Aggregator
企业微信 - 白日梦之获取登录二维码
Microsoft’s July Patch Tuesday: 137 Fixes & a Publicly Disclosed SQL Server Zero-Day
On the second Tuesday of July, Microsoft released its customary Patch Tuesday update package, addressing 137 vulnerabilities across a range of the company’s products. Among them, a particularly notable zero-day vulnerability in Microsoft SQL...
The post Microsoft’s July Patch Tuesday: 137 Fixes & a Publicly Disclosed SQL Server Zero-Day appeared first on Penetration Testing Tools.
Android Privacy Alert: Google Gemini Now Accesses Your WhatsApp, Messages & Calls
As of July 7, Android users began encountering an unexpected expansion in the capabilities of Gemini, the system-integrated artificial intelligence. It now has access to widely used apps such as WhatsApp, Messages, and Phone—even...
The post Android Privacy Alert: Google Gemini Now Accesses Your WhatsApp, Messages & Calls appeared first on Penetration Testing Tools.
Fix the Click: Preventing the ClickFix Attack Vector
Iranian Ransomware Group Pay2Key.I2P Escalates Attacks on US & Israel
According to a report by Morphisec, the Iranian threat group Pay2Key.I2P has intensified its operations amid escalating tensions in the Middle East. The group is now offering larger payouts to hacker affiliates who participate...
The post Iranian Ransomware Group Pay2Key.I2P Escalates Attacks on US & Israel appeared first on Penetration Testing Tools.
OTP offline brute-force with burpsuite
July Patch Tuesday offers 127 fixes
BaitTrap Exposed: 17,000+ Fake News Sites Fueling Global Investment Scams
BaitTrap is a large-scale campaign designed to deceive users through counterfeit news websites, spanning over 50 countries and fueling a surge in online investment fraud. Identified by CTM360, these deceptive domains—referred to as BNS...
The post BaitTrap Exposed: 17,000+ Fake News Sites Fueling Global Investment Scams appeared first on Penetration Testing Tools.
More From Our Main Blog: macOS.ZuRu Resurfaces | Modified Khepri C2 Hides Inside Doctored Termius App
ZuRu malware continues to prey on macOS users seeking legitimate business tools, adapting its loader and C2 techniques to backdoor its targets.
The post macOS.ZuRu Resurfaces | Modified Khepri C2 Hides Inside Doctored Termius App appeared first on SentinelOne.
macOS.ZuRu Resurfaces | Modified Khepri C2 Hides Inside Doctored Termius App
Wayland 1.24 Released: Enhancing Linux Graphics & Compatibility
After 13 months of development, the stable release of Wayland 1.24 has been officially published—a protocol for interprocess communication and a suite of libraries powering modern graphical environments in Linux. This new version maintains...
The post Wayland 1.24 Released: Enhancing Linux Graphics & Compatibility appeared first on Penetration Testing Tools.
Warning: Anatsa Banking Trojan Hits 90,000 Android Users Via Google Play
Malicious software has once again surfaced on the official Google Play Store, masquerading as an innocuous utility. This time, the campaign targeted North America, where the Android banking trojan known as Anatsa—also referred to...
The post Warning: Anatsa Banking Trojan Hits 90,000 Android Users Via Google Play appeared first on Penetration Testing Tools.