09/10

GONEPOSTAL Malware Espionage | Cyber | Kroll

https://www.kroll.com/en/publications/cyber/fancy-bear-gonepostal-espionage-tool-backdoor-access-microsoft-outlook
GONEPOSTAL Malware Espionage | Cyber | Kroll

Learn about ChillyHell, a modular Mac backdoor

https://www.jamf.com/blog/chillyhell-a-modular-macos-backdoor/?nav=1
Learn about ChillyHell, a modular Mac backdoor

Microsoft fixes app install issues caused by August Windows updates

https://www.bleepingcomputer.com/news/microsoft/microsoft-fixes-app-install-issues-caused-by-august-windows-updates/
Microsoft fixes app install issues caused by August Windows updates

Watch Out for Salty2FA: New Phishing Kit Targeting US and EU Enterprises

https://thehackernews.com/2025/09/watch-out-for-salty2fa-new-phishing-kit.html
Watch Out for Salty2FA: New Phishing Kit Targeting US and EU Enterprises

Vacancy senior vulnerability researcher - Computest

https://www.computest.nl/en/careers-at-computest/vacancies/senior-vulnerability-researcher-hardware-hacker/
Vacancy senior vulnerability researcher - Computest

US Offers $10 Million Reward for Ukrainian Ransomware Operator - SecurityWeek

https://www.securityweek.com/us-offers-10-million-reward-for-ukrainian-ransomware-operator/
US Offers $10 Million Reward for Ukrainian Ransomware Operator - SecurityWeek

Fixing silent failures in security controls with adversarial exposure validation - Help Net Security

https://www.helpnetsecurity.com/2025/09/10/picus-blue-report-security-controls/
Fixing silent failures in security controls with adversarial exposure validation - Help Net Security

China-Linked APT41 Hackers Target U.S. Trade Officials Amid 2025 Negotiations

https://thehackernews.com/2025/09/china-linked-apt41-hackers-target-us.html
China-Linked APT41 Hackers Target U.S. Trade Officials Amid 2025 Negotiations

Chinese APT Deploys EggStreme Fileless Malware to Breach Philippine Military Systems

https://thehackernews.com/2025/09/chinese-apt-deploys-eggstreme-fileless.html
Chinese APT Deploys EggStreme Fileless Malware to Breach Philippine Military Systems

Jaguar Land Rover confirms data theft after recent cyberattack

https://www.bleepingcomputer.com/news/security/jaguar-land-rover-jlr-confirms-data-theft-after-recent-cyberattack/
Jaguar Land Rover confirms data theft after recent cyberattack

Kerberoasting – A Few Thoughts on Cryptographic Engineering

https://blog.cryptographyengineering.com/2025/09/10/kerberoasting/
Kerberoasting – A Few Thoughts on Cryptographic Engineering

You Already Have Our Personal Data, Take Our Phone Calls Too (FreePBX CVE-2025-57819)

https://labs.watchtowr.com/you-already-have-our-personal-data-take-our-phone-calls-too-freepbx-cve-2025-57819/
You Already Have Our Personal Data, Take Our Phone Calls Too (FreePBX CVE-2025-57819)

Windows & Active Directory Exploitation Cheat Sheet and Command Reference :: Cas van Cooten

https://casvancooten.com/posts/2020/11/windows-active-directory-exploitation-cheat-sheet-and-command-reference
Windows & Active Directory Exploitation Cheat Sheet and Command Reference :: Cas van Cooten

U.S. sanctions cyber scammers who stole billions from Americans

https://www.bleepingcomputer.com/news/security/us-sanctions-cyber-scammers-who-stole-billions-from-americans/
U.S. sanctions cyber scammers who stole billions from Americans

Apple CarPlay Hacking Risks: CVE-2025-24132 Explained | Oligo Security

https://www.oligo.security/blog/pwn-my-ride-exploring-the-carplay-attack-surface
Apple CarPlay Hacking Risks: CVE-2025-24132 Explained | Oligo Security

Inside the Kimsuky Leak: How the “Kim” Dump Exposed North Korea’s Credential Theft Playbook - DomainTools Investigations | DTI

https://dti.domaintools.com/inside-the-kimsuky-leak-how-the-kim-dump-exposed-north-koreas-credential-theft-playbook/
Inside the Kimsuky Leak: How the “Kim” Dump Exposed North Korea’s Credential Theft Playbook - DomainTools Investigations | DTI

SAP Patches Critical NetWeaver (CVSS Up to 10.0) and High-Severity S/4HANA Flaws

https://thehackernews.com/2025/09/sap-patches-critical-netweaver-cvss-up.html
SAP Patches Critical NetWeaver (CVSS Up to 10.0) and High-Severity S/4HANA Flaws

Adobe Commerce Flaw CVE-2025-54236 Lets Hackers Take Over Customer Accounts

https://thehackernews.com/2025/09/adobe-commerce-flaw-cve-2025-54236-lets.html
Adobe Commerce Flaw CVE-2025-54236 Lets Hackers Take Over Customer Accounts

The anatomy of a bug: 6 Months at STAR Labs

https://gerrardtai.com/anatomy-of-a-bug
The anatomy of a bug: 6 Months at STAR Labs