⤷ Title: Detect. Download. Extract. Automating Source Code Recovery with DotGit-Enhanced
════════════════════════
𐀪 Author: Maor Dayan - מאור דיין
════════════════════════
ⴵ Time: Sun, 08 Mar 2026 21:01:02 GMT
════════════════════════
⌗ Tags: #automating #threat_hunting #bug_bounty #git #security
════════════════════════
𐀪 Author: Maor Dayan - מאור דיין
════════════════════════
ⴵ Time: Sun, 08 Mar 2026 21:01:02 GMT
════════════════════════
⌗ Tags: #automating #threat_hunting #bug_bounty #git #security
Medium
Detect. Download. Extract. Automating Source Code Recovery with DotGit-Enhanced
If you spend any time in web application security, bug bounty hunting, or threat intelligence, you already know the goldmine that is an…
⤷ Title: Building a Reverse Shell Shellcode with Stardust
════════════════════════
𐀪 Author: S12 - 0x12Dark Development
════════════════════════
ⴵ Time: Sun, 08 Mar 2026 22:22:46 GMT
════════════════════════
⌗ Tags: #pentesting #hacking #malware #cybercrime #cybersecurity
════════════════════════
𐀪 Author: S12 - 0x12Dark Development
════════════════════════
ⴵ Time: Sun, 08 Mar 2026 22:22:46 GMT
════════════════════════
⌗ Tags: #pentesting #hacking #malware #cybercrime #cybersecurity
Medium
Building a Reverse Shell Shellcode with Stardust
In the previous post, we introduced the Stardust shellcode generator template and explored some of its key features, such as compile-time…
⤷ Title: OTP / Verification Code Brute Force Vulnerability
════════════════════════
𐀪 Author: Youssefelbakrey
════════════════════════
ⴵ Time: Sun, 08 Mar 2026 22:49:48 GMT
════════════════════════
⌗ Tags: #web_security #privacy #penetration_testing
════════════════════════
𐀪 Author: Youssefelbakrey
════════════════════════
ⴵ Time: Sun, 08 Mar 2026 22:49:48 GMT
════════════════════════
⌗ Tags: #web_security #privacy #penetration_testing
Medium
OTP / Verification Code Brute Force Vulnerability
Target: https://example.com/signups
⤷ Title: HackPark: Brute Forcing BlogEngine.NET and Escalating to SYSTEM via Scheduled Task
════════════════════════
𐀪 Author: Robert Perez
════════════════════════
ⴵ Time: Sun, 08 Mar 2026 21:39:19 GMT
════════════════════════
⌗ Tags: #privilege_escalation #cybersecurity #windows #ethical_hacking #penetration_testing
════════════════════════
𐀪 Author: Robert Perez
════════════════════════
ⴵ Time: Sun, 08 Mar 2026 21:39:19 GMT
════════════════════════
⌗ Tags: #privilege_escalation #cybersecurity #windows #ethical_hacking #penetration_testing
Medium
HackPark: Brute Forcing BlogEngine.NET and Escalating to SYSTEM via Scheduled Task
TryHackMe’s HackPark is a Windows lab that chains together three distinct techniques: web login brute forcing against an ASP.NET…
⤷ Title: Torrent of Threats: China-Nexus APT UAT-9244 Hijacks South American Telecoms with PeerTime Backdoor
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:55:42 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT #BruteEntry #China_nexus #Cisco Talos #cyber_espionage #Malware Analysis #PeerTime #Telecommunications #TernDoor #UAT_9244
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:55:42 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT #BruteEntry #China_nexus #Cisco Talos #cyber_espionage #Malware Analysis #PeerTime #Telecommunications #TernDoor #UAT_9244
Daily CyberSecurity
Torrent of Threats: China-Nexus APT UAT-9244 Hijacks South American Telecoms with PeerTime Backdoor
Cisco Talos exposes UAT-9244, a China-linked APT targeting South American telecoms with stealthy malware like the BitTorrent-based PeerTime and TernDoor.
⤷ Title: Escalation in the Shadows: Iranian APT Seedworm Deploys ‘Dindoor’ Backdoor in New Cyberoffensive
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:50:13 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Critical Infrastructure #Cyberespionage #cybersecurity #Dindoor Backdoor #Hacktivism #infosec #Iranian APT #MuddyWater #Seedworm #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:50:13 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Critical Infrastructure #Cyberespionage #cybersecurity #Dindoor Backdoor #Hacktivism #infosec #Iranian APT #MuddyWater #Seedworm #threat intelligence
Daily CyberSecurity
Escalation in the Shadows: Iranian APT Seedworm Deploys 'Dindoor' Backdoor in New Cyberoffensive
Iranian APT Seedworm intensifies cyberespionage against US and Israeli networks using a new stealth backdoor called Dindoor. Read the full threat report.
⤷ Title: Fake GitHub Repositories Unleash BoryptGrab Stealer and TunnesshClient Backdoor
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:46:08 +0000
════════════════════════
⌗ Tags: #Malware #backdoor #BoryptGrab #cybersecurity #GitHub Malware #infosec #Infostealer #Reverse SSH Tunnel #threat intelligence #Trend Micro #TunnesshClient
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:46:08 +0000
════════════════════════
⌗ Tags: #Malware #backdoor #BoryptGrab #cybersecurity #GitHub Malware #infosec #Infostealer #Reverse SSH Tunnel #threat intelligence #Trend Micro #TunnesshClient
Daily CyberSecurity
Fake GitHub Repositories Unleash BoryptGrab Stealer and TunnesshClient Backdoor
Trend Micro reveals the BoryptGrab info stealer campaign using SEO-optimized fake GitHub repos to deploy the TunnesshClient reverse SSH backdoor.
⤷ Title: Critical 9.4 CVSS Zephyr RTOS Flaw Exposes Millions of IoT Devices to RCE
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:41:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #buffer overflow #CVE_2026_1678 #cybersecurity #DNS Spoofing #infosec #IoT security #Patch Alert #Remote Code Execution #Vulnerability #Zephyr RTOS
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:41:38 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #buffer overflow #CVE_2026_1678 #cybersecurity #DNS Spoofing #infosec #IoT security #Patch Alert #Remote Code Execution #Vulnerability #Zephyr RTOS
Daily CyberSecurity
Critical 9.4 CVSS Zephyr RTOS Flaw Exposes Millions of IoT Devices to RCE
A critical 9.4 CVSS buffer overflow flaw (CVE-2026-1678) in Zephyr RTOS's DNS parser allows unauthenticated RCE on IoT devices. Patch immediately.
⤷ Title: Vault Unlocked: High-Severity Flaws in Vaultwarden Expose Encrypted Secrets and Allow Privilege Escalation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:33:09 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_27803 #CVE_2026_27898 #cybersecurity #data leak #IDOR #infosec #password manager #Patch Alert #privilege escalation #Vaultwarden
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:33:09 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2026_27803 #CVE_2026_27898 #cybersecurity #data leak #IDOR #infosec #password manager #Patch Alert #privilege escalation #Vaultwarden
Daily CyberSecurity
Vault Unlocked: High-Severity Flaws in Vaultwarden Expose Encrypted Secrets and Allow Privilege Escalation
Critical vulnerabilities in Vaultwarden (like CVE-2026-27898) allow privilege escalation and unauthorized access to secrets. Update to version 1.35.4 now.
⤷ Title: Critical 9.3 CVSS Flaw in SiYuan Lets Hackers Steal Private Notes via SVG Injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:28:41 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cross_Site Scripting #CVE_2026_29183 #cybersecurity #infosec #Patch Alert #Personal Knowledge Management #SiYuan #SVG Injection #Vulnerability #XSS
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:28:41 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Cross_Site Scripting #CVE_2026_29183 #cybersecurity #infosec #Patch Alert #Personal Knowledge Management #SiYuan #SVG Injection #Vulnerability #XSS
Daily CyberSecurity
Critical 9.3 CVSS Flaw in SiYuan Lets Hackers Steal Private Notes via SVG Injection
A critical 9.3 CVSS reflected XSS flaw (CVE-2026-29183) in SiYuan's dynamic icon API lets attackers steal private notes via SVG injection. Update now.
⤷ Title: Critical Bypasses and Secret Leaks Patched in Apache ZooKeeper
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:22:18 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache ZooKeeper #CVE_2026_24281 #CVE_2026_24308 #cybersecurity #Distributed Systems #infosec #Log Exposure #Patch Alert #Reverse_DNS Spoofing #ZKTrustManager
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:22:18 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Apache ZooKeeper #CVE_2026_24281 #CVE_2026_24308 #cybersecurity #Distributed Systems #infosec #Log Exposure #Patch Alert #Reverse_DNS Spoofing #ZKTrustManager
Daily CyberSecurity
Critical Bypasses and Secret Leaks Patched in Apache ZooKeeper
Apache ZooKeeper vulnerabilities (CVE-2026-24281, CVE-2026-24308) allow PTR record spoofing and sensitive data leaks in logs. Update clusters immediately.
⤷ Title: Polygon Powered: Vietnamese Operator Deploys 16 Generations of LuaJIT Malware via GitHub
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:17:06 +0000
════════════════════════
⌗ Tags: #Malware #Blockchain security #cybersecurity #GitHub Malware #infosec #LuaJIT Loader #Malware Analysis #Polygon Mainnet #StealC Infostealer #threat intelligence
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:17:06 +0000
════════════════════════
⌗ Tags: #Malware #Blockchain security #cybersecurity #GitHub Malware #infosec #LuaJIT Loader #Malware Analysis #Polygon Mainnet #StealC Infostealer #threat intelligence
Daily CyberSecurity
Polygon Powered: Vietnamese Operator Deploys 16 Generations of LuaJIT Malware via GitHub
Researchers uncover a massive campaign by a Vietnamese operator using GitHub and Polygon blockchain smart contracts to distribute the StealC infostealer.
⤷ Title: 1-Click to Compromise: Critical 9.3 CVSS Flaw in ZITADEL Exposes Accounts to Full Takeover
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:11:50 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Account Takeover #Cross_Site Scripting #CVE_2026_29191 #IAM Security #Identity and Access Management #infosec #Patch Alert #Vulnerability #XSS #ZITADEL
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:11:50 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Account Takeover #Cross_Site Scripting #CVE_2026_29191 #IAM Security #Identity and Access Management #infosec #Patch Alert #Vulnerability #XSS #ZITADEL
Daily CyberSecurity
1-Click to Compromise: Critical 9.3 CVSS Flaw in ZITADEL Exposes Accounts to Full Takeover
A critical 9.3 CVSS XSS vulnerability (CVE-2026-29191) in ZITADEL's SAML endpoint allows unauthenticated 1-click account takeover. Upgrade immediately.
⤷ Title: From Theory to Threat: Hackers Are Now Weaponizing Web Pages to Brainwash AI Agents
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:07:08 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Ad Fraud #AI security #cybersecurity #IDPI #Indirect Prompt Injection #infosec #machine_learning #Prompt injection #threat intelligence #Unit 42
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:07:08 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Ad Fraud #AI security #cybersecurity #IDPI #Indirect Prompt Injection #infosec #machine_learning #Prompt injection #threat intelligence #Unit 42
Daily CyberSecurity
From Theory to Threat: Hackers Are Now Weaponizing Web Pages to Brainwash AI Agents
Unit 42 reveals the first real-world cases of Indirect Prompt Injection (IDPI), where hackers weaponize website content to bypass AI security filters.
⤷ Title: Dust Specter: Iran-Linked Hackers Weaponize Iraqi Government Sites in New Cyber Espionage Campaign
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:00:31 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #AI Malware #ClickFix #cyber_espionage #Dust Specter #infosec #Iran Threat Actors #Iraqi Government #SPLITDROP #Webex Phishing #Zscaler ThreatLabz
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:00:31 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #AI Malware #ClickFix #cyber_espionage #Dust Specter #infosec #Iran Threat Actors #Iraqi Government #SPLITDROP #Webex Phishing #Zscaler ThreatLabz
Daily CyberSecurity
Dust Specter: Iran-Linked Hackers Weaponize Iraqi Government Sites in New Cyber Espionage Campaign
Zscaler ThreatLabz uncovers Dust Specter, an Iran-linked cyber campaign hijacking Iraqi government infrastructure to deploy custom AI-assisted malware.
⤷ Title: Is a Zero-Day Really Unpreventable? The Truth About Zero-Day Defence
════════════════════════
𐀪 Author: Candy Wong
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:46:21 GMT
════════════════════════
⌗ Tags: #zero_day #cybersecurity #hacker #defence #bug_bounty
════════════════════════
𐀪 Author: Candy Wong
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:46:21 GMT
════════════════════════
⌗ Tags: #zero_day #cybersecurity #hacker #defence #bug_bounty
Medium
Is a Zero-Day Really Unpreventable? The Truth About Zero-Day Defence
Zero-days are treated as acts of god in security — unforeseeable, unstoppable, inevitable. But is that actually true? A deep dive into what…
⤷ Title: OffSec PG Play: InfosecPrep Walkthrough
════════════════════════
𐀪 Author: Antonio
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:52:22 GMT
════════════════════════
⌗ Tags: #ctf_writeup #hacking #offsec #ctf_walkthrough
════════════════════════
𐀪 Author: Antonio
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:52:22 GMT
════════════════════════
⌗ Tags: #ctf_writeup #hacking #offsec #ctf_walkthrough
Medium
OffSec PG Play: InfosecPrep Walkthrough
Machine details
⤷ Title: Lame Machine — HTB Writeup
════════════════════════
𐀪 Author: William Shively
════════════════════════
ⴵ Time: Sun, 08 Mar 2026 23:52:05 GMT
════════════════════════
⌗ Tags: #hacking #nmap #pentesting #hackthebox #metasploit
════════════════════════
𐀪 Author: William Shively
════════════════════════
ⴵ Time: Sun, 08 Mar 2026 23:52:05 GMT
════════════════════════
⌗ Tags: #hacking #nmap #pentesting #hackthebox #metasploit
Medium
Lame Machine — HTB Writeup
Introduction
⤷ Title: Pentest na prática — Thales (parte 1)
════════════════════════
𐀪 Author: Drifter
════════════════════════
ⴵ Time: Sun, 08 Mar 2026 23:04:12 GMT
════════════════════════
⌗ Tags: #tecnologia #programming #hacking #technology #pentesting
════════════════════════
𐀪 Author: Drifter
════════════════════════
ⴵ Time: Sun, 08 Mar 2026 23:04:12 GMT
════════════════════════
⌗ Tags: #tecnologia #programming #hacking #technology #pentesting
Medium
Pentest na prática — Thales (parte 1)
Aprender o básico de hacking é útil não apenas para pentesters como também para os usuários que possuem seus próprios sistemas com dados…
⤷ Title: Cyber Threat Intelligence Report: StegaBin, 90 Minutes, Typosquatting, and a Steganographic…
════════════════════════
𐀪 Author: SerapHim
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:06:00 GMT
════════════════════════
⌗ Tags: #malware #north_korea #cybersecurity #infosec #threat_intelligence
════════════════════════
𐀪 Author: SerapHim
════════════════════════
ⴵ Time: Mon, 09 Mar 2026 00:06:00 GMT
════════════════════════
⌗ Tags: #malware #north_korea #cybersecurity #infosec #threat_intelligence
Medium
Cyber Threat Intelligence Report: StegaBin, 90 Minutes, Typosquatting, and a Steganographic Dead-Drop
The Lazarus Group does not usually hide C2 addresses inside a computer science essay. But that is exactly what Famous Chollima did with…