⤷ Title: PyPI Typosquat Delivers Multi-Layer Python RAT, Bypassing Scanners with XOR Encryption
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 00:15:58 +0000
════════════════════════
⌗ Tags: #Malware #PyPI #Python RAT #Remote Code Execution #spellcheckers #supply chain attack #Typosquatting #XOR encryption
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 00:15:58 +0000
════════════════════════
⌗ Tags: #Malware #PyPI #Python RAT #Remote Code Execution #spellcheckers #supply chain attack #Typosquatting #XOR encryption
Daily CyberSecurity
PyPI Typosquat Delivers Multi-Layer Python RAT, Bypassing Scanners with XOR Encryption
A malicious PyPI typosquat (spellcheckers) infected 950+ users. The package deploys an XOR-encrypted Python RAT via a hidden index file, granting full remote execution (exec()) and is linked to crypto scams.
⤷ Title: Critical Markdown to PDF Flaw (CVE-2025-65108, CVSS 10.0) Allows RCE via JS Injection in Markdown Front-Matter
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 00:11:58 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Critical Vulnerability #CVE_2025_65108 #gray_matter #Markdown #md_to_pdf #rce #Supply Chain
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 00:11:58 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Critical Vulnerability #CVE_2025_65108 #gray_matter #Markdown #md_to_pdf #rce #Supply Chain
Daily CyberSecurity
Critical Markdown to PDF Flaw (CVE-2025-65108, CVSS 10.0) Allows RCE via JS Injection in Markdown Front-Matter
A Critical (CVSS 10.0) RCE flaw (CVE-2025-65108) in md-to-pdf allows arbitrary JavaScript code execution via malicious front-matter. Over 47K weekly downloads are affected. Update to v5.2.5.
⤷ Title: Eternidade Stealer: New Python WhatsApp Worm Uses IMAP Email for Covert C2 and Brazilian Bank Overlays
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 00:05:47 +0000
════════════════════════
⌗ Tags: #Malware #Banking Trojan #Brazil #Eternidade Stealer #IMAP C2 #Python #Trustwave #WhatsApp Worm
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 00:05:47 +0000
════════════════════════
⌗ Tags: #Malware #Banking Trojan #Brazil #Eternidade Stealer #IMAP C2 #Python #Trustwave #WhatsApp Worm
Daily CyberSecurity
Eternidade Stealer: New Python WhatsApp Worm Uses IMAP Email for Covert C2 and Brazilian Bank Overlays
Trustwave exposed Eternidade Stealer, a sophisticated Brazilian Trojan. The Python WhatsApp worm steals contact lists and uses IMAP email for covert C2 retrieval to launch banking overlays.
⤷ Title: Extreme Stealth: Python Malware Hides Inside PNG-Disguised RAR, Injects Payload into cvtres.exe
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 00:01:01 +0000
════════════════════════
⌗ Tags: #Malware #cvtres.exe #Multi_Layer Encoding #Obfuscation #Process injection #Python Malware #RAR Archive #steganography
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 00:01:01 +0000
════════════════════════
⌗ Tags: #Malware #cvtres.exe #Multi_Layer Encoding #Obfuscation #Process injection #Python Malware #RAR Archive #steganography
Daily CyberSecurity
Extreme Stealth: Python Malware Hides Inside PNG-Disguised RAR, Injects Payload into cvtres.exe
K7 Labs exposed a Python malware using multi-layer encoding (Base64/BZ2/Zlib) and a PNG-disguised RAR archive. The payload executes in memory and achieves stealth by injecting into cvtres.exe.
⤷ Title: Wscan: New Open-Source Web Scanner Uses ML for Automated, Personalized Penetration Testing
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 03:34:28 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Automation #machine learning #ML #nmap #open source #Penetration Testing #security scanner #web security #Wscan
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 03:34:28 +0000
════════════════════════
⌗ Tags: #Open Source Tool #Automation #machine learning #ML #nmap #open source #Penetration Testing #security scanner #web security #Wscan
Penetration Testing Tools
Wscan: New Open-Source Web Scanner Uses ML for Automated, Personalized Penetration Testing
Wscan is a new open-source web scanner using Machine Learning for fully automated, personalized penetration testing, aiming for high efficiency, accuracy, and low false positives.
⤷ Title: URGENT Patch: GRUB2 Flaws Allow Secure Boot Bypass via Use-After-Free Exploits
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 03:30:07 +0000
════════════════════════
⌗ Tags: #Vulnerability #Bootloader #CVE_2025_61661 #GRUB2 #Linux Security #SBAT #Secure Boot #UEFI #use_after_free
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 03:30:07 +0000
════════════════════════
⌗ Tags: #Vulnerability #Bootloader #CVE_2025_61661 #GRUB2 #Linux Security #SBAT #Secure Boot #UEFI #use_after_free
Penetration Testing Tools
URGENT Patch: GRUB2 Flaws Allow Secure Boot Bypass via Use-After-Free Exploits
A new GRUB2 patch fixes six critical flaws (like CVE-2025-61661) that could bypass UEFI Secure Boot. Full boot chain rebuild and SBAT support are required.
⤷ Title: UK Dismantles Financial Network Bankrolling Jan Marsalek’s Spy Ring via Crypto
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 03:28:08 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cryptocurrency #Financial Crime #Jan Marsalek #Money Laundering #NCA #Spy Ring #Tether #UK Security #Wirecard
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 03:28:08 +0000
════════════════════════
⌗ Tags: #Cybercriminals #cryptocurrency #Financial Crime #Jan Marsalek #Money Laundering #NCA #Spy Ring #Tether #UK Security #Wirecard
Penetration Testing Tools
UK Dismantles Financial Network Bankrolling Jan Marsalek’s Spy Ring via Crypto
The UK's NCA dismantled the financial network that bankrolled a spy ring linked to Jan Marsalek, exposing a sophisticated crypto-laundering scheme that moved billions.
⤷ Title: Princeton, Harvard Hacked: AI-Augmented Attacks Fuel Surge in University Breaches
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 03:25:23 +0000
════════════════════════
⌗ Tags: #Cyber Security #AI Attacks #Geopolitical Threat #Harvard #Intellectual Property #Princeton #ransomware #University Hacking
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 03:25:23 +0000
════════════════════════
⌗ Tags: #Cyber Security #AI Attacks #Geopolitical Threat #Harvard #Intellectual Property #Princeton #ransomware #University Hacking
Penetration Testing Tools
Princeton, Harvard Hacked: AI-Augmented Attacks Fuel Surge in University Breaches
Cyberattacks on universities (Princeton, Harvard, UPenn) surge globally. Experts warn that AI-augmented hacking and complex infrastructure make the sector highly vulnerable.
⤷ Title: NSO Group Appeals Pegasus Spyware Ban, Claims Ruling Threatens Company Closure
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 03:19:38 +0000
════════════════════════
⌗ Tags: #Malware #Court Ruling #Cyber Surveillance #Injunction #legal battle #Meta #NSO Group #Pegasus spyware #WhatsApp #Zero_Click
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 03:19:38 +0000
════════════════════════
⌗ Tags: #Malware #Court Ruling #Cyber Surveillance #Injunction #legal battle #Meta #NSO Group #Pegasus spyware #WhatsApp #Zero_Click
Penetration Testing Tools
NSO Group Appeals Pegasus Spyware Ban, Claims Ruling Threatens Company Closure
NSO Group is appealing a federal injunction banning it from using WhatsApp's infrastructure to deploy Pegasus spyware, arguing the order could force the company to shut down.
⤷ Title: Microsoft Releases Emergency Hotfix KB5072753 to Stop Windows 11 Update Loop
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 03:17:19 +0000
════════════════════════
⌗ Tags: #Windows #Hotfix #KB5068966 #KB5072753 #Microsoft #Out_of_Band #System Error #Update Loop #Windows 11 #Windows Update
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 03:17:19 +0000
════════════════════════
⌗ Tags: #Windows #Hotfix #KB5068966 #KB5072753 #Microsoft #Out_of_Band #System Error #Update Loop #Windows 11 #Windows Update
Penetration Testing Tools
Microsoft Releases Emergency Hotfix KB5072753 to Stop Windows 11 Update Loop
Microsoft released out-of-band update KB5072753 for Windows 11 25H2 to fix a bug where the previous KB5068966 hotfix was being repeatedly reinstalled on affected systems.
⤷ Title: NVIDIA Hotfix 581.94 Released to Fix Windows 11 Update Game Performance Drops
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 03:09:59 +0000
════════════════════════
⌗ Tags: #Technology #Windows #FPS Drop #gaming #GeForce #Hotfix Driver #KB5066835 #Microsoft Update #Nvidia #Performance Degradation #Windows 11
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 03:09:59 +0000
════════════════════════
⌗ Tags: #Technology #Windows #FPS Drop #gaming #GeForce #Hotfix Driver #KB5066835 #Microsoft Update #Nvidia #Performance Degradation #Windows 11
Penetration Testing Tools
NVIDIA Hotfix 581.94 Released to Fix Windows 11 Update Game Performance Drops
NVIDIA released GeForce Hotfix Driver 581.94 to mitigate significant game performance drops (FPS) caused by Microsoft's recent October Windows 11 update KB5066835.
⤷ Title: UNC2891: Raspberry Pi, Custom Rootkit CAKETAP Fuel Sophisticated ATM Fraud Campaign
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 03:08:45 +0000
════════════════════════
⌗ Tags: #Cybercriminals #ATM Fraud #CAKETAP #Financial Security #Group_IB #money mules #Raspberry Pi #rootkit #STEELCORGI #UNC2891
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 03:08:45 +0000
════════════════════════
⌗ Tags: #Cybercriminals #ATM Fraud #CAKETAP #Financial Security #Group_IB #money mules #Raspberry Pi #rootkit #STEELCORGI #UNC2891
Penetration Testing Tools
UNC2891: Raspberry Pi, Custom Rootkit CAKETAP Fuel Sophisticated ATM Fraud Campaign
The UNC2891 campaign against Indonesian banks used a Raspberry Pi and the CAKETAP rootkit to bypass ATM verification protocols, orchestrating cash-outs via a mule network.
⤷ Title: Internal Errors Plague Cloud Giants: AWS, Azure, & Cloudflare Hit by Configuration Outages
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 03:06:01 +0000
════════════════════════
⌗ Tags: #Technology #AWS #Cloud Outage #Cloud Resilience #Cloudflare #Configuration Error #DNS Failure #metadata #Microsoft Azure #Single Point of Failure
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 03:06:01 +0000
════════════════════════
⌗ Tags: #Technology #AWS #Cloud Outage #Cloud Resilience #Cloudflare #Configuration Error #DNS Failure #metadata #Microsoft Azure #Single Point of Failure
Penetration Testing Tools
Internal Errors Plague Cloud Giants: AWS, Azure, & Cloudflare Hit by Configuration Outages
Recent outages at AWS, Azure, and Cloudflare show that internal configuration errors, not attacks, are the new single point of failure in hyper-automated global cloud infrastructure.
⤷ Title: PHP 8.5 Released: Pipe Operator & Standards-Compliant URL Handling Arrive
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 02:53:36 +0000
════════════════════════
⌗ Tags: #Technology #Code Readability #Laravel #PHP 8.5 #Pipe Operator #Programming Language #URL Handling #Web Development #WordPress
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 02:53:36 +0000
════════════════════════
⌗ Tags: #Technology #Code Readability #Laravel #PHP 8.5 #Pipe Operator #Programming Language #URL Handling #Web Development #WordPress
Penetration Testing Tools
PHP 8.5 Released: Pipe Operator & Standards-Compliant URL Handling Arrive
PHP 8.5 brings major updates, including the long-awaited Pipe operator for cleaner code chaining and a new URL library for standards-compliant, reliable data handling.
⤷ Title: Critical Infrastructure at Risk: INC Ransom Claims 1 TB Data Theft from NAFFCO
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 02:52:13 +0000
════════════════════════
⌗ Tags: #Data Leak #Critical Infrastructure #cyber attack #data breach #Dubai #Fire Safety #INC Ransom #Middle East #NAFFCO #ransomware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 02:52:13 +0000
════════════════════════
⌗ Tags: #Data Leak #Critical Infrastructure #cyber attack #data breach #Dubai #Fire Safety #INC Ransom #Middle East #NAFFCO #ransomware
Penetration Testing Tools
Critical Infrastructure at Risk: INC Ransom Claims 1 TB Data Theft from NAFFCO
INC Ransom claims to have stolen 1 TB of internal data from NAFFCO, a major Middle East fire safety contractor for critical infrastructure like the Burj Khalifa.
⤷ Title: ShinyHunters Claims Gainsight Breach, Threatens Salesforce Extortion Over Customer Data
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 02:47:15 +0000
════════════════════════
⌗ Tags: #Data Leak #AppExchange #cybercrime #data breach #Extortion #Gainsight #OAuth Token #Salesforce #ShinyHunters #supply chain attack
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 02:47:15 +0000
════════════════════════
⌗ Tags: #Data Leak #AppExchange #cybercrime #data breach #Extortion #Gainsight #OAuth Token #Salesforce #ShinyHunters #supply chain attack
Penetration Testing Tools
ShinyHunters Claims Gainsight Breach, Threatens Salesforce Extortion Over Customer Data
Salesforce revoked all Gainsight app tokens after a breach, potentially exposing customer data. ShinyHunters claims responsibility, threatening to leak data from ~1,000 organizations.
⤷ Title: Massive 2.3 TB Leak: Italian Railway Contractor Almaviva Confirms Data Breach
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 02:45:13 +0000
════════════════════════
⌗ Tags: #Data Leak #Almaviva #Confidential Documents #cybersecurity #Dark Web #data breach #FS Italiane #Italian Railway #Italy #supply chain attack
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 02:45:13 +0000
════════════════════════
⌗ Tags: #Data Leak #Almaviva #Confidential Documents #cybersecurity #Dark Web #data breach #FS Italiane #Italian Railway #Italy #supply chain attack
Penetration Testing Tools
Massive 2.3 TB Leak: Italian Railway Contractor Almaviva Confirms Data Breach
Almaviva, a key contractor for Italy's national railway (FS Italiane), confirmed a breach resulting in a massive 2.3 terabyte leak of internal and confidential documents on the dark web.
⤷ Title: iOS 27 & macOS 27: Apple Shifts to Stability and Performance Over New Features
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 02:22:38 +0000
════════════════════════
⌗ Tags: #Technology #Apple #Bug Fixes #iOS 27 #Liquid Glass #macOS 27 #Mark Gurman #Performance #Snow Leopard #Stability #WWDC
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 02:22:38 +0000
════════════════════════
⌗ Tags: #Technology #Apple #Bug Fixes #iOS 27 #Liquid Glass #macOS 27 #Mark Gurman #Performance #Snow Leopard #Stability #WWDC
Daily CyberSecurity
iOS 27 & macOS 27: Apple Shifts to Stability and Performance Over New Features
Apple will forgo major new features in iOS 27 and macOS 27 to focus on performance, bug fixes, and stability—a return to the foundational 'Snow Leopard' strategy.
⤷ Title: X Launches ‘About This Account’ Tool to Boost Transparency and Fight Fakes
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 02:18:27 +0000
════════════════════════
⌗ Tags: #Technology #Account Transparency #Fake Accounts #Nikita Bier #Platform Integrity #Social Media #twitter #verification #X
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 02:18:27 +0000
════════════════════════
⌗ Tags: #Technology #Account Transparency #Fake Accounts #Nikita Bier #Platform Integrity #Social Media #twitter #verification #X
Daily CyberSecurity
X Launches ‘About This Account’ Tool to Boost Transparency and Fight Fakes
X is rolling out "About this account," a new feature that publicly reveals an account's creation location and handle history to increase transparency and curb fake profiles.
⤷ Title: Tim Cook Stepping Down Next Year? Rumors Firmly Dismissed by Mark Gurman
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 02:14:14 +0000
════════════════════════
⌗ Tags: #Technology #Apple #CEO Succession #Corporate News #Financial Times #John Ternus #Mark Gurman #Tech Leadership #Tim Cook
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 02:14:14 +0000
════════════════════════
⌗ Tags: #Technology #Apple #CEO Succession #Corporate News #Financial Times #John Ternus #Mark Gurman #Tech Leadership #Tim Cook
Daily CyberSecurity
Tim Cook Stepping Down Next Year? Rumors Firmly Dismissed by Mark Gurman
Reports suggesting Tim Cook will step down as Apple CEO in early 2026 are "simply false," according to Mark Gurman. Cook is expected to remain until at least 2029.