https://next.ink/brief_article/le-logiciel-espion-utilise-par-le-renseignement-russe-avait-bien-ete-developpe-pour-la-nsa/
#spyware #zeroday
Embedded device #hacking 101 💚
#Exploiting #0days in abandoned #hardware by @trailofbits
https://blog.trailofbits.com/2025/07/25/exploiting-zero-days-in-abandoned-hardware/
We successfully exploited two discontinued network devices at DistrictCon’s inaugural Junkyard competition in February, winning runner-up for Most Innovative Exploitation Technique. Our exploit chains demonstrate why end-of-life hardware poses persistent security risks.
UNC3886 Hackers Exploiting 0-Days in VMware vCenter/ESXi, Fortinet FortiOS, and Junos OS
https://cybersecuritynews.com/unc3886-hackers-exploiting-0-days/
#Infosec #Security #Cybersecurity #CeptBiro #UNC3886 #0Days #VMware #vCenter #ESXi #Fortinet #FortiOS #JunosOS
Singapore’s critical infrastructure is under siege from UNC3886, a sophisticated China-linked advanced persistent threat (APT) group. As of July 2025, the group has been actively targeting essential services like energy, water, telecommunications, and government systems, prompting urgent warnings from officials. This isn’t just another hack, it’s a calculated assault exploiting zero-day vulnerabilities in widely used […]
💡 Microsoft SharePoint sotto attacco: vulnerabilità zero-day e patch d’emergenza
https://gomoot.com/microsoft-sharepoint-sotto-attacco-vulnerabilita-zero-day-e-patch-demergenza
#0days #blog #bug #hacker #microsoft #news #picks #pwn2own #sharepoint #sicurezza #tech #tecnologia #toolshell
Patch d'emergenza Microsoft per SharePoint on-premise: vulnerabilità ToolShell consente accessi remoti, colpite agenzie governative, università e aziende.
TL;DR - Zero days are becoming more difficult. China has a more nimble supply chain and a training system. The US relies on a more rigid acquisition chain.
#cybersecurity #offense #redteam #0days
https://www.atlanticcouncil.org/in-depth-research-reports/report/crash-exploit-and-burn/#analysis
TOMORROW (4/8) at 6:30 PM EST, legendary @defcon speaker @RenderMan will be talking about his #intetnrtofdongs project finding #vuln #0days & #infosec research into smart sex toys for #DESCI NYC!
RSVP Here: https://lu.ma/descinyc32