⤷ Title: Welcome to my space :)
════════════════════════
𐀪 Author: Hobin Rood
════════════════════════
ⴵ Time: Sun, 18 Jan 2026 22:18:00 GMT
════════════════════════
⌗ Tags: #osint #freelancing #hacking #osint_investigation #education
════════════════════════
𐀪 Author: Hobin Rood
════════════════════════
ⴵ Time: Sun, 18 Jan 2026 22:18:00 GMT
════════════════════════
⌗ Tags: #osint #freelancing #hacking #osint_investigation #education
Medium
Welcome to my space :)
Welcome to the Network (the name I have still yet to decide).
⤷ Title: Beyond the Noise: Why I Built VedicRecon (and Why Reconnaissance Needs to Change)
════════════════════════
𐀪 Author: Vedic_error
════════════════════════
ⴵ Time: Sun, 18 Jan 2026 23:11:49 GMT
════════════════════════
⌗ Tags: #vulnerability #penetration_testing #cybersecurity #ethical_hacking #generative_ai_tools
════════════════════════
𐀪 Author: Vedic_error
════════════════════════
ⴵ Time: Sun, 18 Jan 2026 23:11:49 GMT
════════════════════════
⌗ Tags: #vulnerability #penetration_testing #cybersecurity #ethical_hacking #generative_ai_tools
Medium
Beyond the Noise: Why I Built VedicRecon (and Why Reconnaissance Needs to Change)
⚠️All testing described below was performed in a fully isolated lab environment for educational and defensive research purposes only. No…
⤷ Title: Phishing Simulator
════════════════════════
𐀪 Author: Aaronashley
════════════════════════
ⴵ Time: Sun, 18 Jan 2026 22:16:16 GMT
════════════════════════
⌗ Tags: #ethical_hacking #python_web_developer #html5_development #phishing_awareness
════════════════════════
𐀪 Author: Aaronashley
════════════════════════
ⴵ Time: Sun, 18 Jan 2026 22:16:16 GMT
════════════════════════
⌗ Tags: #ethical_hacking #python_web_developer #html5_development #phishing_awareness
Medium
Phishing Simulator
This is for educational purposes only! Do not use unless authorized.
⤷ Title: Fake Malwarebytes Campaign Exploits DLL Sideloading to Drop Infostealers
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:46:26 +0000
════════════════════════
⌗ Tags: #Malware #BrowserStealer #CoreMessaging.dll #Cyber Security #DLL Sideloading #Infostealer #Joseliyo Sánchez #Malware Analysis #Malwarebytes #social engineering
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:46:26 +0000
════════════════════════
⌗ Tags: #Malware #BrowserStealer #CoreMessaging.dll #Cyber Security #DLL Sideloading #Infostealer #Joseliyo Sánchez #Malware Analysis #Malwarebytes #social engineering
Daily CyberSecurity
Fake Malwarebytes Campaign Exploits DLL Sideloading to Drop Infostealers
New malware campaign impersonates Malwarebytes installers. Hackers use DLL sideloading to deploy infostealers targeting crypto & MFA. Verify downloads now.
⤷ Title: CVE-2026-0695: High-Severity XSS Flaw Patched in ConnectWise PSA 2026.1
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:43:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ConnectWise PSA #CVE_2026_0695 #CVE_2026_0696 #Cyber Security #MSP Security #Patch Alert #Session Hijacking #Stored XSS #Web Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:43:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ConnectWise PSA #CVE_2026_0695 #CVE_2026_0696 #Cyber Security #MSP Security #Patch Alert #Session Hijacking #Stored XSS #Web Security
Daily CyberSecurity
CVE-2026-0695: High-Severity XSS Flaw Patched in ConnectWise PSA 2026.1
ConnectWise patches critical Stored XSS (CVE-2026-0695) in PSA Time Entry notes. Vulnerability allows session hijacking. Update to version 2026.1 immediately.
⤷ Title: DragonForce: The Rise of a New “Ransomware Cartel” Built on LockBit and Conti DNA
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:42:44 +0000
════════════════════════
⌗ Tags: #Malware #BlackLock #Conti #Cyber Cartel #decryptor #DragonForce #infosec #LockBit 3.0 #Malware Analysis #RansomBay #ransomware #S2W
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:42:44 +0000
════════════════════════
⌗ Tags: #Malware #BlackLock #Conti #Cyber Cartel #decryptor #DragonForce #infosec #LockBit 3.0 #Malware Analysis #RansomBay #ransomware #S2W
Daily CyberSecurity
DragonForce: The Rise of a New "Ransomware Cartel" Built on LockBit and Conti DNA
S2W reveals DragonForce is a "cartel" hacking rivals like BlackLock. Built on LockBit 3.0 code, they offer "Ransombay" services. A decryptor was found.
⤷ Title: Fake Productivity Tools: 5 Malicious Chrome Extensions Hijack Enterprise Sessions
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:37:04 +0000
════════════════════════
⌗ Tags: #Malware #Chrome extensions #Cookie Injection #DataByCloud #Enterprise Security #infosec #malware #NetSuite #Session Hijacking #Socket Threat Research #Workday
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:37:04 +0000
════════════════════════
⌗ Tags: #Malware #Chrome extensions #Cookie Injection #DataByCloud #Enterprise Security #infosec #malware #NetSuite #Session Hijacking #Socket Threat Research #Workday
Daily CyberSecurity
Fake Productivity Tools: 5 Malicious Chrome Extensions Hijack Enterprise Sessions
Socket discovers 5 malicious Chrome extensions posing as productivity tools. They steal session tokens & block security teams. 2,300+ enterprise users at risk.
⤷ Title: Sitting Ducks and Scammy Notifications: Inside a Global Malvertising Operation
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:32:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Ad Fraud #Android security #Cyber Crime #Cyber Hygiene #DNS hijacking #DNS Vulnerability #Infoblox #Malvertising #Push Notification Scam #Sitting Ducks
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:32:03 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Ad Fraud #Android security #Cyber Crime #Cyber Hygiene #DNS hijacking #DNS Vulnerability #Infoblox #Malvertising #Push Notification Scam #Sitting Ducks
Daily CyberSecurity
Sitting Ducks and Scammy Notifications: Inside a Global Malvertising Operation
Infoblox researchers hijacked a scam network using the "Sitting Ducks" DNS flaw. 57M logs reveal how abandoned domains fuel global push notification spam.
⤷ Title: Unpatched RCE: Livewire Filemanager Upload Flaw (CVE-2025-14894) Exposes Laravel Apps
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:27:13 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_14894 #File Upload Vulnerability #Laravel #Livewire Filemanager #PHP Security #Remote Code Execution #Unpatched Vulnerability #Web Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:27:13 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #CVE_2025_14894 #File Upload Vulnerability #Laravel #Livewire Filemanager #PHP Security #Remote Code Execution #Unpatched Vulnerability #Web Security
Daily CyberSecurity
Unpatched RCE: Livewire Filemanager Upload Flaw (CVE-2025-14894) Exposes Laravel Apps
Unpatched Livewire Filemanager flaw (CVE-2025-14894) allows unauthenticated RCE via malicious uploads. Check storage:link configurations immediately.
⤷ Title: KnownSec Data Leak Exposes State-Aligned Cyber Espionage Pipeline
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:22:49 +0000
════════════════════════
⌗ Tags: #Data Leak #APT #China MPS #cyber_espionage #data leak #DomainTools #GhostX #infosec #KnownSec #Passive Radar #Un_Mail #zoomeye
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:22:49 +0000
════════════════════════
⌗ Tags: #Data Leak #APT #China MPS #cyber_espionage #data leak #DomainTools #GhostX #infosec #KnownSec #Passive Radar #Un_Mail #zoomeye
Daily CyberSecurity
KnownSec Data Leak Exposes State-Aligned Cyber Espionage Pipeline
KnownSec leak exposes a "vertically integrated espionage stack." See how ZoomEye and GhostX power China's state-aligned cyber operations.
⤷ Title: Bluetooth “Heartbleed” and DoS Flaws Found in Xiaomi Redmi Buds, No Patch
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:19:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Audio Security #Bluetooth security #CERT/CC #CVE_2025_13328 #CVE_2025_13834 #Denial of Service #Heartbleed #Privacy Leak #Redmi Buds #Xiaomi
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:19:21 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Audio Security #Bluetooth security #CERT/CC #CVE_2025_13328 #CVE_2025_13834 #Denial of Service #Heartbleed #Privacy Leak #Redmi Buds #Xiaomi
Daily CyberSecurity
Bluetooth "Heartbleed" and DoS Flaws Found in Xiaomi Redmi Buds, No Patch
Critical Redmi Buds flaws (CVE-2025-13834) allow data theft and device crashes via Bluetooth. "Heartbleed"-style bug has no patch. Disable Bluetooth now.
⤷ Title: Invisible Intruder: Fileless Remcos RAT Hides in Shipping Emails
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:15:56 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2017_11882 #Cyber Security #Fileless Malware #FortiGuard Labs #Malware Analysis #phishing #Process Hollowing #Remcos RAT #steganography
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:15:56 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2017_11882 #Cyber Security #Fileless Malware #FortiGuard Labs #Malware Analysis #phishing #Process Hollowing #Remcos RAT #steganography
Daily CyberSecurity
Invisible Intruder: Fileless Remcos RAT Hides in Shipping Emails
New fileless Remcos RAT campaign uses a "[virus detected]" shipping lure to inject malware into memory via process hollowing. See how to spot it.
⤷ Title: Critical Deno Flaws Risk Secrets (CVE-2026-22863) & Execution (CVE-2026-22864)
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:14:29 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Command Injection #cryptography #CVE_2026_22863 #CVE_2026_22864 #Deno #JavaScript Security #Node.js Compatibility #Patch Alert #Windows Security
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:14:29 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #Command Injection #cryptography #CVE_2026_22863 #CVE_2026_22864 #Deno #JavaScript Security #Node.js Compatibility #Patch Alert #Windows Security
Daily CyberSecurity
Critical Deno Flaws Risk Secrets (CVE-2026-22863) & Execution (CVE-2026-22864)
Deno, CVE-2026-22863, CVE-2026-22864, JavaScript Security, Cryptography, Command Injection, Windows Security, Node.js Compatibility, Patch Alert
⤷ Title: New “LOTUSLITE” Backdoor Targets U.S. Government in Suspected Mustang Panda Campaign
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:11:03 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Acronis TRU #APT #DLL Sideloading #Espionage #LOTUSLITE #Malware Analysis #Mustang Panda #spear_phishing #US government
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:11:03 +0000
════════════════════════
⌗ Tags: #Cyber Security #Malware #Acronis TRU #APT #DLL Sideloading #Espionage #LOTUSLITE #Malware Analysis #Mustang Panda #spear_phishing #US government
Daily CyberSecurity
New "LOTUSLITE" Backdoor Targets U.S. Government in Suspected Mustang Panda Campaign
Mustang Panda targets US gov with new LOTUSLITE backdoor. Campaign uses Venezuela lures and DLL sideloading to evade detection.
⤷ Title: Critical ABB Alert: OPTIMAX Flaw Allows Full System Takeover
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:09:28 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ABB #Ability OPTIMAX #Authentication Bypass #Azure AD #Critical Infrastructure #CVE_2025_14510 #CVSS 9.2 #ICS #Industrial Security #SCADA
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:09:28 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ABB #Ability OPTIMAX #Authentication Bypass #Azure AD #Critical Infrastructure #CVE_2025_14510 #CVSS 9.2 #ICS #Industrial Security #SCADA
Daily CyberSecurity
Critical ABB Alert: OPTIMAX Flaw Allows Full System Takeover
Critical: ABB OPTIMAX flaw CVE-2025-14510 (CVSS 9.2) allows auth bypass via Azure AD. Attackers can shut down systems. Patch or disable SSO now.
⤷ Title: The Fake “RedLine”: Imposter Malware Hijacks Crypto Wallets on Discord
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:05:25 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Clipboard Hijacker #CloudSEK #Cryptocurrency Theft #Discord Security #Python Malware #Redline stealer #RedLineCyber #social engineering #Wallet drainer
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:05:25 +0000
════════════════════════
⌗ Tags: #Cybercriminals #Clipboard Hijacker #CloudSEK #Cryptocurrency Theft #Discord Security #Python Malware #Redline stealer #RedLineCyber #social engineering #Wallet drainer
Daily CyberSecurity
The Fake "RedLine": Imposter Malware Hijacks Crypto Wallets on Discord
CloudSEK exposes "RedLineCyber," an impostor hijacking crypto clipboards on Discord. This stealthy malware drains wallets without a C2 server.
⤷ Title: Decades-Old Flaw & New Heap Corruption: Critical glibc Bugs Revealed
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:01:47 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ASLR Bypass #CVE_2026_0861 #CVE_2026_0915 #glibc #GNU C Library #heap corruption #infosec #integer overflow #Linux Security #Memory Leak
════════════════════════
𐀪 Author: Ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 00:01:47 +0000
════════════════════════
⌗ Tags: #Vulnerability Report #ASLR Bypass #CVE_2026_0861 #CVE_2026_0915 #glibc #GNU C Library #heap corruption #infosec #integer overflow #Linux Security #Memory Leak
Daily CyberSecurity
Decades-Old Flaw & New Heap Corruption: Critical glibc Bugs Revealed
glibc patches CVE-2026-0861 (CVSS 8.4) & CVE-2026-0915. High-severity heap corruption and a 20-year-old leak affect Linux systems. Patch now.
⤷ Title: Mastering Input Handling in PHP: A Deep Dive into ‘Sanitize’ vs ‘Validate’
════════════════════════
𐀪 Author: Ann R.
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 01:36:19 GMT
════════════════════════
⌗ Tags: #input_sanitization #input_validation #sql_injection #php #prepared_statements
════════════════════════
𐀪 Author: Ann R.
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 01:36:19 GMT
════════════════════════
⌗ Tags: #input_sanitization #input_validation #sql_injection #php #prepared_statements
Medium
Mastering Input Handling in PHP: A Deep Dive into ‘Sanitize’ vs ‘Validate’
How Proper Input Validation and Sanitization Can Secure Your PHP Applications
⤷ Title: The Silent Listener: WhisperPair Exploit Turns Flagship Headphones into Spy Tools
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 04:00:05 +0000
════════════════════════
⌗ Tags: #Vulnerability #Bluetooth Security #cybersecurity #Find My Device #Google Fast Pair #Google Pixel Buds #InfoSec 2026 #JBL #KU Leuven #privacy #Sony #WhisperPair
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 04:00:05 +0000
════════════════════════
⌗ Tags: #Vulnerability #Bluetooth Security #cybersecurity #Find My Device #Google Fast Pair #Google Pixel Buds #InfoSec 2026 #JBL #KU Leuven #privacy #Sony #WhisperPair
Penetration Testing Tools
The Silent Listener: WhisperPair Exploit Turns Flagship Headphones into Spy Tools
Envision strolling through a thoroughfare, enveloped in the melodies of your headphones, utterly oblivious to the specter of
⤷ Title: The Kill Switch: Palo Alto Patches GlobalProtect Flaw That Freezes Firewalls
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 03:54:43 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2026_0227 #Denial of Service #Firewall Security #GlobalProtect #InfoSec 2026 #Palo Alto Networks #PAN_OS #Patch Tuesday #Prisma Access #VPN Security
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 03:54:43 +0000
════════════════════════
⌗ Tags: #Vulnerability #CVE_2026_0227 #Denial of Service #Firewall Security #GlobalProtect #InfoSec 2026 #Palo Alto Networks #PAN_OS #Patch Tuesday #Prisma Access #VPN Security
Penetration Testing Tools
The Kill Switch: Palo Alto Patches GlobalProtect Flaw That Freezes Firewalls
Palo Alto Networks has successfully remediated a perilous vulnerability within its firewalls that permitted unauthenticated adversaries to effectively
⤷ Title: Absolute Compromise: 10.0 Flaw in Modular DS Plugin Grants Instant Admin Access
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 03:37:50 +0000
════════════════════════
⌗ Tags: #Vulnerability #Admin Bypass #CVE_2026_23550 #cyberattack #InfoSec 2026 #Modular DS #Patchstack #Plugin Security #privilege escalation #WordPress #zero_day
════════════════════════
𐀪 Author: ddos
════════════════════════
ⴵ Time: Mon, 19 Jan 2026 03:37:50 +0000
════════════════════════
⌗ Tags: #Vulnerability #Admin Bypass #CVE_2026_23550 #cyberattack #InfoSec 2026 #Modular DS #Patchstack #Plugin Security #privilege escalation #WordPress #zero_day
Penetration Testing Tools
Absolute Compromise: 10.0 Flaw in Modular DS Plugin Grants Instant Admin Access
A critical vulnerability has been unearthed in the ubiquitous WordPress plugin Modular DS, which is currently being actively