10/06

Paged Out!

https://pagedout.institute/
Paged Out!

XWorm malware resurfaces with ransomware module, over 35 plugins

https://www.bleepingcomputer.com/news/security/xworm-malware-resurfaces-with-ransomware-module-over-35-plugins/
XWorm malware resurfaces with ransomware module, over 35 plugins

PagedOut_007.pdf

https://pagedout.institute/download/PagedOut_007.pdf
PagedOut_007.pdf

Redis warns of critical flaw impacting thousands of instances

https://www.bleepingcomputer.com/news/security/redis-warns-of-max-severity-flaw-impacting-thousands-of-instances/
Redis warns of critical flaw impacting thousands of instances

Zeroday Cloud hacking contest offers $4.5 million in bounties

https://www.bleepingcomputer.com/news/security/zeroday-cloud-hacking-contest-offers-45-million-in-bounties/
Zeroday Cloud hacking contest offers $4.5 million in bounties

Gemini CLI to Your Kali Linux Terminal To Automate Penetration Testing Tasks

https://cybersecuritynews.com/gemini-cli-for-kali-linux/
Gemini CLI to Your Kali Linux Terminal To Automate Penetration Testing Tasks

Hackers exploited Zimbra flaw as zero-day using iCalendar files

https://www.bleepingcomputer.com/news/security/hackers-exploited-zimbra-flaw-as-zero-day-using-icalendar-files/
Hackers exploited Zimbra flaw as zero-day using iCalendar files

Oracle Rushes Patch for CVE-2025-61882 After Cl0p Exploited It in Data Theft Attacks

https://thehackernews.com/2025/10/oracle-rushes-patch-for-cve-2025-61882.html
Oracle Rushes Patch for CVE-2025-61882 After Cl0p Exploited It in Data Theft Attacks

Chinese Cybercrime Group Runs Global SEO Fraud Ring Using Compromised IIS Servers

https://thehackernews.com/2025/10/chinese-cybercrime-group-runs-global.html
Chinese Cybercrime Group Runs Global SEO Fraud Ring Using Compromised IIS Servers

Beer Giant Asahi Says Data Stolen in Ransomware Attack - SecurityWeek

https://www.securityweek.com/beer-giant-asahi-says-data-stolen-in-ransomware-attack/
Beer Giant Asahi Says Data Stolen in Ransomware Attack - SecurityWeek

A Deep Dive Into Malicious Direct Syscall Detection - Palo Alto Networks Blog

https://www.paloaltonetworks.com/blog/security-operations/a-deep-dive-into-malicious-direct-syscall-detection/
A Deep Dive Into Malicious Direct Syscall Detection - Palo Alto Networks Blog

Using .LNK files as lolbins | Hexacorn

https://www.hexacorn.com/blog/2025/10/04/using-lnk-files-as-lolbins/
Using .LNK files as lolbins | Hexacorn

⚡ Weekly Recap: Oracle 0-Day, BitLocker Bypass, VMScape, WhatsApp Worm & More

https://thehackernews.com/2025/10/weekly-recap-oracle-0-day-bitlocker.html
⚡ Weekly Recap: Oracle 0-Day, BitLocker Bypass, VMScape, WhatsApp Worm & More

Oracle patches EBS zero-day exploited in Clop data theft attacks

https://www.bleepingcomputer.com/news/security/oracle-patches-ebs-zero-day-exploited-in-clop-data-theft-attacks/
Oracle patches EBS zero-day exploited in Clop data theft attacks

Data Breach at Doctors Imaging Group Impacts 171,000 People - SecurityWeek

https://www.securityweek.com/data-breach-at-doctors-imaging-group-impacts-171000-people/
Data Breach at Doctors Imaging Group Impacts 171,000 People - SecurityWeek

Microsoft: Critical GoAnywhere bug exploited in ransomware attacks

https://www.bleepingcomputer.com/news/security/microsoft-critical-goanywhere-bug-exploited-in-ransomware-attacks/
Microsoft: Critical GoAnywhere bug exploited in ransomware attacks

Steam and Microsoft warn of Unity flaw exposing gamers to attacks

https://www.bleepingcomputer.com/news/security/steam-and-microsoft-warn-of-unity-flaw-exposing-gamers-to-attacks/
Steam and Microsoft warn of Unity flaw exposing gamers to attacks

Developing a machine-learning model to detect DLL hijacking | Securelist

https://securelist.com/building-ml-model-to-detect-dll-hijacking/117565/
Developing a machine-learning model to detect DLL hijacking | Securelist