07/16

New Fortinet FortiWeb hacks likely linked to public RCE exploits

https://www.bleepingcomputer.com/news/security/new-fortinet-fortiweb-hacks-likely-linked-to-public-rce-exploits/
New Fortinet FortiWeb hacks likely linked to public RCE exploits

Hackers Leverage Microsoft Teams to Spread Matanbuchus 3.0 Malware to Targeted Firms

https://thehackernews.com/2025/07/hackers-leverage-microsoft-teams-to.html
Hackers Leverage Microsoft Teams to Spread Matanbuchus 3.0 Malware to Targeted Firms

SHIFT - AI-Powered Hacking

https://shiftplugin.com/
SHIFT - AI-Powered Hacking

Cloudflare says 1.1.1.1 outage not caused by attack or BGP hijack

https://www.bleepingcomputer.com/news/security/cloudflare-says-1111-outage-not-caused-by-attack-or-bgp-hijack/
Cloudflare says 1.1.1.1 outage not caused by attack or BGP hijack

Malware in DNS - DomainTools Investigations | DTI

https://dti.domaintools.com/malware-in-dns/
Malware in DNS - DomainTools Investigations | DTI

Async BOFs - "Wake Me Up, Before You Go Go" | Outflank

https://www.outflank.nl/blog/2025/07/16/async-bofs-wake-me-up-before-you-go-go/
Async BOFs - "Wake Me Up, Before You Go Go" | Outflank

SonicWall SMA devices hacked with OVERSTEP rootkit tied to ransomware

https://www.bleepingcomputer.com/news/security/sonicwall-sma-devices-hacked-with-overstep-rootkit-tied-to-ransomware/
SonicWall SMA devices hacked with OVERSTEP rootkit tied to ransomware

【网空测绘】AsyncRAT分析与网空测绘

https://mp.weixin.qq.com/s/mixmfrOTV57UDf9guqjdRQ
【网空测绘】AsyncRAT分析与网空测绘

UCPD.sys – UserChoice Protection Driver Part 2 – the kolbicz blog

https://kolbi.cz/blog/2025/07/15/ucpd-sys-userchoice-protection-driver-part-2/
UCPD.sys – UserChoice Protection Driver Part 2 – the kolbicz blog

Europol disrupts pro-Russian NoName057(16) DDoS hacktivist group

https://www.bleepingcomputer.com/news/security/europol-disrupts-pro-russian-noname05716-ddos-hacktivist-group/
Europol disrupts pro-Russian NoName057(16) DDoS hacktivist group

LibAFL | Testing Handbook

https://appsec.guide/docs/fuzzing/c-cpp/libafl/
LibAFL | Testing Handbook

Critical Golden dMSA Attack in Windows Server 2025 Enables Cross-Domain Attacks and Persistent Access

https://thehackernews.com/2025/07/critical-golden-dmsa-attack-in-windows.html
Critical Golden dMSA Attack in Windows Server 2025 Enables Cross-Domain Attacks and Persistent Access

Grok 4 benchmark results: Tops math, ranks second in coding

https://www.bleepingcomputer.com/news/artificial-intelligence/grok-4-benchmark-results-tops-math-ranks-second-in-coding/
Grok 4 benchmark results: Tops math, ranks second in coding

Red Team Tactics: Evading EDR on Linux with io_uring | 0xMatheuZ

https://matheuzsecurity.github.io/hacking/evading-linux-edrs-with-io-uring/
Red Team Tactics: Evading EDR on Linux with io_uring | 0xMatheuZ

Louis Vuitton says regional data breaches tied to same cyberattack

https://www.bleepingcomputer.com/news/security/louis-vuitton-says-regional-data-breaches-tied-to-same-cyberattack/
Louis Vuitton says regional data breaches tied to same cyberattack

Urgent: Google Releases Critical Chrome Update for CVE-2025-6558 Exploit Active in the Wild

https://thehackernews.com/2025/07/urgent-google-releases-critical-chrome.html
Urgent: Google Releases Critical Chrome Update for CVE-2025-6558 Exploit Active in the Wild

Absurdities Part-1: Chrome Secrets & Defender Bypasses - Para0x0dise

https://para0x0dise.github.io/absurdities/Absurdities-I/#absurdity-i-chromes-security-mechanisms
Absurdities Part-1: Chrome Secrets & Defender Bypasses - Para0x0dise

Abacus dark web drug market goes offline in suspected exit scam

https://www.bleepingcomputer.com/news/security/abacus-dark-web-drug-market-goes-offline-in-suspected-exit-scam/
Abacus dark web drug market goes offline in suspected exit scam