Light bulb Limited Spots Available: Secure Your Lifetime Subscription on Gumroad!

Articles & Guides

Showing 15 of 1143 posts · RSS
A Threat Actor Named Euphoric_Reply_5727 Just Posted a 340 Million Record OnlyFans Database for 0.313 BTC (~$76,000) on a Cybercrime Forum—But the Seller Admitted in Private Messages It Was Built by Matching Public OnlyFans Profiles to Records From Old Twitter, Instagram, and Spotify Breaches, Not From a New Hack
Article

A Threat Actor Named Euphoric_Reply_5727 Just Posted a 340 Million Record OnlyFans Database for 0.313 BTC (~$76,000) on a Cybercrime Forum—But the Seller Admitted in Private Messages It Was Built by Matching Public OnlyFans Profiles to Records From Old Twitter, Instagram, and Spotify Breaches, Not From a New Hack

May 29, 2026 · 5 min read

Connecticut Just Passed SB4 By 141-6 in the House and 31-4 in the Senate—Forcing Every Data Broker to Register With the State, Letting You Wipe Your Records From the Whole Industry Through One Free Deletion Request, Banning Surveillance Pricing, and Sending the Bill to Governor Ned Lamont's Desk On May 4
Article

Connecticut Just Passed SB4 By 141-6 in the House and 31-4 in the Senate—Forcing Every Data Broker to Register With the State, Letting You Wipe Your Records From the Whole Industry Through One Free Deletion Request, Banning Surveillance Pricing, and Sending the Bill to Governor Ned Lamont's Desk On May 4

May 29, 2026 · 6 min read

Eleven Civil Society Groups Led By Access Now Just Asked the Ninth Circuit to Keep NSO Group Off WhatsApp Forever—Because the 2025 Permanent Injunction Is the Last Line Between End to End Encryption and the Pegasus Spyware That Already Reached 1,400 Journalists, Activists, and Lawyers Across 20 Countries
Article

Eleven Civil Society Groups Led By Access Now Just Asked the Ninth Circuit to Keep NSO Group Off WhatsApp Forever—Because the 2025 Permanent Injunction Is the Last Line Between End to End Encryption and the Pegasus Spyware That Already Reached 1,400 Journalists, Activists, and Lawyers Across 20 Countries

May 29, 2026 · 6 min read

Hackers Are Hiding Credential Stealers Inside Cat Photo Emails—Fortinet Caught PawsRunner Pulling PureLogs Out of PNG Files Using iTXt and IEND Steganography Markers, And the C2 at 5.101.84.202 Has Been Hitting Inboxes Since May 15
Article

Hackers Are Hiding Credential Stealers Inside Cat Photo Emails—Fortinet Caught PawsRunner Pulling PureLogs Out of PNG Files Using iTXt and IEND Steganography Markers, And the C2 at 5.101.84.202 Has Been Hitting Inboxes Since May 15

May 29, 2026 · 6 min read

SOCRadar Just Exposed Operation HookedWing—a Quiet Four Year Phishing Campaign That Pulled More Than 2,000 Credentials From 500 Organizations in Aviation, Energy, Government, and Finance Across Eight Sectors and Two Languages, Routed Through Two Dozen C2 Servers, Over 100 GitHub Domains, and a Custom Outlook Clone Nobody Has Attributed to a Known Threat Actor
Article

SOCRadar Just Exposed Operation HookedWing—a Quiet Four Year Phishing Campaign That Pulled More Than 2,000 Credentials From 500 Organizations in Aviation, Energy, Government, and Finance Across Eight Sectors and Two Languages, Routed Through Two Dozen C2 Servers, Over 100 GitHub Domains, and a Custom Outlook Clone Nobody Has Attributed to a Known Threat Actor

May 28, 2026 · 8 min read

Gitea Quietly Published a Container Registry That Ignored the 'Private' Flag for Nearly Four Years—Any Anonymous Visitor Could Pull Private Container Images From 31,750 Deployments in Healthcare, Aerospace, Retail, and ISPs Worldwide Before Noscope's Autonomous Pentester Found CVE-2026-27771
Article

Gitea Quietly Published a Container Registry That Ignored the 'Private' Flag for Nearly Four Years—Any Anonymous Visitor Could Pull Private Container Images From 31,750 Deployments in Healthcare, Aerospace, Retail, and ISPs Worldwide Before Noscope's Autonomous Pentester Found CVE-2026-27771

May 28, 2026 · 8 min read

CrowdStrike, Google, and Shadowserver Pulled the Plug on Glassworm at 14:00 UTC on May 26—a Russia Linked Developer Targeting Botnet That Hid Its Command and Control Channels Inside Solana Transaction Memo Fields, Google Calendar Event Titles, BitTorrent DHT Records, and VPS Backups, Poisoned More Than 300 GitHub Repositories, and Trojanized VSCode Extensions on OpenVSX for Over Two Years
Article

CrowdStrike, Google, and Shadowserver Pulled the Plug on Glassworm at 14:00 UTC on May 26—a Russia Linked Developer Targeting Botnet That Hid Its Command and Control Channels Inside Solana Transaction Memo Fields, Google Calendar Event Titles, BitTorrent DHT Records, and VPS Backups, Poisoned More Than 300 GitHub Repositories, and Trojanized VSCode Extensions on OpenVSX for Over Two Years

May 28, 2026 · 9 min read

Microsoft Just Patched Two Defender Zero Days a Researcher Dropped Without Coordination—RedSun (CVE-2026-41091) Escalates a Normal User to SYSTEM, UnDefend (CVE-2026-45498) Quietly Stops Virus Definition Updates So the Antivirus Rots in Place, and CISA Gave Federal Agencies Until June 3 to Fix Both
Article

Microsoft Just Patched Two Defender Zero Days a Researcher Dropped Without Coordination—RedSun (CVE-2026-41091) Escalates a Normal User to SYSTEM, UnDefend (CVE-2026-45498) Quietly Stops Virus Definition Updates So the Antivirus Rots in Place, and CISA Gave Federal Agencies Until June 3 to Fix Both

May 28, 2026 · 8 min read

The FBI Just Warned That a Russia Linked Extortion Crew Is Sending Operatives Into US Law Firm Lobbies When Phishing Fails—Silent Ransom Group Walks In Posing as IT, Plugs a USB Drive Into the First Workstation a Receptionist Will Show Them, and Walks Out With Attorney Client Files Antivirus Never Saw
Article

The FBI Just Warned That a Russia Linked Extortion Crew Is Sending Operatives Into US Law Firm Lobbies When Phishing Fails—Silent Ransom Group Walks In Posing as IT, Plugs a USB Drive Into the First Workstation a Receptionist Will Show Them, and Walks Out With Attorney Client Files Antivirus Never Saw

May 28, 2026 · 8 min read

A Single Phone Call Cost Charter Communications 40 Million Customer Records—ShinyHunters Walked Into the Spectrum Salesforce Through One Vished Microsoft Entra Account on April 1 and Spent Eight Weeks Inside Before Charter Said a Word
Article

A Single Phone Call Cost Charter Communications 40 Million Customer Records—ShinyHunters Walked Into the Spectrum Salesforce Through One Vished Microsoft Entra Account on April 1 and Spent Eight Weeks Inside Before Charter Said a Word

May 28, 2026 · 7 min read

Italy's Garante Published Provision No. 284 on April 17, 2026 Requiring Prior Consent for Email Tracking Pixels That Measure Open Rates—Senders Get Six Months From the April 29 Official Gazette Date to Comply, the Same Month Italy Issued a €12.5M GDPR Fine Against Poste Italiane
Article

Italy's Garante Published Provision No. 284 on April 17, 2026 Requiring Prior Consent for Email Tracking Pixels That Measure Open Rates—Senders Get Six Months From the April 29 Official Gazette Date to Comply, the Same Month Italy Issued a €12.5M GDPR Fine Against Poste Italiane

May 27, 2026 · 8 min read

A Prompt Injection Flaw in Google Gemini for Workspace Lets Attackers Hide Invisible Instructions Inside an Email So That Clicking Summarize This Email Makes Gemini Append a Fake Password Compromised Phishing Warning—With No Visible Text, No Link, and No Attachment for a Spam Filter to Catch, Across Roughly 2 Billion Gmail Users
Article

A Prompt Injection Flaw in Google Gemini for Workspace Lets Attackers Hide Invisible Instructions Inside an Email So That Clicking Summarize This Email Makes Gemini Append a Fake Password Compromised Phishing Warning—With No Visible Text, No Link, and No Attachment for a Spam Filter to Catch, Across Roughly 2 Billion Gmail Users

May 27, 2026 · 6 min read

A New Crypto Phishing Campaign Abuses Google's Own Account Recovery Flow to Send Real System Emails That Pass SPF, DKIM, and DMARC—The Malicious Link Is Buried Below Pages of Blank Space, and Binance Says It Blocked 22.9 Million Scam Attempts in Q1 2026 Alone
Article

A New Crypto Phishing Campaign Abuses Google's Own Account Recovery Flow to Send Real System Emails That Pass SPF, DKIM, and DMARC—The Malicious Link Is Buried Below Pages of Blank Space, and Binance Says It Blocked 22.9 Million Scam Attempts in Q1 2026 Alone

May 27, 2026 · 7 min read

NYC Health + Hospitals, the Largest US Public Health System, Says an Unauthorized Actor Sat Inside Its Network From Late November 2025 to February 2, 2026 and Copied the Personal, Medical, Financial, and Biometric Data—Including Fingerprints and Palm Prints—of at Least 1.8 Million People
Article

NYC Health + Hospitals, the Largest US Public Health System, Says an Unauthorized Actor Sat Inside Its Network From Late November 2025 to February 2, 2026 and Copied the Personal, Medical, Financial, and Biometric Data—Including Fingerprints and Palm Prints—of at Least 1.8 Million People

May 27, 2026 · 6 min read

German Researchers at KIT Identified People With Nearly 100% Accuracy Using Ordinary WiFi—No Phone, No Device, No Password—By Reading How an Unencrypted Stream of Router Feedback Data Bends Around the Human Body, and They Warn Every Router Could Become Invisible Surveillance Infrastructure
Article

German Researchers at KIT Identified People With Nearly 100% Accuracy Using Ordinary WiFi—No Phone, No Device, No Password—By Reading How an Unencrypted Stream of Router Feedback Data Bends Around the Human Body, and They Warn Every Router Could Become Invisible Surveillance Infrastructure

May 27, 2026 · 6 min read