⤷ Title: Banner Grabbing in 2025: Still a Goldmine for Attackers?
════════════════════════
𐀪 Author: Karthikeyan Nagaraj
════════════════════════
ⴵ Time: Sun, 15 Jun 2025 22:16:37 GMT
════════════════════════
⌗ Tags: #programming #cybersecurity #bug_bounty #technology #careers
════════════════════════
𐀪 Author: Karthikeyan Nagaraj
════════════════════════
ⴵ Time: Sun, 15 Jun 2025 22:16:37 GMT
════════════════════════
⌗ Tags: #programming #cybersecurity #bug_bounty #technology #careers
Medium
Banner Grabbing in 2025: Still a Goldmine for Attackers?
Exploring how a classic reconnaissance technique remains useful — and dangerous — in modern cybersecurity
⤷ Title: I Found a $4,200 Bug in 15 Minutes
════════════════════════
𐀪 Author: Ibtissam hammadi
════════════════════════
ⴵ Time: Sun, 15 Jun 2025 21:20:33 GMT
════════════════════════
⌗ Tags: #make_money_online #bug_bounty #ethical_hacking #cybersecurity #hackerone
════════════════════════
𐀪 Author: Ibtissam hammadi
════════════════════════
ⴵ Time: Sun, 15 Jun 2025 21:20:33 GMT
════════════════════════
⌗ Tags: #make_money_online #bug_bounty #ethical_hacking #cybersecurity #hackerone
Medium
I Found a $4,200 Bug in 15 Minutes
Here’s How It Happened
⤷ Title: 2025 Cyber Sentinel Challenge — Hoasted Toasted Write-Up
════════════════════════
𐀪 Author: Caleb Streit
════════════════════════
ⴵ Time: Sun, 15 Jun 2025 22:35:50 GMT
════════════════════════
⌗ Tags: #networking #cybersecurity #web #website #ssl_certificate
════════════════════════
𐀪 Author: Caleb Streit
════════════════════════
ⴵ Time: Sun, 15 Jun 2025 22:35:50 GMT
════════════════════════
⌗ Tags: #networking #cybersecurity #web #website #ssl_certificate
Medium
2025 Cyber Sentinel Challenge — Hoasted Toasted Write-Up
This is a write-up for the “Hoasted Toasted” challenge during the 2025 Cyber Sentinel competition.
⤷ Title: Day 23: Just Operating Systems
════════════════════════
𐀪 Author: Nile Okomo
════════════════════════
ⴵ Time: Sun, 15 Jun 2025 22:10:37 GMT
════════════════════════
⌗ Tags: #operating_systems #study_journal #penetration_testing #cybersecurity
════════════════════════
𐀪 Author: Nile Okomo
════════════════════════
ⴵ Time: Sun, 15 Jun 2025 22:10:37 GMT
════════════════════════
⌗ Tags: #operating_systems #study_journal #penetration_testing #cybersecurity
Medium
Day 23: Just Operating Systems
The general foundations that make up operating systems
⤷ Title: Understanding Keycloak Authentication in Web Services: A Beginner’s Guide
════════════════════════
𐀪 Author: Danida Jayakody
════════════════════════
ⴵ Time: Sun, 15 Jun 2025 21:56:38 GMT
════════════════════════
⌗ Tags: #web_development #cybersecurity #authentication
════════════════════════
𐀪 Author: Danida Jayakody
════════════════════════
ⴵ Time: Sun, 15 Jun 2025 21:56:38 GMT
════════════════════════
⌗ Tags: #web_development #cybersecurity #authentication
Medium
Understanding Keycloak Authentication in Web Services: A Beginner’s Guide
As web applications grow in complexity, managing user authentication becomes both critical and challenging. That’s where Keycloak steps in…
⤷ Title: The AI Boom Is Missing Something Big: The Customer
════════════════════════
𐀪 Author: Angelo Bell
════════════════════════
ⴵ Time: Sun, 15 Jun 2025 21:52:32 GMT
════════════════════════
⌗ Tags: #pci_dss #cybersecurity #tech_startups #cx #customer_experience
════════════════════════
𐀪 Author: Angelo Bell
════════════════════════
ⴵ Time: Sun, 15 Jun 2025 21:52:32 GMT
════════════════════════
⌗ Tags: #pci_dss #cybersecurity #tech_startups #cx #customer_experience
Medium
The AI Boom Is Missing Something Big: The Customer
Startups are building smarter tech — but often forgetting the basics: customer experience.
⤷ Title: National Web3 Infrastructure Blueprint: A Cybersecurity-Centric Vision for Digital Sovereignty
════════════════════════
𐀪 Author: A-STAR7_DOCTOR
════════════════════════
ⴵ Time: Sun, 15 Jun 2025 21:25:57 GMT
════════════════════════
⌗ Tags: #data_science #cybersecurity #technology #programming #web3
════════════════════════
𐀪 Author: A-STAR7_DOCTOR
════════════════════════
ⴵ Time: Sun, 15 Jun 2025 21:25:57 GMT
════════════════════════
⌗ Tags: #data_science #cybersecurity #technology #programming #web3
Medium
National Web3 Infrastructure Blueprint: A Cybersecurity-Centric Vision for Digital Sovereignty
By Aditiya Widodo Putra, Cybersecurity & Blockchain Consultant
⤷ Title: LLM Guardrail Bypass: Practical Attacks with LLMBUS
════════════════════════
𐀪 Author: Onurcan Genç
════════════════════════
ⴵ Time: Sun, 15 Jun 2025 21:15:43 GMT
════════════════════════
⌗ Tags: #red_teaming #offensive_security #ai_security #cybersecurity #red_team
════════════════════════
𐀪 Author: Onurcan Genç
════════════════════════
ⴵ Time: Sun, 15 Jun 2025 21:15:43 GMT
════════════════════════
⌗ Tags: #red_teaming #offensive_security #ai_security #cybersecurity #red_team
Medium
LLM Guardrail Bypass: Practical Attacks with LLMBUS
Using the LLMBus tool, I demonstrate how legacy models like GPT-3.5-Turbo can be manipulated with various methods.
⤷ Title: OPACITY WALKTHROUGH : TRYHACKME
════════════════════════
𐀪 Author: rizzziom
════════════════════════
ⴵ Time: Sun, 15 Jun 2025 22:31:33 GMT
════════════════════════
⌗ Tags: #ctf_writeup #tryhackme_walkthrough #tryhackme #ctf #penetration_testing
════════════════════════
𐀪 Author: rizzziom
════════════════════════
ⴵ Time: Sun, 15 Jun 2025 22:31:33 GMT
════════════════════════
⌗ Tags: #ctf_writeup #tryhackme_walkthrough #tryhackme #ctf #penetration_testing
Medium
OPACITY WALKTHROUGH : TRYHACKME
I then created a reverse shell php payload and served it using python’s http server on my local system. I tried uploading it directly, however the application had some sort of validation mechanism in…
⤷ Title: bitcrook: open-source intelligence apparatus
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:45:48 +0000
════════════════════════
⌗ Tags: #OSINT _ Open Source Intelligence #bitcrook
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:45:48 +0000
════════════════════════
⌗ Tags: #OSINT _ Open Source Intelligence #bitcrook
Penetration Testing Tools
bitcrook: open-source intelligence apparatus
Bitcrook is an open-source intelligence apparatus that aims to centralize all of the tools necessary to carry out an investigation.
⤷ Title: BFScan: Uncover Hidden URLs, Paths, & Secrets in JAR/WAR/APK Files
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:39:27 +0000
════════════════════════
⌗ Tags: #Vulnerability Assessment #apk #application security #BFScan #cybersecurity #HTTP Request Generation #JAR #OpenAPI #Secret Detection #security tool #URL Discovery #WAR
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:39:27 +0000
════════════════════════
⌗ Tags: #Vulnerability Assessment #apk #application security #BFScan #cybersecurity #HTTP Request Generation #JAR #OpenAPI #Secret Detection #security tool #URL Discovery #WAR
Penetration Testing Tools
BFScan: Uncover Hidden URLs, Paths, & Secrets in JAR/WAR/APK Files
BFScan is a powerful tool to extract URLs, paths, and secrets from JAR, WAR, and APK files, generating raw HTTP requests and OpenAPI specs for security analysis.
⤷ Title: Unauthenticated RCE in Mitel SIP Phones (CVSS 9.8) Detailed with PoC Exploit
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:50:18 +0000
════════════════════════
⌗ Tags: #Vulnerability #BusyBox #Conference Unit #cybersecurity #Mitel #rce #remote command injection #root access #SIP phones #unauthenticated
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:50:18 +0000
════════════════════════
⌗ Tags: #Vulnerability #BusyBox #Conference Unit #cybersecurity #Mitel #rce #remote command injection #root access #SIP phones #unauthenticated
Daily CyberSecurity
Unauthenticated RCE in Mitel SIP Phones (CVSS 9.8) Detailed with PoC Exploit
Unauthenticated RCE flaw in Mitel SIP phones (CVSS 9.8) lets attackers gain root via ringtone upload. Exploit PoC shows full system compromise.
⤷ Title: Critical Blink Router Flaws (CVSS 9.8) Allow Remote Root Code Execution via Unauthenticated Attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:48:27 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #BL_AC1900 #BL_WR9000 #Blink Router #Command Injection #CVE_2025_45984 #CVE_2025_45985 #CVE_2025_45986 #CVE_2025_45987 #CVE_2025_45988 #cybersecurity #HTTP request #rce #Remote Code Execution #root access #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:48:27 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #BL_AC1900 #BL_WR9000 #Blink Router #Command Injection #CVE_2025_45984 #CVE_2025_45985 #CVE_2025_45986 #CVE_2025_45987 #CVE_2025_45988 #cybersecurity #HTTP request #rce #Remote Code Execution #root access #Vulnerability
Daily CyberSecurity
Critical Blink Router Flaws (CVSS 9.8) Allow Remote Root Code Execution via Unauthenticated Attacks
Five critical flaws (CVSS 9.8) in Blink routers allow unauthenticated remote root code execution via command injection in web server components.
⤷ Title: Predator Spyware Resurges: New Infrastructure, Evasion Tactics, and Mozambique Customer Uncovered
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:44:32 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #android #Cyber Threat #cybersecurity #Cytrox #Insikt Group #Intellexa #ios #Mozambique #Predator #sanctions #spyware #surveillance
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:44:32 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #android #Cyber Threat #cybersecurity #Cytrox #Insikt Group #Intellexa #ios #Mozambique #Predator #sanctions #spyware #surveillance
Daily CyberSecurity
Predator Spyware Resurges: New Infrastructure, Evasion Tactics, and Mozambique Customer Uncovered
Insikt Group reveals Predator spyware's resurgence, with new infrastructure, obfuscation, and a previously unreported customer in Mozambique, despite sanctions.
⤷ Title: Anubis Ransomware: New RaaS Combines Encryption with Permanent Data Wiping
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:40:53 +0000
════════════════════════
⌗ Tags: #Malware #Anubis #Cybercrime #cybersecurity #Data Wiper #Double Extortion #encryption #RaaS #ransomware #Ransomware_as_a_Service #Sphinx #Trend Micro
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:40:53 +0000
════════════════════════
⌗ Tags: #Malware #Anubis #Cybercrime #cybersecurity #Data Wiper #Double Extortion #encryption #RaaS #ransomware #Ransomware_as_a_Service #Sphinx #Trend Micro
Daily CyberSecurity
Anubis Ransomware: New RaaS Combines Encryption with Permanent Data Wiping
Anubis, a new RaaS, combines ECIES encryption with a "wipe mode" that permanently destroys files. It's actively targeting healthcare, construction, and engineering sectors.
⤷ Title: CVE-2025-6029 & CVE-2025-6030: Replay Attacks Expose Vulnerabilities in KIA and Autoeastern Smart Keyless Entry Systems
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:36:40 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Automotive Security #AutoRFKiller #CVE_2025_6029 #CVE_2025_6030 #cybersecurity #KES #Keyless Entry System #Kia #Learning Code #Replay Attack #Rolling Code #Vehicle Security #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:36:40 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Automotive Security #AutoRFKiller #CVE_2025_6029 #CVE_2025_6030 #cybersecurity #KES #Keyless Entry System #Kia #Learning Code #Replay Attack #Rolling Code #Vehicle Security #Vulnerability
Daily CyberSecurity
CVE-2025-6029 & CVE-2025-6030: Replay Attacks Expose Vulnerabilities in KIA and Autoeastern Smart Keyless Entry Systems
Critical flaws (CVE-2025-6029, CVE-2025-6030) in KIA Ecuador key fobs allow remote vehicle unlocking and control via insecure learning code technology.
⤷ Title: Katz Stealer: New Stealthy MaaS Steals Everything, Hides in Images, and Hijacks Discord
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:31:11 +0000
════════════════════════
⌗ Tags: #Malware #crypto wallets #cybersecurity #data exfiltration #Discord Hijack #info_stealer #Katz Stealer #MaaS #malware #Malware_as_a_Service #phishing #powershell #Process Hollowing #steganography #threat intelligence #UAC bypass
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:31:11 +0000
════════════════════════
⌗ Tags: #Malware #crypto wallets #cybersecurity #data exfiltration #Discord Hijack #info_stealer #Katz Stealer #MaaS #malware #Malware_as_a_Service #phishing #powershell #Process Hollowing #steganography #threat intelligence #UAC bypass
Daily CyberSecurity
Katz Stealer: New Stealthy MaaS Steals Everything, Hides in Images, and Hijacks Discord
Katz Stealer, a new stealthy MaaS, is actively stealing data from browsers, crypto wallets, and apps, using advanced evasion tactics like steganography and Discord hijacking.
⤷ Title: Privilege Escalation Flaw in IBM Backup Services Threatens IBM i Environments (CVE-2025-33108)
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:25:43 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Backup #BRMS #CVE_2025_33108 #cybersecurity #IBM #IBM i #Media Services #privilege escalation #Recovery #Security Bulletin #Vulnerability
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:25:43 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Backup #BRMS #CVE_2025_33108 #cybersecurity #IBM #IBM i #Media Services #privilege escalation #Recovery #Security Bulletin #Vulnerability
Daily CyberSecurity
Privilege Escalation Flaw in IBM Backup Services Threatens IBM i Environments (CVE-2025-33108)
A high-severity flaw (CVE-2025-33108) in IBM BRMS for i allows users with specific capabilities to gain elevated privileges. Update to PTF SJ05907 (7.5) or SJ05906 (7.4).
⤷ Title: New Malware Duo HijackLoader & DeerStealer Surge: Bypassing Defenses for Data Theft
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:22:39 +0000
════════════════════════
⌗ Tags: #Malware #ClickFix #cybersecurity #Data Theft #DeerStealer #eSentire #HijackLoader #malware #phishing #ransomware #social engineering #Threat Response Unit #TRU
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:22:39 +0000
════════════════════════
⌗ Tags: #Malware #ClickFix #cybersecurity #Data Theft #DeerStealer #eSentire #HijackLoader #malware #phishing #ransomware #social engineering #Threat Response Unit #TRU
Daily CyberSecurity
New Malware Duo HijackLoader & DeerStealer Surge: Bypassing Defenses for Data Theft
HijackLoader and DeerStealer are surging, using ClickFix social engineering and sophisticated evasion to bypass defenses and exfiltrate sensitive data.
⤷ Title: Obscure VBScript “sostener.vbs” Unmasked: Fuels Multi-Stage RAT Delivery, Linked to Blind Eagle APT
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:18:06 +0000
════════════════════════
⌗ Tags: #Cybercriminals #APT_C_36 #AsyncRAT #Blind Eagle #censys #cybersecurity #DCRat #LimeRAT #malware #Obfuscation #rat #Remcos #Remote Access Trojan #threat intelligence #VBScript
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 16 Jun 2025 00:18:06 +0000
════════════════════════
⌗ Tags: #Cybercriminals #APT_C_36 #AsyncRAT #Blind Eagle #censys #cybersecurity #DCRat #LimeRAT #malware #Obfuscation #rat #Remcos #Remote Access Trojan #threat intelligence #VBScript
Daily CyberSecurity
Obscure VBScript "sostener.vbs" Unmasked: Fuels Multi-Stage RAT Delivery, Linked to Blind Eagle APT
Censys uncovers "sostener.vbs," an obfuscated VBScript launching a multi-stage RAT delivery pipeline, affecting dozens and potentially linked to Blind Eagle APT.