto; Will Use AI & Deepfakes for 2026 Attacks
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:24:32 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AhnLab #AI Attacks #Bybit #Cryptocurrency Theft #cybercrime #Deepfake #Lazarus Group #North Korea APT #Spear Phishing
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:24:32 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AhnLab #AI Attacks #Bybit #Cryptocurrency Theft #cybercrime #Deepfake #Lazarus Group #North Korea APT #Spear Phishing
Penetration Testing Tools
Lazarus Group Stole $1.4B in Crypto; Will Use AI & Deepfakes for 2026 Attacks
North Korea’s Lazarus hacking collective is intensifying its targeted phishing campaigns against cryptocurrency platforms and individual investors, amassing
⤷ Title: GrapheneOS Ditches OVHcloud, Citing French Jurisdiction and Encryption Backdoor Pressure
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:21:57 +0000
════════════════════════
⌗ Tags: #Data Leak #Chat Control #Cloud Migration #Digital Sovereignty #Encryption #France #GrapheneOS #OVHcloud #privacy
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:21:57 +0000
════════════════════════
⌗ Tags: #Data Leak #Chat Control #Cloud Migration #Digital Sovereignty #Encryption #France #GrapheneOS #OVHcloud #privacy
Penetration Testing Tools
GrapheneOS Ditches OVHcloud, Citing French Jurisdiction and Encryption Backdoor Pressure
The GrapheneOS mobile operating-system project has announced that it is severing ties with OVHcloud, expressing concern that French
⤷ Title: South Korea Arrests 4 for Hacking 120,000 IP Cameras to Mass-Produce Illegal Videos
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:20:40 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cybercrime #cybersecurity #Digital Sex Crime #IP Camera Hack #Sextortion #South Korea #Weak Passwords
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:20:40 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cybercrime #cybersecurity #Digital Sex Crime #IP Camera Hack #Sextortion #South Korea #Weak Passwords
Penetration Testing Tools
South Korea Arrests 4 for Hacking 120,000 IP Cameras to Mass-Produce Illegal Videos
Police in South Korea have detained four individuals in connection with the hacking of more than 120,000 IP
⤷ Title: Poetry is the New Hack: ‘Adversarial Poetry’ Bypasses 62% of LLM Safety Filters
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:14:20 +0000
════════════════════════
⌗ Tags: #Technology #Adversarial Poetry #AI Ethics #AI Hacking #DexAI #Gemini 2.5 Pro #GPT_5 #LLM Safety #Prompt Injection
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 02 Dec 2025 04:14:20 +0000
════════════════════════
⌗ Tags: #Technology #Adversarial Poetry #AI Ethics #AI Hacking #DexAI #Gemini 2.5 Pro #GPT_5 #LLM Safety #Prompt Injection
Penetration Testing Tools
Poetry is the New Hack: 'Adversarial Poetry' Bypasses 62% of LLM Safety Filters
Poetry has, quite unexpectedly, become a weapon for attacking artificial-intelligence systems. A new study has revealed that the