08/12

North Korean Kimsuky hackers exposed in alleged data breach

https://www.bleepingcomputer.com/news/security/north-korean-kimsuky-hackers-exposed-in-alleged-data-breach/
North Korean Kimsuky hackers exposed in alleged data breach

Conferences/BlackHat_USA_2025_Slides at main · onhexgroup/Conferences · GitHub

https://github.com/onhexgroup/Conferences/tree/main/BlackHat_USA_2025_Slides
Conferences/BlackHat_USA_2025_Slides at main · onhexgroup/Conferences · GitHub

Saint Paul cyberattack linked to Interlock ransomware gang

https://www.bleepingcomputer.com/news/security/saint-paul-cyberattack-linked-to-interlock-ransomware-gang/
Saint Paul cyberattack linked to Interlock ransomware gang

New 'Curly COMrades' APT Using NGEN COM Hijacking in Georgia, Moldova Attacks

https://thehackernews.com/2025/08/new-curly-comrades-apt-using-ngen-com.html
New 'Curly COMrades' APT Using NGEN COM Hijacking in Georgia, Moldova Attacks

National Drought Group meets to address “nationally significant” water shortfall - GOV.UK

https://www.gov.uk/government/news/national-drought-group-meets-to-address-nationally-significant-water-shortfall
National Drought Group meets to address “nationally significant” water shortfall - GOV.UK

Syllabus

https://maldevacademy.com/syllabus
Syllabus

Fortinet SSL VPNs Hit by Global Brute-Force Wave Before Attackers Shift to FortiManager

https://thehackernews.com/2025/08/fortinet-ssl-vpns-hit-by-global-brute.html
Fortinet SSL VPNs Hit by Global Brute-Force Wave Before Attackers Shift to FortiManager

Active Directory Enumeration – ADWS – Purple Team

https://ipurple.team/2025/08/12/active-directory-enumeration-adws/
Active Directory Enumeration – ADWS – Purple Team

CVE-2025-50154:Zero Click, One NTLM: Patch Bypass

https://cymulate.com/blog/zero-click-one-ntlm-microsoft-security-patch-bypass-cve-2025-50154/
CVE-2025-50154:Zero Click, One NTLM: Patch Bypass

APT_REPORT/kimsuky/APTDown/phrack-apt-down-the-north-korea-files_.pdf at master · blackorbird/APT_REPORT · GitHub

https://github.com/blackorbird/APT_REPORT/blob/master/kimsuky/APTDown/phrack-apt-down-the-north-korea-files_.pdf
APT_REPORT/kimsuky/APTDown/phrack-apt-down-the-north-korea-files_.pdf at master · blackorbird/APT_REPORT · GitHub

Docker Hub still hosts dozens of Linux images with the XZ backdoor

https://www.bleepingcomputer.com/news/security/docker-hub-still-hosts-dozens-of-linux-images-with-the-xz-backdoor/
Docker Hub still hosts dozens of Linux images with the XZ backdoor

CVE-2025-53769 - Security Update Guide - Microsoft - Windows Security App Spoofing Vulnerability

https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-53769
CVE-2025-53769 - Security Update Guide - Microsoft - Windows Security App Spoofing Vulnerability

So you want to rapidly run a BOF? Let's look at this 'cli4bofs' thing then

https://blog.z-labs.eu/2025/06/04/all-about-cli4bofs-tool.html
So you want to rapidly run a BOF? Let's look at this 'cli4bofs' thing then

Researchers cracked the encryption used by DarkBit ransomware

https://securityaffairs.com/181064/malware/researchers-cracked-the-encryption-used-by-darkbit-ransomware.html
Researchers cracked the encryption used by DarkBit ransomware

Update WinRAR tools now: RomCom and others exploiting zero-day vulnerability

https://www.welivesecurity.com/en/eset-research/update-winrar-tools-now-romcom-and-others-exploiting-zero-day-vulnerability/
Update WinRAR tools now: RomCom and others exploiting zero-day vulnerability

Over 3,000 NetScaler devices left unpatched against CitrixBleed 2 bug

https://www.bleepingcomputer.com/news/security/over-3-000-netscaler-devices-left-unpatched-against-actively-exploited-citrixbleed-2-flaw/
Over 3,000 NetScaler devices left unpatched against CitrixBleed 2 bug

Microsoft August 2025 Patch Tuesday fixes one zero-day, 107 flaws

https://www.bleepingcomputer.com/news/microsoft/microsoft-august-2025-patch-tuesday-fixes-one-zero-day-107-flaws/
Microsoft August 2025 Patch Tuesday fixes one zero-day, 107 flaws

Dutch NCSC Confirms Active Exploitation of Citrix NetScaler CVE-2025-6543 in Critical Sectors

https://thehackernews.com/2025/08/dutch-ncsc-confirms-active-exploitation.html
Dutch NCSC Confirms Active Exploitation of Citrix NetScaler CVE-2025-6543 in Critical Sectors

Manpower discloses data breach affecting nearly 145,000 people

https://www.bleepingcomputer.com/news/security/manpower-staffing-agency-discloses-data-breach-after-attack-claimed-by-ransomhub/
Manpower discloses data breach affecting nearly 145,000 people

RV130X Firmware Analysis - RaffoX24

https://raffo24.github.io/hardware%20hacking/FirmwareAnalysis/
RV130X Firmware Analysis - RaffoX24

Netherlands: Citrix Netscaler flaw CVE-2025-6543 exploited to breach orgs

https://www.bleepingcomputer.com/news/security/netherlands-citrix-netscaler-flaw-cve-2025-6543-exploited-to-breach-orgs/
Netherlands: Citrix Netscaler flaw CVE-2025-6543 exploited to breach orgs

Curly COMrades cyberspies hit govt orgs with custom malware

https://www.bleepingcomputer.com/news/security/curly-comrades-cyberspies-hit-govt-orgs-with-custom-malware/
Curly COMrades cyberspies hit govt orgs with custom malware