08/05

Cisco discloses data breach impacting Cisco.com user accounts

https://www.bleepingcomputer.com/news/security/cisco-discloses-data-breach-impacting-ciscocom-user-accounts/
Cisco discloses data breach impacting Cisco.com user accounts

SonicWall urges admins to disable SSLVPN amid rising attacks

https://www.bleepingcomputer.com/news/security/sonicwall-urges-admins-to-disable-sslvpn-amid-rising-attacks/
SonicWall urges admins to disable SSLVPN amid rising attacks

Open models by OpenAI | OpenAI

http://openai.com/open-models
Open models by OpenAI | OpenAI

Ghost in the Zip | New PXA Stealer and Its Telegram-Powered Ecosystem | SentinelOne

https://www.sentinelone.com/labs/ghost-in-the-zip-new-pxa-stealer-and-its-telegram-powered-ecosystem/
Ghost in the Zip | New PXA Stealer and Its Telegram-Powered Ecosystem | SentinelOne

Escaping the Confines of Port 445 - SpecterOps

https://specterops.io/blog/2025/07/24/escaping-the-confines-of-port-445-ntlm-relay/
Escaping the Confines of Port 445 - SpecterOps

TrustedSec | Hunting Deserialization Vulnerabilities With Claude

https://trustedsec.com/blog/hunting-deserialization-vulnerabilities-with-claude
TrustedSec | Hunting Deserialization Vulnerabilities With Claude

Android gets patches for Qualcomm flaws exploited in attacks

https://www.bleepingcomputer.com/news/security/android-gets-patches-for-qualcomm-flaws-exploited-in-attacks/
Android gets patches for Qualcomm flaws exploited in attacks

Adobe issues emergency fixes for AEM Forms zero-days after PoCs released

https://www.bleepingcomputer.com/news/security/adobe-issues-emergency-fixes-for-aem-forms-zero-days-after-pocs-released/
Adobe issues emergency fixes for AEM Forms zero-days after PoCs released

Breaking Disassembly — Abusing symbol resolution in Linux programs to obfuscate library calls ️🎭 | Elma

https://blog.elmo.sg/posts/breaking-disassembly-through-symbol-resolution/
Breaking Disassembly — Abusing symbol resolution in Linux programs to obfuscate library calls ️🎭 | Elma

Cursor IDE's MCP Vulnerability - Check Point Research

https://research.checkpoint.com/2025/cursor-vulnerability-mcpoison/
Cursor IDE's MCP Vulnerability - Check Point Research

Lateral Movement – BitLocker – Purple Team

https://ipurple.team/2025/08/04/lateral-movement-bitlocker/
Lateral Movement – BitLocker – Purple Team

Red‑Teaming Challenge - OpenAI gpt-oss-20b | Kaggle

https://www.kaggle.com/competitions/openai-gpt-oss-20b-red-teaming/
Red‑Teaming Challenge - OpenAI gpt-oss-20b | Kaggle

From Wayback Machine to AWS Metadata: Uncovering SSRF in a Production System Within 5 Minutes | by Gökhan Güzelkokar | Medium

https://medium.com/@gguzelkokar.mdbf15/from-wayback-machine-to-aws-metadata-uncovering-ssrf-in-a-production-system-within-5-minutes-2d592875c9ab
From Wayback Machine to AWS Metadata: Uncovering SSRF in a Production System Within 5 Minutes | by Gökhan Güzelkokar | Medium

PBS confirms data breach after employee info leaked on Discord servers

https://www.bleepingcomputer.com/news/security/pbs-confirms-data-breach-after-employee-info-leaked-on-discord-servers/
PBS confirms data breach after employee info leaked on Discord servers

Microsoft Offers $5 Million at Zero Day Quest Hacking Contest - SecurityWeek

https://www.securityweek.com/microsoft-offers-5-million-at-zero-day-quest-hacking-contest/
Microsoft Offers $5 Million at Zero Day Quest Hacking Contest - SecurityWeek

Introducing WiFi Pineapple Pager 🍍📟 by Hak5 - YouTube

https://youtu.be/GUaUerYCvs0?si=gqtiaxyYa_tSKHmK
Introducing WiFi Pineapple Pager 🍍📟 by Hak5 - YouTube

Google's August Patch Fixes Two Qualcomm Vulnerabilities Exploited in the Wild

https://thehackernews.com/2025/08/google-fixes-3-android-vulnerabilities.html
Google's August Patch Fixes Two Qualcomm Vulnerabilities Exploited in the Wild

Investigating Suspicious Memory Activity: Tracing a SIEM Alert to a Cobalt Strike C2 - Malware Analysis

https://daniyyell.com/malware%20analysis/Investigating-Suspicious-Memory-Activity-Tracing-A-SIEM-Alert-To-A-Cobalt-Strike-C2/
Investigating Suspicious Memory Activity: Tracing a SIEM Alert to a Cobalt Strike C2 - Malware Analysis

HTTP/1.1 Must Die

https://http1mustdie.com/
HTTP/1.1 Must Die

SonicWall Investigating Potential SSL VPN Zero-Day After 20+ Targeted Attacks Reported

https://thehackernews.com/2025/08/sonicwall-investigating-potential-ssl.html
SonicWall Investigating Potential SSL VPN Zero-Day After 20+ Targeted Attacks Reported

HTTP/1.1 Must Die

http://http1mustdie.com
HTTP/1.1 Must Die

The Guest Who Could: Exploiting LPE in VMWare Tools – PT SWARM

https://swarm.ptsecurity.com/the-guest-who-could-exploiting-lpe-in-vmware-tools/
The Guest Who Could: Exploiting LPE in VMWare Tools – PT SWARM

15,000 Fake TikTok Shop Domains Deliver Malware, Steal Crypto via AI-Driven Scam Campaign

https://thehackernews.com/2025/08/15000-fake-tiktok-shop-domains-deliver.html
15,000 Fake TikTok Shop Domains Deliver Malware, Steal Crypto via AI-Driven Scam Campaign

MalwareBazaar | SHA256 8b94f5fa94f35e5ba47ce260b009b34401c5c54042d7b7252c8c7d13bf8d9f05 (SalatStealer)

https://bazaar.abuse.ch/sample/8b94f5fa94f35e5ba47ce260b009b34401c5c54042d7b7252c8c7d13bf8d9f05/
MalwareBazaar | SHA256 8b94f5fa94f35e5ba47ce260b009b34401c5c54042d7b7252c8c7d13bf8d9f05 (SalatStealer)