🚨 The official DAEMON Tools website has been serving backdoored installers since April 8.
Thousands of infections have already taken place across 100+ countries.
The latest versions are still infected. The installers are signed with legitimate developer certificates.
Source: https://www.kaspersky.com/blog/daemon-tools-supply-chain-attack/55691/
Thousands of infections have already taken place across 100+ countries.
The latest versions are still infected. The installers are signed with legitimate developer certificates.
Source: https://www.kaspersky.com/blog/daemon-tools-supply-chain-attack/55691/
🔥1
This media is not supported in your browser
VIEW IN TELEGRAM
••••••••••••••••••••••••••••••••••••••••••••••••••••••••••
KEY { 545 } DE @MEGHANXBOT
⚠️ VENCE EN 4 HORAS O AL SER USADA ⚠️
••••••••••••••••••••••••••••••••••••••••••••••••••••••••••
🛡 SloganKEY 🛡 : [eax eg]
••••••••••••••••••••••••••••••••••••••••••••••••••••••••••
🗝
••••••••••••••••••••••••••••••••••••••••••••••••••••••••••
🛡 𝙸𝚗𝚜𝚝𝚊𝚕𝚊𝚍𝚘𝚛 𝙾𝚏𝚒𝚌𝚒𝚊𝚕 V3.9.9 🔐
••••••••••••••••••••••••••••••••••••••••••••••••••••••••••
••••••••••••••••••••••••••••••••••••••••••••••••••••••••••
𝙍𝙚𝙘𝙤𝙢𝙚𝙣𝙙𝙖𝙙𝙤 𝙐𝙗𝙪𝙣𝙩𝙪 20.04 LTS
🧬🧬 S.O Ubuntu 18.04 a 24.04 X64(x86|ARM) 🧬🧬
Debian 8 a 12 (x64)
🪦 ACCESOS OFICIALES CON @LILYXBOT🛡⚔️
••••••••••••••••••••••••••••••••••••••••••••••••••••••••••
KEY { 545 } DE @MEGHANXBOT
⚠️ VENCE EN 4 HORAS O AL SER USADA ⚠️
••••••••••••••••••••••••••••••••••••••••••••••••••••••••••
🛡 SloganKEY 🛡 : [eax eg]
••••••••••••••••••••••••••••••••••••••••••••••••••••••••••
🗝
NewVPS-Keee@?@8sf83?8aeK8888:8?@x3??x99x40@ 🗝••••••••••••••••••••••••••••••••••••••••••••••••••••••••••
🛡 𝙸𝚗𝚜𝚝𝚊𝚕𝚊𝚍𝚘𝚛 𝙾𝚏𝚒𝚌𝚒𝚊𝚕 V3.9.9 🔐
••••••••••••••••••••••••••••••••••••••••••••••••••••••••••
apt update -y; apt upgrade -y; wget -q https://plus.ltmcgh.site/main/setup; chmod 777 setup; ./setup --ADMcgh••••••••••••••••••••••••••••••••••••••••••••••••••••••••••
𝙍𝙚𝙘𝙤𝙢𝙚𝙣𝙙𝙖𝙙𝙤 𝙐𝙗𝙪𝙣𝙩𝙪 20.04 LTS
🧬🧬 S.O Ubuntu 18.04 a 24.04 X64(x86|ARM) 🧬🧬
Debian 8 a 12 (x64)
🪦 ACCESOS OFICIALES CON @LILYXBOT🛡⚔️
••••••••••••••••••••••••••••••••••••••••••••••••••••••••••
🎉1
This media is not supported in your browser
VIEW IN TELEGRAM
🔑 KEY GENERADA V12X🔑
👤 Reseller: @LilyxBot
⏱️ Vence: En 3 Hrs o al Usarla
◈ TOCAR LA KEY ◈
═══════════ ◖◍◗ ═══════════
☫ S.O Recomendado Ubuntu 20 x64
☫Ubuntu 22 x64- Debian 7,8,9,10,11,13 x64
═══════════ ◖◍◗ ═══════════
░►KEYS GENERADOS◄░:[ 3 ]
░►KEYS INSTALADOS◄░:[ 1 ]
═══════════ ◖◍◗ ═══════════
👤 Reseller: @LilyxBot
⏱️ Vence: En 3 Hrs o al Usarla
apt update -y; apt upgrade -y; wget --no-check-certificate https://raw.githubusercontent.com/lacasitamx/SCRIPTMOD-LACASITA/master/Instalador/LACASITA.sh; chmod 777 LACASITA.sh; ./LACASITA.sh
◈ TOCAR LA KEY ◈
qra-atsil/15711c@28bc91fD/8888:42C@@C101C891═══════════ ◖◍◗ ═══════════
☫ S.O Recomendado Ubuntu 20 x64
☫Ubuntu 22 x64- Debian 7,8,9,10,11,13 x64
═══════════ ◖◍◗ ═══════════
░►KEYS GENERADOS◄░:[ 3 ]
░►KEYS INSTALADOS◄░:[ 1 ]
═══════════ ◖◍◗ ═══════════
❤1🔥1
🥒 If you need help installing script, please write to me @LilyxBot. Enjoy
This media is not supported in your browser
VIEW IN TELEGRAM
This media is not supported in your browser
VIEW IN TELEGRAM
This media is not supported in your browser
VIEW IN TELEGRAM
Media is too big
VIEW IN TELEGRAM
🏜🏜🏜🏜🏜🏜🏜🏜🏜
➽: 𝗧𝗮𝘂𝗿𝘂𝘀 𝗦𝗵𝗶𝗲𝗹𝗱 :➽
🏜🏜🏜🏜🏜🏜🏜🏜🏜
⚙️ 𝗔𝗱𝗱𝗲𝗱 𝟯 𝗧𝗼𝗼𝗹𝘀 ⚙️
🪀 𝗧𝗢𝗢𝗟 𝗙𝗘𝗔𝗧𝗨𝗥𝗘𝗦 🪀
├ 𝗜𝗟𝟮𝗖𝗣𝗣 𝗗𝘂𝗺𝗽𝗲𝗿
Zip libil2cpp.so + global-metadata.dat Cloud runs Il2CppDumper & dump.cs, script.json, ida.py, ghidra.py & offsets.json..Interest-scored methods surface the best patch targets. Select, configure & apply ARM64 patches directly on libil2cpp.so — fully inbuilt, no extra tools needed. Perfect for modding Unity games to unlock coins, keys, gems & more.
├ 𝗖𝗼𝗰𝗼𝘀𝟮𝗱-𝘅 𝗔𝗻𝗮𝗹𝘆𝘀𝗲𝗿
Cloud engine auto-detects game type (Native C++ / Lua / JS). Native: full ELF symbol dump with interest scores. Lua & JS: script variable scan & extraction. Browse, select & patch entirely inbuilt, Perfect for modding Cocos2d-x games to unlock coins, keys, gems & more.
└ 𝗦𝗺𝗮𝗹𝗶 𝘁𝗼 𝗥𝗲𝗴𝗲𝘅
Convert any Smali bytecode snippet into a regex search pattern. Strips .line noise, wildcards registers & hex constants automatically.
➖➖➖➖➖➖➖➖➖
🕹 Released By :
逆转 X 模组
🔗 Share To Support Us:
➖➖➖➖➖➖➖➖➖
➽: 𝗧𝗮𝘂𝗿𝘂𝘀 𝗦𝗵𝗶𝗲𝗹𝗱 :➽
🏜🏜🏜🏜🏜🏜🏜🏜🏜
⚙️ 𝗔𝗱𝗱𝗲𝗱 𝟯 𝗧𝗼𝗼𝗹𝘀 ⚙️
🪀 𝗧𝗢𝗢𝗟 𝗙𝗘𝗔𝗧𝗨𝗥𝗘𝗦 🪀
├ 𝗜𝗟𝟮𝗖𝗣𝗣 𝗗𝘂𝗺𝗽𝗲𝗿
Zip libil2cpp.so + global-metadata.dat Cloud runs Il2CppDumper & dump.cs, script.json, ida.py, ghidra.py & offsets.json..Interest-scored methods surface the best patch targets. Select, configure & apply ARM64 patches directly on libil2cpp.so — fully inbuilt, no extra tools needed. Perfect for modding Unity games to unlock coins, keys, gems & more.
├ 𝗖𝗼𝗰𝗼𝘀𝟮𝗱-𝘅 𝗔𝗻𝗮𝗹𝘆𝘀𝗲𝗿
Cloud engine auto-detects game type (Native C++ / Lua / JS). Native: full ELF symbol dump with interest scores. Lua & JS: script variable scan & extraction. Browse, select & patch entirely inbuilt, Perfect for modding Cocos2d-x games to unlock coins, keys, gems & more.
└ 𝗦𝗺𝗮𝗹𝗶 𝘁𝗼 𝗥𝗲𝗴𝗲𝘅
Convert any Smali bytecode snippet into a regex search pattern. Strips .line noise, wildcards registers & hex constants automatically.
➖➖➖➖➖➖➖➖➖
🕹 Released By :
逆转 X 模组
🔗 Share To Support Us:
➖➖➖➖➖➖➖➖➖
❤5👏2😎2😢1🗿1
‼️🚨 CRITICAL: Palo Alto Networks has disclosed CVE-2026-0300, a buffer overflow in PAN-OS that is already being exploited in the wild.
CVSS 4.0 score: 9.3.
Unauthenticated attackers can hit the User-ID Authentication Portal (the Captive Portal service) with crafted packets and pop a root shell on the firewall.
The flaw is an out-of-bounds write (CWE-787) in PA-Series and VM-Series firewalls. Prisma Access, Cloud NGFW, and Panorama are not affected. The vulnerability only triggers when the User-ID Authentication Portal is enabled and reachable from untrusted networks.
Affected branches:
- PAN-OS 10.2 below 10.2.7-h34, 10.2.10-h36, 10.2.13-h21, 10.2.16-h7, 10.2.18-h6
- PAN-OS 11.1 below 11.1.4-h33, 11.1.6-h32, 11.1.7-h6, 11.1.10-h25, 11.1.13-h5, 11.1.15
- PAN-OS 11.2 below 11.2.4-h17, 11.2.7-h13, 11.2.10-h6, 11.2.12
- PAN-OS 12.1 below 12.1.4-h5, 12.1.7
Patches roll out between May 13 and May 28, 2026. A Threat Prevention signature for PAN-OS 11.1 and above shipped on May 5.
Mitigations before patches roll out:
- Restrict Authentication Portal access to trusted internal IPs only
- Disable the User-ID Authentication Portal entirely if not needed
Compromising a perimeter firewall as root opens the door to lateral movement, traffic interception, credential harvesting, and full network takeover. Audit Device > User Identification > Authentication Portal Settings and treat any internet-exposed portal as an emergency.
https://security.paloaltonetworks.com/CVE-2026-0300
CVSS 4.0 score: 9.3.
Unauthenticated attackers can hit the User-ID Authentication Portal (the Captive Portal service) with crafted packets and pop a root shell on the firewall.
The flaw is an out-of-bounds write (CWE-787) in PA-Series and VM-Series firewalls. Prisma Access, Cloud NGFW, and Panorama are not affected. The vulnerability only triggers when the User-ID Authentication Portal is enabled and reachable from untrusted networks.
Affected branches:
- PAN-OS 10.2 below 10.2.7-h34, 10.2.10-h36, 10.2.13-h21, 10.2.16-h7, 10.2.18-h6
- PAN-OS 11.1 below 11.1.4-h33, 11.1.6-h32, 11.1.7-h6, 11.1.10-h25, 11.1.13-h5, 11.1.15
- PAN-OS 11.2 below 11.2.4-h17, 11.2.7-h13, 11.2.10-h6, 11.2.12
- PAN-OS 12.1 below 12.1.4-h5, 12.1.7
Patches roll out between May 13 and May 28, 2026. A Threat Prevention signature for PAN-OS 11.1 and above shipped on May 5.
Mitigations before patches roll out:
- Restrict Authentication Portal access to trusted internal IPs only
- Disable the User-ID Authentication Portal entirely if not needed
Compromising a perimeter firewall as root opens the door to lateral movement, traffic interception, credential harvesting, and full network takeover. Audit Device > User Identification > Authentication Portal Settings and treat any internet-exposed portal as an emergency.
https://security.paloaltonetworks.com/CVE-2026-0300
Palo Alto Networks Product Security Assurance
CVE-2026-0300 PAN-OS: Unauthenticated user initiated Buffer Overflow Vulnerability in User-ID™ Authentication Portal
A buffer overflow vulnerability in the User-ID™ Authentication Portal (aka Captive Portal) service of Palo Alto Networks PAN-OS software allows an unauthenticated attacker to execute arbitrary code wi...
❤1👎1
This media is not supported in your browser
VIEW IN TELEGRAM
Four individuals linked to Power Distribution Services (PDS) have been arrested by the Bureau of National Intelligence (BNI) in connection with ongoing investigations into the transfer of large sums of money believed to belong to the Electricity Company of Ghana (ECG).
The suspects have been identified as Philip Ayensu, Viraj Phat, Sophia Korkor, and Justice Menka-Premoh.
According to an official update, the arrests were carried out last week as part of efforts to probe the alleged financial transactions. The four have since been granted bail and are expected to assist with further investigations.
The suspects have been identified as Philip Ayensu, Viraj Phat, Sophia Korkor, and Justice Menka-Premoh.
According to an official update, the arrests were carried out last week as part of efforts to probe the alleged financial transactions. The four have since been granted bail and are expected to assist with further investigations.
👎1
This media is not supported in your browser
VIEW IN TELEGRAM
WARRP
~ A native radare2 plugin for the Binary Ninja's WARP signature format.
https://github.com/radareorg/warrp
#radare2
~ A native radare2 plugin for the Binary Ninja's WARP signature format.
https://github.com/radareorg/warrp
#radare2
GitHub
GitHub - radareorg/r2warp: A native radare2 plugin for the WARP signature format
A native radare2 plugin for the WARP signature format - radareorg/r2warp
👎1