⤷ Title: Part 1: How to Become a Pentester in 2025: Free & Affordable Online Labs
════════════════════════
𐀪 Author: Anezaneo
════════════════════════
ⴵ Time: Mon, 12 May 2025 23:02:51 GMT
════════════════════════
⌗ Tags: #labs #cybersecurity #pentest #oscp #penetration_testing
════════════════════════
𐀪 Author: Anezaneo
════════════════════════
ⴵ Time: Mon, 12 May 2025 23:02:51 GMT
════════════════════════
⌗ Tags: #labs #cybersecurity #pentest #oscp #penetration_testing
Medium
Part 1: How to Become a Pentester in 2025: Free & Affordable Online Labs
Accelerate your 2025 pentesting journey with free ethical-hacking labs, hands-on HTB Academy, PortSwigger & TryHackMe courses. Learn…
⤷ Title: Tardigrade
════════════════════════
𐀪 Author: Anthony Mazyck
════════════════════════
ⴵ Time: Mon, 12 May 2025 23:02:41 GMT
════════════════════════
⌗ Tags: #tryhackme #tryhackme_walkthrough
════════════════════════
𐀪 Author: Anthony Mazyck
════════════════════════
ⴵ Time: Mon, 12 May 2025 23:02:41 GMT
════════════════════════
⌗ Tags: #tryhackme #tryhackme_walkthrough
Medium
Tardigrade
https://tryhackme.com/room/tardigrade
⤷ Title: 2. Malware Meets x86
════════════════════════
𐀪 Author: Iram Jack
════════════════════════
ⴵ Time: Mon, 12 May 2025 22:32:38 GMT
════════════════════════
⌗ Tags: #miss_robot #static_analysis #tryhackme #dynamic_analysis #malware_analysis
════════════════════════
𐀪 Author: Iram Jack
════════════════════════
ⴵ Time: Mon, 12 May 2025 22:32:38 GMT
════════════════════════
⌗ Tags: #miss_robot #static_analysis #tryhackme #dynamic_analysis #malware_analysis
Medium
Malware Meets x86
x86 architecture | Malware Analysis
⤷ Title: Practical Ways to Improve Your Digital Efficiency
════════════════════════
𐀪 Author: Owais Sultan
════════════════════════
ⴵ Time: Mon, 12 May 2025 22:00:00 +0000
════════════════════════
⌗ Tags: #Technology
════════════════════════
𐀪 Author: Owais Sultan
════════════════════════
ⴵ Time: Mon, 12 May 2025 22:00:00 +0000
════════════════════════
⌗ Tags: #Technology
Hackread
Practical Ways to Improve Your Digital Efficiency
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: AdaptixC2: post-exploitation and adversarial emulation framework
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:20:38 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #Adaptix #adversarial emulation framework
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:20:38 +0000
════════════════════════
⌗ Tags: #Ethical Hacking #Adaptix #adversarial emulation framework
Penetration Testing Tools
AdaptixC2: post-exploitation and adversarial emulation framework
Adaptix is an extensible post-exploitation and adversarial emulation framework made for penetration testers. The Adaptix server is written in Golang
⤷ Title: aftermath: Swift-based, open-source macOS incident response framework
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:12:23 +0000
════════════════════════
⌗ Tags: #Data Forensics
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:12:23 +0000
════════════════════════
⌗ Tags: #Data Forensics
Penetration Testing Tools
aftermath v2.0 releases: Swift-based, open-source macOS incident response framework
Aftermath can be leveraged by defenders in order to collect and subsequently analyze the data from the compromised host.
⤷ Title: Multiple CVEs in GNU Screen: Local Root Exploit and TTY Hijacking Discovered
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:45:58 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_23395 #CVE_2025_46802 #CVE_2025_46803 #CVE_2025_46804 #CVE_2025_46805 #Exploit #GNU Screen #privilege escalation #root access #security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:45:58 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2025_23395 #CVE_2025_46802 #CVE_2025_46803 #CVE_2025_46804 #CVE_2025_46805 #Exploit #GNU Screen #privilege escalation #root access #security
Daily CyberSecurity
Multiple CVEs in GNU Screen: Local Root Exploit and TTY Hijacking Discovered
A security audit reveals critical flaws in GNU Screen, including a root exploit. The flaws impact both Screen 5.0.0 and 4.9.x, posing a major risk to Linux/UNIX systems.
⤷ Title: CVE-2025-1087: Critical Template Injection in Insomnia API Client Enables Remote Code Execution
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:42:44 +0000
════════════════════════
⌗ Tags: #Vulnerability #API security #CVE_2025_1087 #Developer Tools #Insomnia #JavaScript RCE #Kong #Template Injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:42:44 +0000
════════════════════════
⌗ Tags: #Vulnerability #API security #CVE_2025_1087 #Developer Tools #Insomnia #JavaScript RCE #Kong #Template Injection
Daily CyberSecurity
CVE-2025-1087: Critical Template Injection in Insomnia API Client Enables Remote Code Execution
CVE-2025-1087: Critical flaw in Kong Insomnia allows template injection and arbitrary code execution. Users urged to update to v11.0.2 immediately.
⤷ Title: North Korean APT37’s “ToyBox Story”: Stealthy Attacks Unveiled
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:40:49 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT37 #cloud #cyberattack #dropbox #Fileless Malware #malware #North Korea #RokRAT #spear_phishing
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:40:49 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #APT37 #cloud #cyberattack #dropbox #Fileless Malware #malware #North Korea #RokRAT #spear_phishing
Daily CyberSecurity
North Korean APT37's "ToyBox Story": Stealthy Attacks Unveiled
New report details APT37's "ToyBox Story" campaign, using spear phishing and cloud services to deploy RoKRAT malware. Fileless attacks and stealthy tactics revealed.
⤷ Title: AI Tools Turn Trojan: Fake Video Platforms Drop Noodlophile Stealer and XWorm Payloads
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:33:27 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #AI Malware #CapCut Exploit #Fake AI Platforms #Infostealer #Malware_as_a_Service #Noodlophile Stealer #Telegram bot #XWorm
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:33:27 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #AI Malware #CapCut Exploit #Fake AI Platforms #Infostealer #Malware_as_a_Service #Noodlophile Stealer #Telegram bot #XWorm
Daily CyberSecurity
AI Tools Turn Trojan: Fake Video Platforms Drop Noodlophile Stealer and XWorm Payloads
Attackers exploit fake AI video tools to deploy Noodlophile Stealer and XWorm, stealing credentials and data via Telegram bots.
⤷ Title: How to Stop Threats that Bypass Multi-Factor Authentication
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:26:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:26:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals
Daily CyberSecurity
How to Stop Threats that Bypass Multi-Factor Authentication
Explore the vulnerabilities in multi-factor authentication and effective strategies to prevent attackers from bypassing it.
⤷ Title: PoC Released: CVE-2025-31644 Exploit Grants Root Access on F5 BIG-IP via Appliance Mode Command Injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:25:01 +0000
════════════════════════
⌗ Tags: #Vulnerability #Appliance mode bypass #BIG_IP vulnerability #Command Injection #CVE_2025_31644 #F5 #iControl REST #PoC #root access #TMSH CLI
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:25:01 +0000
════════════════════════
⌗ Tags: #Vulnerability #Appliance mode bypass #BIG_IP vulnerability #Command Injection #CVE_2025_31644 #F5 #iControl REST #PoC #root access #TMSH CLI
Daily CyberSecurity
PoC Released: CVE-2025-31644 Exploit Grants Root Access on F5 BIG-IP via Appliance Mode Command Injection
PoC for CVE-2025-31644 shows how admin users can exploit F5 BIG-IP Appliance Mode to gain root access via command injection.
⤷ Title: PupkinStealer: Tiny Malware, Big Theft via Telegram Bot Exposed
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:20:41 +0000
════════════════════════
⌗ Tags: #Malware #browser credentials #Cyfirma #Data Theft #Discord #Infostealer #malware #PupkinStealer #Telegram #Telegram bot
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:20:41 +0000
════════════════════════
⌗ Tags: #Malware #browser credentials #Cyfirma #Data Theft #Discord #Infostealer #malware #PupkinStealer #Telegram #Telegram bot
Daily CyberSecurity
PupkinStealer: Tiny Malware, Big Theft via Telegram Bot Exposed
New lightweight PupkinStealer malware silently steals browser data, messaging sessions, and desktop files, sending it all via Telegram.
⤷ Title: CAPTCHA Trap: Fake Verification Unleashes Lumma Stealer on Unsuspecting Users
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:14:32 +0000
════════════════════════
⌗ Tags: #Malware #Cybercrime #Data Theft #fake CAPTCHA #Infostealer #Lumma Stealer #malware #powershell #social engineering #Sophos
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:14:32 +0000
════════════════════════
⌗ Tags: #Malware #Cybercrime #Data Theft #fake CAPTCHA #Infostealer #Lumma Stealer #malware #powershell #social engineering #Sophos
Daily CyberSecurity
CAPTCHA Trap: Fake Verification Unleashes Lumma Stealer on Unsuspecting Users
Beware! Cybercriminals are using fake CAPTCHA pages to trick you into running commands that install the dangerous Lumma Stealer malware.
⤷ Title: API Security in 2025: Top Best Practices Every Security Team Must Know
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:11:21 +0000
════════════════════════
⌗ Tags: #How To #API Gateway #API security #Best Practices #DevSecOps #encryption #OAuth 2.1 #OWASP #Rate Limiting #Threat Detection #Zero Trust
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:11:21 +0000
════════════════════════
⌗ Tags: #How To #API Gateway #API security #Best Practices #DevSecOps #encryption #OAuth 2.1 #OWASP #Rate Limiting #Threat Detection #Zero Trust
Daily CyberSecurity
API Security in 2025: Top Best Practices Every Security Team Must Know
Stay ahead in 2025 with top API security best practices for security teams—covering auth, rate limiting, encryption, and threat detection.
⤷ Title: Shadowy IoT Army: Decades-Old Proxy Botnet Exposed and Crippled
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:10:07 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Anonymity #Cybercrime #IoT botnet #Law Enforcement #malware #proxy network #router #security #smart devices
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:10:07 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Anonymity #Cybercrime #IoT botnet #Law Enforcement #malware #proxy network #router #security #smart devices
Daily CyberSecurity
Shadowy IoT Army: Decades-Old Proxy Botnet Exposed and Crippled
A massive, long-running proxy botnet using outdated IoT devices for criminal anonymity has been dismantled in a global law enforcement operation.
⤷ Title: Stealth in Pixels: .NET Malware Hides Payloads in Bitmap Resources
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:05:44 +0000
════════════════════════
⌗ Tags: #Malware #.NET #Agent Tesla #Asia #cyberattack #financial institutions #malspam #malware #Obfuscation #steganography #Unit 42
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:05:44 +0000
════════════════════════
⌗ Tags: #Malware #.NET #Agent Tesla #Asia #cyberattack #financial institutions #malspam #malware #Obfuscation #steganography #Unit 42
Daily CyberSecurity
Stealth in Pixels: .NET Malware Hides Payloads in Bitmap Resources
Sophisticated malware hides inside image files within .NET apps to secretly infect systems, targeting finance in Türkiye and logistics in Asia.
⤷ Title: LockBit Hacking Group Defaced and Compromised — May 2025 Incident Report
════════════════════════
𐀪 Author: KN
════════════════════════
ⴵ Time: Tue, 13 May 2025 01:33:12 GMT
════════════════════════
⌗ Tags: #cybersecurity #news #hacking
════════════════════════
𐀪 Author: KN
════════════════════════
ⴵ Time: Tue, 13 May 2025 01:33:12 GMT
════════════════════════
⌗ Tags: #cybersecurity #news #hacking
Medium
LockBit Hacking Group Defaced and Compromised — May 2025 Incident Report
What is LockBit?
⤷ Title: (VATINT) Tools For OSINT Investigators
════════════════════════
𐀪 Author: loyalonlytoday
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:42:26 GMT
════════════════════════
⌗ Tags: #cybersecurity #osint_investigation #investigation #hacking #osint
════════════════════════
𐀪 Author: loyalonlytoday
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:42:26 GMT
════════════════════════
⌗ Tags: #cybersecurity #osint_investigation #investigation #hacking #osint
Medium
(VATINT) Tools For OSINT Investigators
Vehicle and Transportation Intelligence Tools For OSINT Investigators
⤷ Title: Blueprint (TryHackMe) Pwned: From osCommerce RCE to SYSTEM & Flags — A CTF Walkthrough [2024/2025…
════════════════════════
𐀪 Author: jensbecker-dev
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:50:42 GMT
════════════════════════
⌗ Tags: #tryhackme #writeup #infosec #windows_hacking #cybersecurity
════════════════════════
𐀪 Author: jensbecker-dev
════════════════════════
ⴵ Time: Tue, 13 May 2025 00:50:42 GMT
════════════════════════
⌗ Tags: #tryhackme #writeup #infosec #windows_hacking #cybersecurity
Medium
Blueprint (TryHackMe) Pwned: From osCommerce RCE to SYSTEM & Flags — A CTF Walkthrough [2024/2025…
Hey, fellow hackers and infosec enthusiasts!