Aggregator
Single sign-on, double trouble: Credential theft using AWS access tokens
Paper-to-Podcast:将学术研究论文转换成播客工具
Running RTL-SDR in your Browser via an HTML5 App
实战分享:构建高效平台型C2的经验总结
PHP已死…个锤子:PHP Docker官方映像拉取量达到10亿里程碑
Gamaredon Deploys Android Spyware "BoneSpy" and "PlainGnome" in Former Soviet States
«Лазерные грузовики» против беспилотников: британская армия разработала оружие будущего
Triad Nexus, Chinese Hackers Using 200,000 Domains For Widespread Cyber Attack
Researchers identified FUNNULL, a Chinese CDN, as hosting malicious content, which includes fake trading apps for financial fraud, gambling sites likely used for money laundering, and phishing login pages targeting luxury brands. The gambling sites use algorithmically generated domains and Tether cryptocurrency, possibly to bypass blocking and facilitate cross-border money flows. FUNNULL acquired polyfill.io, a […]
The post Triad Nexus, Chinese Hackers Using 200,000 Domains For Widespread Cyber Attack appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
15 миллионов блокировок: Telegram представил результаты модерации
Malicious ESLint Package Let Attackers Steal Data And Inject Remote Code
Cybercriminals exploited typosquatting to deploy a malicious npm package, `@typescript_eslinter/eslint`, targeting developers seeking the legitimate TypeScript ESLint plugin, which was designed to mimic the genuine plugin, compromised systems by monitoring keystrokes, clipboard data, and executing remote commands. They leveraged a WebSocket server for real-time control and data exfiltration as the persistence of a secondary malicious […]
The post Malicious ESLint Package Let Attackers Steal Data And Inject Remote Code appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
New Chinese Surveillance Tool Attack Android Users Since 2017
Wuhan Chinasoft Token Information Technology Co., Ltd. developed EagleMsgSpy, a surveillance tool operational since 2017, which, installed as an APK, secretly collects extensive user data, including chat messages, screen recordings, audio, call logs, contacts, SMS, location, and network activity. Because the data is sent to a command-and-control server, there is a possibility that it could […]
The post New Chinese Surveillance Tool Attack Android Users Since 2017 appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.