⤷ Title: The Silent Blackout: Unpatched Huawei Router Zero-Day Crushed Luxembourg’s Telecom Grid
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:54:40 +0000
════════════════════════
⌗ Tags: #Vulnerability #Carrier Grade Networking #Core Switching Fabric #Denial of Service Exploit #European CERT IoCs #Firmware Reboot Loop #Huawei Enterprise Routing Hardware #POST Luxembourg Telecom Collapse #Recorded Future News Threat Intel #Restricted Advisory Portal #zero_day vulnerability
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:54:40 +0000
════════════════════════
⌗ Tags: #Vulnerability #Carrier Grade Networking #Core Switching Fabric #Denial of Service Exploit #European CERT IoCs #Firmware Reboot Loop #Huawei Enterprise Routing Hardware #POST Luxembourg Telecom Collapse #Recorded Future News Threat Intel #Restricted Advisory Portal #zero_day vulnerability
Penetration Testing Tools
The Silent Blackout: Unpatched Huawei Router Zero-Day Crushed Luxembourg’s Telecom Grid
During the previous summer season, the sovereign nation of Luxembourg suffered a catastrophic, near-total collapse of its domestic
⤷ Title: Beyond Email: Attackers Hijack Microsoft Teams External Access to Launch Deep Network Compromise
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:18:18 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CVE_2023_36036 #Cyber Security #Dumpit #External Access Configuration #Incident Response #infosec #Kerberoasting #LSASS Memory Dump #Microsoft Teams phishing #Rapid7 Labs #social engineering
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:18:18 +0000
════════════════════════
⌗ Tags: #Cybercriminals #CVE_2023_36036 #Cyber Security #Dumpit #External Access Configuration #Incident Response #infosec #Kerberoasting #LSASS Memory Dump #Microsoft Teams phishing #Rapid7 Labs #social engineering
Daily CyberSecurity
Beyond Email: Attackers Hijack Microsoft Teams External Access to Launch Deep Network Compromise
Rapid7 Labs exposes how attackers are abusing Microsoft Teams external access and Dumpit memory scrapers to breach corporate networks. Protect your team!
⤷ Title: How an Android App’s Misconfigured Firebase Database Exposed Sensitive Data
════════════════════════
𐀪 Author: Athultpme
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:41:43 GMT
════════════════════════
⌗ Tags: #vulnerability #cybersecurity #bug_bounty #mobile #web_security
════════════════════════
𐀪 Author: Athultpme
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:41:43 GMT
════════════════════════
⌗ Tags: #vulnerability #cybersecurity #bug_bounty #mobile #web_security
Medium
How an Android App’s Misconfigured Firebase Database Exposed Sensitive Data
Mobile Security | Android | Firebase | Cybsersecurity
⤷ Title: How a College Website’s REST API Exposed Its Entire Attack Surface — User Enumeration…
════════════════════════
𐀪 Author: Padmesh
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:23:10 GMT
════════════════════════
⌗ Tags: #offensive_security #hunting #wordpress #bug_bounty #cybersecurity
════════════════════════
𐀪 Author: Padmesh
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:23:10 GMT
════════════════════════
⌗ Tags: #offensive_security #hunting #wordpress #bug_bounty #cybersecurity
Medium
How a College Website’s REST API Exposed Its Entire Attack Surface — User Enumeration…
By Padmesh P S | Cybersecurity Researcher | 6 min read | Severity: High/Critical
⤷ Title: Cryptographic Failures — The #4 Vulnerability on the Web
════════════════════════
𐀪 Author: loopXvedant
════════════════════════
ⴵ Time: Thu, 21 May 2026 05:31:00 GMT
════════════════════════
⌗ Tags: #ctf #bug_bounty #owasp_top_10 #hacking #cybersecurity
════════════════════════
𐀪 Author: loopXvedant
════════════════════════
ⴵ Time: Thu, 21 May 2026 05:31:00 GMT
════════════════════════
⌗ Tags: #ctf #bug_bounty #owasp_top_10 #hacking #cybersecurity
Medium
Cryptographic Failures — The #4 Vulnerability on the Web 🔐
When encryption is missing, weak, or just plain wrong — your data is already exposed.
⤷ Title: REASONING vs RULES : Part 2 — The Feedback Engine: How the Colosseum Learns Faster Than Threats…
════════════════════════
𐀪 Author: Vishnu Priya Vangipuram
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:53:46 GMT
════════════════════════
⌗ Tags: #cybersecurity #artificial_intelligence #ai_agent #application_security #distributed_systems
════════════════════════
𐀪 Author: Vishnu Priya Vangipuram
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:53:46 GMT
════════════════════════
⌗ Tags: #cybersecurity #artificial_intelligence #ai_agent #application_security #distributed_systems
Medium
REASONING vs RULES : Part 2 — The Feedback Engine: How the Colosseum Learns Faster Than Threats Evolve
In Part 1 of the blog series, The arena was set. Now we start building the engine that wins.
⤷ Title: ZPHISHER HANDS ON LAB
════════════════════════
𐀪 Author: BlueTeamMal
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:56:45 GMT
════════════════════════
⌗ Tags: #social_engineering #hacking #cybersecurity
════════════════════════
𐀪 Author: BlueTeamMal
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:56:45 GMT
════════════════════════
⌗ Tags: #social_engineering #hacking #cybersecurity
Medium
ZPHISHER HANDS ON LAB
1.I used Zphisher as it’s the one of the simplest tool for social engineering.
⤷ Title: What is 51% Attack in Blockchain? How does it works?
════════════════════════
𐀪 Author: Om Ratnaparkhe
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:27:35 GMT
════════════════════════
⌗ Tags: #web3 #hacking #bitcoin #blockchain #security
════════════════════════
𐀪 Author: Om Ratnaparkhe
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:27:35 GMT
════════════════════════
⌗ Tags: #web3 #hacking #bitcoin #blockchain #security
Medium
What is 51% Attack in Blockchain? How does it works?
The 51% attack is a famous blockchain technology’s loophole or often regarded as a vulnerability. Its a way to tamper with the blockchain’s…
⤷ Title: Investigating Scam Infrastructure Using OSINT — Inside The Scam Industry (Part 2)
════════════════════════
𐀪 Author: ghostyjoe
════════════════════════
ⴵ Time: Thu, 21 May 2026 05:57:20 GMT
════════════════════════
⌗ Tags: #osint #true_crime #cybersecurity #hacking #cybercrime
════════════════════════
𐀪 Author: ghostyjoe
════════════════════════
ⴵ Time: Thu, 21 May 2026 05:57:20 GMT
════════════════════════
⌗ Tags: #osint #true_crime #cybersecurity #hacking #cybercrime
Medium
🌐 Investigating Scam Infrastructure Using OSINT — Inside The Scam Industry (Part 2)
SCAN SMARTER, NOT HARDER — by Ghostyjoe™
⤷ Title: Command Line — part 1
════════════════════════
𐀪 Author: ExploitHunter
════════════════════════
ⴵ Time: Thu, 21 May 2026 05:53:39 GMT
════════════════════════
⌗ Tags: #ethical_hacking #web_development #cybersecurity #infosec #cyber_security_awareness
════════════════════════
𐀪 Author: ExploitHunter
════════════════════════
ⴵ Time: Thu, 21 May 2026 05:53:39 GMT
════════════════════════
⌗ Tags: #ethical_hacking #web_development #cybersecurity #infosec #cyber_security_awareness
Medium
Command Line — part 1
Windows Command Line
⤷ Title: GitHub Was Breached Through a Single VS Code Extension.
════════════════════════
𐀪 Author: Sai kiran
════════════════════════
ⴵ Time: Thu, 21 May 2026 05:21:13 GMT
════════════════════════
⌗ Tags: #supply_chain_security #github #infosec #developer_security #cybersecurity
════════════════════════
𐀪 Author: Sai kiran
════════════════════════
ⴵ Time: Thu, 21 May 2026 05:21:13 GMT
════════════════════════
⌗ Tags: #supply_chain_security #github #infosec #developer_security #cybersecurity
Medium
GitHub Was Breached Through a Single VS Code Extension.
One employee. One poisoned extension. One click on the VS Code Marketplace. And TeamPCP walked out with 3,800 of GitHub’s internal…
⤷ Title: Getting Into a College’s AWS Account Without a Password — How Two Public AWS API Calls Exposed…
════════════════════════
𐀪 Author: Padmesh
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:06:33 GMT
════════════════════════
⌗ Tags: #aws #web_security #cloud_security #cybersecurity #ethical_hacking
════════════════════════
𐀪 Author: Padmesh
════════════════════════
ⴵ Time: Thu, 21 May 2026 06:06:33 GMT
════════════════════════
⌗ Tags: #aws #web_security #cloud_security #cybersecurity #ethical_hacking
Medium
Getting Into a College’s AWS Account Without a Password — How Two Public AWS API Calls Exposed…
By Padmesh P S | Cybersecurity Researcher | 4 min read | Severity: Critical
⤷ Title: The Bug That Shouldn’t Exist…But Still Does Everywhere
════════════════════════
𐀪 Author: Fateyaly
════════════════════════
ⴵ Time: Thu, 21 May 2026 05:29:40 GMT
════════════════════════
⌗ Tags: #ethical_hacking #programming #technology #cybersecurity #coding
════════════════════════
𐀪 Author: Fateyaly
════════════════════════
ⴵ Time: Thu, 21 May 2026 05:29:40 GMT
════════════════════════
⌗ Tags: #ethical_hacking #programming #technology #cybersecurity #coding
Medium
The Bug That Shouldn’t Exist…But Still Does Everywhere
Some mistakes never die in real-world apps.
⤷ Title: Linux Privilege Escalation: Automation | TryHackMe |practical challenge
════════════════════════
𐀪 Author: Jose Praveen
════════════════════════
ⴵ Time: Thu, 21 May 2026 05:16:51 GMT
════════════════════════
⌗ Tags: #privilege_escalation #tryhackme_walkthrough #ethical_hacking #cybersecurity
════════════════════════
𐀪 Author: Jose Praveen
════════════════════════
ⴵ Time: Thu, 21 May 2026 05:16:51 GMT
════════════════════════
⌗ Tags: #privilege_escalation #tryhackme_walkthrough #ethical_hacking #cybersecurity
Medium
Linux Privilege Escalation: Automation | TryHackMe |practical challenge
Build on Linux privilege escalation skills: automate enumeration and use public exploits.
⤷ Title: 9-Year-Old Linux Kernel Flaw Enables Root Command Execution on Major Distros
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 21 May 2026 13:05:53 +0530
════════════════════════
⌗ Tags: No_Tags
════════════════════════
𐀪 Author: Unknown
════════════════════════
ⴵ Time: Thu, 21 May 2026 13:05:53 +0530
════════════════════════
⌗ Tags: No_Tags
⤷ Title: Anonymity Stripped: Unsecured Kibana and Dozzle Dashboards Leak 22 Million FTF Live Video Chat Records
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:26:05 +0000
════════════════════════
⌗ Tags: #Data Leak #Burhan LTD #Cooy Ads Ltd #Data Leak Cybernews #De_anonymization Risk #Dozzle Docker Logs #FTF Live Video Chat #Real_time Token Leak #Regional CERT Escalation #Session Metadata Exposure #Unsecured Kibana Dashboard
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:26:05 +0000
════════════════════════
⌗ Tags: #Data Leak #Burhan LTD #Cooy Ads Ltd #Data Leak Cybernews #De_anonymization Risk #Dozzle Docker Logs #FTF Live Video Chat #Real_time Token Leak #Regional CERT Escalation #Session Metadata Exposure #Unsecured Kibana Dashboard
Penetration Testing Tools
Anonymity Stripped: Unsecured Kibana and Dozzle Dashboards Leak 22 Million FTF Live Video Chat Records
The FTF Live video-chat ecosystem, which explicitly guaranteed its consumer base absolute anonymity during randomized social interactions, has
⤷ Title: The Egress Hijack: How the Kimwolf Botnet Weaponized Commercial Residential Proxies for Mass Cyber Attacks
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:21:11 +0000
════════════════════════
⌗ Tags: #Malware #Application Layer Exhaustion #Badbox 2.0 Malware Framework #Byteconnect SDK Monetization #Gray Market Proxy Suppliers #IPIDEA Android Supply Chain #Kimwolf Botnet Residential Proxies #Qurium Forensic Investigation #Triada Trojan persistence #Turnkey Cybercrime Economy #Unauthenticated ADB Exploitation
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:21:11 +0000
════════════════════════
⌗ Tags: #Malware #Application Layer Exhaustion #Badbox 2.0 Malware Framework #Byteconnect SDK Monetization #Gray Market Proxy Suppliers #IPIDEA Android Supply Chain #Kimwolf Botnet Residential Proxies #Qurium Forensic Investigation #Triada Trojan persistence #Turnkey Cybercrime Economy #Unauthenticated ADB Exploitation
Penetration Testing Tools
The Egress Hijack: How the Kimwolf Botnet Weaponized Commercial Residential Proxies for Mass Cyber Attacks
Residential proxy networks, which convincingly mirror standard domestic internet connections, have emerged as one of the most agonizing
⤷ Title: Microsoft Smashes “Fox Tempest” Cyber Syndicate Selling Cryptographic Cover for Ransomware
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:17:59 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Code Validation Bypass #Fox Tempest Malware Signing #Malvertising SEO Poisoning #Microsoft Artifact Signing Abuse #OpFauxSign Takedown #Phantom Azure Developer Tenancies #Rhysida Ransomware Deployment #Short_Lived 72_Hour Certificates #SignSpace Cloud Seizure #Vanilla Tempest Co_Conspirator
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:17:59 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Code Validation Bypass #Fox Tempest Malware Signing #Malvertising SEO Poisoning #Microsoft Artifact Signing Abuse #OpFauxSign Takedown #Phantom Azure Developer Tenancies #Rhysida Ransomware Deployment #Short_Lived 72_Hour Certificates #SignSpace Cloud Seizure #Vanilla Tempest Co_Conspirator
Penetration Testing Tools
Microsoft Smashes "Fox Tempest" Cyber Syndicate Selling Cryptographic Cover for Ransomware
Microsoft has initiated formal civil litigation against the fraudulent syndicate operating the Fox Tempest enterprise, an illicit infrastructure
⤷ Title: The Silent Command: “AudioHijack” Technique Uses Inaudible Sound Waves to Take Over Voice AI Assistants
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:15:28 +0000
════════════════════════
⌗ Tags: #Technology #Acoustic Attention Supervision #AudioHijack Adversarial Audio #Auditory Prompt Injection #Cross Platform Exploit Transfer #IEEE Symposium on Security and Privacy #Inaudible Sound Commands #Large Audio_Language Models #Meng Chen Zhejiang University #Multimodal AI Tool Misuse #Waveform Tokenization Bypassing
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:15:28 +0000
════════════════════════
⌗ Tags: #Technology #Acoustic Attention Supervision #AudioHijack Adversarial Audio #Auditory Prompt Injection #Cross Platform Exploit Transfer #IEEE Symposium on Security and Privacy #Inaudible Sound Commands #Large Audio_Language Models #Meng Chen Zhejiang University #Multimodal AI Tool Misuse #Waveform Tokenization Bypassing
Penetration Testing Tools
The Silent Command: "AudioHijack" Technique Uses Inaudible Sound Waves to Take Over Voice AI Assistants
Voice-centric artificial intelligence platforms are susceptible to specialized adversarial subversion executed via acoustic signals that elude casual human
⤷ Title: Living Off the HTA Land: How Hackers Weaponize a 1999 Windows Utility for Silent Malware Delivery
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:04:27 +0000
════════════════════════
⌗ Tags: #Malware #Amatera Info Harvester #ClickFix Social Engineering LummaStealer #ClipBanker Crypto Stealer #CountLoader Staging Framework #Emmenhtal Loader #HTML Application HTA Payload #Living off the Land Binaries #MSHTA Weaponization Malware Delivery #mshta.exe Windows Binary #PurpleFox Rootkit Lineage
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 07:04:27 +0000
════════════════════════
⌗ Tags: #Malware #Amatera Info Harvester #ClickFix Social Engineering LummaStealer #ClipBanker Crypto Stealer #CountLoader Staging Framework #Emmenhtal Loader #HTML Application HTA Payload #Living off the Land Binaries #MSHTA Weaponization Malware Delivery #mshta.exe Windows Binary #PurpleFox Rootkit Lineage
Penetration Testing Tools
Living Off the HTA Land: How Hackers Weaponize a 1999 Windows Utility for Silent Malware Delivery
Threat actors are increasingly weaponizing MSHTA, a legacy Windows utility, as a highly efficient conduit to execute malicious
⤷ Title: New PawsRunner Steganography Loader Evades EDR to Deploy PureLogs Infostealer
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 08:40:14 +0000
════════════════════════
⌗ Tags: #Malware #.NET malware #Cyber Security #Environment Variables #FortiGuard Labs #infosec #Infostealer #PawsRunner #Phishing Lure #PureLogs #Steganography Loader #TXZ Archive
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Thu, 21 May 2026 08:40:14 +0000
════════════════════════
⌗ Tags: #Malware #.NET malware #Cyber Security #Environment Variables #FortiGuard Labs #infosec #Infostealer #PawsRunner #Phishing Lure #PureLogs #Steganography Loader #TXZ Archive
Daily CyberSecurity
New PawsRunner Steganography Loader Evades EDR to Deploy PureLogs Infostealer
FortiGuard Labs warns of PawsRunner, a new .NET steganography loader hiding PureLogs infostealer payloads inside cat images to bypass corporate EDR.