Forwarded from The Hacker News
🚨 Cisco just patched a 10.0 CVSS flaw that let attackers log in as root—no config needed.
The backdoor? A static dev credential left in production.
It affected all Unified CM v15.0.1 builds.
Full details → https://thehackernews.com/2025/07/critical-cisco-vulnerability-in-unified.html
The backdoor? A static dev credential left in production.
It affected all Unified CM v15.0.1 builds.
Full details → https://thehackernews.com/2025/07/critical-cisco-vulnerability-in-unified.html
Forwarded from The Hacker News
🚨 Chinese hackers hit France’s critical sectors using 3 Ivanti zero-days — and then patched them to keep others out.
Rootkits, web shells, and resale of access hint at a black-market cyber operation selling to state-linked buyers.
Find details here → https://thehackernews.com/2025/07/chinese-hackers-exploit-ivanti-csa-zero.html
Rootkits, web shells, and resale of access hint at a black-market cyber operation selling to state-linked buyers.
Find details here → https://thehackernews.com/2025/07/chinese-hackers-exploit-ivanti-csa-zero.html
Forwarded from The Hacker News
🚨 40+ fake crypto wallet extensions on Firefox were stealing users’ keys and IPs — in plain sight.
They cloned real wallets like MetaMask & Coinbase, faked 5-star reviews, and exfiltrated secrets to a remote server.
Full story → https://thehackernews.com/2025/07/over-40-malicious-firefox-extensions.html
They cloned real wallets like MetaMask & Coinbase, faked 5-star reviews, and exfiltrated secrets to a remote server.
Full story → https://thehackernews.com/2025/07/over-40-malicious-firefox-extensions.html
Forwarded from The Hacker News
🚨 DEVMAN is a new threat actor already claiming 40 victims across Asia, EU, LATAM, and Africa.
It's affiliated with Qilin, RansomHub, and DragonForce RaaS groups, targeting business and government.
Read technical analysis of the ransomware it uses on #ANYRUN's blog: https://thn.news/devman-ransomware-analysis-tg
It's affiliated with Qilin, RansomHub, and DragonForce RaaS groups, targeting business and government.
Read technical analysis of the ransomware it uses on #ANYRUN's blog: https://thn.news/devman-ransomware-analysis-tg
Forwarded from The Hacker News
🚨 Most AI SOC tools can’t triage new threats.
They rely on pre-trained models that only handle known attack types—leaving your team exposed.
Radiant’s adaptive AI learns in real time, triages any alert, and cuts response time from days to minutes.
Details here → https://thehackernews.com/2025/07/the-hidden-weaknesses-in-ai-soc-tools.html
They rely on pre-trained models that only handle known attack types—leaving your team exposed.
Radiant’s adaptive AI learns in real time, triages any alert, and cuts response time from days to minutes.
Details here → https://thehackernews.com/2025/07/the-hidden-weaknesses-in-ai-soc-tools.html
Forwarded from The Hacker News
🚨 Android adware is spiraling out of control:
🔸 352 hidden apps faked icons, flooded 1.2B ad bids/day
🔸 “Evil twin” apps clone legit ones to hijack ad revenue
🔸 NFC malware lets attackers withdraw cash remotely
🔸 SMS stealers hit 100K phones, draining bank accounts
What you need to know → https://thehackernews.com/2025/07/mobile-security-alert-352-iconads-fraud.html
🔸 352 hidden apps faked icons, flooded 1.2B ad bids/day
🔸 “Evil twin” apps clone legit ones to hijack ad revenue
🔸 NFC malware lets attackers withdraw cash remotely
🔸 SMS stealers hit 100K phones, draining bank accounts
What you need to know → https://thehackernews.com/2025/07/mobile-security-alert-352-iconads-fraud.html
Forwarded from FreeBSD
https://github.com/b-aaz/xlibre-ports
Porting X11Libre to FreeBSD
An effort for porting X11libre to FreeBSD. (https://t.me/x11dev for dev discussions)
After cloning, you can use the OVERLAY option in the /etc/make.conf to overlay this folder to your main tree. Use a jail for testing, so that your packages won't get messed up.
Porting X11Libre to FreeBSD
An effort for porting X11libre to FreeBSD. (https://t.me/x11dev for dev discussions)
After cloning, you can use the OVERLAY option in the /etc/make.conf to overlay this folder to your main tree. Use a jail for testing, so that your packages won't get messed up.
GitHub
GitHub - b-aaz/xlibre-ports: An effort for porting XLibre to FreeBSD & DragonFlyBSD.
An effort for porting XLibre to FreeBSD & DragonFlyBSD. - b-aaz/xlibre-ports
Forwarded from NoGoolag
EU Turns Voluntary “Disinformation” Code Into Mandatory Rule Under New Censorship Law, Risking US Trade Tensions
https://ift.tt/0GJ1eYf - FOLLOW: @reclaimthenet
https://ift.tt/0GJ1eYf - FOLLOW: @reclaimthenet
Reclaim The Net
EU Turns Voluntary "Disinformation" Code Into Mandatory Rule Under New Censorship Law, Risking US Trade Tensions
Europe bets that mandatory audits and algorithm scrutiny can be framed as digital safety, not censorship.
Forwarded from NoGoolag
DOJ Joins Lawsuit Against Media-Tech Collusion Over Free Speech
https://ift.tt/Pvxtry1 - FOLLOW: @reclaimthenet
https://ift.tt/Pvxtry1 - FOLLOW: @reclaimthenet
Reclaim The Net
DOJ Joins Lawsuit Against Media-Tech Collusion Over Free Speech
DOJ joins antitrust case against BBC, Reuters, AP, Google, Meta, Microsoft, and TNI over alleged suppression of independent media.
Forwarded from NoGoolag
Google Fined $314.6M for Data Collection by San Jose Jury
https://ift.tt/QL4IVT9 - FOLLOW: @reclaimthenet
https://ift.tt/QL4IVT9 - FOLLOW: @reclaimthenet
Reclaim The Net
Google Fined $314.6M for Data Collection by San Jose Jury
Verdict highlights how hidden digital costs quietly drain users while enriching tech giants.
Forwarded from Hacker News
Trufflesecurity
Guest Post: How I Scanned all of GitHub’s “Oops Commits” for Leaked Secrets ◆ Truffle Security Co.
GitHub Archive logs every public commit, even the ones developers try to delete. Force pushes often cover up mistakes like leaked credentials by rewriting Git history. GitHub keeps these dangling commits, from what we can tell, forever. In the archive, they…
Forwarded from Hacker News
turso.tech
Introducing the first alpha of Turso: The next evolution of SQLite
We’re launching the first alpha of Turso. A Rust-based, cloud-native rewrite of SQLite with modern concurrency, async APIs, vector search, and unmatched reliability powered by advanced testing and open-source collaboration.
Forwarded from Hacker News
tmux-rs
Introducing tmux-rs
A Rust port of tmux