⤷ Title: Apple & Google Issue New Spyware Alerts, Targeting Intellexa Zero-Day Victims
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:28:46 +0000
════════════════════════
⌗ Tags: #Malware #Apple #google #Intellexa #Spyware Alerts #State_Linked Attacks #Surveillance Tech #Threat Analysis Group #Zero_Day Exploitation
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:28:46 +0000
════════════════════════
⌗ Tags: #Malware #Apple #google #Intellexa #Spyware Alerts #State_Linked Attacks #Surveillance Tech #Threat Analysis Group #Zero_Day Exploitation
Penetration Testing Tools
Apple & Google Issue New Spyware Alerts, Targeting Intellexa Zero-Day Victims
The world’s largest technology companies have begun issuing notifications to users who may have been targeted by state-linked
⤷ Title: Cloudflare Outage Caused by Frantic Patching of Critical React2Shell (CVE-2025-55182) Flaw
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:27:51 +0000
════════════════════════
⌗ Tags: #Technology #Vulnerability #Chinese APT #Cloudflare #CVE_2025_55182 #Deserialization Flaw #Emergency Patch #Internet Fragility #Outage #React2Shell #WAF Configuration
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:27:51 +0000
════════════════════════
⌗ Tags: #Technology #Vulnerability #Chinese APT #Cloudflare #CVE_2025_55182 #Deserialization Flaw #Emergency Patch #Internet Fragility #Outage #React2Shell #WAF Configuration
Penetration Testing Tools
Cloudflare Outage Caused by Frantic Patching of Critical React2Shell (CVE-2025-55182) Flaw
Cloudflare’s global infrastructure has suffered a second major outage in less than a month — and it has
⤷ Title: FBI Warns: Deepfake Kidnapping Scams Use AI to Fabricate Image ‘Proof’ for Extortion
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:19:46 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AI Fraud #Deepfake Scam #FBI Warning #Image Manipulation #Kidnapping Extortion #Missing Persons #Social Engineering #WormGPT
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:19:46 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AI Fraud #Deepfake Scam #FBI Warning #Image Manipulation #Kidnapping Extortion #Missing Persons #Social Engineering #WormGPT
Penetration Testing Tools
FBI Warns: Deepfake Kidnapping Scams Use AI to Fabricate Image 'Proof' for Extortion
Malefactors are increasingly exploiting photographs and video clips sourced from open platforms, presenting them as “evidence” of an
⤷ Title: Covert Backdoor: Array AG Gateway Exploit Allows Command Execution
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:18:22 +0000
════════════════════════
⌗ Tags: #Vulnerability #Array AG Series #Backdoor #Command Execution #Corporate Gateway #Corporate VPN #DesktopDirect #JPCERT #Security Advisory
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:18:22 +0000
════════════════════════
⌗ Tags: #Vulnerability #Array AG Series #Backdoor #Command Execution #Corporate Gateway #Corporate VPN #DesktopDirect #JPCERT #Security Advisory
Penetration Testing Tools
Covert Backdoor: Array AG Gateway Exploit Allows Command Execution
Hacker groups have exploited a security gap in Array AG Series corporate gateways, implanting covert management micro-programs and
⤷ Title: CRITICAL ALERT: Apache Tika XXE Flaw (CVSS 10.0) Allows File Read via PDF Files
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:15:32 +0000
════════════════════════
⌗ Tags: #Vulnerability #Apache Tika #CVE_2025_66516 #Patch Now #PDF Parser #Security Advisory #SSRF #Tika_core #XML External Entity #XXE
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:15:32 +0000
════════════════════════
⌗ Tags: #Vulnerability #Apache Tika #CVE_2025_66516 #Patch Now #PDF Parser #Security Advisory #SSRF #Tika_core #XML External Entity #XXE
Penetration Testing Tools
CRITICAL ALERT: Apache Tika XXE Flaw (CVSS 10.0) Allows File Read via PDF Files
On 4 December 2025, the Apache Software Foundation disclosed a critical vulnerability — CVE-2025-66516, rated the maximum CVSS
⤷ Title: Google Launches Gemini 3 Pro: Next-Gen Multimodal AI That Reasons Spatially & Converts Documents to Code
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:13:13 +0000
════════════════════════
⌗ Tags: #Google #AI Agent #CharXiv #Document Understanding #Google Gemini 3 Pro #LaTeX #Multimodal AI #Screen Comprehension #Video Reasoning #Visual Reasoning
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:13:13 +0000
════════════════════════
⌗ Tags: #Google #AI Agent #CharXiv #Document Understanding #Google Gemini 3 Pro #LaTeX #Multimodal AI #Screen Comprehension #Video Reasoning #Visual Reasoning
Penetration Testing Tools
Google Launches Gemini 3 Pro: Next-Gen Multimodal AI That Reasons Spatially & Converts Documents to Code
Google has unveiled Gemini 3 Pro — a new generation of multimodal models that not only see images
⤷ Title: Linux 6.19: Kernel Gains Foundational PCIe Link Encryption for AMD SEV-TIO
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:12:24 +0000
════════════════════════
⌗ Tags: #Linux #AMD SEV_TIO #confidential computing #IDE Protocol #Kernel Module #Linux 6.19 #PCIe Encryption #security #TDISP #TSM
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:12:24 +0000
════════════════════════
⌗ Tags: #Linux #AMD SEV_TIO #confidential computing #IDE Protocol #Kernel Module #Linux 6.19 #PCIe Encryption #security #TDISP #TSM
Penetration Testing Tools
Linux 6.19: Kernel Gains Foundational PCIe Link Encryption for AMD SEV-TIO
Over the weekend, one of the most compelling updates in recent months landed in the Linux 6.19 branch:
⤷ Title: IDEsaster: 30+ Vulnerabilities Found in AI-IDEs Allow Silent RCE and Data Theft
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:10:01 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI_IDEs #Cursor #CVE #Data Exfiltration #GitHub Copilot #IDEsaster #Prompt Injection #RCE #Secure for AI #Supply Chain
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:10:01 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI_IDEs #Cursor #CVE #Data Exfiltration #GitHub Copilot #IDEsaster #Prompt Injection #RCE #Secure for AI #Supply Chain
Penetration Testing Tools
IDEsaster: 30+ Vulnerabilities Found in AI-IDEs Allow Silent RCE and Data Theft
More than thirty vulnerabilities have been uncovered in popular AI-enhanced development environments, all of which allow attackers —
⤷ Title: React2Shell: The Most Serious React Vulnerability Since Log4Shell?
════════════════════════
𐀪 Author: Hussein Ali
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:54:54 GMT
════════════════════════
⌗ Tags: #nextjs #web_development #react #application_security #cybersecurity
════════════════════════
𐀪 Author: Hussein Ali
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:54:54 GMT
════════════════════════
⌗ Tags: #nextjs #web_development #react #application_security #cybersecurity
Medium
React2Shell: The Most Serious React Vulnerability Since Log4Shell?
On December 3, 2025, the React team disclosed a critical remote code execution (RCE) vulnerability in React Server Components (RSC)…
⤷ Title: Tải Hack Supreme Duelist Stickman (Full Tiền, Max Level) v4.0.4
════════════════════════
𐀪 Author: Game4u
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:47:29 GMT
════════════════════════
⌗ Tags: #hacking #game4u #games
════════════════════════
𐀪 Author: Game4u
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 03:47:29 GMT
════════════════════════
⌗ Tags: #hacking #game4u #games
Medium
Tải Hack Supreme Duelist Stickman (Full Tiền, Max Level) v4.0.4
Supreme Duelist Stickman là một game đối kháng hành động hấp dẫn, nơi người chơi điều khiển các nhân vật stickman trong các trận đấu gay…
⤷ Title: How I Study DFIR Every Day — My Routine, Tools, and Mindset
════════════════════════
𐀪 Author: Xeipher
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 02:11:28 GMT
════════════════════════
⌗ Tags: #cybersecurity #technology #hacking #information_technology #information_security
════════════════════════
𐀪 Author: Xeipher
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 02:11:28 GMT
════════════════════════
⌗ Tags: #cybersecurity #technology #hacking #information_technology #information_security
Medium
How I Study DFIR Every Day — My Routine, Tools, and Mindset
New month, new blog.
⤷ Title: Best Chrome extensions for OSINT
════════════════════════
𐀪 Author: loyalonlytoday
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 01:51:04 GMT
════════════════════════
⌗ Tags: #cybersecurity #osint_investigation #chrome_extension #osint #hacking
════════════════════════
𐀪 Author: loyalonlytoday
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 01:51:04 GMT
════════════════════════
⌗ Tags: #cybersecurity #osint_investigation #chrome_extension #osint #hacking
Medium
Best Chrome extensions for OSINT
30+ very useful extensions for your OSINT investigations
⤷ Title: Hack the Box “Precious” CTF Write-up
════════════════════════
𐀪 Author: Will Giles | Cybersecurity
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 02:17:45 GMT
════════════════════════
⌗ Tags: #hackthebox_writeup #cybersecurity #web_penetration_testing #penetration_testing #hackthebox
════════════════════════
𐀪 Author: Will Giles | Cybersecurity
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 02:17:45 GMT
════════════════════════
⌗ Tags: #hackthebox_writeup #cybersecurity #web_penetration_testing #penetration_testing #hackthebox
Medium
Hack the Box “Precious” CTF Write-up
A walkthrough of the Linux Machine “Precious” on Hack the Box
⤷ Title: TryHackMe: Overpass Writeup
════════════════════════
𐀪 Author: cbev
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 02:53:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #information_security #pentesting #tryhackme
════════════════════════
𐀪 Author: cbev
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 02:53:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #information_security #pentesting #tryhackme
Medium
TryHackMe: Overpass Writeup
This box is ranked easy-difficulty on TryHackMe and is one of the most popular challenges as it puts our fundamentals to the test. The goal…
⤷ Title: Remote Code Execution Vulnerability in React Server Components CVE-2025–55182 (React2Shell)
════════════════════════
𐀪 Author: Priyesh Pahade
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 02:08:02 GMT
════════════════════════
⌗ Tags: #react2shell_vulnerability #react2shell #rce_vulnerability #cve_2025_55182 #react_rce_2025
════════════════════════
𐀪 Author: Priyesh Pahade
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 02:08:02 GMT
════════════════════════
⌗ Tags: #react2shell_vulnerability #react2shell #rce_vulnerability #cve_2025_55182 #react_rce_2025
Medium
Remote Code Execution Vulnerability in React Server Components CVE-2025–55182 (React2Shell)
What Happened?
⤷ Title: macOS Privilege Escalation Flaw Bypasses Patch for Root Access, Poc Releases!
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 02:59:46 +0000
════════════════════════
⌗ Tags: #Vulnerability #.zprofile #Bypass #LPE #macOS #PackageKit #privilege escalation #Zsh
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 02:59:46 +0000
════════════════════════
⌗ Tags: #Vulnerability #.zprofile #Bypass #LPE #macOS #PackageKit #privilege escalation #Zsh
Daily CyberSecurity
macOS Privilege Escalation Flaw Bypasses Patch for Root Access, Poc Releases!
Security researcher Morris Richman has disclosed a new privilege escalation vulnerability, CVE-2025-43472, which could allow an attacker to seize root privileges by exploiting a subtle oversight i…
⤷ Title: Critical Authentication Bypass Flaws Discovered in Ruby SAML Library (CVE-2025-66567 & CVE-2025-66568)
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 02:29:23 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #Canonicalization #CVE_2025_66567 #Digest Bypass #Ruby SAML #XML Parser Differential
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 02:29:23 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #Canonicalization #CVE_2025_66567 #Digest Bypass #Ruby SAML #XML Parser Differential
Daily CyberSecurity
Critical Authentication Bypass Flaws Discovered in Ruby SAML Library (CVE-2025-66567 & CVE-2025-66568)
A pair of critical security vulnerabilities has been disclosed in the Ruby SAML library, a foundational tool used by developers to implement client-side SAML authorization. Both flaws carry a crit…
⤷ Title: CISA KEV Alert: EOL D-Link and Array Networks Command Injection Under Active Attack
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 02:05:06 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Array Networks #CISA KEV #Command Injection #CVE_2025_66644 #D_Link #EOL #Japan #webshell
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 02:05:06 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Array Networks #CISA KEV #Command Injection #CVE_2025_66644 #D_Link #EOL #Japan #webshell
Daily CyberSecurity
CISA KEV Alert: EOL D-Link and Array Networks Command Injection Under Active Attack
CISA KEV adds EOL D-Link and Array Networks flaws. ArrayOS AG (CVE-2025-66644) is actively exploited in Japan to drop PHP webshells. Retire EOL D-Link and patch ArrayOS AG immediately.
⤷ Title: Cracking the Mystery of Domains with nslookup️♂️
════════════════════════
𐀪 Author: Cybeague Technologies
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 05:53:13 GMT
════════════════════════
⌗ Tags: #security #dns #domains #networking #hacking
════════════════════════
𐀪 Author: Cybeague Technologies
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 05:53:13 GMT
════════════════════════
⌗ Tags: #security #dns #domains #networking #hacking
Medium
Cracking the Mystery of Domains with nslookup🕵️♂️
Your go-to command for uncovering what’s really behind a website name
⤷ Title: The Year of the “Silent Breakdown”: 2025 Cybersecurity State of the Union
════════════════════════
𐀪 Author: The Opscore Labs
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 05:44:34 GMT
════════════════════════
⌗ Tags: #hacking #information_security #cybercrime #cybersecurity #security
════════════════════════
𐀪 Author: The Opscore Labs
════════════════════════
ⴵ Time: Tue, 09 Dec 2025 05:44:34 GMT
════════════════════════
⌗ Tags: #hacking #information_security #cybercrime #cybersecurity #security
Medium
The Year of the “Silent Breakdown”: 2025 Cybersecurity State of the Union
If 2024 was the year of AI experimentation, 2025 has cemented itself as the year of AI Weaponizations and Infrastructure Fragility. The…