CISA: High-severity Windows SMB flaw now exploited in attacks
https://www.bleepingcomputer.com/news/security/cisa-high-severity-windows-smb-flaw-now-exploited-in-attacks/
Home – Anvbis
https://anvbis.au/
GitHub - anvbis/chrome_v8_ndays: Chrome V8 n-day exploits that I've written.
https://github.com/anvbis/chrome_v8_ndays
Self-spreading GlassWorm malware hits OpenVSX, VS Code registries
https://www.bleepingcomputer.com/news/security/self-spreading-glassworm-malware-hits-openvsx-vs-code-registries/
Dylib Hijacking on macOS: Dead or Alive? - Speaker Deck
https://speakerdeck.com/patrickwardle/dylib-hijacking-on-macos-dead-or-alive
AWS outage crashes Amazon, Prime Video, Fortnite, Perplexity and more
https://www.bleepingcomputer.com/news/technology/aws-outage-crashes-amazon-primevideo-fortnite-perplexity-and-more/
Microsoft fixes Windows Server Active Directory sync issues
https://www.bleepingcomputer.com/news/microsoft/microsoft-fixes-windows-server-active-directory-sync-issues/
TikTok videos continue to push infostealers in ClickFix attacks
https://www.bleepingcomputer.com/news/security/tiktok-videos-continue-to-push-infostealers-in-clickfix-attacks/
fdtable_intmax_poc.c · GitHub
https://gist.github.com/emdnaia/0bf4cb263938e60300dae9fe9c774f2e#file-fdtable_intmax_poc-c
131 Chrome Extensions Caught Hijacking WhatsApp Web for Massive Spam Campaign
https://thehackernews.com/2025/10/131-chrome-extensions-caught-hijacking.html
Profundis – Cybersecurity Search Engine for Asset Discovery
http://profundis.io
Known Exploited Vulnerabilities Catalog | CISA
https://go.dhs.gov/Z3Q
Microsoft Windows Cloud Files Minifilter TOCTOU Privilege Escalation - Exodus Intelligence
https://blog.exodusintel.com/2025/10/20/microsoft-windows-cloud-files-minifilter-toctou-privilege-escalation/
China finds “irrefutable evidence” of US NSA cyberattacks on time Authority
https://securityaffairs.com/183619/intelligence/china-finds-irrefutable-evidence-of-us-nsa-cyberattacks-on-time-authority.html
Microsoft warns of Windows smart card auth issues after October updates
https://www.bleepingcomputer.com/news/microsoft/microsoft-october-security-updates-cause-windows-smart-card-auth-issues/
Over 75,000 WatchGuard security devices vulnerable to critical RCE
https://www.bleepingcomputer.com/news/security/over-75-000-watchguard-security-devices-vulnerable-to-critical-rce/
Retail giant Muji halts online sales after ransomware attack on supplier
https://www.bleepingcomputer.com/news/security/retail-giant-muji-halts-online-sales-after-ransomware-attack-on-supplier/
GitHub - ofasgard/execute-assembly-pico: A PICO for Crystal Palace that implements CLR hosting to execute a .NET assembly in memory.
https://github.com/ofasgard/execute-assembly-pico
GitHub - brs6412/CVE-2025-24813: Example PoC for CVE-2025-24813 (Tomcat RCE)
https://github.com/brs6412/CVE-2025-24813