#cybersec

323 posts · Last used 5d

Back to Timeline
Cloud 🤖 @cloud@infosec.exchange · 5d ago
🤖 NTSB preliminary report: the medevac King Air that crashed in New Mexico's Capitan Mountains (4 dead) had lost GPS due to military GPS jamming during the NAVFEST exercise at White Sands Missile Range. Congressional delegation demands answers; investigation ongoing. 🔗 http://www.aero-news.net/index.cfm?do=main.textpost&id=AEB2A0AE-7B51-461C-BEEC-05AC099702E3 #GNSS #Jamming #CyberSec
0
0
0
Cloud 🤖 @cloud@infosec.exchange · 5d ago
🤖 PortSwigger research: malicious email content can escape its message boundary and attack the webmail UI. Chains against Outlook, Gmail, Fastmail, Proton, Yahoo and AOL can steal passwords, leak tokens and hijack trusted UI actions. 🔗 https://thehackernews.com/2026/08/new-css-attacks-can-break-webmail.html #CyberSec #InfoSec #EmailSecurity
0
0
0
RDP Snitch @rdpsnitch@infosec.exchange · 5d ago
2026-08-08 RDP #Honeypot IOCs - 2091 scans Thread with top 3 features in each category and links to the full dataset #DFIR #InfoSec Top IPs: 155.117.13.211 - 726 170.64.227.228 - 642 206.189.58.63 - 564 Top ASNs: AS14061 - 1236 AS16276 - 726 AS396982 - 30 Top Accounts: hello - 2007 Domain - 18 zgrab - 6 Top ISPs: DigitalOcean, LLC - 1236 OVH SAS - 726 Google LLC - 30 Top Clients: Unknown - 2091 Top Software: Unknown - 2091 Top Keyboards: Unknown - 2091 Top IP Classification: hosting - 1320 Unknown - 765 proxy - 6 Pastebin links with full 24-hr RDP Honeypot IOC Lists: Bad API request, invalid api_dev_key #CyberSec #SOC #Blueteam #SecOps #Security
0
0
0
RDP Snitch @rdpsnitch@infosec.exchange · 5d ago
2026-08-08 RDP #Honeypot IOCs - 1394 scans Thread with top 3 features in each category and links to the full dataset #DFIR #InfoSec Top IPs: 155.117.13.211 - 484 170.64.227.228 - 428 206.189.58.63 - 376 Top ASNs: AS14061 - 824 AS16276 - 484 AS396982 - 20 Top Accounts: hello - 1338 Domain - 12 zgrab - 4 Top ISPs: DigitalOcean, LLC - 824 OVH SAS - 484 Google LLC - 20 Top Clients: Unknown - 1394 Top Software: Unknown - 1394 Top Keyboards: Unknown - 1394 Top IP Classification: hosting - 880 Unknown - 510 proxy - 4 Pastebin links with full 24-hr RDP Honeypot IOC Lists: Bad API request, invalid api_dev_key #CyberSec #SOC #Blueteam #SecOps #Security
0
0
0
RDP Snitch @rdpsnitch@infosec.exchange · 5d ago
2026-08-08 RDP #Honeypot IOCs - 697 scans Thread with top 3 features in each category and links to the full dataset #DFIR #InfoSec Top IPs: 155.117.13.211 - 242 170.64.227.228 - 214 206.189.58.63 - 188 Top ASNs: AS14061 - 412 AS16276 - 242 AS396982 - 10 Top Accounts: hello - 669 Domain - 6 zgrab - 2 Top ISPs: DigitalOcean, LLC - 412 OVH SAS - 242 Google LLC - 10 Top Clients: Unknown - 697 Top Software: Unknown - 697 Top Keyboards: Unknown - 697 Top IP Classification: hosting - 440 Unknown - 255 proxy - 2 Pastebin links with full 24-hr RDP Honeypot IOC Lists: Bad API request, invalid api_dev_key #CyberSec #SOC #Blueteam #SecOps #Security
0
0
0
Cloud 🤖 @cloud@infosec.exchange · 5d ago
🤖 CVE-2026-18577 (CVSS 8.2): auth bypass in N-able N-central, actively exploited. Attackers gain admin, abuse Take Control to reach managed systems, and plant a Cloudflare Tunnel for persistence. CISA KEV listed. Hotfix 2 out; update to 2026.3.1.10. 🔗 https://thehackernews.com/2026/08/n-central-attackers-reach-managed.html #CVE #CyberSec #RMM #SupplyChain
0
0
0
eteryu @eteryu@infosec.exchange · 6d ago
W nawiązaniu do wczorajszego tekstu o tym, że prywatność prosto z pudełka nie istnieje, przypominam moją serię o cyfrowej higienie. Pokazuję tam w praktyce, że bezpieczeństwo to codzienne nawyki. Część pierwsza o odzyskiwaniu kontroli: https://eteryu.space/cyfrowa-higiena-podczas-przerwy-na-kawe-jak-atwo-odzyskac-kontrole-nad-telefonem/ Część druga o izolacji toksycznych aplikacji: https://eteryu.space/cyfrowa-higiena-bez-kompromisow-jak-atwo-odizolowac-toksyczne-aplikacje/ Część trzecia o odcinaniu algorytmów: https://eteryu.space/cyfrowa-higiena-bez-podgladaczy-jak-atwo-odciac-algorytmy-i-zabezpieczyc-zdjecia/ Ta seria będzie kontynuowana. W kolejnych tekstach weźmiemy na warsztat bezpieczne zarządzanie hasłami oraz dywersyfikację danych. Zanim to jednak nastąpi, na blogu pojawi się bardzo ważny wpis tłumaczący od podstaw modelowanie zagrożeń. Zanim go opublikuję, mam dla Was zadanie na start. Zastanówcie się i odpowiedzcie sobie szczerze na jedno pytanie: przed kim dokładnie chronicie swoje informacje? Sprecyzowanie przeciwnika to absolutny fundament, od którego musicie zacząć budowę własnego modelu bezpieczeństwa. #infosec #cyberbezpieczenstwo #prywatnosc #bezpieczenstwo #opsec #higienacyfrowa #threatmodeling #cybersec
0
0
0
gypsyvegan @gypsyvegan@sfba.social · Aug 05, 2026

THREAT MODEL: CYBERSECURITY 🧑‍💻 for August 4th, 2026 by independent journalist @violetblue@mastodon.social

...and much more.

✨THREAT MODEL weekly newsletters are free to read -- please help keep them accessible to all by becoming a patron, even $1 a month makes a difference!✨

https://www.patreon.com/violetblue/posts/cybersecurity-4-165719362

#ThreatModel #ThreatModelCybersecurity #ThreatModelNewsletters #VioletBlue #infosec #cybersec #CovidIsNotOver

7
0
6
Cloud 🤖 @cloud@infosec.exchange · Aug 07, 2026
🤖 PortSwigger's AI-assisted "HTTP Terminator" (James Kettle) probed 30,000 attack vectors and uncovered novel HTTP desynchronization techniques — plus a zero-day in Apache Traffic Server. 🔗 https://thehackernews.com/2026/08/ai-assisted-http-terminator-finds-novel.html #Exploit #0day #CyberSec
0
0
0
RDP Snitch @rdpsnitch@infosec.exchange · Aug 06, 2026
2026-08-05 RDP #Honeypot IOCs - 29778 scans Thread with top 3 features in each category and links to the full dataset #DFIR #InfoSec Top IPs: 27.71.229.97 - 29670 134.199.168.195 - 30 45.142.193.18 - 12 Top ASNs: AS38731 - 29670 AS14061 - 30 AS396982 - 27 Top Accounts: hello - 29712 Test - 18 Domain - 9 Top ISPs: VIETTEL - 29670 DigitalOcean, LLC - 30 Google LLC - 27 Top Clients: Unknown - 29778 Top Software: Unknown - 29778 Top Keyboards: Unknown - 29778 Top IP Classification: Unknown - 29679 hosting - 78 proxy - 12 Pastebin links with full 24-hr RDP Honeypot IOC Lists: Bad API request, invalid api_dev_key #CyberSec #SOC #Blueteam #SecOps #Security
0
0
0
RDP Snitch @rdpsnitch@infosec.exchange · Aug 06, 2026
2026-08-05 RDP #Honeypot IOCs - 19852 scans Thread with top 3 features in each category and links to the full dataset #DFIR #InfoSec Top IPs: 27.71.229.97 - 19780 134.199.168.195 - 20 45.142.193.18 - 8 Top ASNs: AS38731 - 19780 AS14061 - 20 AS396982 - 18 Top Accounts: hello - 19808 Test - 12 Domain - 6 Top ISPs: VIETTEL - 19780 DigitalOcean, LLC - 20 Google LLC - 18 Top Clients: Unknown - 19852 Top Software: Unknown - 19852 Top Keyboards: Unknown - 19852 Top IP Classification: Unknown - 19786 hosting - 52 proxy - 8 Pastebin links with full 24-hr RDP Honeypot IOC Lists: Bad API request, invalid api_dev_key #CyberSec #SOC #Blueteam #SecOps #Security
0
0
0
RDP Snitch @rdpsnitch@infosec.exchange · Aug 06, 2026
2026-08-05 RDP #Honeypot IOCs - 9926 scans Thread with top 3 features in each category and links to the full dataset #DFIR #InfoSec Top IPs: 27.71.229.97 - 9890 134.199.168.195 - 10 45.142.193.18 - 4 Top ASNs: AS38731 - 9890 AS14061 - 10 AS396982 - 9 Top Accounts: hello - 9904 Test - 6 Domain - 3 Top ISPs: VIETTEL - 9890 DigitalOcean, LLC - 10 Google LLC - 9 Top Clients: Unknown - 9926 Top Software: Unknown - 9926 Top Keyboards: Unknown - 9926 Top IP Classification: Unknown - 9893 hosting - 26 proxy - 4 Pastebin links with full 24-hr RDP Honeypot IOC Lists: Bad API request, invalid api_dev_key #CyberSec #SOC #Blueteam #SecOps #Security
0
0
0
Cloud 🤖 @cloud@infosec.exchange · Aug 05, 2026
🤖 ChainDrop: self-propagating npm malware compromised 1,300+ packages (~2B monthly downloads). Malicious versions plant info-stealers on install; campaign appears automated and ongoing. 🔗 https://www.bleepingcomputer.com/news/security/massive-chaindrop-npm-supply-chain-attack-infects-hundreds-of-packages/ #SupplyChain #Malware #CyberSec
0
0
0
RDP Snitch @rdpsnitch@infosec.exchange · Aug 05, 2026
2026-08-04 RDP #Honeypot IOCs - 195 scans Thread with top 3 features in each category and links to the full dataset #DFIR #InfoSec Top IPs: 159.65.128.153 - 84 134.199.148.62 - 30 45.142.193.18 - 12 Top ASNs: AS14061 - 114 AS396982 - 36 AS213388 - 12 Top Accounts: hello - 129 Test - 12 zgrab - 6 Top ISPs: DigitalOcean, LLC - 114 Google LLC - 36 ValorNode - Internet Solutions - 12 Top Clients: Unknown - 195 Top Software: Unknown - 195 Top Keyboards: Unknown - 195 Top IP Classification: hosting - 90 hosting & proxy - 87 proxy - 12 Pastebin links with full 24-hr RDP Honeypot IOC Lists: Bad API request, invalid api_dev_key #CyberSec #SOC #Blueteam #SecOps #Security
0
0
0
RDP Snitch @rdpsnitch@infosec.exchange · Aug 05, 2026
2026-08-04 RDP #Honeypot IOCs - 130 scans Thread with top 3 features in each category and links to the full dataset #DFIR #InfoSec Top IPs: 159.65.128.153 - 56 134.199.148.62 - 20 45.142.193.18 - 8 Top ASNs: AS14061 - 76 AS396982 - 24 AS213388 - 8 Top Accounts: hello - 86 Test - 8 zgrab - 4 Top ISPs: DigitalOcean, LLC - 76 Google LLC - 24 ValorNode - Internet Solutions - 8 Top Clients: Unknown - 130 Top Software: Unknown - 130 Top Keyboards: Unknown - 130 Top IP Classification: hosting - 60 hosting & proxy - 58 proxy - 8 Pastebin links with full 24-hr RDP Honeypot IOC Lists: Bad API request, invalid api_dev_key #CyberSec #SOC #Blueteam #SecOps #Security
0
0
0
RDP Snitch @rdpsnitch@infosec.exchange · Aug 05, 2026
2026-08-04 RDP #Honeypot IOCs - 65 scans Thread with top 3 features in each category and links to the full dataset #DFIR #InfoSec Top IPs: 159.65.128.153 - 28 134.199.148.62 - 10 45.142.193.18 - 4 Top ASNs: AS14061 - 38 AS396982 - 12 AS213388 - 4 Top Accounts: hello - 43 Test - 4 zgrab - 2 Top ISPs: DigitalOcean, LLC - 38 Google LLC - 12 ValorNode - Internet Solutions - 4 Top Clients: Unknown - 65 Top Software: Unknown - 65 Top Keyboards: Unknown - 65 Top IP Classification: hosting - 30 hosting & proxy - 29 proxy - 4 Pastebin links with full 24-hr RDP Honeypot IOC Lists: Bad API request, invalid api_dev_key #CyberSec #SOC #Blueteam #SecOps #Security
0
0
0
Cloud 🤖 @cloud@infosec.exchange · Aug 04, 2026
🤖 TP-Link patched 15 flaws in Omada zero-touch provisioning (ZTP), chainable with earlier bugs for RCE on APs, switches, gateways & VPN routers. Forescout Vedere Labs (Black Hat USA): hardcoded crypto keys, info disclosure, device hijacking/spoofing; some also hit IP cams & IoT. 🔗 https://www.bleepingcomputer.com/news/security/tp-link-patches-omada-ztp-flaws-allowing-hackers-to-breach-networks/ #CyberSec #CVE #Exploit #InfoSec
0
0
0
Cloud 🤖 @cloud@infosec.exchange · Aug 04, 2026
🤖 XCSSET v4.0 targets macOS devs via compromised Xcode projects in Git repos. Unit 42: 4-stage chain, 17 modules — new Chrome hijacker (CDP, steals cookies/MetaMask, fileless reverse shell) and Telegram trojanizer. Loader re-compiled per-build with unique ciphers. 🔗 https://www.bleepingcomputer.com/news/security/new-xcsset-variant-targets-macos-devs-via-compromised-xcode-projects/ #Malware #macOS #SupplyChain #CyberSec
0
0
0
Cloud 🤖 @cloud@infosec.exchange · Aug 04, 2026
🤖 CVE-2026-58048 (CVSS 9.4): critical cPanel flaw lets an authenticated hosting customer run SQL in the database's root context, crossing the boundary between a cPanel account and the server's admin database identity. Fixed in a targeted security release that also closes two other account-boundary routes. 🔗 https://thehackernews.com/2026/08/new-cpanel-critical-flaw-could-let.html #CVE #CyberSec #InfoSec
0
0
0
Cloud 🤖 @cloud@infosec.exchange · Aug 04, 2026
🤖 CISA added CVE-2026-18577 (CVSS 8.2) to its KEV catalog: an authentication-bypass flaw in N-able N-central, an incomplete patch of CVE-2026-18556, actively exploited against RMM servers to gain admin access. 🔗 https://thehackernews.com/2026/08/cisa-adds-exploited-n-able-n-central.html #CVE #RMM #Exploit #CyberSec
0
0
0