⤷ Title: Who is Lena? and 7 Key Security Takeaways for CISOs
════════════════════════
𐀪 Author: Dr. Feliks Kravets
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 03:20:54 GMT
════════════════════════
⌗ Tags: #ciso #dr_feliks_kravets #cybersecurityeasy #cybersecurity #lena
════════════════════════
𐀪 Author: Dr. Feliks Kravets
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 03:20:54 GMT
════════════════════════
⌗ Tags: #ciso #dr_feliks_kravets #cybersecurityeasy #cybersecurity #lena
Medium
Who is Lena? and 7 Key Security Takeaways for CISOs
What did we learn from chatbot Lena’s recent attack? After looking at various sources, these are a few key points for CISOs and security…
⤷ Title: ประกาศเตือนด่วนที่สุด!
════════════════════════
𐀪 Author: ThaiCERT By NCSA
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 03:12:50 GMT
════════════════════════
⌗ Tags: #cybersecurity
════════════════════════
𐀪 Author: ThaiCERT By NCSA
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 03:12:50 GMT
════════════════════════
⌗ Tags: #cybersecurity
Medium
🚨ประกาศเตือนด่วนที่สุด!
🚨ประกาศเตือนด่วนที่สุด! ผู้ใช้ Android ต้องอ่าน 📱🌐
ตรวจพบช่องโหว่ร้ายแรงในระบบภายในของชิปโทรศัพท์มือถือ…
ตรวจพบช่องโหว่ร้ายแรงในระบบภายในของชิปโทรศัพท์มือถือ…
⤷ Title: IIS Misconfigurations, MySQL Exposure, and the Path to Domain Admin
════════════════════════
𐀪 Author: Johnny Meintel
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 02:56:38 GMT
════════════════════════
⌗ Tags: #homelab #isis #mysql #cybersecurity
════════════════════════
𐀪 Author: Johnny Meintel
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 02:56:38 GMT
════════════════════════
⌗ Tags: #homelab #isis #mysql #cybersecurity
Medium
IIS Misconfigurations, MySQL Exposure, and the Path to Domain Admin
Finishing up Phase One of my homelab setup — building a deliberately vulnerable infrastructure to learn to detect and defend against…
⤷ Title: What Is WebRTC Used For? Does WebRTC Leak Your IP Address?
════════════════════════
𐀪 Author: AdsPower Browser
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 02:03:22 GMT
════════════════════════
⌗ Tags: #adspowers_webrtc #adspower #ip_address #cybersecurity #webrtc
════════════════════════
𐀪 Author: AdsPower Browser
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 02:03:22 GMT
════════════════════════
⌗ Tags: #adspowers_webrtc #adspower #ip_address #cybersecurity #webrtc
Medium
What Is WebRTC Used For? Does WebRTC Leak Your IP Address?
Discover what WebRTC is, how it works, whether it can expose your IP address, and how AdsPower’s WebRTC modes can help you stay protected.
⤷ Title: How Hackers Exploit Vulnerabilities to Gain Access.
════════════════════════
𐀪 Author: Jugal Patel
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 02:02:13 GMT
════════════════════════
⌗ Tags: #gaining_access #cybersecurity #exploitation #penetration_testing #vulnerability
════════════════════════
𐀪 Author: Jugal Patel
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 02:02:13 GMT
════════════════════════
⌗ Tags: #gaining_access #cybersecurity #exploitation #penetration_testing #vulnerability
Medium
How Hackers Exploit Vulnerabilities to Gain Access.
Linkedin : Cybersense Mayur Khainar Jugal Patel
Instagram : Jugal Patel
Instagram : Jugal Patel
⤷ Title: XSS, CSRF, and SSRF: Understanding Three Commonly Confused Web Vulnerabilities
════════════════════════
𐀪 Author: Moez Ben-Azzouz
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 02:23:31 GMT
════════════════════════
⌗ Tags: #ssrf #xss_attack #csrf #penetration_testing #web_application_security
════════════════════════
𐀪 Author: Moez Ben-Azzouz
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 02:23:31 GMT
════════════════════════
⌗ Tags: #ssrf #xss_attack #csrf #penetration_testing #web_application_security
Medium
XSS, CSRF, and SSRF: Understanding Three Commonly Confused Web Vulnerabilities
If you are new to web application security, you have probably encountered the acronyms XSS, CSRF, and SSRF. These three vulnerability…
⤷ Title: Malware Analysis — Egg-xecutable
════════════════════════
𐀪 Author: THM{0x416469747961204D6163686972616A75}
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 03:51:45 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme_walkthrough #tryhackme #ctf #ctf_writeup
════════════════════════
𐀪 Author: THM{0x416469747961204D6163686972616A75}
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 03:51:45 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme_walkthrough #tryhackme #ctf #ctf_writeup
Medium
Malware Analysis — Egg-xecutable
Discover some common tooling for malware analysis within a sandbox environment.
⤷ Title: Trust Writeup (Web) — WannaGame CTF 2025
════════════════════════
𐀪 Author: Ahmed Reda (minyawy)
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 02:37:20 GMT
════════════════════════
⌗ Tags: #ctf #minyawy #wannagame #web_ctf_writeup #rce
════════════════════════
𐀪 Author: Ahmed Reda (minyawy)
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 02:37:20 GMT
════════════════════════
⌗ Tags: #ctf #minyawy #wannagame #web_ctf_writeup #rce
Medium
Trust Writeup (Web) — WannaGame CTF 2025
Hi, this is a simple writeup for a web challenge in WannaGame CTF 2025, I found it interesting to share it🤏
⤷ Title: Singularity: Advanced Linux Kernel Rootkit Uses ftrace to Bypass EDR and eBPF
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 04:39:40 +0000
════════════════════════
⌗ Tags: #Open Source Tool #eBPF #EDR Bypass #ftrace #Linux Kernel #Offensive Security #privilege escalation #Process Hiding #rootkit #Singularity #Stealth
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 04:39:40 +0000
════════════════════════
⌗ Tags: #Open Source Tool #eBPF #EDR Bypass #ftrace #Linux Kernel #Offensive Security #privilege escalation #Process Hiding #rootkit #Singularity #Stealth
Penetration Testing Tools
Singularity: Advanced Linux Kernel Rootkit Uses ftrace to Bypass EDR and eBPF
Singularity is an advanced Linux Kernel 6.x rootkit that uses ftrace hooking to provide comprehensive stealth, including process/file hiding and eBPF/EDR detection evasion.
⤷ Title: NVIDIA CUDA 13.1: ‘CUDA Tile’ Abstraction Simplifies High-Level GPU Programming
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 04:32:05 +0000
════════════════════════
⌗ Tags: #Technology #Abstraction #AI Workloads #CUDA 13.1 #CUDA Tile #cuTile #GPU Programming #Nvidia #SIMT #Tensor Cores
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 04:32:05 +0000
════════════════════════
⌗ Tags: #Technology #Abstraction #AI Workloads #CUDA 13.1 #CUDA Tile #cuTile #GPU Programming #Nvidia #SIMT #Tensor Cores
Penetration Testing Tools
NVIDIA CUDA 13.1: 'CUDA Tile' Abstraction Simplifies High-Level GPU Programming
NVIDIA has announced the most significant update to the CUDA platform since its inception in 2006. With CUDA
⤷ Title: Alpine Linux 3.23 Released: Adopts 6.18 LTS Kernel & Unveils APK 3.0 Package Manager
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 04:31:10 +0000
════════════════════════
⌗ Tags: #Linux #Alpine Linux #APK 3.0.0 #Containers #Linux 3.23 #Linux 6.18 #LTS Kernel #Minimalist OS #musl libc #Package Manager
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 04:31:10 +0000
════════════════════════
⌗ Tags: #Linux #Alpine Linux #APK 3.0.0 #Containers #Linux 3.23 #Linux 6.18 #LTS Kernel #Minimalist OS #musl libc #Package Manager
Penetration Testing Tools
Alpine Linux 3.23 Released: Adopts 6.18 LTS Kernel & Unveils APK 3.0 Package Manager
The latest cycle of updates within the Linux distribution ecosystem closes the year with a notable milestone: Alpine
⤷ Title: Zero-Click Threat: New Attacks Turn AI Browsers into Google Drive Wipers
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 04:27:00 +0000
════════════════════════
⌗ Tags: #Malware #AI browser #data loss #Google Drive Wiper #HashJack #OAuth Security #Perplexity Comet #Prompt Injection #Zero_Click Attack
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 04:27:00 +0000
════════════════════════
⌗ Tags: #Malware #AI browser #data loss #Google Drive Wiper #HashJack #OAuth Security #Perplexity Comet #Prompt Injection #Zero_Click Attack
Penetration Testing Tools
Zero-Click Threat: New Attacks Turn AI Browsers into Google Drive Wipers
Researchers at Striker STAR Labs have detailed a new attack against agent-based browsers that can turn an ordinary
⤷ Title: Phishing Kits Steal Cards, Bind to Apple Pay/Google Wallet via Fake Stores
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 04:22:42 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Apple Pay #Card Binding #Fake Stores #Google Wallet #Mobile Wallet Fraud #phishing #SecAlliance #Smishing #T_Mobile Scam
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 04:22:42 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Apple Pay #Card Binding #Fake Stores #Google Wallet #Mobile Wallet Fraud #phishing #SecAlliance #Smishing #T_Mobile Scam
Penetration Testing Tools
Phishing Kits Steal Cards, Bind to Apple Pay/Google Wallet via Fake Stores
Chinese phishing groups that inundate users with endless SMS alerts about a “delivery problem” or an “unpaid fine”
⤷ Title: GhostFrame: Stealthy Iframe Phishing Toolkit Fuels 1 Million+ Covert Attacks
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 04:20:00 +0000
════════════════════════
⌗ Tags: #Malware #Barracuda #Covert Attack #cybercrime #GhostFrame #Iframe Attack #Phishing Toolkit #Social Engineering #web security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 04:20:00 +0000
════════════════════════
⌗ Tags: #Malware #Barracuda #Covert Attack #cybercrime #GhostFrame #Iframe Attack #Phishing Toolkit #Social Engineering #web security
Penetration Testing Tools
GhostFrame: Stealthy Iframe Phishing Toolkit Fuels 1 Million+ Covert Attacks
The new malicious distribution tool GhostFrame has spread with remarkable speed throughout the cybercriminal ecosystem, becoming the source
⤷ Title: China APTs Exploiting React Server RCE (CVE-2025-55182) Hours After Disclosure
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 04:18:36 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Vulnerability #AWS MadPot #China APT #CVE_2025_55182 #Earth Lamia #Jackpot Panda #Patch Now #RCE #React2Shell #Supply Chain
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 04:18:36 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Vulnerability #AWS MadPot #China APT #CVE_2025_55182 #Earth Lamia #Jackpot Panda #Patch Now #RCE #React2Shell #Supply Chain
Penetration Testing Tools
China APTs Exploiting React Server RCE (CVE-2025-55182) Hours After Disclosure
Two China-linked hacking groups began exploiting a critical vulnerability in React Server Components just hours after it became
⤷ Title: Cloudflare Outage 2.0: Faulty React Patch Configuration Disrupts Major Websites
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 04:17:01 +0000
════════════════════════
⌗ Tags: #Technology #Cloudflare #Configuration Error #Internet Centralization #LinkedIn #Outage #React Server Components #WAF #Zoom
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 04:17:01 +0000
════════════════════════
⌗ Tags: #Technology #Cloudflare #Configuration Error #Internet Centralization #LinkedIn #Outage #React Server Components #WAF #Zoom
Penetration Testing Tools
Cloudflare Outage 2.0: Faulty React Patch Configuration Disrupts Major Websites
Cloudflare’s services suffered yet another disruption on Friday morning, rendering LinkedIn, Zoom, Downdetector, and a number of other
⤷ Title: Developer Alert: Fake VS Code Extension Deploys OctoRAT via Multi-Stage Anivia Loader
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 04:08:51 +0000
════════════════════════
⌗ Tags: #Malware #Anivia Loader #Credential Theft #Developer Security #OctoRAT #Prettier_vscode_plus #supply chain attack #VS Code
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 04:08:51 +0000
════════════════════════
⌗ Tags: #Malware #Anivia Loader #Credential Theft #Developer Security #OctoRAT #Prettier_vscode_plus #supply chain attack #VS Code
Penetration Testing Tools
Developer Alert: Fake VS Code Extension Deploys OctoRAT via Multi-Stage Anivia Loader
At the end of November, a team of bug hunters uncovered an infection chain that began with a
⤷ Title: FreeBSD 15.0 Arrives: New 4-Year Lifecycle, pkgbase Updates, and Massive ZFS/Jail Upgrades
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 04:01:31 +0000
════════════════════════
⌗ Tags: #Linux #BSD #FreeBSD 15.0 #Jails #Lifetime Policy #Linux Drivers #operating system #pkgbase #Reproducible Builds #Unix #ZFS
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 04:01:31 +0000
════════════════════════
⌗ Tags: #Linux #BSD #FreeBSD 15.0 #Jails #Lifetime Policy #Linux Drivers #operating system #pkgbase #Reproducible Builds #Unix #ZFS
Penetration Testing Tools
FreeBSD 15.0 Arrives: New 4-Year Lifecycle, pkgbase Updates, and Massive ZFS/Jail Upgrades
Nearly two years after the debut of the 14.0 branch, the FreeBSD project has unveiled a major new
⤷ Title: IDOR & Parameter Tampering Vulnerability — How a Simple URL Change Exposed Hidden Content
════════════════════════
𐀪 Author: Sabuj Kumar Modak
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 05:49:56 GMT
════════════════════════
⌗ Tags: #bugs #penetration_testing #vapt #idor_vulnerability #bug_bounty
════════════════════════
𐀪 Author: Sabuj Kumar Modak
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 05:49:56 GMT
════════════════════════
⌗ Tags: #bugs #penetration_testing #vapt #idor_vulnerability #bug_bounty
Medium
IDOR & Parameter Tampering Vulnerability — How a Simple URL Change Exposed Hidden Content
A few days ago, while testing a web platform of a company (let’s call it example.com), I discovered a classic yet dangerous vulnerability…
⤷ Title: How I Discovered a Price Manipulation Bug While Buying a Simple Product
════════════════════════
𐀪 Author: Sabuj Kumar Modak
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 04:57:27 GMT
════════════════════════
⌗ Tags: #bug_bounty #vulnerability #web_vapt #cybersecurity #idor_vulnerability
════════════════════════
𐀪 Author: Sabuj Kumar Modak
════════════════════════
ⴵ Time: Mon, 08 Dec 2025 04:57:27 GMT
════════════════════════
⌗ Tags: #bug_bounty #vulnerability #web_vapt #cybersecurity #idor_vulnerability
Medium
How I Discovered a Price Manipulation Bug While Buying a Simple Product
A few days ago, I was trying to purchase a product from a website. Everything looked normal during checkout, but something caught my…