⤷ Title: ComfyUI Under Attack: “Pickai” C++ Backdoor Compromises 700+ AI Image Generation Servers Globally
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 20 Jun 2025 00:00:36 +0000
════════════════════════
⌗ Tags: #Malware #AI #artificial intelligence #backdoor #ComfyUI #cybersecurity #image generation #Linux #malware #Pickai #supply chain attack #threat intelligence #XLab
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Fri, 20 Jun 2025 00:00:36 +0000
════════════════════════
⌗ Tags: #Malware #AI #artificial intelligence #backdoor #ComfyUI #cybersecurity #image generation #Linux #malware #Pickai #supply chain attack #threat intelligence #XLab
Daily CyberSecurity
ComfyUI Under Attack: "Pickai" C++ Backdoor Compromises 700+ AI Image Generation Servers Globally
A C++ backdoor named Pickai is actively exploiting ComfyUI servers, compromising nearly 700 AI image generation hosts and posing a supply chain risk
⤷ Title: MystRodX: A Stealthy New Backdoor Found Hiding in Networks for Over 20 Months
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 30 Aug 2025 00:00:58 +0000
════════════════════════
⌗ Tags: #Malware #backdoor #cybersecurity #DNS tunneling #icmp #malware #Mirai #MystRodX #stealthy #XLab
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Sat, 30 Aug 2025 00:00:58 +0000
════════════════════════
⌗ Tags: #Malware #backdoor #cybersecurity #DNS tunneling #icmp #malware #Mirai #MystRodX #stealthy #XLab
Daily CyberSecurity
MystRodX: A Stealthy New Backdoor Found Hiding in Networks for Over 20 Months
A new report reveals MystRodX, a stealthy backdoor that uses passive wake-up triggers and multi-layer encryption to operate undetected in networks for months.
⤷ Title: The Trojan in the Living Room: How the Kimwolf Botnet Hijacked 2 Million Android Devices
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 06 Jan 2026 04:10:25 +0000
════════════════════════
⌗ Tags: #Malware #ADB Exploit #Android TV Box #BOTNET #Brian Krebs #Cybersecurity 2026 #IoT Security #IPIDEA #Kimwolf #Residential Proxies #Synthient #XLab
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 06 Jan 2026 04:10:25 +0000
════════════════════════
⌗ Tags: #Malware #ADB Exploit #Android TV Box #BOTNET #Brian Krebs #Cybersecurity 2026 #IoT Security #IPIDEA #Kimwolf #Residential Proxies #Synthient #XLab
Information Security News
The Trojan in the Living Room: How the Kimwolf Botnet Hijacked 2 Million Android Devices
More than two million infected devices worldwide—this is the scale of the new botnet known as Kimwolf, according to an assessment published by Synthient. The countries reporting the highest number…
⤷ Title: The Trojan in the Living Room: 2 Million Android TV Boxes Hijacked by Kimwolf
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 13 Jan 2026 04:00:26 +0000
════════════════════════
⌗ Tags: #Malware #Android TV #BOTNET #DDoS #Ethereum Name Service #IoT Security #Kimwolf #Malware 2026 #Resi Rack #Residential Proxy #Synthient #XLab
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Tue, 13 Jan 2026 04:00:26 +0000
════════════════════════
⌗ Tags: #Malware #Android TV #BOTNET #DDoS #Ethereum Name Service #IoT Security #Kimwolf #Malware 2026 #Resi Rack #Residential Proxy #Synthient #XLab
Penetration Testing Tools
The Trojan in the Living Room: 2 Million Android TV Boxes Hijacked by Kimwolf
When you procure an inexpensive, unbranded Android TV box, connect it to your television, and relegate it to
⤷ Title: The Return of Funnull: Rebranded and Ramping Up Supply Chain Attacks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Mar 2026 00:01:42 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AppleCMS #CDN Hijacking #cybersecurity #Fangneng CDN #Funnull #GoEdge #infosec #RingH23 #supply chain attack #threat intelligence #Traffic Hijacking #XLab
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 05 Mar 2026 00:01:42 +0000
════════════════════════
⌗ Tags: #Cybercriminals #AppleCMS #CDN Hijacking #cybersecurity #Fangneng CDN #Funnull #GoEdge #infosec #RingH23 #supply chain attack #threat intelligence #Traffic Hijacking #XLab
Daily CyberSecurity
The Return of Funnull: Rebranded and Ramping Up Supply Chain Attacks
XLab researchers reveal the return of OFAC-sanctioned Funnull. The group is using the new RingH23 framework to hijack CDNs and poison supply chains.
⤷ Title: Critical cPanel Auth Bypass CVE-2026-41940 Exploited by Thousands
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 12 May 2026 12:37:43 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CPanel #CVE_2026_41940 #Cyber Security #Data Breach #infosec #Linux Server #Mr_Rot13 #Patch Alert #WHM #wordpress security #XLab
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Tue, 12 May 2026 12:37:43 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Authentication Bypass #CPanel #CVE_2026_41940 #Cyber Security #Data Breach #infosec #Linux Server #Mr_Rot13 #Patch Alert #WHM #wordpress security #XLab
Daily CyberSecurity
Critical cPanel Auth Bypass CVE-2026-41940 Exploited by Thousands
Urgent: cPanel & WHM hit by global 9.8 CVSS auth bypass. Over 2,000 IPs are actively hijacking servers for data theft and ransomware. Patch immediately!
⤷ Title: Global Ghost CMS Poisoning Campaign Exploits Enterprise Blogs
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 27 May 2026 07:22:23 +0000
════════════════════════
⌗ Tags: #Malware #Vulnerability Report #ClickFix #CVE_2026_26980 #cybersecurity news #FakeCaptcha #Ghost CMS #malicious JavaScript #sql injection #XLab
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Wed, 27 May 2026 07:22:23 +0000
════════════════════════
⌗ Tags: #Malware #Vulnerability Report #ClickFix #CVE_2026_26980 #cybersecurity news #FakeCaptcha #Ghost CMS #malicious JavaScript #sql injection #XLab
Daily CyberSecurity
Global Ghost CMS Poisoning Campaign Exploits Enterprise Blogs
XLab uncovers a massive Ghost CMS poisoning campaign utilizing CVE-2026-26980 to launch FakeCaptcha attacks. Learn how to secure your site.