07/18

HTTP/1.1 Must Die

http://http1mustdie.com
HTTP/1.1 Must Die

RCE in the Most Popular Survey Software You’ve Never Heard Of › Searchlight Cyber

https://slcyber.io/assetnote-security-research-center/rce-in-the-most-popular-survey-software-youve-never-heard-of/
RCE in the Most Popular Survey Software You’ve Never Heard Of › Searchlight Cyber

Analyzing APT 29 (NOBELIUM aka Cozy-Bear) – Part 1 | CyberSleuth Chronicles

https://www.cybersleuthchronicles.com/landing/analyzing-apt-29-nobelium-aka-cozy-bear-part-1
Analyzing APT 29 (NOBELIUM aka Cozy-Bear) – Part 1 | CyberSleuth Chronicles

New Phobos and 8base ransomware decryptor recover files for free

https://www.bleepingcomputer.com/news/security/new-phobos-ransomware-decryptor-lets-victims-recover-files-for-free/
New Phobos and 8base ransomware decryptor recover files for free

Russian alcohol retailer WineLab closes stores after ransomware attack

https://www.bleepingcomputer.com/news/security/russian-alcohol-retailer-winelab-closes-stores-after-ransomware-attack/
Russian alcohol retailer WineLab closes stores after ransomware attack

DeedRAT Backdoor Enhanced by Chinese APTs with Advanced Capabilities

https://lab52.io/blog/deedrat-backdoor-enhanced-by-chinese-apts-with-advanced-capabilities/
DeedRAT Backdoor Enhanced by Chinese APTs with Advanced Capabilities

Fortinet FortiWeb Flaw Exploited in the Wild After PoC Publication - SecurityWeek

https://www.securityweek.com/fortinet-fortiweb-flaw-exploited-in-the-wild-after-poc-publication/
Fortinet FortiWeb Flaw Exploited in the Wild After PoC Publication - SecurityWeek

OpenAI: GPT-5 is coming, "we'll see" if it creates a shockwave

https://www.bleepingcomputer.com/news/artificial-intelligence/openai-gpt-5-is-coming-well-see-if-it-creates-a-shockwave/
OpenAI: GPT-5 is coming, "we'll see" if it creates a shockwave

CERT-UA Discovers LAMEHUG Malware Linked to APT28, Using LLM for Phishing Campaign

https://thehackernews.com/2025/07/cert-ua-discovers-lamehug-malware.html
CERT-UA Discovers LAMEHUG Malware Linked to APT28, Using LLM for Phishing Campaign

Hackers scanning for TeleMessage Signal clone flaw exposing passwords

https://www.bleepingcomputer.com/news/security/hackers-scanning-for-telemessage-signal-clone-flaw-exposing-passwords/
Hackers scanning for TeleMessage Signal clone flaw exposing passwords

LameHug malware uses AI LLM to craft Windows data-theft commands in real-time

https://www.bleepingcomputer.com/news/security/lamehug-malware-uses-ai-llm-to-craft-windows-data-theft-commands-in-real-time/
LameHug malware uses AI LLM to craft Windows data-theft commands in real-time

Critical NVIDIA Container Toolkit Flaw Allows Privilege Escalation on AI Cloud Services

https://thehackernews.com/2025/07/critical-nvidia-container-toolkit-flaw.html
Critical NVIDIA Container Toolkit Flaw Allows Privilege Escalation on AI Cloud Services

Hacking a Smart Home Device - James Warner

https://jmswrnr.com/blog/hacking-a-smart-home-device
Hacking a Smart Home Device - James Warner

Arch Linux pulls AUR packages that installed Chaos RAT malware

https://www.bleepingcomputer.com/news/security/arch-linux-pulls-aur-packages-that-installed-chaos-rat-malware/
Arch Linux pulls AUR packages that installed Chaos RAT malware

Offensive AI Con: Call for Speakers @ Sessionize.com

https://sessionize.com/offensive-ai-con/
Offensive AI Con: Call for Speakers @ Sessionize.com

Pwn2Own Ireland 2024 – Ubiquiti AI Bullet – Compass Security Blog

https://blog.compass-security.com/2025/06/pwn2own-ireland-2024-ubiquiti-ai-bullet/
Pwn2Own Ireland 2024 – Ubiquiti AI Bullet – Compass Security Blog

Call for Papers • BSidesNYC

https://bsidesnyc.org/cfp/
Call for Papers • BSidesNYC

MalwareBazaar | Leister

https://bazaar.abuse.ch/browse/tag/Leister/
MalwareBazaar | Leister