11/20

Flare-On 12 – Task 9 | hasherezade's 1001 nights

https://hshrzd.wordpress.com/2025/11/20/flare-on-12-task-9/
Flare-On 12 – Task 9 | hasherezade's 1001 nights

GitHub - l0ggg/ToolShell: Exploit for ToolShell

https://github.com/l0ggg/ToolShell
GitHub - l0ggg/ToolShell: Exploit for ToolShell

New Sturnus Android Trojan Quietly Captures Encrypted Chats and Hijacks Devices

https://thehackernews.com/2025/11/new-sturnus-android-trojan-quietly.html
New Sturnus Android Trojan Quietly Captures Encrypted Chats and Hijacks Devices

TV streaming piracy service with 26M yearly visits shut down

https://www.bleepingcomputer.com/news/security/tv-streaming-piracy-service-photocall-with-26m-yearly-visits-shut-down/
TV streaming piracy service with 26M yearly visits shut down

Salesforce investigates customer data theft via Gainsight breach

https://www.bleepingcomputer.com/news/security/salesforce-investigates-customer-data-theft-via-gainsight-breach/
Salesforce investigates customer data theft via Gainsight breach

TamperedChef Malware Spreads via Fake Software Installers in Ongoing Global Campaign

https://thehackernews.com/2025/11/tamperedchef-malware-spreads-via-fake.html
TamperedChef Malware Spreads via Fake Software Installers in Ongoing Global Campaign

SolarWinds Patches Three Critical Serv-U Vulnerabilities - SecurityWeek

https://www.securityweek.com/solarwinds-patches-three-critical-serv-u-vulnerabilities/
SolarWinds Patches Three Critical Serv-U Vulnerabilities - SecurityWeek

CISA Warns of Google Chrome 0-Day Vulnerability Exploited in Attacks

https://cybersecuritynews.com/cisa-warns-chrome-0-day-vulnerability-exploited/
CISA Warns of Google Chrome 0-Day Vulnerability Exploited in Attacks

La vie de Nicolas Guillou, juge français de la CPI sous sanctions des Etats-Unis : « Vous êtes interdit bancaire sur une bonne partie de la planète »

https://www.lemonde.fr/international/article/2025/11/19/nicolas-guillou-juge-francais-de-la-cpi-sanctionne-par-les-etats-unis-face-aux-attaques-les-magistrats-de-la-cour-tiendront_6654016_3210.html
La vie de Nicolas Guillou, juge français de la CPI sous sanctions des Etats-Unis : « Vous êtes interdit bancaire sur une bonne partie de la planète »

Have I Been Pwned: Eurofiber Data Breach

https://haveibeenpwned.com/Breach/Eurofiber
Have I Been Pwned: Eurofiber Data Breach

Iran-Linked Hackers Mapped Ship AIS Data Days Before Real-World Missile Strike Attempt

https://thehackernews.com/2025/11/iran-linked-hackers-mapped-ship-ais.html
Iran-Linked Hackers Mapped Ship AIS Data Days Before Real-World Missile Strike Attempt

CVE-2025-58034 | AttackerKB

https://attackerkb.com/topics/zClpINmLCh/cve-2025-58034/rapid7-analysis
CVE-2025-58034 | AttackerKB

The Tsundere botnet uses the Ethereum blockchain to infect its targets | Securelist

https://securelist.com/tsundere-node-js-botnet-uses-ethereum-blockchain/117979/
The Tsundere botnet uses the Ethereum blockchain to infect its targets | Securelist

D-Link warns of new RCE flaws in end-of-life DIR-878 routers

https://www.bleepingcomputer.com/news/security/d-link-warns-of-new-rce-flaws-in-end-of-life-dir-878-routers/
D-Link warns of new RCE flaws in end-of-life DIR-878 routers

Crypto mixer founders sent to prison for laundering over $237 million

https://www.bleepingcomputer.com/news/security/samourai-cryptomixer-founders-sent-to-prison-for-laundering-over-237-million/
Crypto mixer founders sent to prison for laundering over $237 million

Have I Been Pwned: Beckett Collectibles Data Breach

https://haveibeenpwned.com/Breach/Beckett
Have I Been Pwned: Beckett Collectibles Data Breach

Cyber-enabled kinetic targeting: Iran-linked actor uses cyber operations to support physical attacks

https://securityaffairs.com/184862/apt/cyber-enabled-kinetic-targeting-iran-linked-actor-uses-cyber-operations-to-support-physical-attacks.html
Cyber-enabled kinetic targeting: Iran-linked actor uses cyber operations to support physical attacks

Pi GPT Tool Turns Raspberry Pi into a ChatGPT-Powered Smart Device

https://gbhackers.com/pi-gpt-tool-turns-raspberry-pi-into-a-chatgpt-powered-smart-device/
Pi GPT Tool Turns Raspberry Pi into a ChatGPT-Powered Smart Device