⤷ Title: A Dangerous Loophole in the VS Code Marketplace Is Allowing Malicious Extensions
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 00:10:49 +0000
════════════════════════
⌗ Tags: #Malware #Vulnerability Report #cybersecurity #Developers #malware #marketplace #ransomware #ReversingLabs #supply chain attack #VS Code
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 00:10:49 +0000
════════════════════════
⌗ Tags: #Malware #Vulnerability Report #cybersecurity #Developers #malware #marketplace #ransomware #ReversingLabs #supply chain attack #VS Code
Daily CyberSecurity
A Dangerous Loophole in the VS Code Marketplace Is Allowing Malicious Extensions
A loophole in the VS Code Marketplace allows attackers to reuse names of removed extensions to spread malware, a flaw that creates a new supply chain attack vector.
⤷ Title: Silver Fox APT Exploits Microsoft-Signed Driver to Deploy ValleyRAT Backdoor
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 00:04:12 +0000
════════════════════════
⌗ Tags: #Cybercriminals #APT #BYOVD #Check Point Research #cybersecurity #Microsoft #Silver Fox #ValleyRAT #vulnerable driver
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 00:04:12 +0000
════════════════════════
⌗ Tags: #Cybercriminals #APT #BYOVD #Check Point Research #cybersecurity #Microsoft #Silver Fox #ValleyRAT #vulnerable driver
Daily CyberSecurity
Silver Fox APT Exploits Microsoft-Signed Driver to Deploy ValleyRAT Backdoor
A new report reveals the Silver Fox APT group is abusing a Microsoft-signed vulnerable driver to disable endpoint security and deploy the ValleyRAT backdoor.
⤷ Title: PoC Exploit Released for Nagios XI RCE Flaw Allows Attackers to Hijack Servers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 00:00:47 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #IT monitoring #Nagios XI #Path Traversal #rce #Remote Code Execution
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 00:00:47 +0000
════════════════════════
⌗ Tags: #Vulnerability #cybersecurity #IT monitoring #Nagios XI #Path Traversal #rce #Remote Code Execution
Daily CyberSecurity
PoC Exploit Released for Nagios XI RCE Flaw Allows Attackers to Hijack Servers
A critical RCE flaw (CVE-2024-13986) in Nagios XI allows an authenticated attacker to upload and execute a malicious PHP shell, taking control of the server.
⤷ Title: Why Ransomware Gangs Are Now Targeting APIs and SaaS Apps
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 02:55:59 GMT
════════════════════════
⌗ Tags: #ai #ransomware #bug_bounty #hacking #cybersecurity
════════════════════════
𐀪 Author: Paritosh
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 02:55:59 GMT
════════════════════════
⌗ Tags: #ai #ransomware #bug_bounty #hacking #cybersecurity
Medium
Why Ransomware Gangs Are Now Targeting APIs and SaaS Apps
Ransomware has evolved. In the early days, attackers focused on encrypting files on endpoints. Then, they moved to corporate networks…
⤷ Title: Blocked in the Wild: What Anthropic’s “Claude Misuse” Case Means for Your Team
════════════════════════
𐀪 Author: Arthi Rajendran
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 02:23:21 GMT
════════════════════════
⌗ Tags: #ai_security #anthropic_claude #ai_governance #claude #hacking
════════════════════════
𐀪 Author: Arthi Rajendran
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 02:23:21 GMT
════════════════════════
⌗ Tags: #ai_security #anthropic_claude #ai_governance #claude #hacking
Medium
Blocked in the Wild: What Anthropic’s “Claude Misuse” Case Means for Your Team
TL;DR: Anthropic says it caught real criminals trying to use its AI, Claude, to polish phishing, fix/obfuscate code, and slip past…
⤷ Title: How to Use a Simple All-in-One Update Script for SafeLine
════════════════════════
𐀪 Author: Maverick Steel
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 03:22:23 GMT
════════════════════════
⌗ Tags: #infosec #github #firewall #cybersecurity #safeline_waf
════════════════════════
𐀪 Author: Maverick Steel
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 03:22:23 GMT
════════════════════════
⌗ Tags: #infosec #github #firewall #cybersecurity #safeline_waf
Medium
How to Use a Simple All-in-One Update Script for SafeLine
Author: SafeLine Pro user — YaneonY
⤷ Title: How to Allow Nextcloud Backup Files with SafeLine WAF
════════════════════════
𐀪 Author: AerieWhole123
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 03:48:12 GMT
════════════════════════
⌗ Tags: #beginners_guide #safeline_waf #cybersecurity
════════════════════════
𐀪 Author: AerieWhole123
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 03:48:12 GMT
════════════════════════
⌗ Tags: #beginners_guide #safeline_waf #cybersecurity
Medium
How to Allow Nextcloud Backup Files with SafeLine WAF
When using Nextcloud, some backup processes may encounter issues where certain program files are blocked by the WAF. This can interfere…
⤷ Title: When the Skies Fill with Drones: Security, Piracy, and the Future of Hardened Return-to-Home
════════════════════════
𐀪 Author: Robert Schryvers ChT
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 03:32:25 GMT
════════════════════════
⌗ Tags: #future #threat_intelligence #drones #technology #cybersecurity
════════════════════════
𐀪 Author: Robert Schryvers ChT
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 03:32:25 GMT
════════════════════════
⌗ Tags: #future #threat_intelligence #drones #technology #cybersecurity
Medium
When the Skies Fill with Drones: Security, Piracy, and the Future of Hardened Return-to-Home
Introduction: The Coming Drone World
⤷ Title: My Path to SC-200: Preparing for Microsoft’s Security Operations Analyst Certification
════════════════════════
𐀪 Author: NineTales
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 03:31:41 GMT
════════════════════════
⌗ Tags: #microsoft #certification #technology #cybersecurity #personal_growth
════════════════════════
𐀪 Author: NineTales
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 03:31:41 GMT
════════════════════════
⌗ Tags: #microsoft #certification #technology #cybersecurity #personal_growth
Medium
🚀 My Path to SC-200: Preparing for Microsoft’s Security Operations Analyst Certification
At some point in every cybersecurity journey, you reach a stage where you want to formalize your skills with a certification. For me, that…
⤷ Title: Inside UAC-0099: How HTA Files Deliver the MATCHBOIL Malware Loader
════════════════════════
𐀪 Author: Deven Chhajed
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 03:31:41 GMT
════════════════════════
⌗ Tags: #phishing_attacks #cybersecurity #malware_analysis #uac_0099 #apt
════════════════════════
𐀪 Author: Deven Chhajed
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 03:31:41 GMT
════════════════════════
⌗ Tags: #phishing_attacks #cybersecurity #malware_analysis #uac_0099 #apt
Medium
Inside UAC-0099: How HTA Files Deliver the MATCHBOIL Malware Loader
Cyber warfare rarely stands still. Each campaign brings subtle evolutions, and every evolution signals how threat actors are refining their…
⤷ Title: VPN Market 2025: Freedom on Subscription or Monopoly With a Smile?
════════════════════════
𐀪 Author: Matreshka VPN
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 03:19:56 GMT
════════════════════════
⌗ Tags: #vpn #cybersecurity #technology #psychology #digital_marketing
════════════════════════
𐀪 Author: Matreshka VPN
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 03:19:56 GMT
════════════════════════
⌗ Tags: #vpn #cybersecurity #technology #psychology #digital_marketing
Medium
VPN Market 2025: Freedom on Subscription or Monopoly With a Smile?
The Illusion of Choice
⤷ Title: Networks are really important for keeping things safe because they’re how we communicate.
════════════════════════
𐀪 Author: Zulfianarahmi
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 03:15:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #networking
════════════════════════
𐀪 Author: Zulfianarahmi
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 03:15:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #networking
Medium
How I Explored My VM and Localhost with Nmap
According to nmap.org, Nmap sends raw IP packets to figure out:
⤷ Title: CISSP Success Toolkit at Cybernous: Your Path to Certification Excellence
════════════════════════
𐀪 Author: Cybernous Infosec consulting
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 03:10:10 GMT
════════════════════════
⌗ Tags: #cybernous #cybersecurity #cissp_success_toolkit
════════════════════════
𐀪 Author: Cybernous Infosec consulting
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 03:10:10 GMT
════════════════════════
⌗ Tags: #cybernous #cybersecurity #cissp_success_toolkit
Medium
CISSP Success Toolkit at Cybernous: Your Path to Certification Excellence
In today’s cybersecurity landscape, one credential stands tall as the gold standard for professionals aiming to establish credibility…
⤷ Title: RCE Risk in Yonyou U8Cloud: ServiceDispatcher Deserialization Vulnerability
════════════════════════
𐀪 Author: AerieWhole123
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 03:04:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #safeline_waf #vulnerability
════════════════════════
𐀪 Author: AerieWhole123
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 03:04:02 GMT
════════════════════════
⌗ Tags: #cybersecurity #safeline_waf #vulnerability
Medium
RCE Risk in Yonyou U8Cloud: ServiceDispatcher Deserialization Vulnerability
> About Author Hi, I’m Sharon, a product manager at Chaitin Tech. We build SafeLine, an open-source Web Application Firewall built for…
⤷ Title: Building a Lightweight EDR Lab for Threat Detection & Incident Response
════════════════════════
𐀪 Author: Ajay
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 03:00:53 GMT
════════════════════════
⌗ Tags: #cyber_security_awareness #cybersecurity #cybercrime #cyberattack #cyber
════════════════════════
𐀪 Author: Ajay
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 03:00:53 GMT
════════════════════════
⌗ Tags: #cyber_security_awareness #cybersecurity #cybercrime #cyberattack #cyber
Medium
Building a Lightweight EDR Lab for Threat Detection & Incident Response
Over the past few weeks, I’ve been working on a project that I’m really excited to share: a lightweight Endpoint Detection & Response (EDR)…
⤷ Title: I Took the TryHackMe PT1 Exam — And It Sucked
════════════════════════
𐀪 Author: Yofom
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 03:57:36 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme_walkthrough #tryhackme
════════════════════════
𐀪 Author: Yofom
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 03:57:36 GMT
════════════════════════
⌗ Tags: #tryhackme_writeup #tryhackme_walkthrough #tryhackme
Medium
I Took the TryHackMe PT1 Exam — And It Sucked
Web #1:
The first web application is vulnerable to Cross-Site Scripting (XSS) via the loan comment field, where malicious input such as…
The first web application is vulnerable to Cross-Site Scripting (XSS) via the loan comment field, where malicious input such as…
⤷ Title: Web Uygulamalarında XSS: Riskler, Türler ve Önlemler
════════════════════════
𐀪 Author: Tuba ÜNSAL
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 02:05:48 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #offensive_security #xss_vulnerability #web_security
════════════════════════
𐀪 Author: Tuba ÜNSAL
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 02:05:48 GMT
════════════════════════
⌗ Tags: #ethical_hacking #cybersecurity #offensive_security #xss_vulnerability #web_security
Medium
Web Uygulamalarında XSS: Riskler, Türler ve Önlemler
Klavye başındaki tüm güvenlik meraklılarına selamlar. Bugün aslında hepimizin bildiği, bazen çok önemsemediğimiz ama aslında çok kritik…
⤷ Title: Sensitive Endpoint Wordlist for Bug Hunting
════════════════════════
𐀪 Author: Monika sharma
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 05:54:20 GMT
════════════════════════
⌗ Tags: #vulnerability #penetration_testing #bug_bounty_writeup #bug_bounty #bug_bounty_tips
════════════════════════
𐀪 Author: Monika sharma
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 05:54:20 GMT
════════════════════════
⌗ Tags: #vulnerability #penetration_testing #bug_bounty_writeup #bug_bounty #bug_bounty_tips
Medium
Sensitive Endpoint Wordlist for Bug Hunting
Uncover Hidden Flaws: A Powerful Wordlist for Bug Bounty Success
⤷ Title: The Cookie Bomb: My First $10K in Bug Bounties
════════════════════════
𐀪 Author: Arshad Kazmi
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 05:52:46 GMT
════════════════════════
⌗ Tags: #hackerone #analytics #cookies #bugcrowd #bug_bounty
════════════════════════
𐀪 Author: Arshad Kazmi
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 05:52:46 GMT
════════════════════════
⌗ Tags: #hackerone #analytics #cookies #bugcrowd #bug_bounty
Medium
The Cookie Bomb: My First $10K in Bug Bounties
When I started bug bounty hunting in 2019–2020, I came across a vulnerability that was simple to exploit yet surprisingly widespread. I…
⤷ Title: Boost Subdomain Discovery with Subfinder and API Integrations
════════════════════════
𐀪 Author: Saurabh Jain
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 05:22:18 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty #bug_bounty_tips #hackerone #reconnaissance
════════════════════════
𐀪 Author: Saurabh Jain
════════════════════════
ⴵ Time: Mon, 01 Sep 2025 05:22:18 GMT
════════════════════════
⌗ Tags: #bug_bounty_writeup #bug_bounty #bug_bounty_tips #hackerone #reconnaissance
Medium
Boost Subdomain Discovery with Subfinder and API Integrations
Subfinder is a popular open-source tool created by Project Discovery which is designed for discovering and enumerating subdomains.