06/25

CitrixBleed 2: Electric Boogaloo — CVE-2025–5777 | by Kevin Beaumont | Jun, 2025 | DoublePulsar

https://doublepulsar.com/citrixbleed-2-electric-boogaloo-cve-2025-5777-c7f5e349d206
CitrixBleed 2: Electric Boogaloo — CVE-2025–5777 | by Kevin Beaumont | Jun, 2025 | DoublePulsar

WinRAR patches bug letting malware launch from extracted archives

https://www.bleepingcomputer.com/news/security/winrar-patches-bug-letting-malware-launch-from-extracted-archives/
WinRAR patches bug letting malware launch from extracted archives

ADCS Attacks with Certipy | serioton

https://seriotonctf.github.io/ADCS-Attacks-with-Certipy/
ADCS Attacks with Certipy | serioton

New 'CitrixBleed 2' NetScaler flaw let hackers hijack sessions

https://www.bleepingcomputer.com/news/security/new-citrixbleed-2-netscaler-flaw-let-hackers-hijack-sessions/
New 'CitrixBleed 2' NetScaler flaw let hackers hijack sessions

Citrix Releases Emergency Patches for Actively Exploited CVE-2025-6543 in NetScaler ADC

https://thehackernews.com/2025/06/citrix-releases-emergency-patches-for.html
Citrix Releases Emergency Patches for Actively Exploited CVE-2025-6543 in NetScaler ADC

BreachForums hacking forum operators reportedly arrested in France

https://www.bleepingcomputer.com/news/security/breachforums-hacking-forum-operators-reportedly-arrested-in-france/
BreachForums hacking forum operators reportedly arrested in France

FileFix - A ClickFix Alternative | mr.d0x

https://mrd0x.com/filefix-clickfix-alternative/
FileFix - A ClickFix Alternative | mr.d0x

Pro-Iranian Hacktivist Group Leaks Personal Records from the 2024 Saudi Games

https://thehackernews.com/2025/06/pro-iranian-hacktivist-group-leaks.html
Pro-Iranian Hacktivist Group Leaks Personal Records from the 2024 Saudi Games

xbz0n@sh:~# Mythic C2 with EarlyBird Injection and Defender Evasion

http://xbz0n.sh/blog/mythic-c2-early-bird-defender-evasion
xbz0n@sh:~# Mythic C2 with EarlyBird Injection and Defender Evasion

Code Execution Vulnerability Patched in GitHub Enterprise Server - SecurityWeek

https://www.securityweek.com/code-execution-vulnerability-patched-in-github-enterprise-server/
Code Execution Vulnerability Patched in GitHub Enterprise Server - SecurityWeek

New Vulnerabilities Expose Millions of Brother Printers to Hacking - SecurityWeek

https://www.securityweek.com/new-vulnerabilities-expose-millions-of-brother-printers-to-hacking/
New Vulnerabilities Expose Millions of Brother Printers to Hacking - SecurityWeek

しばらくお待ちください...

https://capesandbox.com/analysis/11082/
しばらくお待ちください...

New wave of ‘fake interviews’ use 35 npm packages to spread malware

https://www.bleepingcomputer.com/news/security/new-wave-of-fake-interviews-use-35-npm-packages-to-spread-malware/
New wave of ‘fake interviews’ use 35 npm packages to spread malware

SonicWall warns of trojanized NetExtender stealing VPN logins

https://www.bleepingcomputer.com/news/security/sonicwall-warns-of-trojanized-netextender-stealing-vpn-logins/
SonicWall warns of trojanized NetExtender stealing VPN logins

Microsoft Extends Windows 10 Security Updates for One Year with New Enrollment Options

https://thehackernews.com/2025/06/microsoft-extends-windows-10-security.html
Microsoft Extends Windows 10 Security Updates for One Year with New Enrollment Options

OneClik: A ClickOnce-Based APT Campaign Targeting Energy, Oil and Gas Infrastructure

https://www.trellix.com/blogs/research/oneclik-a-clickonce-based-apt-campaign-targeting-energy-oil-and-gas-infrastructure/
OneClik: A ClickOnce-Based APT Campaign Targeting Energy, Oil and Gas Infrastructure

Citrix Bleed 2 Flaw Enables Token Theft; SAP GUI Flaws Risk Sensitive Data Exposure

https://thehackernews.com/2025/06/citrix-bleed-2-flaw-enables-token-theft.html
Citrix Bleed 2 Flaw Enables Token Theft; SAP GUI Flaws Risk Sensitive Data Exposure

Mainline Health, Select Medical Each Disclose Data Breaches Impacting 100,000 People - SecurityWeek

https://www.securityweek.com/mainline-health-select-medical-each-disclose-data-breaches-impacting-100000-people/
Mainline Health, Select Medical Each Disclose Data Breaches Impacting 100,000 People - SecurityWeek

An inside look at NSA (Equation Group) TTPs from China’s lense

https://www.inversecos.com/2025/02/an-inside-look-at-nsa-equation-group.html?m=1
An inside look at NSA (Equation Group) TTPs from China’s lense