08/20

Major password managers can leak logins in clickjacking attacks

https://www.bleepingcomputer.com/news/security/major-password-managers-can-leak-logins-in-clickjacking-attacks/
Major password managers can leak logins in clickjacking attacks

TorFlow

https://torflow.uncharted.software
TorFlow

Chrome Releases: Stable Channel Update for Desktop

https://chromereleases.googleblog.com/2025/08/stable-channel-update-for-desktop_19.html
Chrome Releases: Stable Channel Update for Desktop

Microsoft reportedly fixing SSD failures caused by Windows updates

https://www.bleepingcomputer.com/news/microsoft/microsoft-reportedly-fixing-ssd-failures-caused-by-windows-updates/
Microsoft reportedly fixing SSD failures caused by Windows updates

Hackers steal Microsoft logins using legitimate ADFS redirects

https://www.bleepingcomputer.com/news/security/hackers-steal-microsoft-logins-using-legitimate-adfs-redirects/
Hackers steal Microsoft logins using legitimate ADFS redirects

North Korea Uses GitHub in Diplomat Cyber Attacks as IT Worker Scheme Hits 320+ Firms

https://thehackernews.com/2025/08/north-korea-uses-github-in-diplomat.html
North Korea Uses GitHub in Diplomat Cyber Attacks as IT Worker Scheme Hits 320+ Firms

848d7f4122826f4d26ee09404fe57ac9b9295b00 - v8/v8 - Git at Google

https://chromium.googlesource.com/v8/v8/+/848d7f4122826f4d26ee09404fe57ac9b9295b00
848d7f4122826f4d26ee09404fe57ac9b9295b00 - v8/v8 - Git at Google

LudusHound: Open-source tool brings BloodHound data to life - Help Net Security

https://www.helpnetsecurity.com/2025/08/20/ludushound-open-source-tool-bloodhound-data/
LudusHound: Open-source tool brings BloodHound data to life - Help Net Security

RapperBot Botnet Disrupted, American Administrator Indicted - SecurityWeek

https://www.securityweek.com/rapperbot-botnet-disrupted-american-administrator-indicted/
RapperBot Botnet Disrupted, American Administrator Indicted - SecurityWeek

DOJ Charges 22-Year-Old for Running RapperBot Botnet Behind 370,000 DDoS Attacks

https://thehackernews.com/2025/08/doj-charges-22-year-old-for-running.html
DOJ Charges 22-Year-Old for Running RapperBot Botnet Behind 370,000 DDoS Attacks

Microsoft releases emergency updates to fix Windows recovery

https://www.bleepingcomputer.com/news/microsoft/microsoft-releases-emergency-updates-to-fix-windows-recovery/
Microsoft releases emergency updates to fix Windows recovery

Oregon Man Charged in ‘Rapper Bot’ DDoS Service – Krebs on Security

https://krebsonsecurity.com/2025/08/oregon-man-charged-in-rapper-bot-ddos-service/
Oregon Man Charged in ‘Rapper Bot’ DDoS Service – Krebs on Security

Microsoft investigates outage impacting Copilot, Office.com

https://www.bleepingcomputer.com/news/microsoft/microsoft-investigates-outage-impacting-copilot-officecom/
Microsoft investigates outage impacting Copilot, Office.com

セキュリティ・キャンプ 2025 全国大会 特別講義 T1「海外のセキュリティコミュニティに飛び込む:その第一歩から最前線まで」 - Speaker Deck

https://speakerdeck.com/asuna_jp/sekiyuriteikiyanpu-2025-quan-guo-da-hui-te-bie-jiang-yi-t1-hai-wai-nosekiyuriteikomiyuniteinifei-biip-mu-sonodi-bu-karazui-qian-xian-made
セキュリティ・キャンプ 2025 全国大会 特別講義 T1「海外のセキュリティコミュニティに飛び込む:その第一歩から最前線まで」 - Speaker Deck

How I Chained Directory Traversal and CSV Parser Abuse for RCE in a Django App | Jineesh AK

https://jineeshak.github.io/posts/Chaining-Directory-Traversal-and-CSV-Parser-Abuse-for-RCE-in-Django/
How I Chained Directory Traversal and CSV Parser Abuse for RCE in a Django App | Jineesh AK

Perplexity’s Comet AI browser tricked into buying fake items online

https://www.bleepingcomputer.com/news/security/perplexitys-comet-ai-browser-tricked-into-buying-fake-items-online/
Perplexity’s Comet AI browser tricked into buying fake items online

GitHub - 0xthirteen/rpc2wc: RPC to WebClient startup

https://github.com/0xthirteen/rpc2wc
GitHub - 0xthirteen/rpc2wc: RPC to WebClient startup

“Rapper Bot” malware seized, alleged developer identified and charged

https://www.bleepingcomputer.com/news/legal/rapper-bot-malware-seized-alleged-developer-identified-and-charged/
“Rapper Bot” malware seized, alleged developer identified and charged