⤷ Title: CTF Günlükleri-2 /Net Sec Challenge-TryHackMe
════════════════════════
𐀪 Author: Gamzekarasu
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 20:38:07 GMT
════════════════════════
⌗ Tags: #netsec #netsecchallenge #tryhackme_walkthrough #tryhackme #ctf
════════════════════════
𐀪 Author: Gamzekarasu
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 20:38:07 GMT
════════════════════════
⌗ Tags: #netsec #netsecchallenge #tryhackme_walkthrough #tryhackme #ctf
Medium
CTF Günlükleri-2 /Net Sec Challenge-TryHackMe
Introduction:
⤷ Title: Deobfuscating Android Apps with Androidmeda: A Smarter Way to Read Obfuscated Code
════════════════════════
𐀪 Author: mh
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 22:31:56 +0000
════════════════════════
⌗ Tags: #Deobfuscation #LLM #Malware #Vulnerability #Androidmeda #decompilation #deobfuscation #malware analysis #obfuscation #vulnerability research
════════════════════════
𐀪 Author: mh
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 22:31:56 +0000
════════════════════════
⌗ Tags: #Deobfuscation #LLM #Malware #Vulnerability #Androidmeda #decompilation #deobfuscation #malware analysis #obfuscation #vulnerability research
Mobile Hacker
Deobfuscating Android Apps with Androidmeda: A Smarter Way to Read Obfuscated Code - Mobile Hacker
I came across a new tool—Androidmeda—that caught my attention. It attempts to deobfuscate decompiled Android code using a large language model (LLMs). I decided to give it a try, and to my surprise, the results were far better than expected.
⤷ Title: Coyote Trojan First to Use Microsoft UI Automation in Bank Attacks
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 21:50:37 +0000
════════════════════════
⌗ Tags: #Security #Malware #Akamai #Automation #Banking #Brazil #Coyote #Cybersecurity #Microsoft #Microsoft UI #TROJAN
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 21:50:37 +0000
════════════════════════
⌗ Tags: #Security #Malware #Akamai #Automation #Banking #Brazil #Coyote #Cybersecurity #Microsoft #Microsoft UI #TROJAN
Hackread
Coyote Trojan First to Use Microsoft UI Automation in Bank Attacks
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: Cursor AI’s “YOLO Mode” Exposed: Security Firm Warns of Easy Bypasses, Data Deletion, and RCE Risks
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 22:48:07 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI Agent #Backslash Security #Cursor AI #cybersecurity #File Deletion #Prompt Injection #remote code execution #vulnerability #YOLO Mode
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 22:48:07 +0000
════════════════════════
⌗ Tags: #Vulnerability #AI Agent #Backslash Security #Cursor AI #cybersecurity #File Deletion #Prompt Injection #remote code execution #vulnerability #YOLO Mode
Penetration Testing Tools
Cursor AI's "YOLO Mode" Exposed: Security Firm Warns of Easy Bypasses, Data Deletion, and RCE Risks
Backslash Security warns that Cursor AI's "YOLO mode" (unsupervised execution) has easily bypassed safeguards, risking file deletion, arbitrary code execution, and data compromise via simple command obfuscation.
⤷ Title: Microsoft Halts China-Based Support for US DoD Cloud After ProPublica Expose & Pentagon Backlash
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 22:44:56 +0000
════════════════════════
⌗ Tags: #Cyber Security #Microsoft #China #cloud security #cybersecurity #Department of Defense #DoD #National Security #Policy Change #ProPublica
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 22:44:56 +0000
════════════════════════
⌗ Tags: #Cyber Security #Microsoft #China #cloud security #cybersecurity #Department of Defense #DoD #National Security #Policy Change #ProPublica
Penetration Testing Tools
Microsoft Halts China-Based Support for US DoD Cloud After ProPublica Expose & Pentagon Backlash
Following a ProPublica report and Pentagon backlash, Microsoft will no longer allow China-based engineers to support US Department of Defense cloud systems.
⤷ Title: Apple Wallet Now Supports Tmoney: South Korea Commuters Tap to Pay with iPhone & Apple Watch
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 22:24:03 +0000
════════════════════════
⌗ Tags: #Apple #Apple Pay #Apple Wallet #Apple Watch #Commuting #Convenience #iphone #Public Transport #South Korea #Tmoney
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 22:24:03 +0000
════════════════════════
⌗ Tags: #Apple #Apple Pay #Apple Wallet #Apple Watch #Commuting #Convenience #iphone #Public Transport #South Korea #Tmoney
Penetration Testing Tools
Apple Wallet Now Supports Tmoney: South Korea Commuters Tap to Pay with iPhone & Apple Watch
Apple Wallet now integrates with South Korea's Tmoney card. Commuters can tap to pay for transit and make purchases with their iPhone or Apple Watch, even with a depleted battery.
⤷ Title: Build your own bug bounty recon tool
════════════════════════
𐀪 Author: Marília Rocha
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 21:53:55 GMT
════════════════════════
⌗ Tags: #recon #bug_bounty #bug_hunter #reconnaissance #bug_bounty_tips
════════════════════════
𐀪 Author: Marília Rocha
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 21:53:55 GMT
════════════════════════
⌗ Tags: #recon #bug_bounty #bug_hunter #reconnaissance #bug_bounty_tips
Medium
Build your own bug bounty recon tool
Recon is one of the most important steps when you’re looking for vulnerabilities. I use several tools in my workflow to speed things up…
⤷ Title: TryHackMe — El Bandito
════════════════════════
𐀪 Author: omni
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 22:35:50 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme_walkthrough #hacking #cybersecurity #tryhackme
════════════════════════
𐀪 Author: omni
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 22:35:50 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme_walkthrough #hacking #cybersecurity #tryhackme
Medium
TryHackMe — El Bandito
Reconnaissance
⤷ Title: Baby-VulnLab Write-Up
════════════════════════
𐀪 Author: t0x1k
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 22:39:59 GMT
════════════════════════
⌗ Tags: #cybersecurity #ctf_writeup #penetration_testing
════════════════════════
𐀪 Author: t0x1k
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 22:39:59 GMT
════════════════════════
⌗ Tags: #cybersecurity #ctf_writeup #penetration_testing
Medium
Baby-VulnLab Write-Up
This is my journey through all the easy machines on Vulnlab and it starts with Baby. I did them in order as they sit on the discord, so I…
⤷ Title: ️ Buffer Overflow — A Tale of Treacherous Memory
════════════════════════
𐀪 Author: Emma Lateyron
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 22:33:07 GMT
════════════════════════
⌗ Tags: #memory_management #buffer_overflow #cybersecurity
════════════════════════
𐀪 Author: Emma Lateyron
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 22:33:07 GMT
════════════════════════
⌗ Tags: #memory_management #buffer_overflow #cybersecurity
Medium
🛡️ Buffer Overflow — A Tale of Treacherous Memory
Hear Ye! Hear Ye! A Bug Most Vile: The Buffer Overflow
⤷ Title: Spam Season Is Here: Real-World Lessons for Smashing Online Pests
════════════════════════
𐀪 Author: Dan Christ
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 22:12:34 GMT
════════════════════════
⌗ Tags: #cybersecurity #phishing_awareness #online_safety #ai #tech_tips
════════════════════════
𐀪 Author: Dan Christ
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 22:12:34 GMT
════════════════════════
⌗ Tags: #cybersecurity #phishing_awareness #online_safety #ai #tech_tips
Medium
Spam Season Is Here: Real-World Lessons for Smashing Online Pests
My lawn looks like it has rained every day for the last three months. I may have cut more weeds today than grass, and the fungi in the…
⤷ Title: Gap Analysis of Vendor Privacy and Security Policy
════════════════════════
𐀪 Author: Sharaden Cole
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 22:11:08 GMT
════════════════════════
⌗ Tags: #risk_management #grc #information_security #cybersecurity #gap_analysis
════════════════════════
𐀪 Author: Sharaden Cole
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 22:11:08 GMT
════════════════════════
⌗ Tags: #risk_management #grc #information_security #cybersecurity #gap_analysis
Medium
Gap Analysis of Vendor Privacy and Security Policy
This project performs a gap analysis on Best Buy’s Information Security Policy. The objective was to ensure alignment with PCI DSS 4.0
⤷ Title: Elastic Stack SIEM Home Lab using Kali Linux
════════════════════════
𐀪 Author: Sharaden Cole
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 21:48:36 GMT
════════════════════════
⌗ Tags: #cybersecurity #vmware #elastic_stack #linux #siem
════════════════════════
𐀪 Author: Sharaden Cole
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 21:48:36 GMT
════════════════════════
⌗ Tags: #cybersecurity #vmware #elastic_stack #linux #siem
Medium
Elastic Stack SIEM Home Lab using Kali Linux
This lab provides hands-on experience with security monitoring and incident response.
⤷ Title: Insufficient Access Controls in GraphQL Enables Unauthorized User Enumeration
════════════════════════
𐀪 Author: Bassemwanies
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 21:32:52 GMT
════════════════════════
⌗ Tags: #graphql #cybersecurity #bug_bounty_writeup #bug_bounty_hunting #bug_hunting
════════════════════════
𐀪 Author: Bassemwanies
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 21:32:52 GMT
════════════════════════
⌗ Tags: #graphql #cybersecurity #bug_bounty_writeup #bug_bounty_hunting #bug_hunting
Medium
🔓Insufficient Access Controls in GraphQL Enables Unauthorized User Enumeration
قَالَ اللَّهُ تَعَالَى: {يَرْفَعِ اللَّهُ الَّذِينَ آمَنُوا مِنكُمْ وَالَّذِينَ أُوتُوا الْعِلْمَ دَرَجَاتٍ ۚ وَاللَّهُ بِمَا تَعْمَلُونَ…
⤷ Title: TryHackMe | Stealth Walkthrough
════════════════════════
𐀪 Author: Babatunde Ojo
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 22:59:23 GMT
════════════════════════
⌗ Tags: #servers #privilege_escalation #tryhackme #windows #powershell_script
════════════════════════
𐀪 Author: Babatunde Ojo
════════════════════════
ⴵ Time: Tue, 22 Jul 2025 22:59:23 GMT
════════════════════════
⌗ Tags: #servers #privilege_escalation #tryhackme #windows #powershell_script
Medium
TryHackMe | Stealth Walkthrough
Start the VM by clicking the Start Machine button at the top right of the task and visit MACHINE_IP:8080 to pwn the machine. You can…
⤷ Title: ExpressVPN Fixes RDP Leak: Real IP Addresses Exposed Due to Debugging Code Oversight
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 23 Jul 2025 00:51:05 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #Debugging Code #ExpressVPN #IP Leak #privacy #RDP #Remote Desktop Protocol #VPN #vulnerability
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 23 Jul 2025 00:51:05 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #Debugging Code #ExpressVPN #IP Leak #privacy #RDP #Remote Desktop Protocol #VPN #vulnerability
Penetration Testing Tools
ExpressVPN Fixes RDP Leak: Real IP Addresses Exposed Due to Debugging Code Oversight
ExpressVPN patched a critical Windows client flaw (v12.97-12.101.0.2-beta) that exposed users' real IP addresses by allowing RDP traffic to bypass the VPN tunnel. Update immediately!
⤷ Title: CoinDCX Hacked for $44 Million in Crypto: Internal Account Breached, User Funds Safe
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 23 Jul 2025 00:44:54 +0000
════════════════════════
⌗ Tags: #Cybercriminals #blockchain #CoinDCX #Crypto Theft #cryptocurrency #cyberattack #Exchange #hack #India #security incident
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 23 Jul 2025 00:44:54 +0000
════════════════════════
⌗ Tags: #Cybercriminals #blockchain #CoinDCX #Crypto Theft #cryptocurrency #cyberattack #Exchange #hack #India #security incident
Penetration Testing Tools
CoinDCX Hacked for $44 Million in Crypto: Internal Account Breached, User Funds Safe
Indian crypto exchange CoinDCX suffered a $44 million cyberattack on an internal operational account. User funds are confirmed safe, and the company will cover all losses.
⤷ Title: SilverFox Unleashes Massive Malware Campaign: 2,800+ Domains Target Chinese-Speaking Users Worldwide
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 23 Jul 2025 00:41:26 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BOTNET #China #cybercrime #cybersecurity #Data Exfiltration #malware #phishing #SilverFox #windows
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 23 Jul 2025 00:41:26 +0000
════════════════════════
⌗ Tags: #Cybercriminals #BOTNET #China #cybercrime #cybersecurity #Data Exfiltration #malware #phishing #SilverFox #windows
Penetration Testing Tools
SilverFox Unleashes Massive Malware Campaign: 2,800+ Domains Target Chinese-Speaking Users Worldwide
The Chinese SilverFox group launched an expansive malware campaign with over 2,800 domains, targeting Chinese-speaking users worldwide with fake sites to exfiltrate data.
⤷ Title: Qtap: See Through Encrypted Linux Traffic with eBPF for Unparalleled Observability and Security Auditing
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 23 Jul 2025 00:32:55 +0000
════════════════════════
⌗ Tags: #Open Source Tool #API Development #cybersecurity #Debugging #eBPF #Linux Kernel #Network Observability #Qtap #Security Auditing #TLS/SSL #Traffic Interception
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 23 Jul 2025 00:32:55 +0000
════════════════════════
⌗ Tags: #Open Source Tool #API Development #cybersecurity #Debugging #eBPF #Linux Kernel #Network Observability #Qtap #Security Auditing #TLS/SSL #Traffic Interception
Penetration Testing Tools
Qtap: See Through Encrypted Linux Traffic with eBPF for Unparalleled Observability and Security Auditing
Qtap is an eBPF agent that captures pre-encrypted Linux kernel traffic, offering full visibility into TLS/SSL data with minimal overhead for security auditing, debugging, and API development.
⤷ Title: Scanception: New QR Code Phishing Campaign Bypasses Security to Harvest Credentials on Mobile
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 23 Jul 2025 00:25:30 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Credential Harvesting #cybersecurity #Mobile Devices #PDF Lures #phishing #QR Code Phishing #Quishing #Scanception #Social Engineering
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Wed, 23 Jul 2025 00:25:30 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Credential Harvesting #cybersecurity #Mobile Devices #PDF Lures #phishing #QR Code Phishing #Quishing #Scanception #Social Engineering
Penetration Testing Tools
Scanception: New QR Code Phishing Campaign Bypasses Security to Harvest Credentials on Mobile
Cyble's "Scanception" uses QR codes in PDF lures to bypass enterprise security, shifting attacks to mobile devices to harvest credentials via AITM phishing pages.