CISA tags Citrix Bleed 2 as exploited, gives agencies a day to patch
https://www.bleepingcomputer.com/news/security/cisa-tags-citrix-bleed-2-as-exploited-gives-agencies-a-day-to-patch/
[CVE-2025-38001] Exploiting All Google kernelCTF Instances And Debian 12 With A 0-Day For $82k: A RBTree Family Drama (Part One: LTS & COS)
https://syst3mfailure.io/rbtree-family-drama![[CVE-2025-38001] Exploiting All Google kernelCTF Instances And Debian 12 With A 0-Day For $82k: A RBTree Family Drama (Part One: LTS & COS)](/image/screenshot/28df77e36c08933c9e42e1c40adf9306.png)
Pre-Auth SQL Injection to RCE - Fortinet FortiWeb Fabric Connector (CVE-2025-25257)
https://labs.watchtowr.com/pre-auth-sql-injection-to-rce-fortinet-fortiweb-fabric-connector-cve-2025-25257/
PerfektBlue Bluetooth Vulnerabilities Expose Millions of Vehicles to Remote Code Execution
https://thehackernews.com/2025/07/perfektblue-bluetooth-vulnerabilities.html
摩诃草(APT-Q-36)仿冒高校域名实施窃密行动
https://mp.weixin.qq.com/s/xn313WWNi7rln-WfwFgE5w
Fortinet Releases Patch for Critical SQL Injection Flaw in FortiWeb (CVE-2025-25257)
https://thehackernews.com/2025/07/fortinet-releases-patch-for-critical.html
eSIM Hack Allows for Cloning, Spying - SecurityWeek
https://www.securityweek.com/esim-hack-allows-for-cloning-spying/
Three Buddy Problem
https://episodes.fm/1414525622
NVIDIA shares guidance to defend GDDR6 GPUs against Rowhammer attacks
https://www.bleepingcomputer.com/news/security/nvidia-issues-guidance-to-defend-gddr6-gpus-against-rowhammer/
Iranian-Backed Pay2Key Ransomware Resurfaces with 80% Profit Share for Cybercriminals
https://thehackernews.com/2025/07/iranian-backed-pay2key-ransomware.html
Declawing PUMAKIT — Elastic Security Labs
https://elastic.co/security-labs/declawing-pumakit
Exploits for pre-auth Fortinet FortiWeb RCE flaw released, patch now
https://www.bleepingcomputer.com/news/security/exploits-for-pre-auth-fortinet-fortiweb-rce-flaw-released-patch-now/
4. Oddvar Moe: Redteam Chronicles: A C2 Story - Outlook's One-Setting Wonder - YouTube
https://youtu.be/wrPU89TpitM
The zero-day that could've compromised every Cursor and Windsurf user
https://www.bleepingcomputer.com/news/security/the-zero-day-that-couldve-compromised-every-cursor-and-windsurf-user/
Rowhammer Attack Demonstrated Against Nvidia GPU - SecurityWeek
https://www.securityweek.com/rowhammer-attack-demonstrated-against-nvidia-gpu/
EoP via Use After Free in a Windows Kernel Driver (HEVD) | m2rc_'s lair
https://m2rc.net/posts/hevd-useafterfree/