09/15

pyLDAPGui - How It was Born

https://blog.zsec.uk/pyldapgui/
pyLDAPGui - How It was Born

Microsoft says Windows September updates break SMBv1 shares

https://www.bleepingcomputer.com/news/microsoft/microsoft-says-windows-september-updates-break-smbv1-shares/
Microsoft says Windows September updates break SMBv1 shares

Microsoft to force install the Microsoft 365 Copilot app in October

https://www.bleepingcomputer.com/news/microsoft/microsoft-to-force-install-the-microsoft-365-copilot-app-in-october/
Microsoft to force install the Microsoft 365 Copilot app in October

AI-Driven Deepfake Military ID Fraud Campaign by Kimsuky APT

https://www.genians.co.kr/en/blog/threat_intelligence/deepfake
AI-Driven Deepfake Military ID Fraud Campaign by Kimsuky APT

Windows Internals Fundamentals

https://www.oreilly.com/live-events/windows-internals-fundamentals/0636920095044/
Windows Internals Fundamentals

advisories/CVE-2025-59362/CVE-2025-59362.md at main · Microsvuln/advisories · GitHub

https://github.com/Microsvuln/advisories/blob/main/CVE-2025-59362/CVE-2025-59362.md
advisories/CVE-2025-59362/CVE-2025-59362.md at main · Microsvuln/advisories · GitHub

Reversing for dummies - x86 assembly and C code (Beginner/ADHD friendly) · 0x44.cc

https://0x44.cc/reversing/2021/07/21/reversing-x86-and-c-code-for-beginners.html
Reversing for dummies - x86 assembly and C code (Beginner/ADHD friendly) · 0x44.cc

'WhiteCobra' floods VSCode market with crypto-stealing extensions

https://www.bleepingcomputer.com/news/security/whitecobra-floods-vscode-market-with-crypto-stealing-extensions/
'WhiteCobra' floods VSCode market with crypto-stealing extensions

HiddenGh0st, Winos and kkRAT Exploit SEO, GitHub Pages in Chinese Malware Attacks

https://thehackernews.com/2025/09/hiddengh0st-winos-and-kkrat-exploit-seo.html
HiddenGh0st, Winos and kkRAT Exploit SEO, GitHub Pages in Chinese Malware Attacks

Writing an operating system kernel from scratch

https://popovicu.com/posts/writing-an-operating-system-kernel-from-scratch/
Writing an operating system kernel from scratch

Releases · hasherezade/hollows_hunter

https://github.com/hasherezade/hollows_hunter/releases
Releases · hasherezade/hollows_hunter

Microsoft fixes Windows 11 audio issues confirmed in December

https://www.bleepingcomputer.com/news/microsoft/microsoft-fixes-windows-11-audio-issues-confirmed-in-december/
Microsoft fixes Windows 11 audio issues confirmed in December

Mastodon

https://mastodon.social/@chatcontrol/115204439983078498
Mastodon

GitHub - ANYLNK/NSecSoftBYOVD: NSecSoftBYOVD POC

https://github.com/ANYLNK/NSecSoftBYOVD/
GitHub - ANYLNK/NSecSoftBYOVD: NSecSoftBYOVD POC

Releases · hasherezade/pe-sieve

https://github.com/hasherezade/pe-sieve/releases
Releases · hasherezade/pe-sieve

CODE WHITE Applicants Challenge

https://apply-if-you-can.com/
CODE WHITE Applicants Challenge

AI-Powered Villager Pen Testing Tool Hits 11,000 PyPI Downloads Amid Abuse Concerns

https://thehackernews.com/2025/09/ai-powered-villager-pen-testing-tool.html
AI-Powered Villager Pen Testing Tool Hits 11,000 PyPI Downloads Amid Abuse Concerns

componentid:1836411 - Issue Tracker

https://goo.gle/bigsleep
componentid:1836411 - Issue Tracker

Google confirms fraudulent account created in law enforcement portal

https://www.bleepingcomputer.com/news/security/google-confirms-hackers-gained-access-to-law-enforcement-portal/
Google confirms fraudulent account created in law enforcement portal

Mustang Panda Deploys SnakeDisk USB Worm to Deliver Yokai Backdoor on Thailand IPs

https://thehackernews.com/2025/09/mustang-panda-deploys-snakedisk-usb.html
Mustang Panda Deploys SnakeDisk USB Worm to Deliver Yokai Backdoor on Thailand IPs

Microsoft: Exchange 2016 and 2019 reach end of support in 30 days

https://www.bleepingcomputer.com/news/microsoft/microsoft-exchange-2016-and-2019-reach-end-of-support-in-30-days/
Microsoft: Exchange 2016 and 2019 reach end of support in 30 days

New VoidProxy phishing service targets Microsoft 365, Google accounts

https://www.bleepingcomputer.com/news/security/new-voidproxy-phishing-service-targets-microsoft-365-google-accounts/
New VoidProxy phishing service targets Microsoft 365, Google accounts

GitHub Actions: A Cloudy Day for Security - Part 2

https://binarysecurity.no/posts/2025/09/securing-gh-actions-part2
GitHub Actions: A Cloudy Day for Security - Part 2