Top Daily Cyber Security News
729 subscribers
813 links
Top rated cyber security tech news,
Just the top, every day.
Download Telegram
Top Security News for Today

Fake Student Fraud in Community Colleges
https://www.schneier.com/blog/archives/2025/05/fake-student-fraud-in-community-colleges.html

SonicBoom, From Stolen Tokens to Remote Shells - SonicWall SMA100 (CVE-2023-44221, CVE-2024-38475) - watchTowr Labs
https://www.reddit.com/r/netsec/comments/1kclo6p/sonicboom_from_stolen_tokens_to_remote_shells/

My Zero Day Quest
https://www.reddit.com/r/netsec/comments/1kfxobk/my_zero_day_quest/

Snowflake’s AI Bypasses Access Controls
https://www.reddit.com/r/netsec/comments/1kfwve5/snowflakes_ai_bypasses_access_controls/

The Cloud Hunting Games
https://www.reddit.com/r/netsec/comments/1kgcq32/the_cloud_hunting_games/

AI-Powered Cybercrime in 2025 – The Dark Web’s New Arms Race
https://www.darknet.org.uk/2025/05/ai-powered-cybercrime-in-2025-the-dark-webs-new-arms-race/

Essential Cybersecurity Controls (ECC-1:2018) – A Comprehensive Guide
https://www.tripwire.com/state-of-security/essential-cybersecurity-controls-ecc-12018-comprehensive-guide

Inferno Drainer Reloaded: Deep Dive into the Return of the Most Sophisticated Crypto Drainer
https://research.checkpoint.com/2025/inferno-drainer-reloaded-deep-dive-into-the-return-of-the-most-sophisticated-crypto-drainer/

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

We Got Tired of Labs NOT preparing us for Real Targets… So We Built This (Seeking Beta Feedback!)
https://www.reddit.com/r/netsec/comments/1kgsx1p/we_got_tired_of_labs_not_preparing_us_for_real/

State of ransomware in 2025
https://securelist.com/state-of-ransomware-in-2025/116475/

Drag and pwnd: Exploiting VS Code with ASCII
https://www.reddit.com/r/netsec/comments/1kgty8a/drag_and_pwnd_exploiting_vs_code_with_ascii/

SysOwned, Your Friendly Support Ticket - SysAid On-Premise Pre-Auth RCE Chain (CVE-2025-2775 And Friends) - watchTowr Labs
https://www.reddit.com/r/netsec/comments/1kgt99x/sysowned_your_friendly_support_ticket_sysaid/

Chinese AI Submersible
https://www.schneier.com/blog/archives/2025/05/chinese-ai-submersible.html

Meet the Deputy CISOs who help shape Microsoft’s approach to cybersecurity: Part 2
https://www.microsoft.com/en-us/security/blog/2025/05/07/meet-the-deputy-cisos-who-help-shape-microsofts-approach-to-cybersecurity-part-2/

AI Slop Is Polluting Bug Bounty Platforms with Fake Vulnerability Reports
https://www.reddit.com/r/netsec/comments/1kh0bps/ai_slop_is_polluting_bug_bounty_platforms_with/

Pakistani Firm Shipped Fentanyl Analogs, Scams to US
https://krebsonsecurity.com/2025/05/pakistani-firm-shipped-fentanyl-analogs-scams-to-us/

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

LockBit Ransomware Gang Breached, Secrets Exposed
https://www.tripwire.com/state-of-security/lockbit-ransomware-gang-breached-secrets-exposed

Tripwire Patch Priority Index for April 2025
https://www.tripwire.com/state-of-security/tripwire-patch-priority-index-april-2025

ASURA-FDPS-ML: Star-by-star Galaxy Simulations Accelerated by Surrogate Modeling for Supernova Feedback
https://arxiv.org/abs/2410.23346

An Approximate-Master-Equation Formulation of the Watts Threshold Model on Hypergraphs
https://arxiv.org/abs/2503.04020

Investigating Popularity Bias Amplification in Recommender Systems Employed in the Entertainment Domain
https://arxiv.org/abs/2504.04752

Breaking the Sound Barrier Part I: Fuzzing CoreAudio with Mach Messages
https://googleprojectzero.blogspot.com/2025/05/breaking-sound-barrier-part-i-fuzzing.html

Before You Red Team: Fix These 5 Common Mistakes
https://bishopfox.com/blog/before-red-team-fix-these-5-common-mistakes

Friday Squid Blogging: Japanese Divers Video Giant Squid
https://www.schneier.com/blog/archives/2025/05/friday-squid-blogging-japanese-divers-video-giant-squid.html

XG-NID: Dual-Modality Network Intrusion Detection using a Heterogeneous Graph Neural Network and Large Language Model
https://arxiv.org/abs/2408.16021

Stealthy .NET Malware: Hiding Malicious Payloads as Bitmap Resources
https://www.reddit.com/r/netsec/comments/1kivxei/stealthy_net_malware_hiding_malicious_payloads_as/

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

The Honeynet Workshop Conference 2025 is in June in Prague.
https://www.reddit.com/r/netsec/comments/1kjjueq/the_honeynet_workshop_conference_2025_is_in_june/

When Bad Data Leads to Good Models
https://arxiv.org/abs/2505.04741

Advancing Conversational Diagnostic AI with Multimodal Reasoning
https://arxiv.org/abs/2505.04653

Putting the Value Back in RL: Better Test-Time Scaling by Unifying LLM Reasoners With Verifiers
https://arxiv.org/abs/2505.04842

Help use and invite opl who might be interested
https://0x00sec.org/t/help-use-and-invite-opl-who-might-be-interested/43890

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

One-Click RCE in ASUS’s Preinstalled Driver Software
https://www.reddit.com/r/netsec/comments/1kjwfuh/oneclick_rce_in_asuss_preinstalled_driver_software/

Perception, Reason, Think, and Plan: A Survey on Large Multimodal Reasoning Models
https://arxiv.org/abs/2505.04921

Fair Uncertainty Quantification for Depression Prediction
https://arxiv.org/abs/2505.04931

Large Language Models are Autonomous Cyber Defenders
https://arxiv.org/abs/2505.04843

Imagining and building wise machines: The centrality of AI metacognition
https://arxiv.org/abs/2411.02478

XG-NID: Dual-Modality Network Intrusion Detection using a Heterogeneous Graph Neural Network and Large Language Model
https://arxiv.org/abs/2408.16021

Assessment Frameworks for NIS Directive Compliance
https://www.tripwire.com/state-of-security/assessment-frameworks-nis-directive-compliance

A Subtle Form of Siege: DDoS Smokescreens as a Cover for Quiet Data Breaches
https://www.tripwire.com/state-of-security/subtle-form-siege-ddos-smokescreens-cover-quiet-data-breaches

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

How I ruined my vacation by reverse engineering WSC
https://www.reddit.com/r/netsec/comments/1kkpyuu/how_i_ruined_my_vacation_by_reverse_engineering/

Alt Syscalls for Windows 11
https://www.reddit.com/r/lowlevel/comments/1kknjre/alt_syscalls_for_windows_11/

12th May – Threat Intelligence Report
https://research.checkpoint.com/2025/12th-may-threat-intelligence-report/

SUDO_KILLER – Auditing Sudo Configurations for Privilege Escalation Paths
https://www.darknet.org.uk/2025/05/sudo_killer-auditing-sudo-configurations-for-privilege-escalation-paths/

Statistical Analysis to Detect Uncommon Code
https://www.reddit.com/r/netsec/comments/1kktwfv/statistical_analysis_to_detect_uncommon_code/

Marbled Dust leverages zero-day in Output Messenger for regional espionage
https://www.microsoft.com/en-us/security/blog/2025/05/12/marbled-dust-leverages-zero-day-in-output-messenger-for-regional-espionage/

I built Mithra: a security scanner for LLM-integrated APIs (detects prompt injection, DAN..)
https://www.reddit.com/r/netsec/comments/1kkydpv/i_built_mithra_a_security_scanner_for/

LiteLMGuard: Seamless and Lightweight On-Device Prompt Filtering for Safeguarding Small Language Models against Quantization-induced Risks and Vulnerabilities
https://arxiv.org/abs/2505.05485

Bringing Forensic Readiness to Modern Computer Firmware
https://arxiv.org/abs/2505.05486

Invariant-Based Cryptography
https://arxiv.org/abs/2505.05487

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

AI-Generated Law
https://www.schneier.com/blog/archives/2025/05/ai-generated-law.html

Threat Landscape for Industrial Automation Systems in Q1 2025
https://securelist.com/industrial-threat-report-q1-2025/116505/

Expression Payloads Meet Mayhem - Ivanti EPMM Unauth RCE Chain (CVE-2025-4427 and CVE-2025-4428) - watchTowr Labs
https://www.reddit.com/r/netsec/comments/1kna9px/expression_payloads_meet_mayhem_ivanti_epmm/

How the Microsoft Secure Future Initiative Brings Zero Trust to Life
https://www.microsoft.com/en-us/security/blog/2025/05/15/how-the-microsoft-secure-future-initiative-brings-zero-trust-to-life/

Fileless Execution: PowerShell Based Shellcode Loader Executes Remcos RAT
https://blog.qualys.com/vulnerabilities-threat-research/2025/05/15/fileless-execution-powershell-based-shellcode-loader-executes-remcos-rat

Breachforums Boss to Pay $700k in Healthcare Breach
https://krebsonsecurity.com/2025/05/breachforums-boss-to-pay-700k-in-healthcare-breach/

Commit Stomping - Manipulating Git Histories to Obscure the Truth
https://www.reddit.com/r/netsec/comments/1knl6j5/commit_stomping_manipulating_git_histories_to/

Wazuh – Open Source Security Platform for Threat Detection, Visibility & Compliance
https://www.darknet.org.uk/2025/05/wazuh-open-source-security-platform-for-threat-detection-visibility-compliance/

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Self Rewarding Self Improving
https://arxiv.org/abs/2505.08827

Communications Backdoor in Chinese Power Inverters
https://www.schneier.com/blog/archives/2025/05/communications-backdoor-in-chinese-power-inverters.html

Announcing the Official Parity Release of Volatility 3!
https://www.reddit.com/r/netsec/comments/1ko3uye/announcing_the_official_parity_release_of/

Skitnet(Bossnet) Malware Analysis
https://www.reddit.com/r/netsec/comments/1ko59nn/skitnetbossnet_malware_analysis/

Automated Alert Classification and Triage (AACT): An Intelligent System for the Prioritisation of Cybersecurity Alerts
https://arxiv.org/abs/2505.09616

Guardian Positioning System (GPS) for Location Based Services
https://arxiv.org/abs/2505.09628

Correlating Account on Ethereum Mixing Service via Domain-Invariant feature learning
https://arxiv.org/abs/2505.09743

PIG: Privacy Jailbreak Attack on LLMs via Gradient-based Iterative In-Context Optimization
https://arxiv.org/abs/2505.09639

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Large Language Models Are More Persuasive Than Incentivized Human Persuaders
https://arxiv.org/abs/2505.09662

$XX^{t}$ Can Be Faster
https://arxiv.org/abs/2505.09814

Analog Foundation Models
https://arxiv.org/abs/2505.09663

Frame by Frame, Kernel Streaming Keeps Giving Vulnerabilities
https://devco.re/blog/2025/05/17/frame-by-frame-kernel-streaming-keeps-giving-vulnerabilities-en/

Stateful Connection With Spoofed Source IP — NetImpostor
https://www.reddit.com/r/netsec/comments/1kp4n2r/stateful_connection_with_spoofed_source_ip/

Translating Electrocardiograms to Cardiac Magnetic Resonance Imaging Useful for Cardiac Assessment and Disease Screening: A Multi-Center Study AI for ECG to CMR Translation Study
https://arxiv.org/abs/2411.13602

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

The NSA’s “Fifty Years of Mathematical Cryptanalysis (1937–1987)”
https://www.schneier.com/blog/archives/2025/05/the-nsas-fifty-years-of-mathematical-cryptanalysis-1937-1987.html

Introducing EntraFalcon – A Tool to Enumerate Entra ID Objects and Assignments
https://www.reddit.com/r/netsec/comments/1kq4oie/introducing_entrafalcon_a_tool_to_enumerate_entra/

Cache poisoning via race-condition in Next.js
https://www.reddit.com/r/netsec/comments/1kq64ta/cache_poisoning_via_racecondition_in_nextjs/

19th May – Threat Intelligence Report
https://research.checkpoint.com/2025/19th-may-threat-intelligence-report/

Microsoft extends Zero Trust to secure the agentic workforce
https://www.microsoft.com/en-us/security/blog/2025/05/19/microsoft-extends-zero-trust-to-secure-the-agentic-workforce/

SafeTrans: LLM-assisted Transpilation from C to Rust
https://arxiv.org/abs/2505.10708

Agent Name Service (ANS): A Universal Directory for Secure AI Agent Discovery and Interoperability
https://arxiv.org/abs/2505.10609

Neural-Inspired Advances in Integral Cryptanalysis
https://arxiv.org/abs/2505.10790

RAN Tester UE: An Automated Declarative UE Centric Security Testing Platform
https://arxiv.org/abs/2505.10812

Automating Security Audit Using Large Language Model based Agent: An Exploration Experiment
https://arxiv.org/abs/2505.10732

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Government Organizations Lose Nearly a Month in Downtime for Every Ransomware Attack
https://www.tripwire.com/state-of-security/government-organizations-lose-nearly-month-downtime-every-ransomware-attack

How IoT Security Cameras Are Susceptible to Cyber Attacks
https://www.tripwire.com/state-of-security/how-iot-security-cameras-are-susceptible-cyber-attacks

DoorDash Hack
https://www.schneier.com/blog/archives/2025/05/doordash-hack.html

New Vulnerabilities in Foscam X5
https://www.reddit.com/r/netsec/comments/1kr32cs/new_vulnerabilities_in_foscam_x5/

The Sting of Fake Kling: Facebook Malvertising Lures Victims to Fake AI Generation Website
https://research.checkpoint.com/2025/impersonated-kling-ai-site-installs-malware/

How to Extract Useful Info from Microsoft Deployment Toolkit (MDT) Shares on Red Teams
https://www.reddit.com/r/netsec/comments/1kr5uiu/how_to_extract_useful_info_from_microsoft/

Varonis' Data Security Report Reveals 99% of Orgs Have Sensitive Information Exposed to AI
https://www.reddit.com/r/netsec/comments/1kr5uee/varonis_data_security_report_reveals_99_of_orgs/

Malvertising's New Threat: Exploiting Trusted Google Domains
https://www.reddit.com/r/netsec/comments/1krgc39/malvertisings_new_threat_exploiting_trusted/

KrebsOnSecurity Hit With Near-Record 6.3 Tbps DDoS
https://krebsonsecurity.com/2025/05/krebsonsecurity-hit-with-near-record-6-3-tbps-ddos/

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Dero miner zombies biting through Docker APIs to build a cryptojacking horde
https://securelist.com/dero-miner-infects-containers-through-docker-api/116546/

EvilWorker: a new AiTM attack framework leveraging service workers — much more effective, autonomous, and adaptable than Evilginx2? 🎣
https://www.reddit.com/r/netsec/comments/1krtrht/evilworker_a_new_aitm_attack_framework_leveraging/

Humans are Insecure Password Generators
https://www.reddit.com/r/netsec/comments/1krqom1/humans_are_insecure_password_generators/

BadSuccessor: Abusing dMSA to Escalate Privileges in Active Directory
https://www.reddit.com/r/netsec/comments/1ks1i9g/badsuccessor_abusing_dmsa_to_escalate_privileges/

Lumma Stealer: Breaking down the delivery techniques and capabilities of a prolific infostealer
https://www.microsoft.com/en-us/security/blog/2025/05/21/lumma-stealer-breaking-down-the-delivery-techniques-and-capabilities-of-a-prolific-infostealer/

AI-Powered Malware – The Next Evolution in Cyber Threats
https://www.darknet.org.uk/2025/05/ai-powered-malware-the-next-evolution-in-cyber-threats/

CVE-2024-45332 brings back branch target injection attacks on Intel
https://www.reddit.com/r/netsec/comments/1ksc31c/cve202445332_brings_back_branch_target_injection/

ZathuraDbg: Open-Source GUI tool for learning assembly
https://www.reddit.com/r/lowlevel/comments/1ks4em6/zathuradbg_opensource_gui_tool_for_learning/

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Authenticated Remote Code Execution in Netwrix Password Secure (CVE-2025-26817)
https://www.reddit.com/r/netsec/comments/1kslcpa/authenticated_remote_code_execution_in_netwrix/

EXP-401 (OSEE):用五天課程訓練通透十年的知識體
https://devco.re/blog/2025/05/22/exp-401-osee-five-days-to-master-a-decade-of-knowledge/

The Voter Experience
https://www.schneier.com/blog/archives/2025/05/the-voter-experience.html

How to Enumerate and Exploit CefSharp Thick Clients Using CefEnum
https://www.reddit.com/r/netsec/comments/1kskq0k/how_to_enumerate_and_exploit_cefsharp_thick/

Automating MS-RPC vulnerability research
https://www.reddit.com/r/netsec/comments/1ksp4m2/automating_msrpc_vulnerability_research/

Live Forensic Collection from Ivanti EPMM Appliances (CVE-2025-4427 & CVE-2025-4428)
https://www.reddit.com/r/netsec/comments/1ksufxv/live_forensic_collection_from_ivanti_epmm/

Oops: DanaBot Malware Devs Infected Their Own PCs
https://krebsonsecurity.com/2025/05/oops-danabot-malware-devs-infected-their-own-pcs/

CVE-2025-32756: Write-Up of a Buffer Overflow in Various Fortinet Products
https://www.reddit.com/r/netsec/comments/1kszzx6/cve202532756_writeup_of_a_buffer_overflow_in/

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Signal Blocks Windows Recall
https://www.schneier.com/blog/archives/2025/05/signal-blocks-windows-recall.html

3AM Ransomware Attackers Pose as IT Support to Compromise Networks
https://www.tripwire.com/state-of-security/3am-ransomware-attackers-pose-it-support-compromise-networks

Don't Call That "Protected" Method: Dissecting an N-Day vBulletin RCE
https://www.reddit.com/r/netsec/comments/1ktjoa8/dont_call_that_protected_method_dissecting_an/

Prime Path Coverage in the GNU Compiler Collection
https://arxiv.org/abs/2505.14694

RoboCulture: A Robotics Platform for Automated Biological Experimentation
https://arxiv.org/abs/2505.14941

Diffusion vs. Autoregressive Language Models: A Text Embedding Perspective
https://arxiv.org/abs/2505.15045

Text Generation Beyond Discrete Token Sampling
https://arxiv.org/abs/2505.14827

One-Layer Transformers are Provably Optimal for In-context Reasoning and Distributional Association Learning in Next-Token Prediction Tasks
https://arxiv.org/abs/2505.15009

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Threat of TCC Bypasses on macOS
https://www.reddit.com/r/netsec/comments/1kvr057/threat_of_tcc_bypasses_on_macos/

26th May – Threat Intelligence Report
https://research.checkpoint.com/2025/26th-may-threat-intelligence-report/

Unauthenticated RCE on Smartbedded MeteoBridge (CVE-2025-4008)
https://www.reddit.com/r/netsec/comments/1kvtr2i/unauthenticated_rce_on_smartbedded_meteobridge/

Windows namespace traversal
https://www.reddit.com/r/lowlevel/comments/1kvtv22/windows_namespace_traversal/

Preparing for the Post Quantum Era: Quantum Ready Architecture for Security and Risk Management (QUASAR) -- A Strategic Framework for Cybersecurity
https://arxiv.org/abs/2505.17084

Improving LLM Outputs Against Jailbreak Attacks with Expert Model Integration
https://arxiv.org/abs/2505.17066

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman