Top Daily Cyber Security News – Telegram
Top Daily Cyber Security News
721 subscribers
718 links
Top rated cyber security tech news,
Just the top, every day.
Download Telegram
Top Security News for Today

Microsoft Teams: Impersonation and Spoofing Vulnerabilities Exposed
https://research.checkpoint.com/2025/microsoft-teams-impersonation-and-spoofing-vulnerabilities-exposed/

Cybercriminals Targeting Payroll Sites
https://www.schneier.com/blog/archives/2025/11/cybercriminals-targeting-payroll-sites.html

RondoDox v2: A 650% Expansion in Exploits
https://www.reddit.com/r/netsec/comments/1oo2qag/new_research_rondodox_v2_a_650_expansion_in/

GitLab Runner Research – PoC for Abusing Self-Hosted GitLab Runners
https://www.darknet.org.uk/2025/11/gitlab-runner-research-poc-for-abusing-self-hosted-gitlab-runners/

Health Privacy Bill Seeks Protections for Data Collected by Apps, Smartwatches
https://therecord.media/health-privacy-bill-seeks-protections-apps-smartwatches

9 Arrested in Europe in Operation Against Fake Platforms for Crypto Investments
https://therecord.media/9-arrested-europe-crypto-platform-takedown

Learn What Generative AI Can Do for Your Security Operations Center
https://www.microsoft.com/en-us/security/blog/2025/11/04/learn-what-generative-ai-can-do-for-your-security-operations-center-soc/

Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Efficient Deployment of CNN Models on Multiple In-Memory Computing Units
https://arxiv.org/abs/2502.03503

AI-Powered Citation Auditing: A Zero-Assumption Protocol for Systematic Reference Verification in Academic Research
https://arxiv.org/abs/2511.04682

RAS: A Bit-Exact rANS Accelerator For High-Performance Neural Lossless Compression
https://arxiv.org/abs/2511.04683

A hybrid solution approach for the Integrated Healthcare Timetabling Competition 2024
https://arxiv.org/abs/2511.04684

Stateful KV Cache Management for LLMs: Balancing Space, Time, Accuracy, and Positional Fidelity
https://arxiv.org/abs/2511.04685

New Attacks Against Secure Enclaves
https://www.schneier.com/blog/archives/2025/11/new-attacks-against-secure-enclaves.html

One Simple Mistake, Thousands at Risk - How Common Misconfigurations Could Lead to Massive Data Exposure
https://www.reddit.com/r/netsec/comments/1otba0s/one_simple_mistake_thousands_at_risk_how_common/

10th November – Threat Intelligence Report
https://research.checkpoint.com/2025/10th-november-threat-intelligence-report/

Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Customized Retrieval-Augmented Generation with LLM for Debiasing Recommendation Unlearning
https://reporter.deepspecter.com/your-article-link-1

GreyShot: Zeroshot and Privacy-preserving Recommender System by GM(1,1) Model
https://arxiv.org/abs/2511.05494

IMDMR: An Intelligent Multi-Dimensional Memory Retrieval System for Enhanced Conversational AI
https://arxiv.org/abs/2511.05493

DOCUEVAL: An LLM-based AI Engineering Tool for Building Customisable Document Evaluation Workflows
https://arxiv.org/abs/2511.05495

Socially Aware Music Recommendation: A Multi-Modal Graph Neural Networks for Collaborative Music Consumption and Community-Based Engagement
https://arxiv.org/abs/2511.05496

Prompt Injection in AI Browsers
https://www.schneier.com/blog/archives/2025/11/prompt-injection-in-ai-browsers.html

Reconnoitre – Open-Source Reconnaissance and Service Enumeration Tool
https://www.darknet.org.uk/2025/11/reconnoitre-open-source-reconnaissance-and-service-enumeration-tool/

Microsoft Patch Tuesday, November 2025 Security Update Review
https://blog.qualys.com/vulnerabilities-threat-research/2025/11/11/microsoft-patch-tuesday-november-2025-security-update-review

From Data Loss Prevention (DLP) to Modern Data Security
https://www.trendmicro.com/en_us/research/25/k/dlp-to-modern-data-security.html

NEW 'Off The Wall' ONLINE
https://www.2600.com/wall/11-11-2025

Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

NHS patients to finally be informed if hackers published their STI and cancer test data
https://therecord.media/synnovis-healthcare-data-breach-notification-uk-patients

German extremist arrested over operating alleged darknet assassination marketplace
https://therecord.media/german-extremist-arrested-darknet-assassination-market

Google files lawsuit to disrupt massive ‘Lighthouse’ smishing scheme
https://therecord.media/google-files-lawsuit-to-disrupt-lighthouse-scam

Data broker Kochava agrees to change business practices to settle lawsuit
https://therecord.media/data-broker-kochava-business-change

Is It CitrixBleed4? Well, No. Is It Good? Also, No. (Citrix NetScaler Memory Leak & RXSS CVE-2025-12101) - watchTowr Labs
https://www.reddit.com/r/netsec/comments/1ov4lab/is_it_citrixbleed4_well_no_is_it_good_also_no/

‘Advanced’ hacker seen exploiting Cisco, Citrix zero-days
https://therecord.media/advanced-hacker-exploiting-cisco-citrix-zero-days-amazon

British government unveils long-awaited landmark cybersecurity bill
https://therecord.media/british-gov-cybersecurity-law

Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

The Role of Humans in an AI-Powered World
https://www.schneier.com/blog/archives/2025/11/the-role-of-humans-in-an-ai-powered-world.html

🚨 FIRST PUBLIC EVIDENCE: RedTail Cryptominer Targets Docker APIs
https://www.reddit.com/r/netsec/comments/1owqjcx/first_public_evidence_redtail_cryptominer_targets/

Khmer Spellchecking: A Holistic Approach
https://arxiv.org/abs/2511.09582

When The Impersonation Function Gets Used To Impersonate Users (Fortinet FortiWeb (??) Auth. Bypass) - watchTowr Labs
https://www.reddit.com/r/netsec/comments/1owxxey/when_the_impersonation_function_gets_used_to/

Civil society decries digital rights ‘rollback' as European Commission pushes data protection changes
https://therecord.media/civil-society-privacy-rollback

Chinese state hackers used Anthropic AI systems in dozens of attacks
https://therecord.media/chinese-hackers-anthropic-cyberattacks

Upcoming Speaking Engagements
https://www.schneier.com/blog/archives/2025/11/upcoming-speaking-engagements-50.html

Unauthenticated Authentication Bypass in Fortinet FortiWeb (CVE-2025-64446) Exploited in the Wild
https://blog.qualys.com/vulnerabilities-threat-research/2025/11/14/unauthenticated-authentication-bypass-in-fortinet-fortiweb-cve-2025-64446-exploited-in-the-wild

Multiple US citizens plead guilty to helping North Korean IT workers earn $2 million
https://therecord.media/multiple-us-nationals-guilty-pleas-north-korean-it-worker-scams

Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Initial Access Brokers (IAB) in 2025 – From Dark Web Listings to Supply Chain Ransomware Events
https://www.darknet.org.uk/2025/11/initial-access-brokers-iab-in-2025-from-dark-web-listings-to-supply-chain-ransomware-events/

Claude AI ran autonomous espionage operations
https://www.reddit.com/r/netsec/comments/1oyis0z/claude_ai_ran_autonomous_espionage_operations/

NPMScan - Malicious NPM Package Detection & Security Scanner
https://www.reddit.com/r/netsec/comments/1oy1p2v/npmscan_malicious_npm_package_detection_security/

Trying to make CCNA learning more engaging for students
https://www.reddit.com/r/netsec/comments/1oyrn4t/trying_to_make_ccna_learning_more_engaging_for/

Microsoft Patch Tuesday, November 2025 Edition
https://krebsonsecurity.com/2025/11/microsoft-patch-tuesday-november-2025-edition/

mcp-scan – Real-Time Guardrail Monitoring and Dynamic Proxy for MCP Servers
https://www.darknet.org.uk/2025/11/mcp-scan-real-time-guardrail-monitoring-and-dynamic-proxy-for-mcp-servers/

what do you guys think of this undocumented behavior of "web for pentester 1?"
https://www.reddit.com/r/netsec/comments/1oz3zq7/what_do_you_guys_think_of_this_undocumented/

Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Gotchas in Email Parsing - Lessons from Jakarta Mail
https://www.reddit.com/r/netsec/comments/1p084xf/gotchas_in_email_parsing_lessons_from_jakarta_mail/

AI and Voter Engagement
https://www.schneier.com/blog/archives/2025/11/ai-and-voter-engagement.html

Full renewal of state and local cyber grants program passes in House
https://therecord.media/state-local-cyber-grants-program-house-passage

Breaking Down S3 Ransomware: Variants, Attack Paths and Trend Vision One Defenses
https://www.trendmicro.com/en_us/research/25/k/s3-ransomware.html

MI5 warns of Chinese spies using LinkedIn to gain intel on lawmakers
https://therecord.media/mi5-warns-chinese-spies-using-linkedin-lawmakers

Russian suspect detained in Thailand is allegedly tied to Void Blizzard group
https://therecord.media/russian-arrested-thailand-allegedly-void-blizzard-apt-member

Ambient and autonomous security for the agentic era
https://www.microsoft.com/en-us/security/blog/2025/11/18/ambient-and-autonomous-security-for-the-agentic-era/

Agents built into your workflow: Get Security Copilot with Microsoft 365 E5
https://www.microsoft.com/en-us/security/blog/2025/11/18/agents-built-into-your-workflow-get-security-copilot-with-microsoft-365-e5/

Threat Actor "888" Claims LG Electronics Data Breach - Source Code and Hardcoded Credentials Allegedly Leaked [Unconfirmed]
https://www.reddit.com/r/netsec/comments/1p0ho9s/threat_actor_888_claims_lg_electronics_data/

ShadowRay 2.0: Active Global Campaign Hijacks Ray AI Infrastructure Into Self-Propagating Botnet | Oligo Security
https://www.reddit.com/r/netsec/comments/1p0evgu/shadowray_20_active_global_campaign_hijacks_ray/

Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

China-aligned threat actor is conducting widespread cyberespionage campaigns
https://therecord.media/china-aligned-threat-actor-espionage-network-devices

IT threat evolution in Q3 2025. Mobile statistics
https://securelist.com/malware-report-q3-2025-mobile-statistics/118013/

IT threat evolution in Q3 2025. Non-mobile statistics
https://securelist.com/malware-report-q3-2025-pc-iot-statistics/118020/

Legal Restrictions on Vulnerability Disclosure
https://www.schneier.com/blog/archives/2025/11/legal-restrictions-on-vulnerability-disclosure.html

The Cloudflare Outage May Be a Security Roadmap
https://krebsonsecurity.com/2025/11/the-cloudflare-outage-may-be-a-security-roadmap/

Major Russian insurer facing widespread outages after cyberattack
https://therecord.media/russia-vsk-cyberattack-outages

European Commission ‘simplification’ proposal would weaken GDPR, AI regulations
https://therecord.media/european-commission-proposal-gdpr-ai-simplification

Canadian privacy regulators say schools share blame for PowerSchool hack
https://therecord.media/canadian-privacy-regulators-say-schools-share-blame-powerschool-hack

Fortinet FortiWeb Authentication Bypass – CVE-2025-64446
https://bishopfox.com/blog/fortinet-fortiweb-authentication-bypass-cve-2025-64446

US, allies sanction Russian bulletproof hosting services for ransomware support
https://therecord.media/bulletproof-hosting-sanctions-ransomware

Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Scam USPS and E-Z Pass Texts and Websites
https://www.schneier.com/blog/archives/2025/11/scam-usps-and-e-z-pass-texts-and-websites.html

Blockchain and Node.js abused by Tsundere: an emerging botnet
https://securelist.com/tsundere-node-js-botnet-uses-ethereum-blockchain/117979/

Inside the dark web job market
https://securelist.com/dark-web-job-market-2023-2025/118057/

Samourai Wallet crypto mixer’s co-founders sentenced to prison
https://therecord.media/samourai-wallet-crypto-mixer-founders-sentenced

Russia blacklists S.T.A.L.K.E.R. game developer, accusing it of aiding Ukraine’s war effort
https://therecord.media/russia-blacklists-stalker-game-developer

FCC spikes Biden-era cyber regulations prompted by Salt Typhoon telecom breaches
https://therecord.media/fcc-removes-biden-era-cybersecurity-rules-telecoms-salt-typhoon

New Android malware can capture private messages, researchers warn
https://therecord.media/new-android-malware-captures-private-messages

Esbuild XSS Bug That Survived 5B Downloads and Bypassed HTML Sanitization
https://www.reddit.com/r/netsec/comments/1p2jinz/esbuild_xss_bug_that_survived_5b_downloads_and/

Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

Two suspected Scattered Spider hackers plead not guilty over Transport for London cyberattack
https://therecord.media/transport-for-london-hack-scattered-spider-suspects-plead-not-guilty

Eguard: Defending LLM Embeddings Against Inversion Attacks via Text Mutual Information Optimization
https://arxiv.org/abs/2511.15712

Majority Rules: LLM Ensemble is a Winning Approach for Content Categorization
https://arxiv.org/abs/2511.15730

Microsoft named a Leader in the Gartner® Magic Quadrant for Access Management for the ninth consecutive year
https://www.microsoft.com/en-us/security/blog/2025/11/21/microsoft-named-a-leader-in-the-gartner-magic-quadrant-for-access-management-for-the-ninth-consecutive-year/

China’s APT31 linked to hacks on Russian tech firms
https://therecord.media/russia-report-apt31-china-linked-hacks

Flock Safety cameras used to monitor protesters, rights group finds
https://therecord.media/flock-safety-rights-group-eff

Sliver C2 vulnerability enables attack on C2 operators through insecure Wireguard network
https://www.reddit.com/r/netsec/comments/1p2yexv/sliver_c2_vulnerability_enables_attack_on_c2/

Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman
Top Security News for Today

SmbCrawler – SMB Share Discovery and Secret-Hunting
https://www.darknet.org.uk/2025/11/smbcrawler-smb-share-discovery-and-secret-hunting/

I Analysed Over 3 Million Exposed Databases Using Netlas
https://www.reddit.com/r/netsec/comments/1p4jcmz/i_analysed_over_3_million_exposed_databases_using/

NocturneNotes — Secure Rust + GTK4 note‑taking with AES‑256‑GCM
https://www.reddit.com/r/netsec/comments/1p4k2p2/nocturnenotes_secure_rust_gtk4_notetaking_with/

Hitchhiker's Guide to Attack Surface Management
https://www.reddit.com/r/netsec/comments/1p4c2ih/hitchhikers_guide_to_attack_surface_management/

[Tool] Native JSONL viewer for analyzing massive security logs (Suricata, Zeek, EDR) without infrastructure overhead
https://www.reddit.com/r/netsec/comments/1p4fzrc/tool_native_jsonl_viewer_for_analyzing_massive/

The First Autonomous AI Cyberattack: Why SaaS Security Must Change
https://www.reddit.com/r/netsec/comments/1p4mx4j/the_first_autonomous_ai_cyberattack_why_saas/

A Reverse Engineer’s Anatomy of the macOS Boot Chain & Security Architecture
https://www.reddit.com/r/netsec/comments/1p54ody/a_reverse_engineers_anatomy_of_the_macos_boot/

Good and well-renowned Universities Worldwide for Master’s in Infosec (Preferably Europe - Public Universities; Open to Other countries/continents)
https://www.reddit.com/r/netsec/comments/1p53n9s/good_and_wellrenowned_universities_worldwide_for/

Follow Top Cyber News at https://news.1rj.ru/str/TopCyberTechNews Feel free to DM me at https://twitter.com/ShayaFeedman