πHOW APT37 EMPLOYED ROKRAT SHELLCODE AND STEGANOGRAPHIC TECHNIQUE βΉοΈ Researchers have identified a new variant of RoKRAT, the malware associated with North Koreaβs APT37 group. This version employs two-stage encrypted shellcode execution and steganography to conceal malicious code inside image files, enabling evasion from traditional detection methods. π INFECTION VECTOR β The intrusion begins with…
All posts by John Doe
August 10, 2025 at 11:15AM
β β β β‘β‘ Big Brother is watching: Wi-Fi signals can track you in your home It could open the door to mass surveillance. https://theweek.com/tech/wifi-signals-now-tracking-users-at-home
August 10, 2025 at 11:15AM
β β β β β π± New Linux Kernel Vulnerability Directly Exploited from Chrome Renderer Sandbox Via Rare Linux Socket Feature. New Linux Kernel Vulnerability Directly Exploited from Chrome Renderer Sandbox Via Rare Linux Socket Feature
August 9, 2025 at 03:35PM
β β β β β WinRAR zero-day exploited to plant malware on archive extraction. www.bleepingcomputer.com/news/security/winrar-zero-day-flaw-exploited-by-romcom-hackers-in-phishing-attacks/
August 8, 2025 at 11:49PM
β β β β β‘ A non native arrested for driving smishing SMS blasters around Vietnam π»π³ Risk, Fraud & Security The fake base stations sent messages claiming recipients had to pay a traffic fine. Foreign National Arrested for Driving Smishing SMS Blasters around Vietnam
August 8, 2025 at 11:35PM
PHRACK – 72 72nd Edition of Phrack has been released in limited capacity. Full release in a few days. https://phrack.org/
August 8, 2025 at 07:42PM
β β β‘β‘β‘ ‘The best solution is to murder him in his sleep’: AI models can send subliminal messages that teach other AIs to be ‘evil,’ study claims. https://www.livescience.com/technology/artificial-intelligence/the-best-solution-is-to-murder-him-in-his-sleep-ai-models-can-send-subliminal-messages-that-teach-other-ais-to-be-evil-study-claims
August 8, 2025 at 07:36PM
β β β‘β‘β‘ Microsoft Bounty Program year in review: $17 million in rewards. This is in 12 month’s time. https://msrc.microsoft.com/blog/2025/08/microsoft-bounty-program-year-in-review-17-million-in-rewards/
August 8, 2025 at 06:45PM
β β‘β‘β‘β‘ The CVE Scoring Trap β Why βCriticalβ Doesnβt Always Mean Critical A recent analysis shows CVSS ratings often exaggerate real risk: π 33,000+ CVEs in 2024 β only ~12% of βcriticalβ ones truly critical in practice. π Review of 140 major CVEs β 88% of βCriticalβ & 57% of βHighβ labels misleading. β οΈ Example:…
August 8, 2025 at 06:23PM
β β β β‘β‘ SonicWall: Attackers did not exploit zero-day vulnerability to compromise Gen 7 firewalls. SonicWall: Attackers did not exploit zero-day vulnerability to compromise Gen 7 firewalls
