Resolved Multiple Vulnerabilities in Sophos Intercept X for Windows (CVE-2024-13972, CVE-2025-7433, CVE-2025-7472) | Sophos
https://www.sophos.com/en-us/security-advisories/sophos-sa-20250717-cix-lpe
HTTP/1.1 Must Die
http://http1mustdie.com
RCE in the Most Popular Survey Software You’ve Never Heard Of › Searchlight Cyber
https://slcyber.io/assetnote-security-research-center/rce-in-the-most-popular-survey-software-youve-never-heard-of/
Analyzing APT 29 (NOBELIUM aka Cozy-Bear) – Part 1 | CyberSleuth Chronicles
https://www.cybersleuthchronicles.com/landing/analyzing-apt-29-nobelium-aka-cozy-bear-part-1
New Phobos and 8base ransomware decryptor recover files for free
https://www.bleepingcomputer.com/news/security/new-phobos-ransomware-decryptor-lets-victims-recover-files-for-free/
Malware Identified in Attacks Exploiting Ivanti Connect Secure Vulnerabilities - JPCERT/CC Eyes | JPCERT Coordination Center official Blog
https://blogs.jpcert.or.jp/en/2025/07/ivanti_cs.html
Russian alcohol retailer WineLab closes stores after ransomware attack
https://www.bleepingcomputer.com/news/security/russian-alcohol-retailer-winelab-closes-stores-after-ransomware-attack/
DeedRAT Backdoor Enhanced by Chinese APTs with Advanced Capabilities
https://lab52.io/blog/deedrat-backdoor-enhanced-by-chinese-apts-with-advanced-capabilities/
Fortinet FortiWeb Flaw Exploited in the Wild After PoC Publication - SecurityWeek
https://www.securityweek.com/fortinet-fortiweb-flaw-exploited-in-the-wild-after-poc-publication/
OpenAI: GPT-5 is coming, "we'll see" if it creates a shockwave
https://www.bleepingcomputer.com/news/artificial-intelligence/openai-gpt-5-is-coming-well-see-if-it-creates-a-shockwave/
GitHub - synacktiv/windows_kernel_shadow_stack: Proof of concepts demonstrating some aspects of the Windows kernel shadow stack mitigation.
https://github.com/synacktiv/windows_kernel_shadow_stack
CERT-UA Discovers LAMEHUG Malware Linked to APT28, Using LLM for Phishing Campaign
https://thehackernews.com/2025/07/cert-ua-discovers-lamehug-malware.html
Log in to Twitter / Twitter
http://x.com
Hackers scanning for TeleMessage Signal clone flaw exposing passwords
https://www.bleepingcomputer.com/news/security/hackers-scanning-for-telemessage-signal-clone-flaw-exposing-passwords/
LameHug malware uses AI LLM to craft Windows data-theft commands in real-time
https://www.bleepingcomputer.com/news/security/lamehug-malware-uses-ai-llm-to-craft-windows-data-theft-commands-in-real-time/
Critical NVIDIA Container Toolkit Flaw Allows Privilege Escalation on AI Cloud Services
https://thehackernews.com/2025/07/critical-nvidia-container-toolkit-flaw.html
Hacking a Smart Home Device - James Warner
https://jmswrnr.com/blog/hacking-a-smart-home-device
Arch Linux pulls AUR packages that installed Chaos RAT malware
https://www.bleepingcomputer.com/news/security/arch-linux-pulls-aur-packages-that-installed-chaos-rat-malware/
Offensive AI Con: Call for Speakers @ Sessionize.com
https://sessionize.com/offensive-ai-con/
Pwn2Own Ireland 2024 – Ubiquiti AI Bullet – Compass Security Blog
https://blog.compass-security.com/2025/06/pwn2own-ireland-2024-ubiquiti-ai-bullet/
Call for Papers • BSidesNYC
https://bsidesnyc.org/cfp/
MalwareBazaar | Leister
https://bazaar.abuse.ch/browse/tag/Leister/