⤷ Title: France Arrests 22 Year Old After Hack of Interior Ministry Systems
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 00:26:27 +0000
════════════════════════
⌗ Tags: #Cyber Crime #BreachForums #Cyber Attack #Cybersecurity #data breach #France #hacking #ShinyHunters
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 00:26:27 +0000
════════════════════════
⌗ Tags: #Cyber Crime #BreachForums #Cyber Attack #Cybersecurity #data breach #France #hacking #ShinyHunters
Hackread
France Arrests 22 Year Old After Hack of Interior Ministry Systems
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: $5,000 Bounty: How I Hijacked Google Gemini’s UI via Python Code Execution
════════════════════════
𐀪 Author: janet zech
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 00:05:51 GMT
════════════════════════
⌗ Tags: #technology #ai #security #llm #bug_bounty
════════════════════════
𐀪 Author: janet zech
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 00:05:51 GMT
════════════════════════
⌗ Tags: #technology #ai #security #llm #bug_bounty
Medium
$5,000 Bounty: How I Hijacked Google Gemini’s UI via Python Code Execution
This exploit can be weaponized to target anyone,no user is beyond its reach.
⤷ Title: SSRF Vulnerability Tryhackme Walkthrough
════════════════════════
𐀪 Author: Mainekhacker
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 00:42:44 GMT
════════════════════════
⌗ Tags: #ssrf_walkthrough #tryhackme_walkthrough #cybersecurity #web_hacking #hacking
════════════════════════
𐀪 Author: Mainekhacker
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 00:42:44 GMT
════════════════════════
⌗ Tags: #ssrf_walkthrough #tryhackme_walkthrough #cybersecurity #web_hacking #hacking
Medium
SSRF Vulnerability Tryhackme Walkthrough
SSRF is a web application security vulnerability that allows the attacker to force the server to make unauthorised requests to any local or…
⤷ Title: CTF Flow| HackingClub
════════════════════════
𐀪 Author: Henrique
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 00:09:06 GMT
════════════════════════
⌗ Tags: #ctf_writeup #hacking #offensive_security #pentesting
════════════════════════
𐀪 Author: Henrique
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 00:09:06 GMT
════════════════════════
⌗ Tags: #ctf_writeup #hacking #offensive_security #pentesting
Medium
CTF Flow | HackingClub
Máquina : Flow
⤷ Title: Testability vs. Automatability: Why Most Automation Efforts Fail Before They Begin
════════════════════════
𐀪 Author: tanvi mittal
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 01:02:38 GMT
════════════════════════
⌗ Tags: #testing #penetration_testing #software_testing #software_development #test_automation
════════════════════════
𐀪 Author: tanvi mittal
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 01:02:38 GMT
════════════════════════
⌗ Tags: #testing #penetration_testing #software_testing #software_development #test_automation
Medium
Testability vs. Automatability: Why Most Automation Efforts Fail Before They Begin
Test automation rarely fails because teams chose the wrong tool.
It fails much earlier often before the first test is written when…
It fails much earlier often before the first test is written when…
⤷ Title: GPO Stealth: Turn Active Directory Into Your C2 With the New GroupPolicyBackdoor Framework
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:59:56 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Active Directory #DEF CON 33 #GPO Abuse #GroupPolicyBackdoor #LDAP #privilege escalation #python #red teaming #SMB #Stealth Exploitation #Synacktiv
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:59:56 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Active Directory #DEF CON 33 #GPO Abuse #GroupPolicyBackdoor #LDAP #privilege escalation #python #red teaming #SMB #Stealth Exploitation #Synacktiv
Penetration Testing Tools
GPO Stealth: Turn Active Directory Into Your C2 With the New GroupPolicyBackdoor Framework
Presented at DEF CON 33, GroupPolicyBackdoor is a Python framework for stealthy GPO manipulation, link poisoning, and AD privilege escalation.
⤷ Title: The Plagiarism Trap: How ForumTroll APT is Holding Academic Careers Hostage to Deploy Spyware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:55:26 +0000
════════════════════════
⌗ Tags: #Cyber Security #Academic Espionage #COM Hijacking #Dante Spyware #ForumTroll #Kaspersky Lab #LeetAgent #phishing #Russian Universities #threat intelligence #Tuoni Framework
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:55:26 +0000
════════════════════════
⌗ Tags: #Cyber Security #Academic Espionage #COM Hijacking #Dante Spyware #ForumTroll #Kaspersky Lab #LeetAgent #phishing #Russian Universities #threat intelligence #Tuoni Framework
Penetration Testing Tools
The Plagiarism Trap: How ForumTroll APT is Holding Academic Careers Hostage to Deploy Spyware
In October 2025, experts at Kaspersky Lab uncovered a new wave of targeted attacks attributed to the ForumTroll
⤷ Title: The Invisible Roommate: How the GhostPairing Scam Steals Your WhatsApp Without a Password
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:53:30 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Account Takeover #Cybersecurity 2025 #Device Pairing #Gen Digital #GhostPairing #phishing #privacy #QR Code Scam #Social Engineering #WhatsApp
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:53:30 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Account Takeover #Cybersecurity 2025 #Device Pairing #Gen Digital #GhostPairing #phishing #privacy #QR Code Scam #Social Engineering #WhatsApp
Penetration Testing Tools
The Invisible Roommate: How the GhostPairing Scam Steals Your WhatsApp Without a Password
Researchers at Gen have reported a new WhatsApp account-takeover technique dubbed GhostPairing. The attack appears mundane and arouses
⤷ Title: The Living Mesh: Ink Dragon Turns European Government Servers into a Global ShadowPad Relay Network
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:52:47 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT #Check Point Research #Cyber Espionage #Earth Alux #European Security #FINALDRAFT #IIS Malware #Ink Dragon #ShadowPad #SharePoint Exploit
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:52:47 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT #Check Point Research #Cyber Espionage #Earth Alux #European Security #FINALDRAFT #IIS Malware #Ink Dragon #ShadowPad #SharePoint Exploit
Penetration Testing Tools
The Living Mesh: Ink Dragon Turns European Government Servers into a Global ShadowPad Relay Network
Researchers at Check Point Research have uncovered a large-scale espionage operation conducted by the Chinese APT group Ink
⤷ Title: SYSTEM via WAC: How a Permissions Oversight in Windows Admin Center Leads to Full Host Compromise
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:50:07 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_64669 #cybersecurity #Cymulate #DLL hijacking #Microsoft #PowerShell #privilege escalation #TOCTOU #Windows Admin Center #Windows Server
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:50:07 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_64669 #cybersecurity #Cymulate #DLL hijacking #Microsoft #PowerShell #privilege escalation #TOCTOU #Windows Admin Center #Windows Server
Penetration Testing Tools
SYSTEM via WAC: How a Permissions Oversight in Windows Admin Center Leads to Full Host Compromise
Cymulate Research Labs has uncovered a local privilege escalation vulnerability in Microsoft Windows Admin Center (WAC) version 2.4.2.1,
⤷ Title: The Silent Listener: New DRBControl Backdoor Variant Uses Network Sniffing to Evade Detection
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:48:07 +0000
════════════════════════
⌗ Tags: #Malware #APT27 #APT41 #Cyber Espionage #DLL Sideloading #DRBControl #IIJ #malware analysis #Mofu Loader #Promiscuous Mode #ShadowPad #Type 1 Backdoor
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:48:07 +0000
════════════════════════
⌗ Tags: #Malware #APT27 #APT41 #Cyber Espionage #DLL Sideloading #DRBControl #IIJ #malware analysis #Mofu Loader #Promiscuous Mode #ShadowPad #Type 1 Backdoor
Penetration Testing Tools
The Silent Listener: New DRBControl Backdoor Variant Uses Network Sniffing to Evade Detection
Japanese company Internet Initiative Japan (IIJ) has reported observing a new variant of the malware known as Type
⤷ Title: The Trojan Book: How a Malicious E-book Can Hijack Your Entire Amazon Account
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:37:25 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Amazon Kindle #bug bounty #cybersecurity #E_book Malware #IoT Security #Kindle Patch #Session Cookie Theft #sideloading #Thales #Valentino Ricotta
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:37:25 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Amazon Kindle #bug bounty #cybersecurity #E_book Malware #IoT Security #Kindle Patch #Session Cookie Theft #sideloading #Thales #Valentino Ricotta
Penetration Testing Tools
The Trojan Book: How a Malicious E-book Can Hijack Your Entire Amazon Account
A security researcher has demonstrated how a “booby-trapped” e-book can turn an ordinary Kindle into a gateway to
⤷ Title: Hidden in Plain Sight: How the GhostPoster Campaign Injected Malware Into 50,000 Firefox Users
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:36:09 +0000
════════════════════════
⌗ Tags: #Malware #Ad Fraud #browser security #cybersecurity #Firefox Extensions #GhostPoster #JavaScript Loader #Koi Security #Malware_as_a_Service #Mozilla #Steganography
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:36:09 +0000
════════════════════════
⌗ Tags: #Malware #Ad Fraud #browser security #cybersecurity #Firefox Extensions #GhostPoster #JavaScript Loader #Koi Security #Malware_as_a_Service #Mozilla #Steganography
⤷ Title: The Five-Year Sleeper: Malicious NuGet Package Poses as Tracer.Fody to Drain Crypto Wallets
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:35:24 +0000
════════════════════════
⌗ Tags: #Malware #.NET #cybersecurity #Homoglyph Attack #Info_stealer #NuGet #Socket Threat Research #Stratis Wallet #supply chain attack #Tracer.Fody #Typosquatting
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:35:24 +0000
════════════════════════
⌗ Tags: #Malware #.NET #cybersecurity #Homoglyph Attack #Info_stealer #NuGet #Socket Threat Research #Stratis Wallet #supply chain attack #Tracer.Fody #Typosquatting
Penetration Testing Tools
The Five-Year Sleeper: Malicious NuGet Package Poses as Tracer.Fody to Drain Crypto Wallets
A covert threat has been uncovered within the .NET ecosystem, stemming from the substitution of a widely used
⤷ Title: Kill the Cipher: Microsoft to Disable RC4 Authentication by Mid-2026—Are You Ready?
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:32:48 +0000
════════════════════════
⌗ Tags: #Microsoft #Active Directory #AES_SHA1 #Audit 4768 #cybersecurity #Domain Controller #Encryption #Kerberos #PowerShell #RC4 #Windows Server
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:32:48 +0000
════════════════════════
⌗ Tags: #Microsoft #Active Directory #AES_SHA1 #Audit 4768 #cybersecurity #Domain Controller #Encryption #Kerberos #PowerShell #RC4 #Windows Server
Penetration Testing Tools
Kill the Cipher: Microsoft to Disable RC4 Authentication by Mid-2026—Are You Ready?
Microsoft has announced plans to retire the legacy RC4 algorithm from Windows authentication. The company is preparing changes
⤷ Title: Internet Rewired: Cloudflare 2025 Report Reveals a 19% Traffic Surge and the Rise of AI Bot Wars
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:31:43 +0000
════════════════════════
⌗ Tags: #Information Security #2025 Year in Review #AI Crawlers #bot traffic #Cloudflare Radar #DDoS attacks #Googlebot #internet security #Post_Quantum Cryptography #Starlink #Tech trends
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:31:43 +0000
════════════════════════
⌗ Tags: #Information Security #2025 Year in Review #AI Crawlers #bot traffic #Cloudflare Radar #DDoS attacks #Googlebot #internet security #Post_Quantum Cryptography #Starlink #Tech trends
Penetration Testing Tools
Internet Rewired: Cloudflare 2025 Report Reveals a 19% Traffic Surge and the Rise of AI Bot Wars
By the end of 2025, the internet had become even more tightly bound to cloud infrastructure, mobile traffic,
⤷ Title: Digital Crosshairs: Iran-Linked “Handala” Group Offers $30K Bounties for Israeli Engineers
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:29:53 +0000
════════════════════════
⌗ Tags: #Cyber Security #Cyber Intimidation #cyber warfare #David’s Sling #Doxxing #Handala #Iran #Israel #Patriot Missile #RedWanted #threat intelligence #Unit 8200
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:29:53 +0000
════════════════════════
⌗ Tags: #Cyber Security #Cyber Intimidation #cyber warfare #David’s Sling #Doxxing #Handala #Iran #Israel #Patriot Missile #RedWanted #threat intelligence #Unit 8200
Penetration Testing Tools
Digital Crosshairs: Iran-Linked "Handala" Group Offers $30K Bounties for Israeli Engineers
A new wave of pressure targeting Israeli professionals linked to the defense sector has moved beyond conventional cyberattacks
⤷ Title: Naughty List: SantaStealer Malware Unwrapped—The “New” Holiday Threat is Just Rebranded Code
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:29:11 +0000
════════════════════════
⌗ Tags: #Malware #App_Bound Encryption #BluelineStealer #Chrome Security #Cybersecurity 2025 #Data Theft #Infostealer #Malware_as_a_Service #phishing #Rapid7 #SantaStealer
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:29:11 +0000
════════════════════════
⌗ Tags: #Malware #App_Bound Encryption #BluelineStealer #Chrome Security #Cybersecurity 2025 #Data Theft #Infostealer #Malware_as_a_Service #phishing #Rapid7 #SantaStealer
Penetration Testing Tools
Naughty List: SantaStealer Malware Unwrapped—The "New" Holiday Threat is Just Rebranded Code
In the run-up to the New Year holidays, underground marketplaces often see a surge of freshly minted data-stealing
⤷ Title: The VPN Stand-off: Denmark Backtracks on Controversial VPN Ban Amid Authoritarian Concerns
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:27:42 +0000
════════════════════════
⌗ Tags: #Technology #Chat Control #copyright law #Denmark #Digital Privacy #EU Regulation #Geoblocking #Jakob Engel_Schmidt #Net Neutrality #Online Piracy #VPN
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:27:42 +0000
════════════════════════
⌗ Tags: #Technology #Chat Control #copyright law #Denmark #Digital Privacy #EU Regulation #Geoblocking #Jakob Engel_Schmidt #Net Neutrality #Online Piracy #VPN
Penetration Testing Tools
The VPN Stand-off: Denmark Backtracks on Controversial VPN Ban Amid Authoritarian Concerns
The Danish government has opened a public consultation on amendments to copyright and broadcasting laws that would make
⤷ Title: The Developer Win: GitHub Postpones Self-Hosted Runner Fee After Massive Community Outcry
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:19:25 +0000
════════════════════════
⌗ Tags: #Technology #CI/CD #Developer Backlash #DevOps #GitHub Actions #GitHub Changelog #GitHub Pricing #Microsoft #Platform Fee #Self_Hosted Runners #Tech News 2025
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 18 Dec 2025 03:19:25 +0000
════════════════════════
⌗ Tags: #Technology #CI/CD #Developer Backlash #DevOps #GitHub Actions #GitHub Changelog #GitHub Pricing #Microsoft #Platform Fee #Self_Hosted Runners #Tech News 2025
Daily CyberSecurity
The Developer Win: GitHub Postpones Self-Hosted Runner Fee After Massive Community Outcry
GitHub walks back its plan to charge $0.002/min for self-hosted runners, postponing the fee indefinitely following intense backlash from the community.