Sys-Admin InfoSec – Telegram
Sys-Admin InfoSec
12.7K subscribers
235 photos
2 videos
103 files
4.55K links
News of cybersecurity / information security, information technology, data leaks / breaches, cve, hacks, tools, trainings
* Multilingual (En, Ru).
* Forum - forum.sys-adm.in
* Chat - @sysadm_in
* Job - @sysadm_in_job
* ? - @sysadminkz
Download Telegram
119 vulnerabilities in LTE/5G (some with RCE)

Cellular networks are considered critical infrastructure both for day-to-day communication and emergency services, to the extend that their availability and reliability is often highly regulated by government agencies... what happens if they suddenly become unavailable?

Research:

https://cellularsecurity.org/ransacked
Forwarded from Sys-Admin Up (Yevgeniy Goncharov)
Active Directory Domain Services Elevation of Privilege Vulnerability (CVE-2025-21293)

https://birkep.github.io/posts/Windows-LPE/
Forwarded from OpenBLD.net (Yevgeniy Goncharov)
🧠 OpenBLD.net - ML Predictive Balancing Coming

This is undoubtedly an innovation. OpenBLD.net smart balancing service is now a separate project, introducing key features:

► Detects slow servers before they start lagging
► If an upstream server shows an increase in timeouts or errors → ML predicts potential failures and automatically prepares backup routes before the infrastructure starts "firing"
► Based on historical data, ML knows when servers experience peak loads (e.g., during lunch hours or at the end of the workday)
► Instead of reacting to downtime, it distributes traffic efficiently in advance
► Reduces latency and timeouts by proactively optimizing traffic distribution
► And much more, including environmental factors such as server energy consumption optimization

The balancer operates like a living organism, learning and adapting to conditions on its own)

How does this benefit users?

🚀 More autonomy and focus on your own development.
More speed.

📢 This week, the updated balancers will be seamlessly integrated into ADA’s infrastructure—the only thing you might notice is the increased speed.

✌️ Stay fast, stay optimized!
Please open Telegram to view this post
VIEW IN TELEGRAM
Vgod RANSOMWARE

The ransomware specifically targets Windows systems using advanced encryption techniques, appending a unique file extension to encrypted files...

https://www.cyfirma.com/research/vgod-ransomware
AppSecFest - 25 апреля в Алматы. CFP.

Который год AppSecFest.kz радует контентом, организацией, масштабом. Организаторы настроены на серъезный контент, аудиторию и содержание.

Добрая атмосфера для всех, а + для докладчиков возможность рассказать о своих ресерчах, достижениях в области разработки и защите приложений.

Пока сайт конфы делается, организаторы организуются - ведется CFP набор заявок на доклады связанные с:

- Mobile, Web, X-Platform, Frontend/Backend, Microservices, Docker/K8s, Blockchain, AI, ML
- DevOps, CI/CD, Agile, UI/UX, качеством и безопасностью кода
- SAST, DAST, IAST, API, IaC, Cloud Security, Pentesting, SDLC, DevSecOps, Vulnerability Management

Подать спикер-заявку - https://appsecfest.kz
Android trojan TgToxic updates its capabilities

..TgToxic is an Android banking trojan discovered by Trend Micro in July 2022. It’s designed to steal user credentials, cryptocurrency from digital wallets and funds from banking and finance apps.

The actors once again changed the way the malware obtains the C2 URL, from a dead drop location to a domain generation algorithm (DGA)..:

https://intel471.com/blog/android-trojan-tgtoxic-updates-its-capabilities
GitHub Actions - tj-actions/changed-files action is compromised

The tj-actions/changed-files GitHub Action, which is currently used in over 23,000 repositories, has been compromised. In this attack, the attackers modified the action’s code and retroactively updated multiple version tags to reference the malicious commit...

https://www.stepsecurity.io/blog/harden-runner-detection-tj-actions-changed-files-action-is-compromised