⤷ Title: Mastering Detection Engineering with Sigma for Cybersecurity
════════════════════════
𐀪 Author: Mandar Kulkarni
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 01:22:17 GMT
════════════════════════
⌗ Tags: #cybersecurity #threat_hunting #malware #threat_intelligence #detection_engineering
════════════════════════
𐀪 Author: Mandar Kulkarni
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 01:22:17 GMT
════════════════════════
⌗ Tags: #cybersecurity #threat_hunting #malware #threat_intelligence #detection_engineering
Medium
Mastering Detection Engineering with Sigma for Cybersecurity
In this blog, we’ll explore the essentials of detection engineering, dive into Sigma rules, and provide a practical example of detecting…
⤷ Title: CHAOSBOT: A STEALTHY RUST BACKDOOR USING DISCORD AS C2
════════════════════════
𐀪 Author: Jon C
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 00:57:43 GMT
════════════════════════
⌗ Tags: #incident_response #threat_intelligence #cyberattack #cybersecurity #threat_hunting
════════════════════════
𐀪 Author: Jon C
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 00:57:43 GMT
════════════════════════
⌗ Tags: #incident_response #threat_intelligence #cyberattack #cybersecurity #threat_hunting
Medium
CHAOSBOT: A STEALTHY RUST BACKDOOR USING DISCORD AS C2
ChaosBot is a Rust-based backdoor that weaponizes the Discord API for command-and-control. Operators create per-victim Discord channels…
⤷ Title: Data Poisoning Attacks in Computer Vision: A Hidden Threat to AI Integrity
════════════════════════
𐀪 Author: Mustapha Aitigunaoun
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 00:34:25 GMT
════════════════════════
⌗ Tags: #ai #artificial_intelligence #cybersecurity #computer_vision #data_science
════════════════════════
𐀪 Author: Mustapha Aitigunaoun
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 00:34:25 GMT
════════════════════════
⌗ Tags: #ai #artificial_intelligence #cybersecurity #computer_vision #data_science
Medium
Data Poisoning Attacks in Computer Vision: A Hidden Threat to AI Integrity
Computer vision systems have become integral to modern technologies such as autonomous vehicles, facial recognition, medical imaging, and…
⤷ Title: Correlating OSINT With Dark Web Data: A Threat Hunter’s Guide
════════════════════════
𐀪 Author: Aj
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 00:34:15 GMT
════════════════════════
⌗ Tags: #data_breach #threat_intelligence #cybersecurity #darkweb #osint
════════════════════════
𐀪 Author: Aj
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 00:34:15 GMT
════════════════════════
⌗ Tags: #data_breach #threat_intelligence #cybersecurity #darkweb #osint
Medium
Correlating OSINT With Dark Web Data: A Threat Hunter’s Guide
I watched my company’s data sell for $500. Here’s how I learned to see the attacks coming.
⤷ Title: 2025 Cyberattack on Small Business: How Fileless Malware Hijacked Systems Through a Chrome…
════════════════════════
𐀪 Author: Noel
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 00:34:12 GMT
════════════════════════
⌗ Tags: #cybersecurity #google_chrome_extensions #malware #small_business #fileless_malware
════════════════════════
𐀪 Author: Noel
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 00:34:12 GMT
════════════════════════
⌗ Tags: #cybersecurity #google_chrome_extensions #malware #small_business #fileless_malware
Medium
2025 Cyberattack on Small Business: How Fileless Malware Hijacked Systems Through a Chrome Extension
ShadowRewrite is the new malware silently altering business files without detection — here’s how small businesses can protect themselves…
⤷ Title: How Secrets Became Math: From Simple Ciphers to Modern Encryption
════════════════════════
𐀪 Author: Bob S.
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 00:12:00 GMT
════════════════════════
⌗ Tags: #systems_thinking #cryptography #trust #encryption #cybersecurity
════════════════════════
𐀪 Author: Bob S.
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 00:12:00 GMT
════════════════════════
⌗ Tags: #systems_thinking #cryptography #trust #encryption #cybersecurity
Medium
How Secrets Became Math: From Simple Ciphers to Modern Encryption
Understanding how messages turned into mathematics — and why trust depends on keys, not mystery.
⤷ Title: Apple Unveils M5 Chip: 4X Faster GPU AI Performance, Powering New MacBook Pro, iPad Pro, and Vision Pro
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 03:57:45 +0000
════════════════════════
⌗ Tags: #Technology #AI Performance #Apple #iPad Pro #M5 Chip #M5 GPU #MacBook Pro #Neural Engine #Vision Pro
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 03:57:45 +0000
════════════════════════
⌗ Tags: #Technology #AI Performance #Apple #iPad Pro #M5 Chip #M5 GPU #MacBook Pro #Neural Engine #Vision Pro
Daily CyberSecurity
Apple Unveils M5 Chip: 4X Faster GPU AI Performance, Powering New MacBook Pro, iPad Pro, and Vision Pro
Apple unveiled the M5 chip built on 3nm technology with a 10-core GPU boasting 4X faster AI performance than M4. It features a 15% faster CPU and powers the new Pro devices.
⤷ Title: ChatGPT Introduces Automatic Memory Management to Prevent “Memory Full” Errors for Paid Subscribers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 03:55:37 +0000
════════════════════════
⌗ Tags: #Technology #AI model #Automatic Management #ChatGPT #Memory Feature #OpenAI #Paid Subscription #Storage Limit
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 03:55:37 +0000
════════════════════════
⌗ Tags: #Technology #AI model #Automatic Management #ChatGPT #Memory Feature #OpenAI #Paid Subscription #Storage Limit
Daily CyberSecurity
ChatGPT Introduces Automatic Memory Management to Prevent "Memory Full" Errors for Paid Subscribers
ChatGPT Plus/Pro subscribers now get Automatic Memory Management. The new feature automatically deletes older memories based on priority to prevent "memory full" errors and simplify maintenance.
⤷ Title: Critical VSCode Supply Chain Flaw: 550+ Secrets Leaked Via Extensions, Exposing 100K+ Users to Malware
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 03:49:08 +0000
════════════════════════
⌗ Tags: #Data Leak #AI API Keys #Dotfiles #Open VSX #PAT Leak #Secrets Management #supply chain attack #VSCode
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 03:49:08 +0000
════════════════════════
⌗ Tags: #Data Leak #AI API Keys #Dotfiles #Open VSX #PAT Leak #Secrets Management #supply chain attack #VSCode
Daily CyberSecurity
Critical VSCode Supply Chain Flaw: 550+ Secrets Leaked Via Extensions, Exposing 100K+ Users to Malware
Wiz found 550+ secrets (PATs, API keys) leaked in 500+ VSCode extensions, enabling an attacker to push malicious updates to 100K+ developers. Dotfiles were the main culprit.
⤷ Title: CISA Emergency Alert: Critical Adobe AEM Flaw (CVE-2025-54253, CVSS 10.0) Under Active Exploitation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 03:47:02 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Adobe AEM #CISA #Critical Vulnerability #KEV Catalog #misconfiguration #rce #Remote Code Execution #zero_day
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 03:47:02 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Adobe AEM #CISA #Critical Vulnerability #KEV Catalog #misconfiguration #rce #Remote Code Execution #zero_day
Daily CyberSecurity
CISA Emergency Alert: Critical Adobe AEM Flaw (CVE-2025-54253, CVSS 10.0) Under Active Exploitation
CISA added a Critical (CVSS 10.0) RCE flaw (CVE-2025-54253) in Adobe Experience Manager Forms to its KEV Catalog due to active exploitation. Patch is mandatory by Nov 5.
⤷ Title: F5 Networks Breached by Nation-State Actor, BIG-IP Source Code and Undisclosed Vulnerabilities Stolen
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 03:38:21 +0000
════════════════════════
⌗ Tags: #Cyber Security #Data Leak #BIG_IP #CISA Emergency Directive #F5 Networks #Nation_State APT #security advisory #Source Code Leak #Supply Chain
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 03:38:21 +0000
════════════════════════
⌗ Tags: #Cyber Security #Data Leak #BIG_IP #CISA Emergency Directive #F5 Networks #Nation_State APT #security advisory #Source Code Leak #Supply Chain
Daily CyberSecurity
F5 Networks Breached by Nation-State Actor, BIG-IP Source Code and Undisclosed Vulnerabilities Stolen
F5 disclosed a breach by a "highly sophisticated nation-state" that stole BIG-IP source code and internal vuln info. CISA issued an Emergency Directive mandating immediate patching of 44 flaws.
⤷ Title: Operation Zero Disco: Critical Cisco SNMP Flaw (CVE-2025-20352) Used to Implant Linux Rootkits on Switches
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 02:49:49 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Vulnerability Report #cisco #Cisco Switches #CVE_2025_20352 #Linux Rootkit #OT Security #SNMP RCE #Zero Disco
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 02:49:49 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Vulnerability Report #cisco #Cisco Switches #CVE_2025_20352 #Linux Rootkit #OT Security #SNMP RCE #Zero Disco
Daily CyberSecurity
Operation Zero Disco: Critical Cisco SNMP Flaw (CVE-2025-20352) Used to Implant Linux Rootkits on Switches
"Operation Zero Disco" exploits a critical Cisco SNMP flaw (CVE-2025-20352) to deploy Linux rootkits on switches. The malware sets a universal "disco" password and hides configuration to maintain persistence.
⤷ Title: Critical Samba RCE Flaw CVE-2025-10230 (CVSS 10.0) Allows Unauthenticated Command Injection on AD DCs
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 02:40:04 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #active directory #Command Injection #Critical Vulnerability #CVE_2025_10230 #rce #samba #WINS Server
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 02:40:04 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #active directory #Command Injection #Critical Vulnerability #CVE_2025_10230 #rce #samba #WINS Server
Daily CyberSecurity
Critical Samba RCE Flaw CVE-2025-10230 (CVSS 10.0) Allows Unauthenticated Command Injection on AD DCs
Samba released an urgent fix for a Critical (CVSS 10.0) RCE flaw (CVE-2025-10230) allowing unauthenticated command injection on AD DCs when the WINS hook is enabled. Update to 4.23.2.
⤷ Title: Stealth Stealer: PhantomVAI Loader Uses Steganography in Images to Inject Katz Stealer and Evade Sandboxes
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 02:27:02 +0000
════════════════════════
⌗ Tags: #Malware #anti_analysis #C++ #Katz Stealer #Malware_as_a_Service #PhantomVAI Loader #phishing #Process Hollowing #steganography
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 02:27:02 +0000
════════════════════════
⌗ Tags: #Malware #anti_analysis #C++ #Katz Stealer #Malware_as_a_Service #PhantomVAI Loader #phishing #Process Hollowing #steganography
Daily CyberSecurity
Stealth Stealer: PhantomVAI Loader Uses Steganography in Images to Inject Katz Stealer and Evade Sandboxes
Unit 42 exposed PhantomVAI Loader, a stealthy MaaS tool that uses steganography (hiding DLL in images) and VM detection to deploy Katz Stealer in MSBuild.exe and exfiltrate crypto credentials globally.
⤷ Title: China’s Jewelbug APT Breaches Russian IT Provider for 5 Months, Using Yandex Cloud and Graph API C2
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 02:12:02 +0000
════════════════════════
⌗ Tags: #Cyber Security #China APT #cyber_espionage #Jewelbug #Microsoft Graph API #russia #Supply Chain #Yandex Cloud
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 02:12:02 +0000
════════════════════════
⌗ Tags: #Cyber Security #China APT #cyber_espionage #Jewelbug #Microsoft Graph API #russia #Supply Chain #Yandex Cloud
Daily CyberSecurity
China's Jewelbug APT Breaches Russian IT Provider for 5 Months, Using Yandex Cloud and Graph API C2
Symantec exposed China's Jewelbug APT in an unprecedented 5-month intrusion on a Russian IT provider. The group used Yandex Cloud for data exfiltration and Graph API for stealthy C2 via custom malware.
⤷ Title: Critical RCE Flaw CVE-2025-54539 in Apache ActiveMQ NMS AMQP Client Allows Server-Side Code Execution
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 02:00:35 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #.NET Client #AMQP #Apache ActiveMQ #Critical Vulnerability #CVE_2025_54539 #Deserialization #rce
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 02:00:35 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #.NET Client #AMQP #Apache ActiveMQ #Critical Vulnerability #CVE_2025_54539 #Deserialization #rce
Daily CyberSecurity
Critical RCE Flaw CVE-2025-54539 in Apache ActiveMQ NMS AMQP Client Allows Server-Side Code Execution
Apache issued a critical fix for ActiveMQ NMS AMQP Client (CVE-2025-54539). The deserialization flaw allows untrusted AMQP servers to execute remote code on client systems.
⤷ Title: Global Interruption: YouTube, X, Steam, and Cloudflare Experience Simultaneous Outages Due to Datacenter Route Failure
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 01:52:14 +0000
════════════════════════
⌗ Tags: #Technology #AWS #cloudflare #Datacenter #Global Disruption #Internet Outage #Network Failure #YouTube Down
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 01:52:14 +0000
════════════════════════
⌗ Tags: #Technology #AWS #cloudflare #Datacenter #Global Disruption #Internet Outage #Network Failure #YouTube Down
Daily CyberSecurity
Global Interruption: YouTube, X, Steam, and Cloudflare Experience Simultaneous Outages Due to Datacenter Route Failure
Multiple major online services, including YouTube, X/Twitter, and Steam, suffered simultaneous outages suspected to be caused by a temporary datacenter route failure primarily affecting the U.S. East Coast.
⤷ Title: Mysterious Elephant APT Campaign Targets South Asian Diplomacy, Steals WhatsApp Data with New MemLoader Backdoor
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 01:45:48 +0000
════════════════════════
⌗ Tags: #Vulnerability #APT #BabShell #cyber_espionage #Data Theft #MemLoader #Mysterious Elephant #Pakistan #WhatsApp
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 01:45:48 +0000
════════════════════════
⌗ Tags: #Vulnerability #APT #BabShell #cyber_espionage #Data Theft #MemLoader #Mysterious Elephant #Pakistan #WhatsApp
Daily CyberSecurity
Mysterious Elephant APT Campaign Targets South Asian Diplomacy, Steals WhatsApp Data with New MemLoader Backdoor
Kaspersky exposed the Mysterious Elephant APT targeting South Asia. The group uses MemLoader and custom tools (BabShell) to steal sensitive WhatsApp desktop data and exfiltrate documents.
⤷ Title: China-Backed Flax Typhoon APT Maintained Year-Long Access by Turning ArcGIS SOE into Web Shell Backdoor
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 01:36:29 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT #ArcGIS #China_Backed #Flax Typhoon #Java SOE #persistence #Supply Chain #Web Shell
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 01:36:29 +0000
════════════════════════
⌗ Tags: #Cyber Security #APT #ArcGIS #China_Backed #Flax Typhoon #Java SOE #persistence #Supply Chain #Web Shell
Daily CyberSecurity
China-Backed Flax Typhoon APT Maintained Year-Long Access by Turning ArcGIS SOE into Web Shell Backdoor
ReliaQuest exposed Flax Typhoon for a year-long breach, where the China-backed APT turned a legitimate ArcGIS Java SOE into a web shell and embedded it in backups to ensure persistence.
⤷ Title: Network Reconnaissance with Naabu: A Fast Port Scanner Guide
════════════════════════
𐀪 Author: Swetha
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 03:43:26 GMT
════════════════════════
⌗ Tags: #automation #technology #hacking #computer_science
════════════════════════
𐀪 Author: Swetha
════════════════════════
ⴵ Time: Thu, 16 Oct 2025 03:43:26 GMT
════════════════════════
⌗ Tags: #automation #technology #hacking #computer_science
Medium
Network Reconnaissance with Naabu: A Fast Port Scanner Guide
Keeping your network secure starts with knowing what’s exposed. This guide shows you how to use Naabu, the powerful open-source port…