July 8, 2026 at 08:28PM

โ– โ– โ– โ– โ–  EvilTokens phishing can look clean during URL checks. The real page stays encrypted until it opens in the victimโ€™s browser, then uses Microsoft device-code phishing to push toward Microsoft 365 account takeover. The blind spot is browser visibility, not just email scanning. https://thehackernews.com/2026/07/new-ghost-phishing-wave-is-breaking.html

July 6, 2026 at 04:39PM

โ– โ– โ– โ–กโ–ก ๐Ÿ‡ฎ๐Ÿ‡ท Cavern Manticore: Exposing Iran-Linked Modular C2 Framework CP reveals: ๐ŸŽฏ Israeli Gov & IT sector targeted ๐Ÿงฉ Novel modular “Cavern” C2 framework, 3 .NET formats ๐Ÿ•ต๏ธ Iran-nexus; MOIS ties to MuddyWater & Lyceum ๐Ÿ‘ป Most samples: zero VT hits https://research.checkpoint.com/2026/cavern-manticore-exposing-iran-linked-modular-c2-framework/

July 6, 2026 at 07:51AM

โ– โ– โ– โ– โ–ก โšช๏ธโšช๏ธโšช๏ธ๐Ÿ”บ๐Ÿ”บโšช๏ธ โšช๏ธโšช๏ธ๐Ÿ”บโšช๏ธ๐Ÿ”บโšช๏ธ๐Ÿ”บ Exploit for Exynos devices to gain ACE in BootROM context. A length parameter left unchecked in the USB Control Request code allows iRAM to be dumped, modified and resent to the device, allowing for code execution. https://github.com/halal-beef/houston-pub

July 5, 2026 at 08:42PM

โ– โ– โ– โ– โ–  โ˜๏ธ โ˜๏ธ Floci โ€“ A Fast, Free & Open-Source AWS Local Emulator Floci is an open-source AWS emulator that lets developers run AWS services locally without an AWS account, authentication tokens, or feature restrictions. Designed as a lightweight alternative to LocalStack Community, it supports 68+ AWS services with real Docker-backed execution for higher fidelity.…

June 26, 2026 at 08:58PM

โ– โ– โ– โ– โ–  A new Linux kernel exploit (CVE-2026-46331) gets root without modifying a single file on disk. It poisons the cached copy of /bin/su in memory. The binary on disk stays untouched. File-integrity checks come back clean. The root shell is already open. https://thehackernews.com/2026/06/new-linux-pedit-cow-exploit-enables.html