⤷ Title: WINS is Dead: Microsoft to Fully Retire WINS Name Resolution from Windows Server Post-2025
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 08:04:32 +0000
════════════════════════
⌗ Tags: #Windows #deprecation #dns #IT Migration #Legacy Service #Microsoft #Name Resolution #Windows NT 3.5 #Windows Server #WINS
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 08:04:32 +0000
════════════════════════
⌗ Tags: #Windows #deprecation #dns #IT Migration #Legacy Service #Microsoft #Name Resolution #Windows NT 3.5 #Windows Server #WINS
Daily CyberSecurity
WINS is Dead: Microsoft to Fully Retire WINS Name Resolution from Windows Server Post-2025
Microsoft will fully retire the WINS name-resolution service after Windows Server 2025. Support for existing deployments ends in 2034, urging migration to DNS now.
⤷ Title: Chinese DeepSeek-R1 AI Generates Insecure Code When Prompts Mention Tibet or Uyghurs
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 16:37:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 16:37:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: New RadzaRat Spyware Poses as File Manager to Hijack Android Devices
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 11:47:21 +0000
════════════════════════
⌗ Tags: #Android #Malware #Security #Certo Software #Cyber Crime #Cybersecurity #Privacy #RadzaRat #RAT #Spyware
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 11:47:21 +0000
════════════════════════
⌗ Tags: #Android #Malware #Security #Certo Software #Cyber Crime #Cybersecurity #Privacy #RadzaRat #RAT #Spyware
Hackread
New RadzaRat Spyware Poses as File Manager to Hijack Android Devices
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: Second Sha1-Hulud Wave Affects 25,000+ Repositories via npm Preinstall Credential Theft
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 18:33:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 18:33:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: ⚡ Weekly Recap: Fortinet Exploit, Chrome 0-Day, BadIIS Malware, Record DDoS, SaaS Breach & More
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 18:02:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 18:02:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Elite Cyber Veterans Launch Blast Security with $10M to Turn Cloud Detection into Prevention
════════════════════════
𐀪 Author: CyberNewswire
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 13:00:56 +0000
════════════════════════
⌗ Tags: #Press Release #CISO #Fund Raising #Funding
════════════════════════
𐀪 Author: CyberNewswire
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 13:00:56 +0000
════════════════════════
⌗ Tags: #Press Release #CISO #Fund Raising #Funding
Hackread
Elite Cyber Veterans Launch Blast Security with $10M to Turn Cloud Detection into Prevention
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: Fake Prettier Extension on VSCode Marketplace Dropped Anivia Stealer
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 12:43:57 +0000
════════════════════════
⌗ Tags: #Security #Anivia Stealer #Brandjacking #Checkmarx #Coding #Cybersecurity #Fake Prettier Extension on VSCode Marketplace Dropped Anivia Stealer #Marketplace #Prettier #ZeroTrace
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 12:43:57 +0000
════════════════════════
⌗ Tags: #Security #Anivia Stealer #Brandjacking #Checkmarx #Coding #Cybersecurity #Fake Prettier Extension on VSCode Marketplace Dropped Anivia Stealer #Marketplace #Prettier #ZeroTrace
Hackread
Fake Prettier Extension on VSCode Marketplace Dropped Anivia Stealer
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: Shai Hulud npm Worm Impacts 26,000+ Repos in Supply Chain Attack
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 15:32:01 +0000
════════════════════════
⌗ Tags: #Malware #Security #Cyber Attack #Cybersecurity #Developer #NPM #Python #Shai Hulud
════════════════════════
𐀪 Author: Deeba Ahmed
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 15:32:01 +0000
════════════════════════
⌗ Tags: #Malware #Security #Cyber Attack #Cybersecurity #Developer #NPM #Python #Shai Hulud
Hackread
Shai Hulud npm Worm Impacts 26,000+ Repos in Supply Chain Attack
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: Elite Cyber Veterans Launch Blast Security with $10M to Turn Cloud Detection into Prevention
════════════════════════
𐀪 Author: cybernewswire
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 13:00:27 +0000
════════════════════════
⌗ Tags: #Press Release
════════════════════════
𐀪 Author: cybernewswire
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 13:00:27 +0000
════════════════════════
⌗ Tags: #Press Release
Daily CyberSecurity
Elite Cyber Veterans Launch Blast Security with $10M to Turn Cloud Detection into Prevention
Tel Aviv, Israel, 24th November 2025, CyberNewsWire
⤷ Title: New Fluent Bit Flaws Expose Cloud to RCE and Stealthy Infrastructure Intrusions
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 20:33:00 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 20:33:00 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: How To Hide Your Country Location on X (Twitter) by Switching to Region
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 17:46:45 +0000
════════════════════════
⌗ Tags: #How To #Privacy #Elon Musk #How to #Social Media #twitter #X
════════════════════════
𐀪 Author: Waqas
════════════════════════
ⴵ Time: Mon, 24 Nov 2025 17:46:45 +0000
════════════════════════
⌗ Tags: #How To #Privacy #Elon Musk #How to #Social Media #twitter #X
Hackread
How To Hide Your Country Location on X (Twitter) by Switching to Region
Follow us on Bluesky, Twitter (X), Mastodon and Facebook at @Hackread
⤷ Title: China-Nexus Autumn Dragon APT Exploits WinRAR Flaw to Deploy Telegram C2 Backdoor
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:00:28 +0000
════════════════════════
⌗ Tags: #Cyber Security #Autumn Dragon #China APT #cyber_espionage #DLL Sideloading #Southeast Asia #Telegram C2 #WinRAR Exploit
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:00:28 +0000
════════════════════════
⌗ Tags: #Cyber Security #Autumn Dragon #China APT #cyber_espionage #DLL Sideloading #Southeast Asia #Telegram C2 #WinRAR Exploit
Daily CyberSecurity
China-Nexus Autumn Dragon APT Exploits WinRAR Flaw to Deploy Telegram C2 Backdoor
CyberArmor exposed Autumn Dragon, a China-nexus APT using a WinRAR path traversal flaw (CVE-2025-8088) and DLL sideloading to deploy a Telegram C2 backdoor for espionage in Southeast Asia.
⤷ Title: Critical WordPress Flaw (CVE-2025-6389, CVSS 9.8) Under Active Exploitation Allows Unauthenticated RCE
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 01:59:58 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Critical RCE #CVE_2025_6389 #FlatNews #Sneeit Framework #unauthenticated RCE #Web Security #wordpress
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 01:59:58 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Critical RCE #CVE_2025_6389 #FlatNews #Sneeit Framework #unauthenticated RCE #Web Security #wordpress
Daily CyberSecurity
Critical WordPress Flaw (CVE-2025-6389, CVSS 9.8) Under Active Exploitation Allows Unauthenticated RCE
A Critical (CVSS 9.8) RCE flaw in Sneeit Framework is actively exploited. The bug allows unauthenticated attackers to run arbitrary code via call_user_func and take over WordPress sites. Update to v8.4 immediately.
⤷ Title: High-Severity Vault Flaw (CVE-2025-13357) Allows Unauthenticated Access via LDAP Null Bind Insecure Default
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:36:50 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVE_2025_13357 #HashiCorp Vault #Insecure Default #LDAP #Terraform Provider
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:36:50 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CVE_2025_13357 #HashiCorp Vault #Insecure Default #LDAP #Terraform Provider
Daily CyberSecurity
High-Severity Vault Flaw (CVE-2025-13357) Allows Unauthenticated Access via LDAP Null Bind Insecure Default
A High-severity flaw (CVE-2025-13357, CVSS 7.4) in the Vault Terraform Provider allows unauthenticated access via LDAP null binds due to an insecure deny_null_bind default setting. Update to v5.5.0.
⤷ Title: Critical Unpatched Flaw: Vivotek EOL IP Cameras Exposed to Unauthenticated RCE via Command Injection
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:31:32 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Command Injection #CVE_2019_19936 #end_of_life #IoT security #IP Camera #rce #unauthenticated access #Vivotek
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:31:32 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Command Injection #CVE_2019_19936 #end_of_life #IoT security #IP Camera #rce #unauthenticated access #Vivotek
Daily CyberSecurity
Critical Unpatched Flaw: Vivotek EOL IP Cameras Exposed to Unauthenticated RCE via Command Injection
A critical, unpatched flaw in EOL Vivotek IP Cameras allows unauthenticated RCE via command injection in eventtask.cgi. Firmware versions 0100c–0305a4 are vulnerable and will not receive fixes.
⤷ Title: CVE-2025-63207 (CVSS 9.8): Critical Broken Access Control Flaw Exposes R.V.R Elettronica TEX Devices to Full System Takeover
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:25:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #Broadcast Hardware #Critical Vulnerability #CVE_2025_63207 #password reset #R.V.R Elettronica
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:25:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #Broadcast Hardware #Critical Vulnerability #CVE_2025_63207 #password reset #R.V.R Elettronica
Daily CyberSecurity
CVE-2025-63207 (CVSS 9.8): Critical Broken Access Control Flaw Exposes R.V.R Elettronica TEX Devices to Full System Takeover
A Critical (CVSS 9.8) Auth Bypass flaw (CVE-2025-63207) in R.V.R Elettronica TEX broadcast hardware allows unauthenticated attackers to reset all user passwords (Admin/Operator) via a simple HTTP request.
⤷ Title: ToddyCat APT Steals Microsoft 365 Cloud Email by Dumping OAuth Tokens from Memory and Copying Locked OST Files
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:21:05 +0000
════════════════════════
⌗ Tags: #Malware #APT #cyber_espionage #Microsoft 365 #OAuth Token Theft #Outlook OST #ProcDump #TCSectorCopy #ToddyCat
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:21:05 +0000
════════════════════════
⌗ Tags: #Malware #APT #cyber_espionage #Microsoft 365 #OAuth Token Theft #Outlook OST #ProcDump #TCSectorCopy #ToddyCat
Daily CyberSecurity
ToddyCat APT Steals Microsoft 365 Cloud Email by Dumping OAuth Tokens from Memory and Copying Locked OST Files
Kaspersky exposed ToddyCat APT's evolution: the group steals M365 OAuth tokens from memory and uses TCSectorCopy to steal locked Outlook OST files, allowing covert access to cloud email outside the perimeter.
⤷ Title: Kimsuky APT Deploys Dual KimJongRAT Payloads, Switching Between PE/PowerShell Based on Windows Defender Status
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:16:35 +0000
════════════════════════
⌗ Tags: #Malware #DPRK APT #Dual Payload #GitHub Releases #KimJongRAT #Kimsuky #LNK Exploit #Windows Defender Bypass
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:16:35 +0000
════════════════════════
⌗ Tags: #Malware #DPRK APT #Dual Payload #GitHub Releases #KimJongRAT #Kimsuky #LNK Exploit #Windows Defender Bypass
Daily CyberSecurity
Kimsuky APT Deploys Dual KimJongRAT Payloads, Switching Between PE/PowerShell Based on Windows Defender Status
ENKI exposed a Kimsuky APT campaign using a dual PE/PowerShell payload that switches based on Windows Defender status to deploy KimJongRAT. The malware steals Chrome AppBound keys via GitHub Releases C2.
⤷ Title: Brazilian Banking Trojan Uses Python WhatsApp Worm and IMAP C2 for In-Memory Credential Theft
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:11:04 +0000
════════════════════════
⌗ Tags: #Malware #AutoIt Loader #Brazilian Banking Trojan #IMAP C2 #In_Memory Injection #Python #WhatsApp Worm #WPPConnect
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:11:04 +0000
════════════════════════
⌗ Tags: #Malware #AutoIt Loader #Brazilian Banking Trojan #IMAP C2 #In_Memory Injection #Python #WhatsApp Worm #WPPConnect
Daily CyberSecurity
Brazilian Banking Trojan Uses Python WhatsApp Worm and IMAP C2 for In-Memory Credential Theft
K7 Labs exposed a Brazilian campaign using a Python WhatsApp worm for self-propagation. The in-memory AutoIt loader deploys a banking trojan that uses IMAP email as a covert C2 channel to steal banking credentials.
⤷ Title: North Korea’s Operation DreamJob Hits Europe: WhatsApp Job Lure Delivers Evolved MISTPEN/BURNBOOK Backdoors
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:05:42 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #BURNBOOK #DLL Sideloading #DPRK APT #DreamJob #MISTPEN #Pass_the_hash #UNC2970 #WhatsApp Lure
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 25 Nov 2025 00:05:42 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Malware #BURNBOOK #DLL Sideloading #DPRK APT #DreamJob #MISTPEN #Pass_the_hash #UNC2970 #WhatsApp Lure
Daily CyberSecurity
North Korea's Operation DreamJob Hits Europe: WhatsApp Job Lure Delivers Evolved MISTPEN/BURNBOOK Backdoors