02/12

Leaking the email of any YouTube user for $10,000

https://brutecat.com/articles/leaking-youtube-emails
Leaking the email of any YouTube user for $10,000

REcon - Training

http://bit.ly/4hwNFyM
REcon - Training

APT_REPORT/summary/2025/2024 Global APT Research Report.pdf at master · blackorbird/APT_REPORT · GitHub

https://github.com/blackorbird/APT_REPORT/blob/master/summary/2025/2024%20Global%20APT%20Research%20Report.pdf
APT_REPORT/summary/2025/2024 Global APT Research Report.pdf at master · blackorbird/APT_REPORT · GitHub

DPRK hackers dupe targets into typing PowerShell commands as admin

https://www.bleepingcomputer.com/news/security/dprk-hackers-dupe-targets-into-typing-powershell-commands-as-admin/
DPRK hackers dupe targets into typing PowerShell commands as admin

Fortinet voted “most trusted” cybersecurity firm

https://www.thestack.technology/fortinet-most-trusted/
Fortinet voted “most trusted” cybersecurity firm

North Korean Hackers Exploit PowerShell Trick to Hijack Devices in New Cyberattack

https://thehackernews.com/2025/02/north-korean-hackers-exploit-powershell.html
North Korean Hackers Exploit PowerShell Trick to Hijack Devices in New Cyberattack

Nginx/Apache Path Confusion to Auth Bypass in PAN-OS (CVE-2025-0108) › Searchlight Cyber

https://slcyber.io/blog/nginx-apache-path-confusion-to-auth-bypass-in-pan-os/
Nginx/Apache Path Confusion to Auth Bypass in PAN-OS (CVE-2025-0108) › Searchlight Cyber

haroon meer on X: "Do Fortinet make remote access devices? Kinda…" / X

https://x.com/haroonmeer/status/1667830478886273029
haroon meer on X: "Do Fortinet make remote access devices? Kinda…" / X

Google fixes flaw that could unmask YouTube users' email addresses

https://www.bleepingcomputer.com/news/security/google-fixes-flaw-that-could-unmask-youtube-users-email-addresses/
Google fixes flaw that could unmask YouTube users' email addresses

Surge in attacks exploiting old ThinkPHP and ownCloud flaws

https://www.bleepingcomputer.com/news/security/surge-in-attacks-exploiting-old-thinkphp-and-owncloud-flaws/
Surge in attacks exploiting old ThinkPHP and ownCloud flaws

Sandworm APT Targets Ukrainian Users with Trojanized Microsoft KMS Activation Tools in Cyber Espionage Campaigns

https://blog.eclecticiq.com/sandworm-apt-targets-ukrainian-users-with-trojanized-microsoft-kms-activation-tools-in-cyber-espionage-campaigns
Sandworm APT Targets Ukrainian Users with Trojanized Microsoft KMS Activation Tools in Cyber Espionage Campaigns

Ivanti fixes three critical flaws in Connect Secure & Policy Secure

https://www.bleepingcomputer.com/news/security/ivanti-fixes-three-critical-flaws-in-connect-secure-and-policy-secure/
Ivanti fixes three critical flaws in Connect Secure & Policy Secure

How We Hacked a Software Supply Chain for $50K - Lupin & Holmes

https://www.landh.tech/blog/20250211-hack-supply-chain-for-50k/
How We Hacked a Software Supply Chain for $50K - Lupin & Holmes

Sarcoma ransomware claims breach at giant PCB maker Unimicron

https://www.bleepingcomputer.com/news/security/sarcoma-ransomware-claims-breach-at-giant-pcb-maker-unimicron/
Sarcoma ransomware claims breach at giant PCB maker Unimicron

Microsoft Uncovers Sandworm Subgroup's Global Cyber Attacks Spanning 15+ Countries

https://thehackernews.com/2025/02/microsoft-uncovers-sandworm-subgroups.html
Microsoft Uncovers Sandworm Subgroup's Global Cyber Attacks Spanning 15+ Countries

whoAMI: A cloud image name confusion attack | Datadog Security Labs

https://securitylabs.datadoghq.com/articles/whoami-a-cloud-image-name-confusion-attack/
whoAMI: A cloud image name confusion attack | Datadog Security Labs

《2024年全球高级持续性威胁(APT)研究报告》

https://mp.weixin.qq.com/s/8u6pU5HkewMlvaZFnsQ9-A
《2024年全球高级持续性威胁(APT)研究报告》