07/17

Max severity Cisco ISE bug allows pre-auth command execution, patch now

https://www.bleepingcomputer.com/news/security/max-severity-cisco-ise-bug-allows-pre-auth-command-execution-patch-now/
Max severity Cisco ISE bug allows pre-auth command execution, patch now

dbugs — vulnerabilities’ home

http://dbugs.ptsecurity.com
dbugs — vulnerabilities’ home

GitHub - divestedcg/real-ucode: All the microcodes, but packaged!

https://github.com/divestedcg/real-ucode?tab=readme-ov-file#special-amd-incompatibility-notice-2025-03-02
GitHub - divestedcg/real-ucode: All the microcodes, but packaged!

Siguza’s Blog | Siguza’s Blog

https://blog.siguza.net/tachy0n/
Siguza’s Blog | Siguza’s Blog

Cisco Warns of Critical ISE Flaw Allowing Unauthenticated Attackers to Execute Root Code

https://thehackernews.com/2025/07/cisco-warns-of-critical-ise-flaw.html
Cisco Warns of Critical ISE Flaw Allowing Unauthenticated Attackers to Execute Root Code

Chinese hackers breached National Guard to steal network configurations

https://www.bleepingcomputer.com/news/security/chinese-hackers-breached-national-guard-to-steal-network-configurations/
Chinese hackers breached National Guard to steal network configurations

Phish and Chips: China-Aligned Espionage Actors Ramp Up Taiwan Semiconductor Industry Targeting  | Proofpoint US

https://www.proofpoint.com/us/blog/threat-insight/phish-china-aligned-espionage-actors-ramp-up-taiwan-semiconductor-targeting
Phish and Chips: China-Aligned Espionage Actors Ramp Up Taiwan Semiconductor Industry Targeting  | Proofpoint US

Hackers Exploit Apache HTTP Server Flaw to Deploy Linuxsys Cryptocurrency Miner

https://thehackernews.com/2025/07/hackers-exploit-apache-http-server-flaw.html
Hackers Exploit Apache HTTP Server Flaw to Deploy Linuxsys Cryptocurrency Miner

Hacker steals $27 million in BigONE exchange crypto breach

https://www.bleepingcomputer.com/news/security/hacker-steals-27-million-in-bigone-exchange-crypto-breach/
Hacker steals $27 million in BigONE exchange crypto breach

Co-op confirms data of 6.5 million members stolen in cyberattack

https://www.bleepingcomputer.com/news/security/co-op-confirms-data-of-65-million-members-stolen-in-cyberattack/
Co-op confirms data of 6.5 million members stolen in cyberattack

China's Salt Typhoon Hacked US National Guard - SecurityWeek

https://www.securityweek.com/chinas-salt-typhoon-hacked-us-national-guard/
China's Salt Typhoon Hacked US National Guard - SecurityWeek

LameHug malware uses AI LLM to craft Windows data-theft commands in real-time

https://www.bleepingcomputer.com/news/security/lamehug-malware-uses-ai-llm-to-craft-windows-data-theft-commands-in-real-time/
LameHug malware uses AI LLM to craft Windows data-theft commands in real-time

Microsoft Teams voice calls abused to push Matanbuchus malware

https://www.bleepingcomputer.com/news/security/microsoft-teams-voice-calls-abused-to-push-matanbuchus-malware/
Microsoft Teams voice calls abused to push Matanbuchus malware

Visit Fortra at Black Hat USA

https://ow.ly/kAmG50Wrpbf
Visit Fortra at Black Hat USA

Google sues to disrupt BadBox 2.0 botnet infecting 10 million devices

https://www.bleepingcomputer.com/news/security/google-sues-to-disrupt-badbox-20-botnet-infecting-10-million-devices/
Google sues to disrupt BadBox 2.0 botnet infecting 10 million devices

Europol Disrupts NoName057(16) Hacktivist Group Linked to DDoS Attacks Against Ukraine

https://thehackernews.com/2025/07/europol-disrupts-noname05716-hacktivist.html
Europol Disrupts NoName057(16) Hacktivist Group Linked to DDoS Attacks Against Ukraine

Teams Call to Ransomware: Matanbuchus 3.0 MaaS Levels Up

https://www.morphisec.com/blog/ransomware-threat-matanbuchus-3-0-maas-levels-up/
Teams Call to Ransomware: Matanbuchus 3.0 MaaS Levels Up

Hackers Use GitHub Repositories to Host Amadey Malware and Data Stealers, Bypassing Filters

https://thehackernews.com/2025/07/hackers-use-github-repositories-to-host.html
Hackers Use GitHub Repositories to Host Amadey Malware and Data Stealers, Bypassing Filters

Chinese Hackers Target Taiwan's Semiconductor Sector with Cobalt Strike, Custom Backdoors

https://thehackernews.com/2025/07/chinese-hackers-target-taiwans.html
Chinese Hackers Target Taiwan's Semiconductor Sector with Cobalt Strike, Custom Backdoors

Malware in DNS - DomainTools Investigations | DTI

https://dti.domaintools.com/malware-in-dns/
Malware in DNS - DomainTools Investigations | DTI

Katz Stealer | Powerful MaaS On the Prowl for Credentials and Crypto Assets

https://www.sentinelone.com/blog/katz-stealer-powerful-maas-on-the-prowl-for-credentials-and-crypto-assets/
Katz Stealer | Powerful MaaS On the Prowl for Credentials and Crypto Assets

Blue VS Red – Invadergirl Art

https://www.invadergirlart.com/collections/originals-war-art/products/blue-vs-red
Blue VS Red – Invadergirl Art

[Research] CVE-2025-24985: Windows Fast FAT Driver RCE Vulnerability (EN) - hackyboiz

https://hackyboiz.github.io/2025/07/17/ogu123/[Research]_CVE-2025-24985/EN/
[Research] CVE-2025-24985: Windows Fast FAT Driver RCE Vulnerability (EN) - hackyboiz

GitHub - andreisss/Thread-Pool-Timer-Process-Injection: Thread Pool Timer Process Injection

https://github.com/andreisss/Thread-Pool-Timer-Process-Injection
GitHub - andreisss/Thread-Pool-Timer-Process-Injection: Thread Pool Timer Process Injection

GitHub - Wh04m1001/CVE-2025-48799

https://github.com/Wh04m1001/CVE-2025-48799
GitHub - Wh04m1001/CVE-2025-48799