June 12, 2025 at 07:08PM

■■■□□ Forensic analysis confirms ✅ two more European journalists targeted with Paragon’s Graphite spyware. Graphite Caught: First Forensic Confirmation of Paragon’s iOS Mercenary Spyware Finds Journalists Targeted

June 12, 2025 at 05:17PM

■■■■■ ⚠️ Zero-click AI exploit in Microsoft 365 Copilot (CVE-2025-32711, CVSS 9.3) lets attackers steal sensitive data silently via email—no user interaction needed. Details ↓ https://thehackernews.com/2025/06/zero-click-ai-vulnerability-exposes.html

June 12, 2025 at 05:16PM

■■■■□ From trust to threat. Cybercriminals hijack expired Discord invites, quietly redirecting users to malicious servers. Social engineering and multi-stage loaders with evasion techniques enable stealthy delivery of malware bundles (RATs & stealers) bypassing AV detection. https://research.checkpoint.com/2025/from-trust-to-threat-hijacked-discord-invites-used-for-multi-stage-malware-delivery/

June 11, 2025 at 11:43PM

■■■■□ United States 🇺🇸 CISA, Microsoft warn of Windows zero-day used in attack on ‘major’ Turkish defense org. therecord.media/microsoft-cisa-zero-day-turkish-defense-org CISA list of exploited bugs in the Wild. https://www.cisa.gov/news-events/alerts/2025/06/10/cisa-adds-two-known-exploited-vulnerabilities-catalog

June 11, 2025 at 09:26PM

■■■□□ Fortinet OS Command Injection Vulnerability Lets Attackers Execute Unauthorised Code on FortiAnalyzer-Cloud. Fortinet OS Command Injection Vulnerability Lets Attackers Execute Unauthorised Code on FortiAnalyzer-Cloud

June 11, 2025 at 09:19PM

■■■■□ Malwoverview is a first response tool used for threat hunting and offers intel information from Virus Total, Hybrid Analysis, URLHaus, Polyswarm, Malshare, Alien Vault, Malpedia, Malware Bazaar, ThreatFox, Triage, InQuest, VxExchange and IPInfo, and it is also able to scan Android devices against VT. https://github.com/alexandreborges/malwoverview