⤷ Title: Zero-Day Chronomaly Exploit Grants Root Access to Vulnerable Linux Kernels
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:22:34 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Android security #Chronomaly #CVE_2025_38352 #farazsth98 #InfoSec 2026 #Linux Kernel #POSIX CPU Timers #privilege escalation #Root Exploit #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:22:34 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Android security #Chronomaly #CVE_2025_38352 #farazsth98 #InfoSec 2026 #Linux Kernel #POSIX CPU Timers #privilege escalation #Root Exploit #zero_day
Daily CyberSecurity
Zero-Day Chronomaly Exploit Grants Root Access to Vulnerable Linux Kernels
Cybersecurity researcher farazsth98 has presented new findings related to an exploited security issue in Linux kernel flaw that could be abused by an attacker to privilege escalation. The vulnerab…
⤷ Title: The ClickFix Trap: PHALT#BLYX Targets Hotels with Fake Blue Screens and DCRat
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:18:45 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AsyncRAT #Booking.com Scam #BSOD Malware #ClickFix #Cyber Espionage 2026 #DCRat #Hospitality Security #PHALT#BLYX #Securonix #social engineering
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:18:45 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AsyncRAT #Booking.com Scam #BSOD Malware #ClickFix #Cyber Espionage 2026 #DCRat #Hospitality Security #PHALT#BLYX #Securonix #social engineering
Daily CyberSecurity
The ClickFix Trap: PHALT#BLYX Targets Hotels with Fake Blue Screens and DCRat
A sophisticated new cyber-espionage campaign is targeting the hospitality industry, turning everyday booking management into a nightmare scenario. Securonix threat researchers have uncovered a ste…
⤷ Title: Popular Chinese Utility Hijacked to Deploy Browser Malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:06:51 +0000
════════════════════════
⌗ Tags: #Malware #browser hijacking #cybersecurity #Data Privacy #Digital Signatures #Malware Analysis #Microsoft Edge Extensions #Mltab #Office Assistant #QiAnXin #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:06:51 +0000
════════════════════════
⌗ Tags: #Malware #browser hijacking #cybersecurity #Data Privacy #Digital Signatures #Malware Analysis #Microsoft Edge Extensions #Mltab #Office Assistant #QiAnXin #threat intelligence
Daily CyberSecurity
Popular Chinese Utility Hijacked to Deploy Browser Malware
The RedDrip Team at QiAnXin Technology’s Threat Intelligence Center has uncovered a widespread malware campaign hiding inside a popular productivity tool. The “Office Assistant” softwa…
⤷ Title: CVE-2025-67732: Dify Patch Fixes High-Severity Plaintext API Key Exposure
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:01:07 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI security #API security #Credential Harvesting #CVE_2025_67732 #Dify #Information Disclosure #Langgenius #LLM #OpenAI #Patch Alert #Plaintext Credentials #RAG
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:01:07 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #AI security #API security #Credential Harvesting #CVE_2025_67732 #Dify #Information Disclosure #Langgenius #LLM #OpenAI #Patch Alert #Plaintext Credentials #RAG
Daily CyberSecurity
CVE-2025-67732: Dify Patch Fixes High-Severity Plaintext API Key Exposure
Dify, the popular open-source platform used by developers to build Large Language Model (LLM) applications and RAG pipelines, has patched a high-severity vulnerability that could leave administrat…
⤷ Title: Why Your Cache Rules are Leaking User Data (Web Cache Deception)
════════════════════════
𐀪 Author: Nullifiedsec
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:58:19 GMT
════════════════════════
⌗ Tags: #vulnerability #cybersecurity #web_cache_deception #bug_bounty #web_cache_poisoning
════════════════════════
𐀪 Author: Nullifiedsec
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:58:19 GMT
════════════════════════
⌗ Tags: #vulnerability #cybersecurity #web_cache_deception #bug_bounty #web_cache_poisoning
Medium
Why Your Cache Rules are Leaking User Data (Web Cache Deception)
(The original article is in my website click here to view it)
⤷ Title: Nmap Guide for Bug Bounty: Port Scanning and WAF Evasion
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:02:25 GMT
════════════════════════
⌗ Tags: #bug_bounty #technology #cybersecurity #penetration_testing #hacking
════════════════════════
𐀪 Author: JPablo13
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:02:25 GMT
════════════════════════
⌗ Tags: #bug_bounty #technology #cybersecurity #penetration_testing #hacking
Medium
Nmap Guide for Bug Bounty: Port Scanning and WAF Evasion
Master Nmap for Bug Bounty: rapid scanning techniques, use of NSE scripts, and advanced strategies for evading firewalls and WAFs.
⤷ Title: JTAG Is the Quietest Backdoor You’ve Never Logged
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 01:13:38 GMT
════════════════════════
⌗ Tags: #jtag #backdoor #programming #hacking_tools #hacking
════════════════════════
𐀪 Author: Aeon Flex, Elriel Assoc. 2133 [NEON MAXIMA]
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 01:13:38 GMT
════════════════════════
⌗ Tags: #jtag #backdoor #programming #hacking_tools #hacking
Medium
JTAG Is the Quietest Backdoor You’ve Never Logged
Photo by Rene on Unsplash
⤷ Title: Tanuki -Writeup
════════════════════════
𐀪 Author: 7s26Simon
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:15:02 GMT
════════════════════════
⌗ Tags: #ctf_writeup #bug_bounty_writeup #cybersecurity #bugforge #xxe
════════════════════════
𐀪 Author: 7s26Simon
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 00:15:02 GMT
════════════════════════
⌗ Tags: #ctf_writeup #bug_bounty_writeup #cybersecurity #bugforge #xxe
Medium
Tanuki -Writeup
I recently became aware of bugforge.io , a great new platform that’s still in its infancy but has a lot of potential. They do a daily…
⤷ Title: Automating HackerOne Scope Parsing with qsv for Bug Bounty Recon
════════════════════════
𐀪 Author: Sam Hilliard
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:27:29 GMT
════════════════════════
⌗ Tags: #scripting #bug_bounty #recon #csv
════════════════════════
𐀪 Author: Sam Hilliard
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:27:29 GMT
════════════════════════
⌗ Tags: #scripting #bug_bounty #recon #csv
Medium
Automating HackerOne Scope Parsing with qsv for Bug Bounty Recon
Before you start bug hunting on a new program, you need to feed the right assets to the right tools for automated recon. Sorting through…
⤷ Title: From Code to Cloud: How App Security Audits Protect Your Digital Assets
════════════════════════
𐀪 Author: Smart City System - HR Software | HRMS | Payroll
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:48:35 GMT
════════════════════════
⌗ Tags: #application_security #app_security #app_security_audit #web_app_security #web_application_security
════════════════════════
𐀪 Author: Smart City System - HR Software | HRMS | Payroll
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:48:35 GMT
════════════════════════
⌗ Tags: #application_security #app_security #app_security_audit #web_app_security #web_application_security
Medium
From Code to Cloud: How App Security Audits Protect Your Digital Assets
Modern applications no longer reside in a single location. They span source code repositories, development pipelines, cloud platforms…
⤷ Title: Hack Supreme Duelist Stickman
════════════════════════
𐀪 Author: Apkpuredev
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:12:53 GMT
════════════════════════
⌗ Tags: #supreme_duelist_stickman #apk_games #apkpure #games #hacking
════════════════════════
𐀪 Author: Apkpuredev
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:12:53 GMT
════════════════════════
⌗ Tags: #supreme_duelist_stickman #apk_games #apkpure #games #hacking
Medium
Hack Supreme Duelist Stickman
Hack Supreme Duelist Stickman là tựa game chiến đấu đầy hấp dẫn, với tính năng vô hạn tiền, giúp bạn không cần lo lắng về việc thiếu tài…
⤷ Title: TryHackMe Microsoft Sentinel Module
════════════════════════
𐀪 Author: Bethany House
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:35:33 GMT
════════════════════════
⌗ Tags: #microsoft_sentinel #tryhackme_writeup #tryhackme_walkthrough #tryhackme
════════════════════════
𐀪 Author: Bethany House
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:35:33 GMT
════════════════════════
⌗ Tags: #microsoft_sentinel #tryhackme_writeup #tryhackme_walkthrough #tryhackme
Medium
TryHackMe Microsoft Sentinel Module
Hello Everyone, today I will be discussing a walkthrough of TryHackMe’s Microsoft Sentinel module. My goal is to work through this module…
⤷ Title: 2026 Techniques to find Hidden Bugcrowd & HackerOne Programs
════════════════════════
𐀪 Author: Abhirup Konwar
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:42:13 GMT
════════════════════════
⌗ Tags: #osint_tool #osint #ethical_hacking #bug_bounty_hunter #pentesting
════════════════════════
𐀪 Author: Abhirup Konwar
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:42:13 GMT
════════════════════════
⌗ Tags: #osint_tool #osint #ethical_hacking #bug_bounty_hunter #pentesting
Medium
2026 Techniques to find Hidden Bugcrowd & HackerOne Programs
How to find bug bounty programs via OSINT Techniques
⤷ Title: What the WIRED Subscriber Leak Reveals About Modern Systems
════════════════════════
𐀪 Author: Deven Chhajed
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:16:57 GMT
════════════════════════
⌗ Tags: #digital_trust #cybersecurity #wired #data_breach #api_security
════════════════════════
𐀪 Author: Deven Chhajed
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 03:16:57 GMT
════════════════════════
⌗ Tags: #digital_trust #cybersecurity #wired #data_breach #api_security
Medium
What the WIRED Subscriber Leak Reveals About Modern Systems
WIRED has spent decades explaining how technology shapes power, privacy, and society. That’s why the recent exposure of its subscriber data…
⤷ Title: When prompt engineering goes undercover
════════════════════════
𐀪 Author: R.E.Keerthana
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 02:32:27 GMT
════════════════════════
⌗ Tags: #ai_recruiting #prompt_engineering #sql_injection #information_retrieval
════════════════════════
𐀪 Author: R.E.Keerthana
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 02:32:27 GMT
════════════════════════
⌗ Tags: #ai_recruiting #prompt_engineering #sql_injection #information_retrieval
Medium
When prompt engineering goes undercover
Stumbled upon this Reddit thread: Someone hid an AI prompt in white text, smallest font size, inside their resume and got shortlisted.
⤷ Title: Ongoing Attacks Exploiting Critical RCE Vulnerability in Legacy D-Link DSL Routers
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 10:01:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 10:01:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Unmasking the Code: JS Analyzer Automates JavaScript Recon & Secret Discovery
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 04:44:55 +0000
════════════════════════
⌗ Tags: #Open Source Tool #API Discovery #bug bounty #Burp Suite #InfoSec 2026 #JavaScript #JS Analyzer #Pentesting #Recon #secret scanning #Static Analysis
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 04:44:55 +0000
════════════════════════
⌗ Tags: #Open Source Tool #API Discovery #bug bounty #Burp Suite #InfoSec 2026 #JavaScript #JS Analyzer #Pentesting #Recon #secret scanning #Static Analysis
Information Security News
Unmasking the Code: JS Analyzer Automates JavaScript Recon & Secret Discovery
JS Analyzer A powerful Burp Suite extension for JavaScript static analysis. Extracts API endpoints, URLs, secrets, and email addresses from JavaScript files with intelligent noise filtering. The g…
⤷ Title: Love and Larceny: How Hinge Was Repurposed Into a Malware Control Hub
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 04:39:00 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Android Hacking #API Security #C2 Server #Command and Control #Cyber Security 2026 #Data Exfiltration #Hinge #malware #Matt Wiese #Steganography
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 04:39:00 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Android Hacking #API Security #C2 Server #Command and Control #Cyber Security 2026 #Data Exfiltration #Hinge #malware #Matt Wiese #Steganography
Information Security News
Love and Larceny: How Hinge Was Repurposed Into a Malware Control Hub
A security researcher has demonstrated an unconventional scenario in which the popular dating app Hinge can be repurposed into an improvised command-and-control server—an infrastructure through wh…
⤷ Title: The Discord Hijacker: VVS Stealer Uses PyArmor to Evade EDR
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 04:37:30 +0000
════════════════════════
⌗ Tags: #Malware #Credential Theft #Cybersecurity 2026 #Discord #Infosec #Infostealer #malware #PyArmor #Python Malware #Unit 42 #VVS Stealer
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 04:37:30 +0000
════════════════════════
⌗ Tags: #Malware #Credential Theft #Cybersecurity 2026 #Discord #Infosec #Infostealer #malware #PyArmor #Python Malware #Unit 42 #VVS Stealer
Information Security News
The Discord Hijacker: VVS Stealer Uses PyArmor to Evade EDR
A detailed technical analysis of the malware known as VVS Stealer, also referred to as VVS $tealer, has surfaced online. This data-stealing tool is written in Python and primarily targets Discord …
⤷ Title: The Unpatchable Breach: PS5 BootROM Keys Leak Ignites Jailbreak Scene
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 04:35:08 +0000
════════════════════════
⌗ Tags: #Data Leak #2026 News #BootROM #Custom Firmware #Cyber Security #emulation #Hardware Hack #Homebrew #jailbreak #PlayStation 5 #PS5 #Sony
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 07 Jan 2026 04:35:08 +0000
════════════════════════
⌗ Tags: #Data Leak #2026 News #BootROM #Custom Firmware #Cyber Security #emulation #Hardware Hack #Homebrew #jailbreak #PlayStation 5 #PS5 #Sony
Information Security News
The Unpatchable Breach: PS5 BootROM Keys Leak Ignites Jailbreak Scene
At the very end of 2025, a leak surfaced within PlayStation 5 enthusiast communities that sounds like a worst-case scenario for Sony. According to members of the console hacking scene and several …