Countering EDRs With The Backing Of Protected Process Light (PPL)
https://ift.tt/mzf4h9I
Submitted August 23, 2025 at 02:27PM by Cold-Dinosaur
via reddit https://ift.tt/OVvNjhl
https://ift.tt/mzf4h9I
Submitted August 23, 2025 at 02:27PM by Cold-Dinosaur
via reddit https://ift.tt/OVvNjhl
Zerosalarium
Countering EDRs With The Backing Of Protected Process Light (PPL)
Abusing the Clipup.exe program by using the CreateProcessAsPPL.exe tool to destroy the executable file of the EDRs, Antivirus.
New Algorithm Detects Active Hacking Groups Targeting Companies
https://ift.tt/crKTaJN
Submitted August 23, 2025 at 04:39PM by Disscom
via reddit https://ift.tt/GdmQez4
https://ift.tt/crKTaJN
Submitted August 23, 2025 at 04:39PM by Disscom
via reddit https://ift.tt/GdmQez4
Deepspecter
Deepspecter | Technical Due Diligence & Corporate Intelligence
Exposing digital fraud, regulatory evasion, and corporate manipulation through cyber intelligence. We investigate what others ignore.
VibeCoding VPN Deployment
https://ift.tt/cMlYyuh
Submitted August 23, 2025 at 10:43PM by Fit-Cut9562
via reddit https://ift.tt/Ab4JLt7
https://ift.tt/cMlYyuh
Submitted August 23, 2025 at 10:43PM by Fit-Cut9562
via reddit https://ift.tt/Ab4JLt7
ZephrSec - Adventures In Information Security
AI Assisted Dev aka Vibecoding
I used Claude to build ProxyGen, a multi-cloud WireGuard VPN tool. It needed tweaks but showed how far AI vibecoding can go, flaws and all.
New Gmail Phishing Scam Uses AI-Style Prompt Injection to Evade Detection
https://ift.tt/MxFgmyi
Submitted August 24, 2025 at 02:07AM by anuraggawande
via reddit https://ift.tt/G6OkhRV
https://ift.tt/MxFgmyi
Submitted August 24, 2025 at 02:07AM by anuraggawande
via reddit https://ift.tt/G6OkhRV
Malware Analysis, Phishing, and Email Scams
Phishing Emails Are Now Aimed at Users and AI Defenses
Phishing has always been about deceiving people. But in this campaign, I discovered something new. The attackers weren’t only targeting users, they also attempted to manipulate AI-based defences. T…
Tracking malicious code execution in Python
https://ift.tt/hUPMDt8
Submitted August 25, 2025 at 01:05PM by rushter_
via reddit https://ift.tt/Ut0chgl
https://ift.tt/hUPMDt8
Submitted August 25, 2025 at 01:05PM by rushter_
via reddit https://ift.tt/Ut0chgl
Artem Golubin
Tracking malicious code execution in Python | Artem Golubin
Why code analysis can be hard when it comes to malicious code.
Vtenext 25.02: A three-way path to RCE
https://ift.tt/YeySfcw
Submitted August 25, 2025 at 03:55PM by theMiddleBlue
via reddit https://ift.tt/sYt3DMO
https://ift.tt/YeySfcw
Submitted August 25, 2025 at 03:55PM by theMiddleBlue
via reddit https://ift.tt/sYt3DMO
Sicuranext Blog
Vtenext 25.02: A three-way path to RCE
Multiple vulnerabilities in vtenext 25.02 and prior versions allow unauthenticated attackers to bypass authentication through three separate vectors, ultimately leading to remote code execution on the underlying server.
Build a new kind of browser security, care to try it? You have access to control a private key but cannot take it. Looking for things that break. No security knowledge needed to try it if you can copy paste and type you can try to break the new algorithm.
https://ift.tt/3uJPH6a
Submitted August 25, 2025 at 11:38PM by Dangerous-Middle922
via reddit https://ift.tt/LIEcNpP
https://ift.tt/3uJPH6a
Submitted August 25, 2025 at 11:38PM by Dangerous-Middle922
via reddit https://ift.tt/LIEcNpP
Safeguarding VS Code against prompt injections
https://ift.tt/7P9DIzj
Submitted August 26, 2025 at 12:34AM by artsploit
via reddit https://ift.tt/jYAMvWI
https://ift.tt/7P9DIzj
Submitted August 26, 2025 at 12:34AM by artsploit
via reddit https://ift.tt/jYAMvWI
The GitHub Blog
Safeguarding VS Code against prompt injections
See how to reduce the risks of an indirect prompt injection, such as the exposure of confidential files or the execution of code without the user's consent.
CPF a framework that predicts security vulnerabilities using psychology and psychoanalysis.
https://cpf3.org
Submitted August 26, 2025 at 03:41AM by kaolay
via reddit https://ift.tt/vaDIPiN
https://cpf3.org
Submitted August 26, 2025 at 03:41AM by kaolay
via reddit https://ift.tt/vaDIPiN
cpf3.org
CPF3: Psychological Vulnerability Assessment Framework
First systematic integration of psychoanalytic theory with cybersecurity practice. Identifies unconscious vulnerabilities 300ms before conscious awareness.
DIAC ∞ 2: A Post-Quantum, P=NP-Resistant Cryptosystem
https://ift.tt/KQi2lSL
Submitted August 26, 2025 at 08:36AM by No_Arachnid_5563
via reddit https://ift.tt/aRmAT07
https://ift.tt/KQi2lSL
Submitted August 26, 2025 at 08:36AM by No_Arachnid_5563
via reddit https://ift.tt/aRmAT07
OSF
DIAC ∞ 2: A Post-Quantum, P=NP-Resistant, Infinite Search Space Hybrid Encryption System
DIAC∞ 2 is an experimental novel hybrid post-quantum encryption system combining ML-KEM-512 (Kyber variant) for quantum-resistant key encapsulation, ChaCha20-Poly1305 for authenticated encryption, and a post-quantum AEAD layer. Its novel Transcendental Window…
IPv4/IPv6 Packet Fragmentation: Detection & Reassembly
https://ift.tt/kVwynzO
Submitted August 26, 2025 at 06:18PM by MFMokbel
via reddit https://ift.tt/nWuIFxa
https://ift.tt/kVwynzO
Submitted August 26, 2025 at 06:18PM by MFMokbel
via reddit https://ift.tt/nWuIFxa
PacketSmith
IP Fragmentation Detection & Reassembly - PacketSmith
IPv4/IPv6 Packet Fragmentation: Detection & Reassembly Introduction A packet can be broken into smaller pieces, or fragments, at the network layer (by the IPv4 and IPv6 protocols) to fit within a specific Maximum Transmission Unit (MTU). For IPv4, a packet’s…
This House is Haunted: a decade old RCE in the AION client
https://appsec.space/posts/aion-housing-exploit/
Submitted August 26, 2025 at 09:44PM by himazawa
via reddit https://ift.tt/jWdzV2J
https://appsec.space/posts/aion-housing-exploit/
Submitted August 26, 2025 at 09:44PM by himazawa
via reddit https://ift.tt/jWdzV2J
appsec & stuff
This House is Haunted: a decade old RCE in the AION client
TL;DR I found a RCE in the AION client starting from 3.0 (not confirmed the latest version vulnerable) using the built-in housing system. Private servers are still vulnerable. Important Note In the initial version of this post I wrote that the housing system…
The One Where We Just Steal The Vulnerabilities (CrushFTP CVE-2025-54309) - watchTowr Labs
https://ift.tt/FTvHDnr
Submitted August 27, 2025 at 10:23AM by dx7r__
via reddit https://ift.tt/TH5ebAf
https://ift.tt/FTvHDnr
Submitted August 27, 2025 at 10:23AM by dx7r__
via reddit https://ift.tt/TH5ebAf
watchTowr Labs
The One Where We Just Steal The Vulnerabilities (CrushFTP CVE-2025-54309)
On July 18, 2025, users of CrushFTP woke up to an announcement:
As we’ve all experienced in 2025, 2025 has been the year of vendors burying their heads in the sand with regard to in-the-wild exploitation, even in the face of impressively indisputable evidence…
As we’ve all experienced in 2025, 2025 has been the year of vendors burying their heads in the sand with regard to in-the-wild exploitation, even in the face of impressively indisputable evidence…
Why Relying on LLMs for Code Can Be a Security Nightmare
https://ift.tt/Xg7tbPI
Submitted August 27, 2025 at 08:05PM by unknownhad
via reddit https://ift.tt/97ipax1
https://ift.tt/Xg7tbPI
Submitted August 27, 2025 at 08:05PM by unknownhad
via reddit https://ift.tt/97ipax1
Terminal
Why Relying on LLMs for Code Can Be a Security Nightmare
LLM generated code can ships demo logic with security issues not defenses. Here is a real world example and how it could be abused.
NX Compromised to Check for Claude Code CLI and Explore Filesystem for Credentials
https://ift.tt/N3rVo2c
Submitted August 27, 2025 at 07:49PM by j12y
via reddit https://ift.tt/kXfqnJs
https://ift.tt/N3rVo2c
Submitted August 27, 2025 at 07:49PM by j12y
via reddit https://ift.tt/kXfqnJs
Semgrep
Security Alert | NX Compromised to Steal Wallets and Credentials
What is s1ngularity-repository? Nx is compromised and the malware steals wallets and API keys using Claude CLI or Gemini.
Referral Beware, Your Rewards are Mine (Part 1)
https://ift.tt/zfaCrlw
Submitted August 27, 2025 at 11:56PM by hackers_and_builders
via reddit https://ift.tt/ZW6FIge
https://ift.tt/zfaCrlw
Submitted August 27, 2025 at 11:56PM by hackers_and_builders
via reddit https://ift.tt/ZW6FIge
Rhino Security Labs
Referral Beware, Your Rewards are Mine (Part 1)
Referral rewards programs are nearly ubiquitous today, from consumer tech to SaaS companies, but are rarely given much security oversight.
How to phish users on Android applications - A case study on Meta Threads application
https://ift.tt/ly4HZYF
Submitted August 28, 2025 at 08:55PM by gdraperi
via reddit https://ift.tt/8FQrgow
https://ift.tt/ly4HZYF
Submitted August 28, 2025 at 08:55PM by gdraperi
via reddit https://ift.tt/8FQrgow
Blogspot
How to phish users on Android applications - A case study on Meta Threads application
Summary Android applications often embed web content using WebView , a component that displays webpages inside the app itself. To improve u...
Sliding into your DMs: Abusing Microsoft Teams for Malware Delivery
https://ift.tt/ADbiugw
Submitted August 28, 2025 at 08:54PM by permis0
via reddit https://ift.tt/SUJ7lyI
https://ift.tt/ADbiugw
Submitted August 28, 2025 at 08:54PM by permis0
via reddit https://ift.tt/SUJ7lyI
permiso.io
Sliding into your DMs: Abusing Microsoft Teams for Malware Delivery
Malware delivery through Microsoft Teams is an emerging threat. Discover how attackers exploit external chats, which regions they target, and key IOCs defenders must track.
Intercepting LDAP With InterceptSuite
https://ift.tt/N2aepml
Submitted August 28, 2025 at 10:58PM by Ano_F
via reddit https://ift.tt/RscnFh7
https://ift.tt/N2aepml
Submitted August 28, 2025 at 10:58PM by Ano_F
via reddit https://ift.tt/RscnFh7
Medium
Intercepting LDAP With InterceptSuite
LDAP authentication is everywhere in networks, but intercepting encrypted LDAP traffic can be challenging. LDAP authentication in the web…
Rage Against the Authentication State Machine (CVE-2024-28080)
https://ift.tt/XHMO5L4
Submitted August 29, 2025 at 01:51PM by dn3t
via reddit https://ift.tt/TKy6z1p
https://ift.tt/XHMO5L4
Submitted August 29, 2025 at 01:51PM by dn3t
via reddit https://ift.tt/TKy6z1p
Silent Signal Techblog
Rage Against the Authentication State Machine
Because we can!
Cache Me If You Can (Sitecore Experience Platform Cache Poisoning to RCE) - watchTowr Labs
https://ift.tt/2zStIdj
Submitted August 29, 2025 at 03:46PM by dx7r__
via reddit https://ift.tt/in82Tsw
https://ift.tt/2zStIdj
Submitted August 29, 2025 at 03:46PM by dx7r__
via reddit https://ift.tt/in82Tsw
watchTowr Labs
Cache Me If You Can (Sitecore Experience Platform Cache Poisoning to RCE)
What is the main purpose of a Content Management System (CMS)?
We have to accept that when we ask such existential and philosophical questions, we’re also admitting that we have no idea and that there probably isn’t an easy answer (this is our excuse, and…
We have to accept that when we ask such existential and philosophical questions, we’re also admitting that we have no idea and that there probably isn’t an easy answer (this is our excuse, and…