Top Daily Cyber Security News
729 subscribers
813 links
Top rated cyber security tech news,
Just the top, every day.
Download Telegram
Top Security News for Today

ProxyBlob – SOCKS5 Over Azure Blob Storage for Covert Network Tunneling
https://www.darknet.org.uk/2025/06/proxyblob-socks5-over-azure-blob-storage-for-covert-network-tunneling/

LLM App Security: Risk & Prevent for GenAI Development
https://www.reddit.com/r/netsec/comments/1l40ufu/llm_app_security_risk_prevent_for_genai/

HMAS Canberra accidentally blocks wireless internet and radio services in New Zealand
https://www.reddit.com/r/netsec/comments/1l6pdv7/hmas_canberra_accidentally_blocks_wireless/

Monkey365 – PowerShell Security Scanner for Microsoft 365, Azure, and Entra ID
https://www.darknet.org.uk/2025/06/monkey365-powershell-security-scanner-for-microsoft-365-azure-and-entra-id/

9th June – Threat Intelligence Report
https://research.checkpoint.com/2025/9th-june-threat-intelligence-report/

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Expanding on ADHICS v2.0: A Closer Look at Healthcare Cybersecurity in the UAE
https://www.tripwire.com/state-of-security/expanding-adhics-v20-closer-look-healthcare-cybersecurity-uae

Sleep with one eye open: how Librarian Ghouls steal data by night
https://securelist.com/librarian-ghouls-apt-wakes-up-computers-to-steal-data-and-mine-crypto/116536/

HMAS Canberra accidentally blocks wireless internet and radio services in New Zealand
https://www.reddit.com/r/netsec/comments/1l6pdv7/hmas_canberra_accidentally_blocks_wireless/

New Way to Track Covertly Android Users
https://www.schneier.com/blog/archives/2025/06/new-way-to-track-covertly-android-users.html

Preventing Prompt Injection Attacks at Scale
https://www.reddit.com/r/netsec/comments/1l79xay/preventing_prompt_injection_attacks_at_scale/

A bit more on Twitter/X’s new encrypted messaging
https://www.reddit.com/r/netsec/comments/1l7cgwa/a_bit_more_on_twitterxs_new_encrypted_messaging/

Bruteforcing the phone number of any Google user
https://www.reddit.com/r/netsec/comments/1l7e972/bruteforcing_the_phone_number_of_any_google_user/

How Google’s Wiz Acquisition Impacts CNAPP
https://www.trendmicro.com/en_us/research/25/f/google-wiz-acquisition-cnapp.html

Mexico’s Digital Growth Comes with Cybersecurity Challenges
https://www.tripwire.com/state-of-security/mexicos-digital-growth-comes-cybersecurity-challenges

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Toxic trend: Another malware threat targets DeepSeek
https://securelist.com/browservenom-mimicks-deepseek-to-use-malicious-proxy/115728/

AI-Powered Attacks and Lack of Cyber Readiness. How Mexico Can Respond
https://www.tripwire.com/state-of-security/ai-powered-attacks-and-lack-cyber-readiness-how-mexico-can-respond

Enabling Secure AI Inference: Trend Cybertron Leverages NVIDIA Universal LLM NIM Microservices
https://www.trendmicro.com/en_us/research/25/f/cybertron-nvidia-universal-llm-nim-microservices.html

CVE-2025-33073: A Look in the Mirror - The Reflective Kerberos Relay Attack
https://www.reddit.com/r/netsec/comments/1l8n3r0/cve202533073_a_look_in_the_mirror_the_reflective/

Weaponized Google OAuth Triggers Malicious WebSocket
https://www.reddit.com/r/netsec/comments/1l8st38/weaponized_google_oauth_triggers_malicious/

Innovation in the Fast Lane: Lessons from Motorsport and Cybersecurity
https://www.trendmicro.com/en_us/research/25/f/motorsport-cybersecurity.html

Operation Secure: Trend Micro's Threat Intelligence Fuels INTERPOL's Infostealer Infrastructure Takedown
https://www.trendmicro.com/en_us/research/25/f/interpol-operation-secure.html

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Stryker - Android pentesting app with premium access is now free until 2050
https://www.reddit.com/r/netsec/comments/1l9iee8/stryker_android_pentesting_app_with_premium/

Meta is able to track its users via WebRTC on Android including private mode and behind VPN
https://www.reddit.com/r/netsec/comments/1l9kxjm/meta_is_able_to_track_its_users_via_webrtc_on/

From Trust to Threat: Hijacked Discord Invites Used for Multi-Stage Malware Delivery
https://research.checkpoint.com/2025/from-trust-to-threat-hijacked-discord-invites-used-for-multi-stage-malware-delivery/

An Open Source agent hacked Mercado Libre
https://www.reddit.com/r/netsec/comments/1l9n9oi/an_open_source_agent_hacked_mercado_libre/

Millions of Vulnerabilities: One Checklist to Kill The Noise
https://www.reddit.com/r/netsec/comments/1l9pblf/millions_of_vulnerabilities_one_checklist_to_kill/

Airlines Secretly Selling Passenger Data to the Government
https://www.schneier.com/blog/archives/2025/06/airlines-secretly-selling-passenger-data-to-the-government.html

Introducing: GitHub Device Code Phishing
https://www.reddit.com/r/netsec/comments/1l9qo58/introducing_github_device_code_phishing/

Inside a Dark Adtech Empire Fed by Fake CAPTCHAs
https://krebsonsecurity.com/2025/06/inside-a-dark-adtech-empire-fed-by-fake-captchas/

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Danish government agency to ditch Microsoft software in push for digital independence
https://therecord.media/denmark-digital-agency-microsoft-digital-independence

GoClipC2 - Clipboard for C2 on Windows in Go
https://www.reddit.com/r/netsec/comments/1lbxw0l/goclipc2_clipboard_for_c2_on_windows_in_go/

Government offices in North Carolina, Georgia disrupted by cyberattacks
https://therecord.media/thomasville-nc-government-ogeechee-ga-district-cyberattacks

CISA warns of SimpleHelp ransomware compromises after string of retail attacks
https://www.record.media/cisa-warns-of-simplehelp-ransomware-compromises

Hosting images inside DNS records using TXT
https://www.reddit.com/r/netsec/comments/1lca5o6/hosting_images_inside_dns_records_using_txt/

claws – GitHub Actions Workflow Linter for Secure CI/CD Pipelines
https://www.darknet.org.uk/2025/06/claws-github-actions-workflow-linter-for-secure-ci-cd-pipelines/

Brace Yourselves: The Game-Changing Impact of India's DPDP Act, 2023
https://www.tripwire.com/state-of-security/brace-yourselves-game-changing-impact-indias-dpdp-act

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

How to run ADB and fastboot in Termux without root
https://www.reddit.com/r/netsec/comments/1lcnenw/how_to_run_adb_and_fastboot_in_termux_without_root/

Generative AI Is Moving Fast. Are Your Security Practices Keeping Up?
https://www.tripwire.com/state-of-security/generative-ai-moving-fast-are-your-security-practices-keeping

Hackers impersonating US government compromise email account of prominent Russia researcher
https://therecord.media/keir-giles-russia-researcher-email-hacked

Bipartisan bill aims to create CISA-HHS liaison for hospital cyberattacks
https://therecord.media/bill-proposes-cisa-hhs-liaison-hospital-cyberattacks

UK appoints first-ever female chief of foreign intelligence service MI6
https://therecord.media/blaise-metreweli-new-mi6-chief

Whole Foods supplier making progress on restoration after cyberattack left shelves empty
https://therecord.media/unfi-groceries-supplier-cyberattack-update

8.4 million people affected by data breach at Indian car share company Zoomcar
https://therecord.media/8-million-affected-zoomcar-data-breach

US offering $10 million for info on Iranian hackers behind IOControl malware
https://therecord.media/us-offers-reward-for-iran-hacker-iocontrol-malware

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

How Human Behavior Can Strengthen Healthcare Cybersecurity
https://www.tripwire.com/state-of-security/how-human-behavior-can-strengthen-healthcare-cybersecurity

Are WAFs Obsolete? Pros, Cons, and What the Future Holds
https://www.tripwire.com/state-of-security/are-wafs-obsolete-pros-cons-and-what-future-holds

Where AI Provides Value
https://www.schneier.com/blog/archives/2025/06/where_ai_provides_value.html

Is b For Backdoor? Pre-Auth RCE Chain In Sitecore Experience Platform
https://www.reddit.com/r/netsec/comments/1ldjdo8/is_b_for_backdoor_preauth_rce_chain_in_sitecore/

Security Analysis: MCP Protocol Vulnerabilities in AI Toolchains
https://www.reddit.com/r/netsec/comments/1ldiilv/security_analysis_mcp_protocol_vulnerabilities_in/

UK data privacy regulator fines 23andMe over cyber practices in wake of hack
https://therecord.media/uk-data-privacy-regulator-fines-23andme

Russia detects first SuperCard malware attacks skimming bank data via NFC
https://therecord.media/supercard-nfc-banking-malware-russia

Scattered Spider hackers targeting insurance industry following retail hits
https://therecord.media/scattered-spider-targeting-insurance-sector-following-retail-attacks

Wallet apps aren’t safe either — here’s how attackers exploit their flawed security models
https://www.reddit.com/r/netsec/comments/1le0n3j/wallet_apps_arent_safe_either_heres_how_attackers/

Qualys TRU Uncovers Chained LPE: SUSE 15 PAM to Full Root via libblockdev/udisks
https://blog.qualys.com/vulnerabilities-threat-research/2025/06/17/qualys-tru-uncovers-chained-lpe-suse-15-pam-to-full-root-via-libblockdev-udisks

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Fault Injection - Follow the White Rabbit
https://www.reddit.com/r/netsec/comments/1lebtyd/fault_injection_follow_the_white_rabbit/

Exploring Netstalking – Mapping the Hidden Corners of the Internet
https://www.darknet.org.uk/2025/06/exploring-netstalking-mapping-the-hidden-corners-of-the-internet/

Fake Minecraft mods distributed by the Stargazers Ghost Network to steal gamers’ data
https://research.checkpoint.com/2025/minecraft-mod-malware-stargazers/

She Won. They Didn't Just Change the Machines. They Rewired the Election.
https://www.reddit.com/r/netsec/comments/1legjch/she_won_they_didnt_just_change_the_machines_they/

Ghostwriting Scam
https://www.schneier.com/blog/archives/2025/06/ghostwriting-scam.html

Lessons from Qilin: What the Industry’s Most Efficient Ransomware Teaches Us
https://blog.qualys.com/vulnerabilities-threat-research/2025/06/18/qilin-ransomware-explained-threats-risks-defenses

More than 5 million affected by data breach at healthcare tech firm Episource
https://therecord.media/5-million-affected-episource-data-breach

North Korea targeting Indian crypto job applicants with malware
https://therecord.media/north-korea-india-crypto-applicants

2025 Red Team Tools – Cloud & Identity Exploitation, Evasion & Developer Libraries
https://bishopfox.com/blog/2025-red-team-tools-cloud-identity-exploitation-evasion-developer-libraries

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Self-Driving Car Video Footage
https://www.schneier.com/blog/archives/2025/06/self-driving-car-video-footage.html

Sleepless Strings - Template Injection in Insomnia
https://www.reddit.com/r/netsec/comments/1lf40wc/sleepless_strings_template_injection_in_insomnia/

Finland could charge Russia-linked ship’s officers over cable breaks by ‘August at the latest’
https://therecord.media/finland-could-charge-eagle-s-ship-officers-cable-breaks

Argentina uncovers suspected Russian spy ring behind disinformation campaigns
https://therecord.media/argentina-russia-spies-disinformation-project-lakhta

Alleged Ryuk ransomware gang member arrested in Ukraine and extradited to US
https://therecord.media/alleged-ryuk-member-arrest-ukraine-extradited-us

DOJ moves to seize $225 million in crypto stolen by scammers
https://therecord.media/doj-moves-to-seize-225-million-in-stolen-crypto

AntiDot Android Malware Analysis
https://www.reddit.com/r/netsec/comments/1lfjatl/antidot_android_malware_analysis/

Frida 17.2.0 Released
https://www.reddit.com/r/netsec/comments/1lfnwgq/frida_1720_released/

GitPhish – OAuth Device Code Phishing for GitHub Repos, Secrets, and CI/CD
https://www.darknet.org.uk/2025/06/gitphish-oauth-device-code-phishing-for-github-repos-secrets-and-ci-cd/

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Qilin Offers "Call a lawyer" Button For Affiliates Attempting To Extort Ransoms From Victims Who Won't Pay
https://www.tripwire.com/state-of-security/qilin-offers-call-lawyer-button-affiliates-attempting-extort-ransoms-victims

Surveillance in the US
https://www.schneier.com/blog/archives/2025/06/surveillance-in-the-us.html

Aflac says it stopped ransomware attack launched by ‘sophisticated cybercrime group’
https://therecord.media/aflac-cyberattack-potential-data-breach

Krispy Kreme: Over 160,000 people had data stolen during November 2024 cyberattack
https://therecord.media/krispy-kreme-reports-data-breach-from-2024-attack

Russian dairy supply disrupted by cyberattack on animal certification system
https://therecord.media/russia-dairy-supply-disrupted-cyberattack

Tonga Ministry of Health hit with cyberattack affecting website, IT systems
https://therecord.media/tonga-ministry-of-health-hit-with-cyberattack

Steam Phishing: popular as ever
https://bartblaze.blogspot.com/2025/06/steam-phishing-popular-as-ever.html

Judge overturns Biden-era HHS rule on HIPAA protections for those seeking reproductive care
https://therecord.media/judge-overtuns-biden-era-hhs-rule-hipaa-reproductive-care

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

RAWPA - hierarchical methodology, comprehensive toolkits, and guided workflows
https://www.reddit.com/r/netsec/comments/1li2kkk/rawpa_hierarchical_methodology_comprehensive/

Introduction to SIMD
https://www.reddit.com/r/lowlevel/comments/1li557q/introduction_to_simd/

Ignition Phase : Standard Training for Fast Adversarial Robustness
https://arxiv.org/abs/2506.15685

Learning from M-Tuple Dominant Positive and Unlabeled Data
https://arxiv.org/abs/2506.15686

S$^2$GPT-PINNs: Sparse and Small models for PDEs
https://arxiv.org/abs/2506.15687

Cellular Traffic Prediction via Deep State Space Models with Attention Mechanism
https://arxiv.org/abs/2506.15688

BASE-Q: Bias and Asymmetric Scaling Enhanced Rotational Quantization for Large Language Models
https://arxiv.org/abs/2506.15689

SparkKitty, SparkCat’s little brother: A new Trojan spy found in the App Store and Google Play
https://securelist.com/sparkkitty-ios-android-malware/116793/

Rethinking LLM Training through Information Geometry and Quantum Metrics
https://arxiv.org/abs/2506.15830

Clean Up in the Cybersecurity Aisle: Cybercriminals and Groceries
https://www.tripwire.com/state-of-security/clean-cybersecurity-aisle-cybercriminals-and-groceries

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

AutoPwnKey – AV Evasion via Simulated User Interaction
https://www.darknet.org.uk/2025/06/autopwnkey-av-evasion-via-simulated-user-interaction/

Largest DDoS Attack to Date
https://www.schneier.com/blog/archives/2025/06/largest-ddos-attack-to-date.html

Amazon’s Schmidt talks China, cyber traps and the battle in the cloud
https://therecord.media/amazon-cso-steve-schmidt-interview-madpot-honeypot

Novel SSRF Technique Involving HTTP Redirect Loops
https://www.reddit.com/r/netsec/comments/1lidqqw/novel_ssrf_technique_involving_http_redirect_loops/

Data of more than 740,000 stolen in ransomware attack on Michigan hospital network
https://therecord.media/mclaren-health-care-data-breach-notification-ransomware

Israeli officials say Iran exploiting security cameras to guide missile strikes
https://therecord.media/iran-espionage-israeli-security-cameras-missile-attacks

Iran-linked cyberattack reportedly disrupts public services in Albania’s capital
https://therecord.media/tirana-albania-government-cyberattack-iran-linked-group

Navigating cyber risks with Microsoft Security Exposure Management eBook
https://www.microsoft.com/en-us/security/blog/2025/06/23/navigating-cyber-risks-with-microsoft-security-exposure-management-ebook/

Remote Code Execution on 40,000 WiFi alarm clocks
https://www.reddit.com/r/netsec/comments/1lirrc6/remote_code_execution_on_40000_wifi_alarm_clocks/

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Security Benchmarking Authorization Policy Engines
https://www.reddit.com/r/netsec/comments/1lk0v0y/security_benchmarking_authorization_policy_engines/

AI and collaboration tools: how cyberattackers are targeting SMBs in 2025
https://securelist.com/smb-threat-report-2025/116830/

What LLMs Know About Their Users
https://www.schneier.com/blog/archives/2025/06/what-llms-know-about-their-users.html

In the Wild: Malware Prototype with Embedded Prompt Injection
https://research.checkpoint.com/2025/ai-evasion-prompt-injection/

Glasgow City Council impacted by ‘cyber incident’
https://therecord.media/glasgow-city-council-cyber-incident

Ransomware attack contributed to patient’s death, says Britain’s NHS
https://therecord.media/ransomware-attack-contributed-patient-death-uk-nhs

French police reportedly arrest suspected BreachForums administrators
https://therecord.media/france-breachforums-suspects-arrests

Citrix warns of exploitation of Netscaler devices through new bugs
https://therecord.media/citrix-warns-netscaler-exploitation-bug

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Outdated Routers: The Hidden Threat to Network Security, FBI Warns
https://www.tripwire.com/state-of-security/outdated-routers-hidden-threat-network-security-fbi-warns

White House Bans WhatsApp
https://www.schneier.com/blog/archives/2025/06/white-house-bans-whatsapp.html

We built a smart, searchable infosec library indexing 20+ years of resources
https://www.reddit.com/r/netsec/comments/1lkraj4/we_built_a_smart_searchable_infosec_library/

Marketplace Takeover: How We Could’ve Taken Over Every Developer Using a VSCode Fork - Putting Millions at Risk
https://www.reddit.com/r/netsec/comments/1lkxg85/marketplace_takeover_how_we_couldve_taken_over/

Read “Windows Registry Manipulation“ by ONESithuation
https://www.reddit.com/r/netsec/comments/1lkr55r/read_windows_registry_manipulation_by/

British hacker 'IntelBroker' charged in US over spree of company breaches
https://therecord.media/british-hacker-intelbroker-spree-breaches

Felicity Oswald, chief operating officer at UK’s NCSC, set to leave cyber agency
https://therecord.media/felicity-oswald-ncsc-coo-uk

The Journey of Bypassing Ubuntu’s Unprivileged Namespace Restriction
https://devco.re/blog/2025/06/26/the-journey-of-bypassing-ubuntus-unprivileged-namespace-restriction/

Building security that lasts: Microsoft’s journey towards durability at scale
https://www.microsoft.com/en-us/security/blog/2025/06/26/building-security-that-lasts-microsofts-journey-towards-durability-at-scale/

Bipartisan bill seeks to ban federal agencies from using DeepSeek, AI tools from ‘foreign adversaries’
https://therecord.media/bipartisan-bill-ban-deepseek-federal

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Advanced computer vision for extracting georeferenced vehicle trajectories from drone imagery
https://arxiv.org/abs/2411.02136

The Age of Integrity
https://www.schneier.com/blog/archives/2025/06/the-age-of-integrity.html

Sububy – A Modular Ruby Suite for Subdomain Enumeration
https://www.darknet.org.uk/2025/06/sububy-a-modular-ruby-suite-for-subdomain-enumeration/

United Natural Foods says week-long cyber incident will impact quarterly income
https://therecord.media/united-natural-foods-cyber-incident-q4-impact

Hawaiian Airlines flights operating safely after cyberattack affects some IT systems
https://therecord.media/hawaiian-airlines-cyberattack-flights-safe

Hackers stole data on 2.2 million people in cyberattack affecting American grocery chains
https://therecord.media/hackers-cyberattack-grocery-chain

NATO members aim for spending 5% of GDP on defense, with 1.5% eligible for cyber
https://therecord.media/nato-agreement-5percent-gdp-defense-spending-cyber

Demystifying MCP (Model Context Protocol): 3 Common Misconceptions
https://www.reddit.com/r/netsec/comments/1lltr7o/demystifying_mcp_model_context_protocol_3_common/

Unveiling RIFT: Enhancing Rust malware analysis through pattern matching
https://www.microsoft.com/en-us/security/blog/2025/06/27/unveiling-rift-enhancing-rust-malware-analysis-through-pattern-matching/

Follow Top Cyber News at https://t.me/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman