⤷ Title: ntfstool: Forensics tool for NTFS
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:15:06 +0000
════════════════════════
⌗ Tags: #Data Forensics #NTFS Forensics tool
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:15:06 +0000
════════════════════════
⌗ Tags: #Data Forensics #NTFS Forensics tool
Penetration Testing Tools
ntfstool: Forensics tool for NTFS
NTFSTool is a forensic tool to play with disks and NTFS volumes. It supports reading partition info (mbr, partition table, vbr)
⤷ Title: 0-Click NTLM Authentication Bypass Hits Microsoft Telnet Server, PoC Releases, No Patch
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 01:56:00 +0000
════════════════════════
⌗ Tags: #Vulnerability #Authentication Bypass #Critical Vulnerability #Hacker Fantastic #Legacy Windows #Microsoft Telnet #MS_TNAP #NTLM Vulnerability #Remote Exploit
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 01:56:00 +0000
════════════════════════
⌗ Tags: #Vulnerability #Authentication Bypass #Critical Vulnerability #Hacker Fantastic #Legacy Windows #Microsoft Telnet #MS_TNAP #NTLM Vulnerability #Remote Exploit
Daily CyberSecurity
0-Click NTLM Authentication Bypass Hits Microsoft Telnet Server, PoC Releases, No Patch
A severe vulnerability affecting Microsoft Telnet Server has been uncovered, allowing remote attackers to completely bypass authentication and gain administrator access without valid credentials. …
⤷ Title: Apache Tomcat Security Update Fixes DoS and Rewrite Rule Bypass Flaws
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 01:38:23 +0000
════════════════════════
⌗ Tags: #Vulnerability #apache Tomcat #CVE_2025_31650 #CVE_2025_31651 #Denial of Service #Java Servlet #Rewrite Rule Bypass #security update #vulnerability patch
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 01:38:23 +0000
════════════════════════
⌗ Tags: #Vulnerability #apache Tomcat #CVE_2025_31650 #CVE_2025_31651 #Denial of Service #Java Servlet #Rewrite Rule Bypass #security update #vulnerability patch
Daily CyberSecurity
Apache Tomcat Security Update Fixes DoS and Rewrite Rule Bypass Flaws
Apache Tomcat patches CVE-2025-31650 and CVE-2025-31651 to fix denial of service and rewrite rule bypass issues. Upgrade now to stay secure.
⤷ Title: CVE-2025-21756: How a Tiny Linux Kernel Bug Led to a Full Root Exploit, PoC Releases
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:50:13 +0000
════════════════════════
⌗ Tags: #Linux #Vulnerability #CVE_2025_21756 #Cybersecurity Research #kernel_exploitation #Linux Kernel Vulnerability #Michael Hoefler #privilege escalation #use after free #vsock UAF
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:50:13 +0000
════════════════════════
⌗ Tags: #Linux #Vulnerability #CVE_2025_21756 #Cybersecurity Research #kernel_exploitation #Linux Kernel Vulnerability #Michael Hoefler #privilege escalation #use after free #vsock UAF
Daily CyberSecurity
CVE-2025-21756: How a Tiny Linux Kernel Bug Led to a Full Root Exploit, PoC Releases
CVE-2025-21756 exploited a tiny Linux vsock bug to achieve root access via UAF and ROP chains. Michael Hoefler reveals the full exploitation path.
⤷ Title: Weaponized Uyghur Language Software: Citizen Lab Uncovers Targeted Malware Campaign
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:43:00 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Citizen Lab #cybersecurity #Digital Transnational Repression #Human Rights #Malware Targeting Diaspora #Spearphishing Attack #Uyghur Malware #UyghurEditPP
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:43:00 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Citizen Lab #cybersecurity #Digital Transnational Repression #Human Rights #Malware Targeting Diaspora #Spearphishing Attack #Uyghur Malware #UyghurEditPP
Daily CyberSecurity
Weaponized Uyghur Language Software: Citizen Lab Uncovers Targeted Malware Campaign
Citizen Lab reveals a malware campaign targeting Uyghur exiles by hijacking trusted language software, exposing new digital transnational repression tactics.
⤷ Title: Fog Ransomware Group Exposed: Inside the Tools, Tactics, and Victims of a Stealthy Threat
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:40:32 +0000
════════════════════════
⌗ Tags: #Malware #Active Directory Exploits #Credential Theft #Cyber Threat Intelligence #DFIR Report #Fog Ransomware #ransomware attack #Sliver C2 #SonicWall Exploits
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:40:32 +0000
════════════════════════
⌗ Tags: #Malware #Active Directory Exploits #Credential Theft #Cyber Threat Intelligence #DFIR Report #Fog Ransomware #ransomware attack #Sliver C2 #SonicWall Exploits
Daily CyberSecurity
Fog Ransomware Group Exposed: Inside the Tools, Tactics, and Victims of a Stealthy Threat
DFIR Report exposes the Fog ransomware group's sophisticated use of SonicWall exploits, Sliver C2, and credential theft across tech, retail, and education sectors.
⤷ Title: Quantum Issues Critical Patch for StorNext GUI RCE Vulnerabilities (CVE-2025-46616, CVE-2025-46617)
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:33:11 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_46616 #CVE_2025_46617 #Cybersecurity Patch #Quantum Security Advisory #Remote Code Execution #Storage Security #StorNext Vulnerabilities
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:33:11 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_46616 #CVE_2025_46617 #Cybersecurity Patch #Quantum Security Advisory #Remote Code Execution #Storage Security #StorNext Vulnerabilities
Daily CyberSecurity
Quantum Issues Critical Patch for StorNext GUI RCE Vulnerabilities (CVE-2025-46616, CVE-2025-46617)
Quantum warns of critical RCE vulnerabilities in StorNext GUI (CVE-2025-46616, CVE-2025-46617). Users must upgrade or patch immediately to prevent exploitation.
⤷ Title: CVE-2025-3200: Wiesemann & Theis Com-Server Devices Exposed by Deprecated TLS Protocols
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:32:56 +0000
════════════════════════
⌗ Tags: #Vulnerability #CERT@VDE #COM Server #Com_Server Security Flaw #Critical Infrastructure Cybersecurity #CVE_2025_3200 #industrial automation #Industrial Security #security advisory #TLS 1.0 #TLS 1.1 #TLS Vulnerability #Wiesemann & Theis
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:32:56 +0000
════════════════════════
⌗ Tags: #Vulnerability #CERT@VDE #COM Server #Com_Server Security Flaw #Critical Infrastructure Cybersecurity #CVE_2025_3200 #industrial automation #Industrial Security #security advisory #TLS 1.0 #TLS 1.1 #TLS Vulnerability #Wiesemann & Theis
Daily CyberSecurity
CVE-2025-3200: Wiesemann & Theis Com-Server Devices Exposed by Deprecated TLS Protocols
CERT@VDE reveals CVE-2025-3200 in Wiesemann & Theis devices: outdated TLS protocols expose Com-Server models to interception and man-in-the-middle attacks.
⤷ Title: Fake GIF and Reverse Proxy Used in Sophisticated Card Skimming Attack on Magento
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:25:12 +0000
════════════════════════
⌗ Tags: #Malware #credit card theft #eCommerce Breach #Fake GIF Malware #MageCart Attack #Magento Security #Reverse Proxy Skimming #Sucuri Research #web skimming
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:25:12 +0000
════════════════════════
⌗ Tags: #Malware #credit card theft #eCommerce Breach #Fake GIF Malware #MageCart Attack #Magento Security #Reverse Proxy Skimming #Sucuri Research #web skimming
Daily CyberSecurity
Fake GIF and Reverse Proxy Used in Sophisticated Card Skimming Attack on Magento
A fake GIF and malicious reverse proxy server enabled a multi-stage card skimming attack on a Magento site, exposing customer credit card data and credentials.
⤷ Title: Triada Trojan Evolves: Pre-Installed Android Malware Now Embedded in Device Firmware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:20:37 +0000
════════════════════════
⌗ Tags: #Malware #Android Malware #Android security #Cybersecurity Threats #Firmware Infection #Kaspersky Labs #mobile security #Pre_Installed Malware #Triada Trojan
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:20:37 +0000
════════════════════════
⌗ Tags: #Malware #Android Malware #Android security #Cybersecurity Threats #Firmware Infection #Kaspersky Labs #mobile security #Pre_Installed Malware #Triada Trojan
Daily CyberSecurity
Triada Trojan Evolves: Pre-Installed Android Malware Now Embedded in Device Firmware
Kaspersky warns that Triada Trojan now comes pre-installed in counterfeit Android device firmware, making it nearly impossible to remove without reinstallation.
⤷ Title: Critical Vulnerabilities in Quick Agent Software Expose Ricoh MFPs to Remote Attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:13:41 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_26692 #CVE_2025_27937 #CVE_2025_31144 #cybersecurity #Path Traversal #Quick Agent #Remote Code Execution #Ricoh MFPs #SIOS Technology
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:13:41 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_26692 #CVE_2025_27937 #CVE_2025_31144 #cybersecurity #Path Traversal #Quick Agent #Remote Code Execution #Ricoh MFPs #SIOS Technology
Daily CyberSecurity
Critical Vulnerabilities in Quick Agent Software Expose Ricoh MFPs to Remote Attacks
Quick Agent vulnerabilities could let attackers execute code or steal files from Ricoh MFPs. Update now to secure systems from critical remote attacks.
⤷ Title: Earth Kurma APT Targets Southeast Asia with Stealthy Cyberespionage
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:10:03 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT #Cyberespionage #Earth Kurma #Government Hacking #KRNRAT #MORIYA #Rootkits #SIMPOBOXSPY #Southeast Asia #Trend Research
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:10:03 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT #Cyberespionage #Earth Kurma #Government Hacking #KRNRAT #MORIYA #Rootkits #SIMPOBOXSPY #Southeast Asia #Trend Research
Daily CyberSecurity
Earth Kurma APT Targets Southeast Asia with Stealthy Cyberespionage
Earth Kurma APT campaign targets Southeast Asian governments and telecoms using rootkits, loaders, and cloud services to steal sensitive data.
⤷ Title: Discord Used as C2 for Stealthy Python-Based RAT
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:03:08 +0000
════════════════════════
⌗ Tags: #Malware #Cybercrime #Cyfirma #Discord #malware #Python #rat #Remote Access Trojan
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:03:08 +0000
════════════════════════
⌗ Tags: #Malware #Cybercrime #Cyfirma #Discord #malware #Python #rat #Remote Access Trojan
Daily CyberSecurity
Discord Used as C2 for Stealthy Python-Based RAT
Cyfirma uncovers a Python-based RAT using Discord for command and control. It can lock screens, simulate BSOD, move the mouse, and steal data.
⤷ Title: Password Recovery? More Like Account Delivery Host Header Injection Madness
════════════════════════
𐀪 Author: r00t
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 01:26:13 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty_tips #bug_bounty #infosec
════════════════════════
𐀪 Author: r00t
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 01:26:13 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty_tips #bug_bounty #infosec
Medium
Password Recovery? More Like Account Delivery Host Header Injection Madness
بِسْمِ اللَّـهِ الرَّحْمَـٰنِ الرَّحِيمِ
⤷ Title: $500,000 to Catch STON.fi Bugs?! Let’s Get Hunting, STONfiers!
════════════════════════
𐀪 Author: MADEOFBLU
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 01:00:02 GMT
════════════════════════
⌗ Tags: #rewards #stonfi #bug_bounty #cryptocurrency #defi
════════════════════════
𐀪 Author: MADEOFBLU
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 01:00:02 GMT
════════════════════════
⌗ Tags: #rewards #stonfi #bug_bounty #cryptocurrency #defi
Medium
$500,000 to Catch STON.fi Bugs?! Let’s Get Hunting, STONfiers!
Don’t scroll past this, STONfiers! Your favorite STON.fi homie dropping in with some news that’s gonna make your inner code ninja do a…
⤷ Title: Find .JS files of your bug bounty target(JS FILES RECON)
════════════════════════
𐀪 Author: loyalonlytoday
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:42:35 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #ethical_hacking #bug_bounty #bug_bounty_tips
════════════════════════
𐀪 Author: loyalonlytoday
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:42:35 GMT
════════════════════════
⌗ Tags: #penetration_testing #cybersecurity #ethical_hacking #bug_bounty #bug_bounty_tips
Medium
Find .JS files of your bug bounty target(JS FILES RECON)
.JS files are goldmines for bug bounty hunters
⤷ Title: $100 Password Reset Flaw
════════════════════════
𐀪 Author: Monika sharma
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 01:51:02 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #bug_bounty #penetration_testing #technology
════════════════════════
𐀪 Author: Monika sharma
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 01:51:02 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #bug_bounty #penetration_testing #technology
Medium
$100 Password Reset Flaw
How a Persistent Password Reset Link Led to a $100 Bounty on HackerOne
⤷ Title: Tuesday Morning Threat Report: Apr 29, 2025
════════════════════════
𐀪 Author: Mark Maguire
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 01:28:28 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #darpa
════════════════════════
𐀪 Author: Mark Maguire
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 01:28:28 GMT
════════════════════════
⌗ Tags: #hacking #cybersecurity #darpa
Medium
Tuesday Morning Threat Report: Apr 29, 2025
The FBI offers $10M reward for info on Salt Typhoon, WhatsApp introduces Advanced Chat Privacy, and DARPA looks to AI to help math research
⤷ Title: Who is APT29, Russia’s Attributed Hacker Group?
════════════════════════
𐀪 Author: Ant
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 01:21:09 GMT
════════════════════════
⌗ Tags: #russia #cybersecurity #hacking
════════════════════════
𐀪 Author: Ant
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 01:21:09 GMT
════════════════════════
⌗ Tags: #russia #cybersecurity #hacking
Medium
Who is APT29, Russia’s Attributed Hacker Group?
Who is APT29?
⤷ Title: Mental Hacking: Unlocking the Full Power of Your Mind
════════════════════════
𐀪 Author: Benjaminmillerdev
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:56:04 GMT
════════════════════════
⌗ Tags: #brain_training #brain_health #hacking #mental_health
════════════════════════
𐀪 Author: Benjaminmillerdev
════════════════════════
ⴵ Time: Tue, 29 Apr 2025 00:56:04 GMT
════════════════════════
⌗ Tags: #brain_training #brain_health #hacking #mental_health
Medium
Chapter 1: The Foundations of Mental Hacking
Introduction: