Google Project Zero
https://projectzero.google/
IP.THC.ORG - Reverse-DNS, Subdomain and CNAME Lookups
https://ip.thc.org
Google Project Zero
http://projectzero.google
A new campaign by the ForumTroll APT group | Securelist
https://securelist.com/operation-forumtroll-new-targeted-campaign/118492/
The APT35 Dump Episode 4: Leaking The Backstage Pass To An Iranian Intelligence Operation - DomainTools Investigations | DTI
https://dti.domaintools.com/the-apt35-dump-episode-4-leaking-the-backstage-pass-to-an-iranian-intelligence-operation/
New GhostPoster Attack Leverages PNG Icon to Infect 50,000 Firefox Users
https://cybersecuritynews.com/new-ghostposter-attack-leverages-png-icon/
Linux Kernel Rust Code Sees Its First CVE Vulnerability - Phoronix
https://www.phoronix.com/news/First-Linux-Rust-CVE
GuardDuty Extended Threat Detection uncovers cryptomining campaign on Amazon EC2 and Amazon ECS | AWS Security Blog
https://aws.amazon.com/blogs/security/cryptomining-campaign-targeting-amazon-ec2-and-amazon-ecs/
Critical React2Shell flaw exploited in ransomware attacks
https://www.bleepingcomputer.com/news/security/critical-react2shell-flaw-exploited-in-ransomware-attacks/
GachiLoader: Defeating Node.js Malware with API Tracing GachiLoader: Defeating Node.js Malware
https://research.checkpoint.com/2025/gachiloader-node-js-malware-with-api-tracing/
Amazon: Ongoing cryptomining campaign uses hacked AWS accounts
https://www.bleepingcomputer.com/news/security/amazon-ongoing-cryptomining-campaign-uses-hacked-aws-accounts/
Amazon disrupts Russian GRU hackers attacking edge network devices
https://www.bleepingcomputer.com/news/security/amazon-disrupts-russian-gru-hackers-attacking-edge-network-devices/
Sonicwall warns of new SMA1000 zero-day exploited in attacks
https://www.bleepingcomputer.com/news/security/sonicwall-warns-of-new-sma1000-zero-day-exploited-in-attacks/
Yep, Passkeys Still Have Problems
https://fy.blackhats.net.au/blog/2025-12-17-yep-passkeys-still-have-problems/
Uncovering CVE-2025-64669 in Windows Admin Center
https://cymulate.com/blog/cve-2025-64669-windows-admin-center/
Adobe DNG SDK: Linearize uses full image on trimmed source image, leading to out-of-bounds read [452483592] - Project Zero
https://project-zero.issues.chromium.org/issues/452483592
WhatsApp device linking abused in account hijacking attacks
https://www.bleepingcomputer.com/news/security/whatsapp-device-linking-abused-in-account-hijacking-attacks/
GhostPoster Malware Found in 17 Firefox Add-ons with 50,000+ Downloads
https://thehackernews.com/2025/12/ghostposter-malware-found-in-17-firefox.html
Cisco warns of unpatched AsyncOS zero-day exploited in attacks
https://www.bleepingcomputer.com/news/security/cisco-warns-of-unpatched-asyncos-zero-day-exploited-in-attacks/