MeetC2 a.k.a Meeting C2. Background: Modern adversaries… | by Dhiraj | Deriv Tech | Sep, 2025 | Medium
https://medium.com/deriv-tech/meetc2-a-k-a-meeting-c2-1fc2a6761068
Threat actors abuse X’s Grok AI to spread malicious links
https://www.bleepingcomputer.com/news/security/threat-actors-abuse-xs-grok-ai-to-spread-malicious-links/
How to Hack AI Agents and Applications · Joseph Thacker
https://josephthacker.com/hacking/2025/02/25/how-to-hack-ai-apps.html
Exploit development for IBM i - Silent Signal Techblog
https://blog.silentsignal.eu/2025/09/04/Exploit-development-for-IBM-i/
jhftss.github.io/res/slides/Exploiting The Impossible.pdf at main · jhftss/jhftss.github.io · GitHub
https://github.com/jhftss/jhftss.github.io/blob/main/res/slides/Exploiting%20The%20Impossible.pdf
Microsoft says recent Windows updates cause app install issues
https://www.bleepingcomputer.com/news/microsoft/microsoft-says-recent-windows-updates-cause-app-install-issues-due-to-unexpected-admin-UAC-prompts/
Exploiting the Impossible: A Deep Dive into A Vulnerability Apple Deems Unexploitable – Mickey's Blogs – Exploring the world with my sword of debugger :)
https://jhftss.github.io/Exploiting-the-Impossible/
MalwareBazaar | starmanx-org
https://bazaar.abuse.ch/browse/tag/starmanx-org/
Tire giant Bridgestone confirms cyberattack impacts manufacturing
https://www.bleepingcomputer.com/news/security/tire-giant-bridgestone-confirms-cyberattack-impacts-manufacturing/
Entra ID First Party Apps & Scope Browser
https://entrascopes.com/
Attackers are turning Salesforce trust into their biggest weapon - Help Net Security
https://www.helpnetsecurity.com/2025/09/04/salesforce-security-threats-2025/
MalwareBazaar | cnmpaui
https://bazaar.abuse.ch/browse/tag/cnmpaui/
Azure Active Directory Vulnerability Exposes credentials and Enables Attackers to Deploy Malicious Apps
https://cybersecuritynews.com/azure-active-directory-vulnerability/amp/
LinkedIn expands company verification, mandates workplace checks for certain roles - Help Net Security
https://www.helpnetsecurity.com/2025/09/04/linkedin-expands-company-verification-workplace-checks/
MalwareBazaar | SHA256 7a49310a9192cab1aa05256b6ca0d0c1a54fe084b103ff4df2d17be9effa3300
https://bazaar.abuse.ch/sample/7a49310a9192cab1aa05256b6ca0d0c1a54fe084b103ff4df2d17be9effa3300/
Security Research Device - Apple Security Research
https://security.apple.com/research-device/
Completing the Circle: The Path to CVE-2025-7388 | Core Security
https://www.coresecurity.com/blog/completing-circle-path-cve-2025-7388
Index of /data/automated/
http://wordlists-cdn.assetnote.io/data/automated/
Analyzing NotDoor: Inside APT28’s Expanding Arsenal
https://lab52.io/blog/analyzing-notdoor-inside-apt28s-expanding-arsenal/
Living Off The Web Of Lies - James Williams - YouTube
https://youtu.be/a4cwO7deSTo
Cybercriminals Exploit X's Grok AI to Bypass Ad Protections and Spread Malware to Millions
https://thehackernews.com/2025/09/cybercriminals-exploit-xs-grok-ai-to.html
New TP-Link zero-day surfaces as CISA warns other flaws are exploited
https://www.bleepingcomputer.com/news/security/new-tp-link-zero-day-surfaces-as-cisa-warns-other-flaws-are-exploited/
GhostRedirector poisons Windows servers: Backdoors with a side of Potatoes
https://www.welivesecurity.com/en/eset-research/ghostredirector-poisons-windows-servers-backdoors-side-potatoes/
DLL Sideloading for Initial Access – Red Team Operator's Guide | Print3M
https://print3m.github.io/blog/dll-sideloading-for-initial-access
Google Fined $379 Million by French Regulator for Cookie Consent Violations
https://thehackernews.com/2025/09/google-fined-379-million-by-french.html
MacOS hacking part 11: bind shell for ARM (M1). Simple Assembly (M1) and C (run shellcode) examples - cocomelonc
https://cocomelonc.github.io/macos/2025/09/01/malware-mac-11.html
[0-day] V8 sandbox bypass via Turbofan [420637585] - Chromium
https://issues.chromium.org/issues/420637585![[0-day] V8 sandbox bypass via Turbofan [420637585] - Chromium](/image/screenshot/0d41ea262ab03b3705a52d72275915e0.png)