■■■■□ Shai Hulud v2 Exploits GitHub Actions Workflows as Attack Vector to Steal Secrets. Shai Hulud v2 Exploits GitHub Actions Workflows as Attack Vector to Steal Secrets
All posts by John Doe
November 29, 2025 at 10:16PM
■■■□□ Intel suggests Israeli state sponsored threat actors are running free VPN apps to access data of people. As per a source; the primary target is Iran.
November 29, 2025 at 10:04PM
■■■■■ The minefield between syntaxes: exploiting syntax confusions in the wild https://www.yeswehack.com/learn-bug-bounty/syntax-confusion-ambiguous-parsing-exploits
November 29, 2025 at 10:02PM
■■■■□ Thread actor “Sylhet Gang-SG” has targeted Moroccan Airlines website on their latest attack. https://check-host.net/check-report/336a069cka52
November 29, 2025 at 09:58PM
■■□□□ Google Says Some VPN Apps Are Actually Dangerous Malware. https://www.gizchina.com/google-2/google-says-some-vpn-apps-are-actually-dangerous-malware
November 29, 2025 at 09:57PM
■■■■□ Cyber-Attack by Iranian state sponsored hacker group. The Hendala group announces that it sent flowers to an Israeli scientist, after gaining access to a system allegedly related to the Soreq nuclear center. It is likely that the flower delivery was carried out by a local collaborator, who placed the bouquet inside the scientist’s car…
November 29, 2025 at 05:41PM
■■■■□ Dead Man’s Switch – Widespread npm Supply Chain Attack Driving Malware Attacks. Dead Man’s Switch – Widespread npm Supply Chain Attack Driving Malware Attacks
November 29, 2025 at 05:27PM
Inside 💭💭💭💭 Origins, Motives, and Methods of a Rapidly Expanding Hacktivist Collective. ckure.org/archives/18075
November 29, 2025 at 03:01PM
■■■□□ New Unauthenticated DoS Vulnerability Crashes Next.js Servers with a Single Request. New Unauthenticated DoS Vulnerability Crashes Next.js Servers with a Single Request
November 28, 2025 at 09:32PM
🔄Tomiris wreaks Havoc: New tools and techniques of the APT group. Tomiris wreaks Havoc: New tools and techniques of the APT group
