àž£àž§àž¡àžà¹àž²àž§àžàž²àžà¹àž§àž SecurityOnline
#àž£àž§àž¡àžà¹àž²àž§IT #20251201 #securityonline
GeoServer àžàžàžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àž XXE (CVE-2025-58360)
à¹àž£àž·à¹àžàžàžàžµà¹à¹àžà¹àžàžàž²àž£à¹àžàž·àžàžàžàž£àž±à¹àžà¹àž«àžà¹àžªàž³àž«àž£àž±àžàžàž¹à¹àžàž¹à¹àž¥àž£àž°àžàžàžàžµà¹à¹àžà¹ GeoServer àžàž¶à¹àžà¹àžà¹àžàžàžàžàžà¹à¹àž§àž£à¹à¹àžà¹àžà¹àžàžàžàž£à¹àžªàžà¹àž²àžàžà¹àžàž¡àž¹àž¥àž àž¹àž¡àžŽàžªàž²àž£àžªàžà¹àžàžš àžà¹àžàžà¹àž«àž§à¹àžàžµà¹àžàž¢àž¹à¹à¹àžàžàž±àžàžà¹àžàž±àž Web Map Service (WMS) àžàžµà¹à¹àžàžŽàžà¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžªàž²àž¡àž²àž£àžàžªà¹àžàžàž³àžªàž±à¹àž XML àžàžµà¹à¹àž¡à¹àžàž¹àžàžàž£àžàžàžàž¢à¹àž²àžà¹àž«àž¡àž²àž°àžªàž¡ àžàž¥àžàž·àžàžªàž²àž¡àž²àž£àžàžàž¶àžà¹àžàž¥à¹àž¥àž±àžàžàž²àžà¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹ àžàž³àžàž²àž£ SSRF à¹àžàž·à¹àžà¹àžàž²àž°àž£àž°àžàžàž àž²àž¢à¹àž àž«àž£àž·àžà¹àž¡à¹à¹àžà¹àžàž³à¹àž«à¹à¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹àž¥à¹àž¡à¹àžà¹àžàž±àžàžàžµ àžàž¹à¹à¹àžàžµà¹àž¢àž§àžàž²àžà¹àžàž°àžàž³à¹àž«à¹àž£àžµàžàžàž±àžà¹àžàžà¹àžàž¢àž±àžà¹àž§àžàž£à¹àžàž±àžàž¥à¹àž²àžªàžžàžà¹àžàž·à¹àžàžàžŽàžàžà¹àžàžà¹àž«àž§à¹ à¹àž¡à¹à¹àžà¹àžàžàž±à¹àžàž£àž°àžàžàžàžµà¹à¹àžàžµà¹àž¢àž§àžà¹àžàžàžàž±àžàžà¹àžàž¡àž¹àž¥à¹àžàžàžàžµà¹àžàž²àžàžàž¹àžà¹àžàž²àž°à¹àžà¹àžà¹àž²àž¢
https://securityonline.info/high-severity-geoserver-flaw-cve-2025-58360-allows-unauthenticated-xxe-for-file-theft-and-ssrf
TAG-150 àžàž¹à¹à¹àž«à¹àžàž£àžŽàžàž²àž£ Malware-as-a-Service àž£àž²àž¢à¹àž«àž¡à¹ à¹àžà¹ ClickFix àž«àž¥àžàžà¹àž«àž¢àž·à¹àž
àžàž¥àžžà¹àž¡àžàž²àžàžàž²àžàž£àž£àž¡à¹àžà¹àžàžàž£à¹àž«àžà¹àž²à¹àž«àž¡à¹àžàž·à¹àž TAG-150 à¹àžàž¥à¹àžàž¶à¹àžàž¡àž²à¹àžàžàžµ 2025 à¹àž¥àž°àžªàž£à¹àž²àžàžàž§àž²àž¡àžàž±à¹àžàžà¹àž§àžàžàž¢à¹àž²àžàž£àž§àžà¹àž£à¹àž§ àžàž§àžà¹àžàž²à¹àžà¹à¹àžàžàžàžŽàž ClickFix àžàžµà¹àž«àž¥àžàžà¹àž«à¹àžàž¹à¹à¹àžà¹àžàžŽàžàž§à¹àž²àžàž³àž¥àž±àžàžàž³àžàž±à¹àžàžàžàžàž¢àž·àžàž¢àž±àžàž«àž£àž·àžàžàž±àžà¹àžàžàžàžàžàžà¹à¹àž§àž£à¹ à¹àžà¹àžàž£àžŽàž ๠à¹àž¥à¹àž§àžàž·àžàžàž²àž£àžàž±àžàžàž±àžà¹àž«à¹à¹àž«àž¢àž·à¹àžàž£àž±àžàžàž³àžªàž±à¹àž PowerShell àžàžµà¹à¹àžà¹àžàž¡àž±àž¥à¹àž§àž£à¹à¹àžàž àž«àž¥àž±àžàžàž²àžàžàž±à¹àžàžàž°àžàž¹àžàžàžŽàžàžàž±à¹àž CastleLoader à¹àž¥àž° CastleRAT àžàž¶à¹àžà¹àž«à¹àžªàžŽàžàžàžŽà¹àžàž§àžàžàžžàž¡à¹àžàž£àž·à¹àžàžà¹àžàžà¹àžà¹àž¡àž£àž¹àžà¹àžàž àžàž±à¹àžàžàž²àž£àžàž±àžàžàžµàž¢à¹àžàžàž£à¹àž àžàž±àžàž àž²àžàž«àžà¹àž²àžàž à¹àž¥àž°à¹àžàžŽàžà¹àžàž¥àž¥à¹àž£àž°àž¢àž°à¹àžàž¥ àžàž·àžà¹àžà¹àžàžàž²àž£à¹àžàž¡àžàžµàžàžµà¹à¹àžà¹àžàž«àž¥àžàžà¹àž«àž¢àž·à¹àžà¹àž«à¹ “à¹àž®à¹àžàžàž±àž§à¹àžàž” à¹àžàž¢à¹àž¡à¹àž£àž¹à¹àžàž±àž§
https://securityonline.info/new-maas-operator-tag-150-uses-clickfix-lure-and-custom-castleloader-to-compromise-469-us-devices
à¹àžàž¡à¹àžàž “Contagious Interview” àžàžàžà¹àžàž²àž«àž¥àžµà¹àž«àžàž·àž àžàž¥à¹àžàž¢à¹àžà¹àžà¹àžàž npm àžàž§à¹àž² 200 àžàž±àž§
àžàž±àžàž§àžŽàžàž±àž¢àžàžàž§à¹àž²àžàž¥àžžà¹àž¡à¹àž®à¹àžà¹àžàžàž£à¹àžàžµà¹à¹àžàž·à¹àžàž¡à¹àž¢àžàžàž±àžà¹àžàž²àž«àž¥àžµà¹àž«àžàž·àžàž¢àž±àžàžàžà¹àžàžŽàžàž«àžà¹àž²àž¥à¹àž²àžàž¹à¹àžàž±àžàžàž²à¹àžàžªàž²àž¢àžàž¥à¹àžàžà¹àžàžà¹àž¥àž° Web3 àžàž§àžà¹àžàž²à¹àžà¹àž§àžŽàžàžµàžàž¥àžàž¡à¹àžà¹àžàžàž²àž£àžªàž±àž¡àž àž²àž©àžà¹àžàž²àž à¹àžàž¢à¹àž«à¹àžàž¹à¹àžªàž¡àž±àžàž£àžàž³ “à¹àžàžàžàžàžªàžàžà¹àžà¹àž” àžàž¶à¹àžàžàž£àžŽàž ๠à¹àž¥à¹àž§à¹àžà¹àžà¹àžà¹àžà¹àžàž npm àžàžµà¹àžàž±àžàž¡àž±àž¥à¹àž§àž£à¹ OtterCookie àž£àžžà¹àžà¹àž«àž¡à¹à¹àžà¹àž²à¹àž à¹àžà¹àžà¹àžàžà¹àž«àž¥à¹àž²àžàžµà¹àžàž¹àžàžàž²àž§àžà¹à¹àž«àž¥àžà¹àžà¹àž¥à¹àž§àžàž§à¹àž²àž«àž¡àž·à¹àžàžàž£àž±à¹àž à¹àž¥àž°àžªàž²àž¡àž²àž£àžàžà¹àž¡àž¢àžà¹àžàž¡àž¹àž¥àžªàž³àžàž±àž à¹àžà¹àž seed phrase àžàžàžàžàž£àž°à¹àžà¹àž²à¹àžàžŽàžàžàž£àžŽàžà¹àž àž£àž«àž±àžªàžà¹àž²àž à¹àž¥àž°à¹àžàž¥à¹àž¥àž±àžàžà¹àž²àž ๠à¹àžà¹àžàž±àžàžàžµ àžàž·àžà¹àžà¹àžàžàž²àž£à¹àžàž¡àžàžµàžàžµà¹à¹àžà¹àžàž£àž°àžàž§àžàžàž²àž£àžªàž¡àž±àžàž£àžàž²àžà¹àžà¹àžà¹àžàž£àž·à¹àžàžàž¡àž·àžà¹àžàžàž²àž£à¹àžàž²àž°àž£àž°àžàž
https://securityonline.info/north-koreas-contagious-interview-floods-npm-with-200-new-packages-using-fake-crypto-jobs-to-deploy-ottercookie-spyware
ShadowV2 Mirai Botnet àžàžàžªàžàžà¹àžàž¡àžàžµ IoT àž£àž°àž«àž§à¹àž²àž AWS àž¥à¹àž¡àžàž±à¹àž§à¹àž¥àž
à¹àžàžà¹àž§àžàžàžµà¹ AWS à¹àžàžŽàžàžàž²àž£àž¥à¹àž¡àžàž£àž±à¹àžà¹àž«àžà¹à¹àž¡àž·à¹àžà¹àžàž·àžàžàžàžžàž¥àž²àžàž¡ àžàž¥àžžà¹àž¡àžàž¹à¹à¹àžàž¡àžàžµà¹àžà¹à¹àžàžàž²àžªàžàžµà¹àžàž¥à¹àžàž¢ ShadowV2 àžàž¶à¹àžà¹àžà¹àžà¹àž§àžàž£à¹àžàž±àžà¹àž«àž¡à¹àžàžàž Mirai botnet à¹àžàž¢àž¡àžžà¹àžà¹àžà¹àž²à¹àžàžàžµà¹àžàžžàžàžàž£àžà¹ IoT à¹àžà¹àž à¹àž£àž²à¹àžàžàž£à¹à¹àž¥àž°àžàžžàžàžàž£àžà¹à¹àžàž£àž·àžàžà¹àž²àž¢àžàžµà¹àž¡àžµàžà¹àžàžà¹àž«àž§à¹ àžàž²àž£à¹àžàž¡àžàžµàžàž£àž±à¹àžàžàžµà¹àžàž¹àžàž¡àžàžàž§à¹àž²à¹àžà¹àž “àžàž²àž£àžàžàžªàžàž” àž¡àž²àžàžàž§à¹àž²àžàž²àž£à¹àžàž¡àžàžµà¹àžà¹àž¡àž£àž¹àžà¹àžàž à¹àžà¹àžà¹àžªàž²àž¡àž²àž£àžà¹àžà¹àž²àžàž¶àžàžàžžàžàžàž£àžà¹à¹àžàž«àž¥àž²àž¢àžàžžàžàžªàž²àž«àžàž£àž£àž¡àžàž±à¹àž§à¹àž¥àžà¹àžà¹à¹àž¥à¹àž§ ShadowV2 à¹àžà¹à¹àžàžàžàžŽàžà¹àžà¹àž²àž£àž«àž±àžªà¹àžàž·à¹àžàž«àž¥àžàžàž²àž£àžàž£àž§àžàžàž±àž à¹àž¥àž°àžªàž²àž¡àž²àž£àžàžàž³ DDoS à¹àžà¹àž«àž¥àž²àž¢àž£àž¹àžà¹àžàž àžàž·àžà¹àžà¹àžàžªàž±àžàžàž²àžà¹àžàž·àžàžàž§à¹àž² IoT àž¢àž±àžàžàžà¹àžà¹àžàžàžžàžàžà¹àžàžàžªàž³àžàž±àžà¹àžà¹àž¥àžà¹àžà¹àžàžàž£à¹
https://securityonline.info/shadowv2-mirai-botnet-launched-coordinated-iot-test-attack-during-global-aws-outage
Bloody Wolf APT àžàž¢àž²àž¢àžàž²àž£à¹àžàž¡àžàžµàžªàž¹à¹à¹àžà¹àžàžµàž¢àžàž¥àž²àž à¹àžà¹ NetSupport RAT
àžàž¥àžžà¹àž¡ APT àžàžµà¹àžàž·à¹àž Bloody Wolf àžàž¶à¹àžà¹àžàž¢à¹àžàž¡àžàžµà¹àžàž£àž±àžªà¹àžàžµàž¢à¹àž¥àž°àžàž²àžàž±àžàžªàžàž²àž àžàžàžàžàžµà¹àžàž¢àž²àž¢à¹àžàž¢àž±àžàžàžµàž£à¹àžàžµàžàžªàžàž²àžà¹àž¥àž°àžàžžàžà¹àžàžàžŽàžªàžàž²àž àžàž§àžà¹àžàž²à¹àžà¹àž§àžŽàžàžµàžªà¹àžàžàžµà¹àž¡àž¥ spear-phishing àžàžµà¹àžàž¥àžàž¡à¹àžà¹àžà¹àžàžàžªàž²àž£àžàž²àžàž£àž²àžàžàž²àž£ à¹àž¡àž·à¹àžà¹àž«àž¢àž·à¹àžà¹àžàžŽàžà¹àžàž¥à¹àžàž°àžàž¹àžàžàž³à¹àžàžàž²àž§àžà¹à¹àž«àž¥àž JAR àžàžµà¹àžàž±àžà¹àžà¹àžàžàž±àžàžàž£àž²àž¢ àžàž¶à¹àžàžªàžžàžàžà¹àž²àž¢àžàžŽàžàžàž±à¹àž NetSupport RAT àžàž¶à¹àžà¹àžà¹àžàžàžàžàžà¹à¹àž§àž£à¹àžàžµà¹àžàžàžàžŽà¹àžà¹à¹àžàžàž²àž£àžà¹àž§àž¢à¹àž«àž¥àž·àžàžà¹àž²àžà¹àžàžàžµ à¹àžà¹àžàž¹àžàžàž³àž¡àž²à¹àžà¹àžàž§àžàžàžžàž¡à¹àžàž£àž·à¹àžàžà¹àž«àž¢àž·à¹àžà¹àžàžàž¥àž±àž ๠àžàž³à¹àž«à¹àžàž²àž£àžàž£àž§àžàžàž±àžàž¢àž²àžàžàž¶à¹àžàž¡àž²àž àžàž²àž£à¹àžà¹à¹àžàž£àž·à¹àžàžàž¡àž·àžàžàžµà¹àžàž¹àžàžà¹àžàžàžàž²àž¡àžàžàž«àž¡àž²àž¢àž¡àž²àžàž³àžàž²àž£à¹àžàž¡àžàžµà¹àžà¹àžàžàžµà¹ à¹àžà¹àžàžàž¥àž¢àžžàžàžà¹àžàžµà¹àžàž³à¹àž«à¹à¹àž¢àžà¹àž¡à¹àžàžàžàž§à¹àž²à¹àžà¹àžàžàž²àž£à¹àžà¹àžàž²àžàžàž£àžŽàžàž«àž£àž·àžàžàž²àž£à¹àž®à¹àž
https://securityonline.info/bloody-wolf-apt-expands-to-central-asia-deploys-netsupport-rat-via-custom-java-droppers-and-geo-fencing
àžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àžà¹àž Apache bRPC (CVE-2025-59789)
à¹àž£àž·à¹àžàžàžàžµà¹à¹àžà¹àžàžàž²àž£àžà¹àžàžàžàžà¹àžàžà¹àž«àž§à¹àžàžµà¹àžàž±àžàžàž£àž²àž¢àž¡àž²àžà¹àž Apache bRPC àžàž¶à¹àžà¹àžà¹àžà¹àžàž£àž¡à¹àž§àžŽàž£à¹àž RPC àžàžµà¹à¹àžà¹àžàž±àžàžàž¢à¹àž²àžà¹àžàž£à¹àž«àž¥àž²àž¢àžªàž³àž«àž£àž±àžàž£àž°àžàžàžàž£àž°àžªàžŽàžàžàžŽàž àž²àžàžªàž¹àž à¹àžà¹àž àžàž²àž£àžà¹àžàž«àž² àžàž²àž£àžàž±àžà¹àžà¹àž à¹àž¥àž°à¹àž¡àžàžàžµàžà¹àž¥àžŽàž£à¹àžàžàžŽàž àžà¹àžàžà¹àž«àž§à¹àžàžµà¹à¹àžàžŽàžàžàž²àžàžàž²àž£àžàž£àž°àž¡àž§àž¥àžàž¥ JSON àžàžµà¹àž¡àžµà¹àžàž£àžàžªàž£à¹àž²àžàžà¹àžàžàž¥àž¶àžà¹àžàžŽàžà¹àž àžàž³à¹àž«à¹à¹àžàžŽàžàžàž²àž£à¹àžà¹àž«àžà¹àž§àž¢àžàž§àž²àž¡àžàž³àžªà¹àžà¹àžàžàžàž¥à¹àžà¹àž¥àž°àžàž³à¹àž«à¹à¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹àž¥à¹àž¡à¹àžà¹àžà¹àž²àž¢ àžàž¹à¹à¹àžàž¡àžàžµàžªàž²àž¡àž²àž£àžàžªà¹àžàžà¹àžàž¡àž¹àž¥ JSON àžàžµà¹àžàžàžà¹àžàžàž¡àž²à¹àžàž·à¹àžàžàž³à¹àž«à¹àž£àž°àžàž crash à¹àžàž¢à¹àžàžàž²àž° àžàžàžà¹àžàž£àžàžµà¹à¹àžàžŽàžàž£àž±àžàžàž£àž²àžàžàžŽàžàžàž²àžà¹àžàž£àž·àžàžà¹àž²àž¢àž àž²àž¢àžàžàžàžàž¶àžà¹àžªàžµà¹àž¢àžàžªàž¹àž àžàž²àžàžàžµàž¡àžàž±àžàžàž²à¹àžà¹àžàžàžà¹àžàžàžà¹à¹àžà¹à¹àžà¹àžà¹àž§àžàž£à¹àžàž±àž 1.15.0 à¹àžàž¢à¹àžàžŽà¹àž¡àžàž²àž£àžàž³àžàž±àžàžàž§àž²àž¡àž¥àž¶àžàžàžàžàžàž²àž£ recursion àžàžµà¹àžà¹àž²à¹àž£àžŽà¹àž¡àžà¹àž 100 à¹àžàž·à¹àžàžà¹àžàžàžàž±àžàžàž²àž£à¹àžàž¡àžàžµ à¹àžà¹àžà¹àžàž²àžàžàž³à¹àž«à¹àžàž²àžàžàž³àžàžàžàžµà¹àžàž¹àžàžà¹àžàžàžàž¹àžàžàžàžŽà¹àžªàžà¹àžàžà¹àž§àž¢
https://securityonline.info/cve-2025-59789-critical-flaw-in-apache-brpc-framework-exposes-high-performance-systems-to-crash-risks
Apple à¹àžàž£àžµàž¢àž¡à¹àžà¹ Intel Foundry àžàž¥àžŽàžàžàžŽàž M-Series àžàžà¹àžàžà¹àžà¹àž¥àž¢àžµ 18A àžàžµ 2027
àž¡àžµàž£àž²àž¢àžàž²àžàž§à¹àž² Apple à¹àžà¹àžàž³àžà¹àžàžàžàž¥àžàž¥àž±àžàžàž±àž Intel à¹àžàž·à¹àžà¹àž«à¹àžàž¥àžŽàžàžàžŽàž M-series àž£àžžà¹àžà¹àž£àžŽà¹àž¡àžà¹àžàžàžàžàž£àž°àžàž§àžàžàž²àž£àžàž¥àžŽàž 18A à¹àžàž¢àžàž²àžàž§à¹àž²àžàž°à¹àž£àžŽà¹àž¡àžàž¥àžŽàžàžàž³àžàž§àžàž¡àž²àžà¹àžà¹à¹àžàžà¹àž§àžàžàž¥àž²àžàžàžµ 2027 àžàžµà¹àžàž·àžà¹àžà¹àžàžàž²àž£àžàž¥àž±àžàž¡àž²àžàžàž Intel à¹àžàž«à¹àž§àžà¹àžà¹àžàžžàžàžàž²àžàžàžàž Apple àž«àž¥àž±àžàžàž²àžàžàžµà¹ TSMC àžàž£àžàžàžàžàžàž²àžàž«àž¥àž±àžàž¡àž²àžàž²àž àžàžŽàžàžàžµà¹àžàž¥àžŽàžàžàž°àžàž¹àžà¹àžà¹à¹àž MacBook Air à¹àž¥àž° iPad Pro àžàž¶à¹àžàž¡àžµàž¢àžàžàžàž²àž¢àž£àž§àž¡àžàž§à¹àž² 20 àž¥à¹àž²àžà¹àžàž£àž·à¹àžàžà¹àžàžàžµ 2025 àžàž²àž£à¹àžàž¥àž·à¹àžàžà¹àž«àž§àžàžµà¹àžà¹àž§àž¢à¹àžªàž£àžŽàž¡àžàž§àž²àž¡à¹àžà¹àžà¹àžàž£à¹àžà¹àž«à¹ Intel à¹àžàžàž²àžàž°à¹àž£àžàžàž²àžàžàž¥àžŽàž à¹àžà¹àž¢àž±àžà¹àž¡à¹àžàž£àž°àžàžàžà¹àžàž£àž²àž¢à¹àžà¹àžàžàž TSMC à¹àžàž£àž°àž¢àž°àžªàž±à¹àž
https://securityonline.info/apple-eyes-intel-foundry-for-m-series-chips-on-18a-node-by-2027
Windows 11 àžàžàžàž±àžàž«àž²à¹àžàžàžàžàž¥à¹àžàžàžàžŽàžàžà¹àž§àž¢àž£àž«àž±àžªàžà¹àž²àžàž«àž²àž¢à¹àžàž«àž¥àž±àžàžàž±àžà¹àžàž
àžàž¹à¹à¹àžà¹ Windows 11 àž«àž¥àž²àž¢àžàžà¹àžàžàžàž±àžàž«àž²àž«àž¥àž±àžàžàžŽàžàžàž±à¹àžàžàž±àžà¹àžàžà¹àžàž·àžàžàžªàžŽàžàž«àž²àžàž¡ 2025 àž«àž£àž·àžà¹àž§àžàž£à¹àžàž±àžàž«àž¥àž±àžàžàž²àžàžàž±à¹àž à¹àžàž¢à¹àžàžàžàžàžªàž³àž«àž£àž±àžà¹àžà¹àž²àžªàž¹à¹àž£àž°àžàžàžà¹àž§àž¢àž£àž«àž±àžªàžà¹àž²àžàž«àž²àž¢à¹àžàžàž²àžàž«àžà¹àž²àž¥à¹àžàžàžªàžàž£àžµàž àžàž³à¹àž«à¹àžàž¹à¹àž«àž¡àž·àžàžàž§à¹àž²àž¡àžµà¹àžàžµàž¢àžàžàž²àž£à¹àžà¹àž²àžªàž¹à¹àž£àž°àžàžàžà¹àž§àž¢ PIN à¹àžà¹àž²àžàž±à¹àžàžàžµà¹à¹àžà¹à¹àžà¹ à¹àž¡à¹àžàž£àžŽàž ๠à¹àž¥à¹àž§àžàž±àžàžà¹àžàž±àžàž¢àž±àžàžàž¢àž¹à¹ à¹àžà¹àžàž¹à¹à¹àžà¹àžà¹àžàžàžàž¥àžŽàžàžàž£àžàžàž·à¹àžàžàžµà¹àž§à¹àž²àžàžàžµà¹àžàž§àž£àž¡àžµà¹àžàžàžàž àžàž¶à¹àžàžªàž£à¹àž²àžàžàž§àž²àž¡àžªàž±àžàžªàžà¹àž¥àž°àž¢àžžà¹àžàž¢àž²àž Microsoft àž¢àž·àžàž¢àž±àžàž§à¹àž²àžàž³àž¥àž±àžà¹àžà¹à¹àžà¹àž¥àž°àžàž²àžàž§à¹àž²àžàž°àžàž¥à¹àžàž¢à¹àžàžàžà¹à¹àžà¹à¹àžàžàž±àžà¹àžàžàžàž±àžà¹àž
https://securityonline.info/windows-11-bug-makes-lock-screen-password-icon-vanish-after-update
àžàž¥àž¢àžžàžàžà¹ AI àžàžàž Google Pixel à¹àžà¹àžàžàž£àž°à¹àž¢àžàžà¹àžàž£àžŽàž à¹àž¡à¹à¹àžà¹à¹àžà¹àžàž³à¹àžàž©àžàž²
Google àžàž³àž¥àž±àžàžàž¥àž±àžàžàž±àž Pixel à¹àž«à¹à¹àžà¹àžàžªàž¡àž²àž£à¹àžà¹àžàžàžàžµà¹à¹àžàžà¹àžà¹àžàžà¹àž²àž AI à¹àžàž¢à¹àžà¹àžàžàž²àž£à¹àžà¹àžàž²àžàžàžµà¹àžàž±àžàžà¹àžàžà¹àžà¹ à¹àžà¹àž àžàžµà¹àžàžàž£à¹ “Auto Best Take” àžàžµà¹àžà¹àž§àž¢à¹àž«à¹àžàžžàžàžàžàžàž¹àžàžµàžàžµà¹àžªàžžàžà¹àžàž àž²àžàžà¹àž²àž¢àžàž¥àžžà¹àž¡ Adrienne Lofton àž£àžàžàžàž£àž°àžàž²àžàžà¹àž²àž¢àžàž²àž£àžàž¥àž²àžàžàžàž Pixel àžàžµà¹àž§à¹àž²à¹àž¡à¹ AI àžàž°à¹àžà¹àžàžàž£àž°à¹àžª à¹àžà¹àžàž¹à¹à¹àžà¹àž¢àž±àžà¹àžà¹àžàžàžàžà¹àžà¹àžàžªàžàžàžàž¥àžžà¹àž¡ àžàž±à¹àžàžàžµà¹à¹àžàž·à¹àžà¹àž¥àž°àžàžµà¹àžªàžàžªàž±àž¢ àžàž±àžàžàž±à¹àžàžàž¥àž¢àžžàžàžà¹àžàžàž Google àžàž·àžàžàž²àž£àžàž³à¹àž«à¹ AI à¹àžà¹àžàžªàžŽà¹àžàžàžµà¹àžàž¹à¹à¹àžà¹à¹àž«à¹àžàžàžžàžàžà¹àž² à¹àž¡à¹à¹àžà¹à¹àžà¹àžàž³à¹àžàž©àžàž² àžàžµàž¡àžàž²àžàž¢àž±àžà¹àžà¹ AI àž àž²àž¢à¹àžàžàž¢à¹àž²àž Gemini Live à¹àž¥àž° Veo 3 à¹àžàž·à¹àžà¹àž£à¹àžàžàž£àž°àžàž§àžàžàž²àž£àžàž³àžàž¥àž²àžà¹àž«à¹à¹àž£à¹àž§àžàž¶à¹àžàžàž§à¹àž²à¹àžàžŽàž¡àžàž¶àž 15 àžªàž±àžàžàž²àž«à¹
https://securityonline.info/googles-pixel-ai-strategy-focusing-on-tangible-benefits-not-just-hype
OpenAI àžàž¹àžàžà¹àž²àžàž²àž¢àžàž¢à¹àž²àžàž«àžàž±àžàžàž²àž Gemini 3 àžàžàž Google
àž«àž¥àž±àžàžàž²àž ChatGPT àžàž£àžàžàžàž¥àž²àžàž¡àž²àžàž²àž àžàžàžàžàžµà¹ OpenAI àžàž³àž¥àž±àžà¹àžàžàžŽàžà¹àž£àžàžàžàžàž±àžàžàž£àž±à¹àžà¹àž«àžà¹à¹àž¡àž·à¹àž Google à¹àžàžŽàžàžàž±àž§ Gemini 3 àžàžµà¹àžàž³àžàž°à¹àžàžà¹àž«àžàž·àž GPT-5 à¹àžàž«àž¥àž²àž¢àžàž²àž£àžàžàžªàžàž à¹àž¥àž°àž¡àžµàžàž¹à¹à¹àžà¹àžàž²àžàžàžžà¹àžàžàž¶à¹àžàžàž¢à¹àž²àžàž£àž§àžà¹àž£à¹àž§àžàž²àž 400 àž¥à¹àž²àžà¹àžà¹àž 650 àž¥à¹àž²àžàž£àž²àž¢àžà¹àžà¹àžàž·àžàž àžàž§àž²àž¡à¹àžà¹à¹àžàž£àžµàž¢àžàžàžàž Google àžàž·àžàžàž²àž£à¹àžà¹ TPU àžàžàžàžàž±àž§à¹àžàžà¹àžàžàžàž²àž£àžàž¶à¹àžàžàž² NVIDIA àžàž³à¹àž«à¹àžàž±àžàžàž²à¹àžà¹à¹àž£à¹àž§à¹àž¥àž°àžà¹àžàžàžžàžàžà¹àž³àž¥àž àžàžàž°àžàžµà¹ OpenAI àžà¹àžàžàž¥àžàžàžžàžàž¡àž«àž²àžšàž²àž¥àžàž§à¹àž² 1.4 àž¥à¹àž²àžàž¥à¹àž²àžàžàžàž¥àž¥àž²àž£à¹à¹àžà¹àžàž£àžàžªàž£à¹àž²àžàžàž·à¹àžàžàž²àžà¹àžàž·à¹àžàž£àž±àžàž©àž²àžàž§àž²àž¡à¹àžà¹àžàžàž¹à¹àžàž³ àžªàžàž²àžàžàž²àž£àžà¹àžàžµà¹àžàž³à¹àž«à¹àžàž¥àž²àž AI àžàž¥àž±àžàž¡àž²àžàžžà¹àžàž·àžàžàžàžµàžàžàž£àž±à¹àž à¹àž¥àž°àžàžàž²àžàžàžàžàž OpenAI àžàž¹àžàžàž±àžàžàž²àž¡àžàžàžàž¢à¹àž²àžà¹àžàž¥à¹àžàžŽàž
https://securityonline.info/openai-under-siege-googles-gemini-3-surge-threatens-to-end-chatgpts-early-lead
àžàžµà¹àžàžàž£à¹à¹àž«àž¡à¹ Android Hotspot à¹àžàž£à¹àžªàž±àžàžàž²àžàžàž£à¹àžàž¡àžàž±àž 2.4 GHz + 6 GHz
Android àžàž³àž¥àž±àžà¹àžàžŽà¹àž¡àžàž§àž²àž¡àžªàž²àž¡àž²àž£àžà¹àž«à¹àžàž¹à¹à¹àžà¹àžªàž²àž¡àž²àž£àžà¹àžàž£à¹àž®àžàžàžªàžàžàžà¹àžà¹àžàž£à¹àžàž¡àžàž±àžàžàž±à¹àžàž¢à¹àž²àžàžàž§àž²àž¡àžàžµà¹ 2.4 GHz à¹àž¥àž° 6 GHz àžàž¶à¹àžàžà¹àž§àž¢à¹àž«à¹à¹àžàž·à¹àžàž¡àžà¹àžàžàžžàžàžàž£àžà¹àž£àžžà¹àžà¹àžà¹àž²à¹àž¥àž°à¹àž«àž¡à¹à¹àžà¹à¹àžà¹àž§àž¥àž²à¹àžàžµàž¢àž§àžàž±àž àžàž²àž£àžàž±àžà¹àžàž£àžàžàžµà¹àžàž³à¹àž«à¹àžàž²àž£à¹àžà¹àžàž²àžàžàžŽàžà¹àžàžàž£à¹à¹àžà¹àžàžà¹àž²àžàž¡àž·àžàžàž·àžàž¡àžµàžàž§àž²àž¡àž¢àž·àžàž«àž¢àžžà¹àžàž¡àž²àžàžàž¶à¹àž à¹àžàž¢à¹àžàžàž²àž°à¹àžàžªàžàž²àžàžàž²àž£àžà¹àžàžµà¹àž¡àžµàž«àž¥àž²àž¢àžàžžàžàžàž£àžà¹àž«àž¥àž²àžàž«àž¥àž²àž¢àž£àžžà¹àžàžà¹àžàžà¹àžàž·à¹àžàž¡àžà¹àžàžàž£à¹àžàž¡àžàž±àž àžàž·àžà¹àžà¹àžàžàž²àž£àž¢àžàž£àž°àžàž±àžàžàž£àž°àžªàžàžàž²àž£àžà¹àžàž²àž£à¹àžà¹àžàž²àžàžàžµà¹àžàžàžà¹àžàžàž¢à¹àž¢àžžàž Wi-Fi 6E
https://securityonline.info/android-hotspot-upgrade-new-feature-allows-simultaneous-2-4-ghz-6-ghz-dual-band-sharing
àžàžàžŽàžàž±àžàžŽàžàž²àž£ Hanoi Thief: à¹àžà¹à¹àžàž¥à¹ LNK/àž£àž¹àžàž àž²àžà¹àžàž¡àžàžµàžà¹àž§àž¢ LOTUSHARVEST Stealer
à¹àž®àžà¹àžàžàž£à¹à¹àžà¹àžàž±àžàžàž²à¹àžàžàžàžŽàžà¹àž«àž¡à¹àžàžµà¹à¹àž£àžµàž¢àžàž§à¹àž² “Pseudo-Polyglot” à¹àžàž¢à¹àžà¹à¹àžàž¥à¹ LNK àž«àž£àž·àžàž£àž¹àžàž àž²àžàžàžµà¹àžàž¹à¹àž«àž¡àž·àžàžà¹àž¡à¹àž¡àžµàžàžŽàž©àž àž±àž¢ à¹àžà¹àžàž£àžŽàž ๠à¹àž¥à¹àž§àžà¹àžàžà¹àžà¹àžàžàž±àžàžàž£àž²àž¢à¹àž§à¹à¹àžàž·à¹àžà¹àž«àž¥àžàž¡àž±àž¥à¹àž§àž£à¹ LOTUSHARVEST Stealer àžà¹àž²àž DLL Sideloading àžàž²àž£à¹àžàž¡àžàžµàžàžµà¹àžàž³à¹àž«à¹àžàž¹à¹à¹àžà¹àžàžµà¹à¹àžàžŽàžà¹àžàž¥à¹àžàž±àžàžàž¥à¹àž²àž§à¹àžªàžµà¹àž¢àžàžà¹àžàžàž²àž£àžàž¹àžàžà¹àž¡àž¢àžà¹àžàž¡àž¹àž¥àžªàž³àžàž±àž à¹àžà¹àž àž£àž«àž±àžªàžà¹àž²àžàž«àž£àž·àžàžà¹àžàž¡àž¹àž¥àžªà¹àž§àžàžàž±àž§ à¹àžà¹àžàžàžµàžàž«àžàž¶à¹àžàžàž±àž§àžàž¢à¹àž²àžàžàžµà¹à¹àžªàžàžà¹àž«à¹à¹àž«à¹àžàž§à¹àž²àžàž¹à¹à¹àžàž¡àžàžµà¹àžà¹àžàž§àž²àž¡àžàžŽàžàžªàž£à¹àž²àžàžªàž£àž£àžà¹à¹àžàžàž²àž£àž«àž¥àžàžàž¥àž§àžàžàž²àžà¹àžà¹àžàžàž£à¹
https://securityonline.info/operation-hanoi-thief-hackers-use-pseudo-polyglot-lnk-image-to-deploy-lotusharvest-stealer-via-dll-sideloading
àžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àžà¹àž Devolutions Server (CVE-2025-13757)
àž¡àžµàžàž²àž£àžà¹àžàžàžàžà¹àžàžà¹àž«àž§à¹ SQL Injection àžàžµà¹àž£à¹àž²àž¢à¹àž£àžà¹àž Devolutions Server àžàž¶à¹àžàžàž³à¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžàžµà¹àžà¹àž²àžàžàž²àž£àž¢àž·àžàž¢àž±àžàžàž±àž§àžàžà¹àž¥à¹àž§àžªàž²àž¡àž²àž£àžàžàž¶àžàžà¹àžàž¡àž¹àž¥àž£àž«àž±àžªàžà¹àž²àžàžàž±à¹àžàž«àž¡àžàžàžàžàž¡àž²à¹àžà¹ àžà¹àžàžà¹àž«àž§à¹àžàžµà¹àžàž·àžàž§à¹àž²àžàž±àžàžàž£àž²àž¢àž¡àž²àžà¹àžàž£àž²àž°à¹àžàžŽàžà¹àžàžàž²àžªà¹àž«à¹à¹àžà¹àž²àžàž¶àžàžà¹àžàž¡àž¹àž¥àžàžµà¹àžªàž³àžàž±àžàžàžµà¹àžªàžžàžàžàžàžàž£àž°àžàž àžàž²àž£à¹àžàž¡àžàžµàž¥àž±àžàž©àžàž°àžàžµà¹àžªàž²àž¡àž²àž£àžàžàž³à¹àž«à¹àžàž±à¹àžàžàžàžà¹àžàž£à¹àžªàžµà¹àž¢àžàžà¹àžàžàž²àž£àžªàž¹àžà¹àžªàžµàž¢àžà¹àžàž¡àž¹àž¥à¹àž¥àž°àžàž¹àžàžàžžàžàž£àžžàžàžàž¢à¹àž²àžàž«àžàž±àž àžàž¹à¹àžàž¹à¹àž¥àž£àž°àžàžàžàž¶àžàžàž§àž£à¹àž£à¹àžàžàž±àžà¹àžàžà¹àžàžàžà¹à¹àžà¹à¹àžàžàž±àžàžàžµ
https://securityonline.info/critical-devolutions-server-flaw-cve-2025-13757-allows-authenticated-sql-injection-to-steal-all-passwords
àž¡àž±àž¥à¹àž§àž£à¹ TangleCrypt Packer àžà¹àžàž EDR Killer à¹àžà¹àžàž¥àž²àžàžàžà¹àžàž£àžà¹àžàž
àžàž±àžàž§àžŽàžàž±àž¢àžàžàž§à¹àž² TangleCrypt àžàž¶à¹àžà¹àžà¹àžà¹àžà¹àžà¹àžàžàž£à¹àž¡àž±àž¥à¹àž§àž£à¹àž£àžžà¹àžà¹àž«àž¡à¹ àžàž¹àžàžàžàžà¹àžàžàž¡àž²à¹àžàž·à¹àžàžà¹àžàžàžàž±àžàžà¹àžàž±àž EDR Killer àžàžµà¹àžªàž²àž¡àž²àž£àžàžàž³àž¥àž²àž¢àž£àž°àžàžàžàž£àž§àžàžàž±àžàž àž±àž¢àžàžžàžàžàž²àž¡à¹àžà¹ à¹àžà¹à¹àžàž·à¹àžàžàžàž²àžàž¡àžµàžà¹àžàžàžŽàžàžàž¥àž²àžà¹àžàžàž²àž£à¹àžàžµàž¢àžà¹àžà¹àž àžàž³à¹àž«à¹àž¡àž±àž¥à¹àž§àž£à¹àžàžµà¹à¹àžàžŽàžàžàž²àž£à¹àžàž£àžà¹àžàžà¹àžàž¢à¹àž¡à¹àžàž±à¹àžà¹àž à¹àž¡à¹àžàž°à¹àžà¹àžàž àž±àž¢àžàžžàžàžàž²àž¡àžàžµà¹àžà¹àž²àžàž±àžàž§àž¥ à¹àžà¹àžàž§àž²àž¡àžàžŽàžàžàž¥àž²àžàžàžµà¹àžà¹àžàž³à¹àž«à¹àžàž²àž£à¹àžàž¡àžàžµà¹àž¡à¹à¹àžªàžàžµàž¢àž£ à¹àž¥àž°àžàž²àžà¹àžà¹àžàžàžžàžàžà¹àžàžàžàžµà¹àžà¹àž§àž¢à¹àž«à¹àžàž¹à¹à¹àžàžµà¹àž¢àž§àžàž²àžàžà¹àž²àžàžàž§àž²àž¡àžàž¥àžàžàž àž±àž¢àžªàž²àž¡àž²àž£àžàžàž£àž§àžàžàž±àžà¹àž¥àž°àžà¹àžàžàžàž±àžà¹àžà¹àžà¹àž²àž¢àžàž¶à¹àž
https://securityonline.info/new-tanglecrypt-packer-hides-edr-killer-but-coding-flaws-cause-ransomware-to-crash-unexpectedly
àžàž¥àž¢àžžàžàžà¹à¹àž«àž¡à¹àžàžàž Russian Tomiris APT à¹àžà¹ Telegram/Discord à¹àžà¹àžàžà¹àžàžàžàž²àžàžªàžàžà¹àžàž¡
àžàž¥àžžà¹àž¡à¹àž®àžà¹àžàžàž£à¹ Tomiris APT àžàž²àžàž£àž±àžªà¹àžàžµàž¢àžàž¹àžàžàžàž§à¹àž²à¹àžà¹àž§àžŽàžàžµ “Polyglot” à¹àžàžàž²àž£à¹àžàžàžàž±àž§ à¹àžàž¢à¹àžàž¥àžµà¹àž¢àžà¹àžàž¥àžàžàžàž£à¹àž¡àžªàž·à¹àžàžªàž²àž£àž¢àžàžàžàžŽàž¢àž¡àžàž¢à¹àž²àž Telegram à¹àž¥àž° Discord à¹àž«à¹àžàž¥àž²àž¢à¹àžà¹àžàžà¹àžàžàžàž²àžàžàž§àžàžàžžàž¡àžàž²àž£àžªàžàžà¹àžàž¡àžàž²àžàžàž²àž£àžàž¹àž à¹àžàžàžàžŽàžàžàžµà¹àžàž³à¹àž«à¹àžàž²àž£àžàž£àž§àžàžàž±àžàž¢àž²àžàžàž¶à¹àž à¹àžàž£àž²àž°àžàž¹à¹àž«àž¡àž·àžàžàžàž²àž£à¹àžà¹àžàž²àžàžàžàžàžŽàžàžàžàžàž¹à¹à¹àžà¹àžàž±à¹àž§à¹àž à¹àžà¹àžàž£àžŽàž ๠à¹àž¥à¹àž§à¹àžà¹àžàžàž²àž£àžà¹àžàžàžàž²àž£àžªàž·à¹àžàžªàž²àž£àž£àž°àž«àž§à¹àž²àžà¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹àžàž§àžàžàžžàž¡à¹àž¥àž°à¹àžàž£àž·à¹àžàžàžàžµà¹àžàž¹àžàžàžžàžàž£àžžàž àžàž·àžà¹àžà¹àžàžàž²àž£àž¢àžàž£àž°àžàž±àžàžàž²àž£à¹àžàž¡àžàžµà¹àžà¹àžàžàž£à¹àžàžµà¹àžàž±àžàžà¹àžàžàž¡àž²àžàžàž¶à¹àž
âââââââ https://securityonline.info/russian-tomiris-apt-adopts-polyglot-strategy-hijacking-telegram-discord-as-covert-c2-for-diplomatic-spies
#àž£àž§àž¡àžà¹àž²àž§IT #20251201 #securityonline
GeoServer àžàžàžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àž XXE (CVE-2025-58360)
à¹àž£àž·à¹àžàžàžàžµà¹à¹àžà¹àžàžàž²àž£à¹àžàž·àžàžàžàž£àž±à¹àžà¹àž«àžà¹àžªàž³àž«àž£àž±àžàžàž¹à¹àžàž¹à¹àž¥àž£àž°àžàžàžàžµà¹à¹àžà¹ GeoServer àžàž¶à¹àžà¹àžà¹àžàžàžàžàžà¹à¹àž§àž£à¹à¹àžà¹àžà¹àžàžàžàž£à¹àžªàžà¹àž²àžàžà¹àžàž¡àž¹àž¥àž àž¹àž¡àžŽàžªàž²àž£àžªàžà¹àžàžš àžà¹àžàžà¹àž«àž§à¹àžàžµà¹àžàž¢àž¹à¹à¹àžàžàž±àžàžà¹àžàž±àž Web Map Service (WMS) àžàžµà¹à¹àžàžŽàžà¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžªàž²àž¡àž²àž£àžàžªà¹àžàžàž³àžªàž±à¹àž XML àžàžµà¹à¹àž¡à¹àžàž¹àžàžàž£àžàžàžàž¢à¹àž²àžà¹àž«àž¡àž²àž°àžªàž¡ àžàž¥àžàž·àžàžªàž²àž¡àž²àž£àžàžàž¶àžà¹àžàž¥à¹àž¥àž±àžàžàž²àžà¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹ àžàž³àžàž²àž£ SSRF à¹àžàž·à¹àžà¹àžàž²àž°àž£àž°àžàžàž àž²àž¢à¹àž àž«àž£àž·àžà¹àž¡à¹à¹àžà¹àžàž³à¹àž«à¹à¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹àž¥à¹àž¡à¹àžà¹àžàž±àžàžàžµ àžàž¹à¹à¹àžàžµà¹àž¢àž§àžàž²àžà¹àžàž°àžàž³à¹àž«à¹àž£àžµàžàžàž±àžà¹àžàžà¹àžàž¢àž±àžà¹àž§àžàž£à¹àžàž±àžàž¥à¹àž²àžªàžžàžà¹àžàž·à¹àžàžàžŽàžàžà¹àžàžà¹àž«àž§à¹ à¹àž¡à¹à¹àžà¹àžàžàž±à¹àžàž£àž°àžàžàžàžµà¹à¹àžàžµà¹àž¢àž§àžà¹àžàžàžàž±àžàžà¹àžàž¡àž¹àž¥à¹àžàžàžàžµà¹àžàž²àžàžàž¹àžà¹àžàž²àž°à¹àžà¹àžà¹àž²àž¢
https://securityonline.info/high-severity-geoserver-flaw-cve-2025-58360-allows-unauthenticated-xxe-for-file-theft-and-ssrf
TAG-150 àžàž¹à¹à¹àž«à¹àžàž£àžŽàžàž²àž£ Malware-as-a-Service àž£àž²àž¢à¹àž«àž¡à¹ à¹àžà¹ ClickFix àž«àž¥àžàžà¹àž«àž¢àž·à¹àž
àžàž¥àžžà¹àž¡àžàž²àžàžàž²àžàž£àž£àž¡à¹àžà¹àžàžàž£à¹àž«àžà¹àž²à¹àž«àž¡à¹àžàž·à¹àž TAG-150 à¹àžàž¥à¹àžàž¶à¹àžàž¡àž²à¹àžàžàžµ 2025 à¹àž¥àž°àžªàž£à¹àž²àžàžàž§àž²àž¡àžàž±à¹àžàžà¹àž§àžàžàž¢à¹àž²àžàž£àž§àžà¹àž£à¹àž§ àžàž§àžà¹àžàž²à¹àžà¹à¹àžàžàžàžŽàž ClickFix àžàžµà¹àž«àž¥àžàžà¹àž«à¹àžàž¹à¹à¹àžà¹àžàžŽàžàž§à¹àž²àžàž³àž¥àž±àžàžàž³àžàž±à¹àžàžàžàžàž¢àž·àžàž¢àž±àžàž«àž£àž·àžàžàž±àžà¹àžàžàžàžàžàžà¹à¹àž§àž£à¹ à¹àžà¹àžàž£àžŽàž ๠à¹àž¥à¹àž§àžàž·àžàžàž²àž£àžàž±àžàžàž±àžà¹àž«à¹à¹àž«àž¢àž·à¹àžàž£àž±àžàžàž³àžªàž±à¹àž PowerShell àžàžµà¹à¹àžà¹àžàž¡àž±àž¥à¹àž§àž£à¹à¹àžàž àž«àž¥àž±àžàžàž²àžàžàž±à¹àžàžàž°àžàž¹àžàžàžŽàžàžàž±à¹àž CastleLoader à¹àž¥àž° CastleRAT àžàž¶à¹àžà¹àž«à¹àžªàžŽàžàžàžŽà¹àžàž§àžàžàžžàž¡à¹àžàž£àž·à¹àžàžà¹àžàžà¹àžà¹àž¡àž£àž¹àžà¹àžàž àžàž±à¹àžàžàž²àž£àžàž±àžàžàžµàž¢à¹àžàžàž£à¹àž àžàž±àžàž àž²àžàž«àžà¹àž²àžàž à¹àž¥àž°à¹àžàžŽàžà¹àžàž¥àž¥à¹àž£àž°àž¢àž°à¹àžàž¥ àžàž·àžà¹àžà¹àžàžàž²àž£à¹àžàž¡àžàžµàžàžµà¹à¹àžà¹àžàž«àž¥àžàžà¹àž«àž¢àž·à¹àžà¹àž«à¹ “à¹àž®à¹àžàžàž±àž§à¹àžàž” à¹àžàž¢à¹àž¡à¹àž£àž¹à¹àžàž±àž§
https://securityonline.info/new-maas-operator-tag-150-uses-clickfix-lure-and-custom-castleloader-to-compromise-469-us-devices
à¹àžàž¡à¹àžàž “Contagious Interview” àžàžàžà¹àžàž²àž«àž¥àžµà¹àž«àžàž·àž àžàž¥à¹àžàž¢à¹àžà¹àžà¹àžàž npm àžàž§à¹àž² 200 àžàž±àž§
àžàž±àžàž§àžŽàžàž±àž¢àžàžàž§à¹àž²àžàž¥àžžà¹àž¡à¹àž®à¹àžà¹àžàžàž£à¹àžàžµà¹à¹àžàž·à¹àžàž¡à¹àž¢àžàžàž±àžà¹àžàž²àž«àž¥àžµà¹àž«àžàž·àžàž¢àž±àžàžàžà¹àžàžŽàžàž«àžà¹àž²àž¥à¹àž²àžàž¹à¹àžàž±àžàžàž²à¹àžàžªàž²àž¢àžàž¥à¹àžàžà¹àžàžà¹àž¥àž° Web3 àžàž§àžà¹àžàž²à¹àžà¹àž§àžŽàžàžµàžàž¥àžàž¡à¹àžà¹àžàžàž²àž£àžªàž±àž¡àž àž²àž©àžà¹àžàž²àž à¹àžàž¢à¹àž«à¹àžàž¹à¹àžªàž¡àž±àžàž£àžàž³ “à¹àžàžàžàžàžªàžàžà¹àžà¹àž” àžàž¶à¹àžàžàž£àžŽàž ๠à¹àž¥à¹àž§à¹àžà¹àžà¹àžà¹àžà¹àžàž npm àžàžµà¹àžàž±àžàž¡àž±àž¥à¹àž§àž£à¹ OtterCookie àž£àžžà¹àžà¹àž«àž¡à¹à¹àžà¹àž²à¹àž à¹àžà¹àžà¹àžàžà¹àž«àž¥à¹àž²àžàžµà¹àžàž¹àžàžàž²àž§àžà¹à¹àž«àž¥àžà¹àžà¹àž¥à¹àž§àžàž§à¹àž²àž«àž¡àž·à¹àžàžàž£àž±à¹àž à¹àž¥àž°àžªàž²àž¡àž²àž£àžàžà¹àž¡àž¢àžà¹àžàž¡àž¹àž¥àžªàž³àžàž±àž à¹àžà¹àž seed phrase àžàžàžàžàž£àž°à¹àžà¹àž²à¹àžàžŽàžàžàž£àžŽàžà¹àž àž£àž«àž±àžªàžà¹àž²àž à¹àž¥àž°à¹àžàž¥à¹àž¥àž±àžàžà¹àž²àž ๠à¹àžà¹àžàž±àžàžàžµ àžàž·àžà¹àžà¹àžàžàž²àž£à¹àžàž¡àžàžµàžàžµà¹à¹àžà¹àžàž£àž°àžàž§àžàžàž²àž£àžªàž¡àž±àžàž£àžàž²àžà¹àžà¹àžà¹àžàž£àž·à¹àžàžàž¡àž·àžà¹àžàžàž²àž£à¹àžàž²àž°àž£àž°àžàž
https://securityonline.info/north-koreas-contagious-interview-floods-npm-with-200-new-packages-using-fake-crypto-jobs-to-deploy-ottercookie-spyware
ShadowV2 Mirai Botnet àžàžàžªàžàžà¹àžàž¡àžàžµ IoT àž£àž°àž«àž§à¹àž²àž AWS àž¥à¹àž¡àžàž±à¹àž§à¹àž¥àž
à¹àžàžà¹àž§àžàžàžµà¹ AWS à¹àžàžŽàžàžàž²àž£àž¥à¹àž¡àžàž£àž±à¹àžà¹àž«àžà¹à¹àž¡àž·à¹àžà¹àžàž·àžàžàžàžžàž¥àž²àžàž¡ àžàž¥àžžà¹àž¡àžàž¹à¹à¹àžàž¡àžàžµà¹àžà¹à¹àžàžàž²àžªàžàžµà¹àžàž¥à¹àžàž¢ ShadowV2 àžàž¶à¹àžà¹àžà¹àžà¹àž§àžàž£à¹àžàž±àžà¹àž«àž¡à¹àžàžàž Mirai botnet à¹àžàž¢àž¡àžžà¹àžà¹àžà¹àž²à¹àžàžàžµà¹àžàžžàžàžàž£àžà¹ IoT à¹àžà¹àž à¹àž£àž²à¹àžàžàž£à¹à¹àž¥àž°àžàžžàžàžàž£àžà¹à¹àžàž£àž·àžàžà¹àž²àž¢àžàžµà¹àž¡àžµàžà¹àžàžà¹àž«àž§à¹ àžàž²àž£à¹àžàž¡àžàžµàžàž£àž±à¹àžàžàžµà¹àžàž¹àžàž¡àžàžàž§à¹àž²à¹àžà¹àž “àžàž²àž£àžàžàžªàžàž” àž¡àž²àžàžàž§à¹àž²àžàž²àž£à¹àžàž¡àžàžµà¹àžà¹àž¡àž£àž¹àžà¹àžàž à¹àžà¹àžà¹àžªàž²àž¡àž²àž£àžà¹àžà¹àž²àžàž¶àžàžàžžàžàžàž£àžà¹à¹àžàž«àž¥àž²àž¢àžàžžàžàžªàž²àž«àžàž£àž£àž¡àžàž±à¹àž§à¹àž¥àžà¹àžà¹à¹àž¥à¹àž§ ShadowV2 à¹àžà¹à¹àžàžàžàžŽàžà¹àžà¹àž²àž£àž«àž±àžªà¹àžàž·à¹àžàž«àž¥àžàžàž²àž£àžàž£àž§àžàžàž±àž à¹àž¥àž°àžªàž²àž¡àž²àž£àžàžàž³ DDoS à¹àžà¹àž«àž¥àž²àž¢àž£àž¹àžà¹àžàž àžàž·àžà¹àžà¹àžàžªàž±àžàžàž²àžà¹àžàž·àžàžàž§à¹àž² IoT àž¢àž±àžàžàžà¹àžà¹àžàžàžžàžàžà¹àžàžàžªàž³àžàž±àžà¹àžà¹àž¥àžà¹àžà¹àžàžàž£à¹
https://securityonline.info/shadowv2-mirai-botnet-launched-coordinated-iot-test-attack-during-global-aws-outage
Bloody Wolf APT àžàž¢àž²àž¢àžàž²àž£à¹àžàž¡àžàžµàžªàž¹à¹à¹àžà¹àžàžµàž¢àžàž¥àž²àž à¹àžà¹ NetSupport RAT
àžàž¥àžžà¹àž¡ APT àžàžµà¹àžàž·à¹àž Bloody Wolf àžàž¶à¹àžà¹àžàž¢à¹àžàž¡àžàžµà¹àžàž£àž±àžªà¹àžàžµàž¢à¹àž¥àž°àžàž²àžàž±àžàžªàžàž²àž àžàžàžàžàžµà¹àžàž¢àž²àž¢à¹àžàž¢àž±àžàžàžµàž£à¹àžàžµàžàžªàžàž²àžà¹àž¥àž°àžàžžàžà¹àžàžàžŽàžªàžàž²àž àžàž§àžà¹àžàž²à¹àžà¹àž§àžŽàžàžµàžªà¹àžàžàžµà¹àž¡àž¥ spear-phishing àžàžµà¹àžàž¥àžàž¡à¹àžà¹àžà¹àžàžàžªàž²àž£àžàž²àžàž£àž²àžàžàž²àž£ à¹àž¡àž·à¹àžà¹àž«àž¢àž·à¹àžà¹àžàžŽàžà¹àžàž¥à¹àžàž°àžàž¹àžàžàž³à¹àžàžàž²àž§àžà¹à¹àž«àž¥àž JAR àžàžµà¹àžàž±àžà¹àžà¹àžàžàž±àžàžàž£àž²àž¢ àžàž¶à¹àžàžªàžžàžàžà¹àž²àž¢àžàžŽàžàžàž±à¹àž NetSupport RAT àžàž¶à¹àžà¹àžà¹àžàžàžàžàžà¹à¹àž§àž£à¹àžàžµà¹àžàžàžàžŽà¹àžà¹à¹àžàžàž²àž£àžà¹àž§àž¢à¹àž«àž¥àž·àžàžà¹àž²àžà¹àžàžàžµ à¹àžà¹àžàž¹àžàžàž³àž¡àž²à¹àžà¹àžàž§àžàžàžžàž¡à¹àžàž£àž·à¹àžàžà¹àž«àž¢àž·à¹àžà¹àžàžàž¥àž±àž ๠àžàž³à¹àž«à¹àžàž²àž£àžàž£àž§àžàžàž±àžàž¢àž²àžàžàž¶à¹àžàž¡àž²àž àžàž²àž£à¹àžà¹à¹àžàž£àž·à¹àžàžàž¡àž·àžàžàžµà¹àžàž¹àžàžà¹àžàžàžàž²àž¡àžàžàž«àž¡àž²àž¢àž¡àž²àžàž³àžàž²àž£à¹àžàž¡àžàžµà¹àžà¹àžàžàžµà¹ à¹àžà¹àžàžàž¥àž¢àžžàžàžà¹àžàžµà¹àžàž³à¹àž«à¹à¹àž¢àžà¹àž¡à¹àžàžàžàž§à¹àž²à¹àžà¹àžàžàž²àž£à¹àžà¹àžàž²àžàžàž£àžŽàžàž«àž£àž·àžàžàž²àž£à¹àž®à¹àž
https://securityonline.info/bloody-wolf-apt-expands-to-central-asia-deploys-netsupport-rat-via-custom-java-droppers-and-geo-fencing
àžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àžà¹àž Apache bRPC (CVE-2025-59789)
à¹àž£àž·à¹àžàžàžàžµà¹à¹àžà¹àžàžàž²àž£àžà¹àžàžàžàžà¹àžàžà¹àž«àž§à¹àžàžµà¹àžàž±àžàžàž£àž²àž¢àž¡àž²àžà¹àž Apache bRPC àžàž¶à¹àžà¹àžà¹àžà¹àžàž£àž¡à¹àž§àžŽàž£à¹àž RPC àžàžµà¹à¹àžà¹àžàž±àžàžàž¢à¹àž²àžà¹àžàž£à¹àž«àž¥àž²àž¢àžªàž³àž«àž£àž±àžàž£àž°àžàžàžàž£àž°àžªàžŽàžàžàžŽàž àž²àžàžªàž¹àž à¹àžà¹àž àžàž²àž£àžà¹àžàž«àž² àžàž²àž£àžàž±àžà¹àžà¹àž à¹àž¥àž°à¹àž¡àžàžàžµàžà¹àž¥àžŽàž£à¹àžàžàžŽàž àžà¹àžàžà¹àž«àž§à¹àžàžµà¹à¹àžàžŽàžàžàž²àžàžàž²àž£àžàž£àž°àž¡àž§àž¥àžàž¥ JSON àžàžµà¹àž¡àžµà¹àžàž£àžàžªàž£à¹àž²àžàžà¹àžàžàž¥àž¶àžà¹àžàžŽàžà¹àž àžàž³à¹àž«à¹à¹àžàžŽàžàžàž²àž£à¹àžà¹àž«àžà¹àž§àž¢àžàž§àž²àž¡àžàž³àžªà¹àžà¹àžàžàžàž¥à¹àžà¹àž¥àž°àžàž³à¹àž«à¹à¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹àž¥à¹àž¡à¹àžà¹àžà¹àž²àž¢ àžàž¹à¹à¹àžàž¡àžàžµàžªàž²àž¡àž²àž£àžàžªà¹àžàžà¹àžàž¡àž¹àž¥ JSON àžàžµà¹àžàžàžà¹àžàžàž¡àž²à¹àžàž·à¹àžàžàž³à¹àž«à¹àž£àž°àžàž crash à¹àžàž¢à¹àžàžàž²àž° àžàžàžà¹àžàž£àžàžµà¹à¹àžàžŽàžàž£àž±àžàžàž£àž²àžàžàžŽàžàžàž²àžà¹àžàž£àž·àžàžà¹àž²àž¢àž àž²àž¢àžàžàžàžàž¶àžà¹àžªàžµà¹àž¢àžàžªàž¹àž àžàž²àžàžàžµàž¡àžàž±àžàžàž²à¹àžà¹àžàžàžà¹àžàžàžà¹à¹àžà¹à¹àžà¹àžà¹àž§àžàž£à¹àžàž±àž 1.15.0 à¹àžàž¢à¹àžàžŽà¹àž¡àžàž²àž£àžàž³àžàž±àžàžàž§àž²àž¡àž¥àž¶àžàžàžàžàžàž²àž£ recursion àžàžµà¹àžà¹àž²à¹àž£àžŽà¹àž¡àžà¹àž 100 à¹àžàž·à¹àžàžà¹àžàžàžàž±àžàžàž²àž£à¹àžàž¡àžàžµ à¹àžà¹àžà¹àžàž²àžàžàž³à¹àž«à¹àžàž²àžàžàž³àžàžàžàžµà¹àžàž¹àžàžà¹àžàžàžàž¹àžàžàžàžŽà¹àžªàžà¹àžàžà¹àž§àž¢
https://securityonline.info/cve-2025-59789-critical-flaw-in-apache-brpc-framework-exposes-high-performance-systems-to-crash-risks
Apple à¹àžàž£àžµàž¢àž¡à¹àžà¹ Intel Foundry àžàž¥àžŽàžàžàžŽàž M-Series àžàžà¹àžàžà¹àžà¹àž¥àž¢àžµ 18A àžàžµ 2027
àž¡àžµàž£àž²àž¢àžàž²àžàž§à¹àž² Apple à¹àžà¹àžàž³àžà¹àžàžàžàž¥àžàž¥àž±àžàžàž±àž Intel à¹àžàž·à¹àžà¹àž«à¹àžàž¥àžŽàžàžàžŽàž M-series àž£àžžà¹àžà¹àž£àžŽà¹àž¡àžà¹àžàžàžàžàž£àž°àžàž§àžàžàž²àž£àžàž¥àžŽàž 18A à¹àžàž¢àžàž²àžàž§à¹àž²àžàž°à¹àž£àžŽà¹àž¡àžàž¥àžŽàžàžàž³àžàž§àžàž¡àž²àžà¹àžà¹à¹àžàžà¹àž§àžàžàž¥àž²àžàžàžµ 2027 àžàžµà¹àžàž·àžà¹àžà¹àžàžàž²àž£àžàž¥àž±àžàž¡àž²àžàžàž Intel à¹àžàž«à¹àž§àžà¹àžà¹àžàžžàžàžàž²àžàžàžàž Apple àž«àž¥àž±àžàžàž²àžàžàžµà¹ TSMC àžàž£àžàžàžàžàžàž²àžàž«àž¥àž±àžàž¡àž²àžàž²àž àžàžŽàžàžàžµà¹àžàž¥àžŽàžàžàž°àžàž¹àžà¹àžà¹à¹àž MacBook Air à¹àž¥àž° iPad Pro àžàž¶à¹àžàž¡àžµàž¢àžàžàžàž²àž¢àž£àž§àž¡àžàž§à¹àž² 20 àž¥à¹àž²àžà¹àžàž£àž·à¹àžàžà¹àžàžàžµ 2025 àžàž²àž£à¹àžàž¥àž·à¹àžàžà¹àž«àž§àžàžµà¹àžà¹àž§àž¢à¹àžªàž£àžŽàž¡àžàž§àž²àž¡à¹àžà¹àžà¹àžàž£à¹àžà¹àž«à¹ Intel à¹àžàžàž²àžàž°à¹àž£àžàžàž²àžàžàž¥àžŽàž à¹àžà¹àž¢àž±àžà¹àž¡à¹àžàž£àž°àžàžàžà¹àžàž£àž²àž¢à¹àžà¹àžàžàž TSMC à¹àžàž£àž°àž¢àž°àžªàž±à¹àž
https://securityonline.info/apple-eyes-intel-foundry-for-m-series-chips-on-18a-node-by-2027
Windows 11 àžàžàžàž±àžàž«àž²à¹àžàžàžàžàž¥à¹àžàžàžàžŽàžàžà¹àž§àž¢àž£àž«àž±àžªàžà¹àž²àžàž«àž²àž¢à¹àžàž«àž¥àž±àžàžàž±àžà¹àžàž
àžàž¹à¹à¹àžà¹ Windows 11 àž«àž¥àž²àž¢àžàžà¹àžàžàžàž±àžàž«àž²àž«àž¥àž±àžàžàžŽàžàžàž±à¹àžàžàž±àžà¹àžàžà¹àžàž·àžàžàžªàžŽàžàž«àž²àžàž¡ 2025 àž«àž£àž·àžà¹àž§àžàž£à¹àžàž±àžàž«àž¥àž±àžàžàž²àžàžàž±à¹àž à¹àžàž¢à¹àžàžàžàžàžªàž³àž«àž£àž±àžà¹àžà¹àž²àžªàž¹à¹àž£àž°àžàžàžà¹àž§àž¢àž£àž«àž±àžªàžà¹àž²àžàž«àž²àž¢à¹àžàžàž²àžàž«àžà¹àž²àž¥à¹àžàžàžªàžàž£àžµàž àžàž³à¹àž«à¹àžàž¹à¹àž«àž¡àž·àžàžàž§à¹àž²àž¡àžµà¹àžàžµàž¢àžàžàž²àž£à¹àžà¹àž²àžªàž¹à¹àž£àž°àžàžàžà¹àž§àž¢ PIN à¹àžà¹àž²àžàž±à¹àžàžàžµà¹à¹àžà¹à¹àžà¹ à¹àž¡à¹àžàž£àžŽàž ๠à¹àž¥à¹àž§àžàž±àžàžà¹àžàž±àžàž¢àž±àžàžàž¢àž¹à¹ à¹àžà¹àžàž¹à¹à¹àžà¹àžà¹àžàžàžàž¥àžŽàžàžàž£àžàžàž·à¹àžàžàžµà¹àž§à¹àž²àžàžàžµà¹àžàž§àž£àž¡àžµà¹àžàžàžàž àžàž¶à¹àžàžªàž£à¹àž²àžàžàž§àž²àž¡àžªàž±àžàžªàžà¹àž¥àž°àž¢àžžà¹àžàž¢àž²àž Microsoft àž¢àž·àžàž¢àž±àžàž§à¹àž²àžàž³àž¥àž±àžà¹àžà¹à¹àžà¹àž¥àž°àžàž²àžàž§à¹àž²àžàž°àžàž¥à¹àžàž¢à¹àžàžàžà¹à¹àžà¹à¹àžàžàž±àžà¹àžàžàžàž±àžà¹àž
https://securityonline.info/windows-11-bug-makes-lock-screen-password-icon-vanish-after-update
àžàž¥àž¢àžžàžàžà¹ AI àžàžàž Google Pixel à¹àžà¹àžàžàž£àž°à¹àž¢àžàžà¹àžàž£àžŽàž à¹àž¡à¹à¹àžà¹à¹àžà¹àžàž³à¹àžàž©àžàž²
Google àžàž³àž¥àž±àžàžàž¥àž±àžàžàž±àž Pixel à¹àž«à¹à¹àžà¹àžàžªàž¡àž²àž£à¹àžà¹àžàžàžàžµà¹à¹àžàžà¹àžà¹àžàžà¹àž²àž AI à¹àžàž¢à¹àžà¹àžàžàž²àž£à¹àžà¹àžàž²àžàžàžµà¹àžàž±àžàžà¹àžàžà¹àžà¹ à¹àžà¹àž àžàžµà¹àžàžàž£à¹ “Auto Best Take” àžàžµà¹àžà¹àž§àž¢à¹àž«à¹àžàžžàžàžàžàžàž¹àžàžµàžàžµà¹àžªàžžàžà¹àžàž àž²àžàžà¹àž²àž¢àžàž¥àžžà¹àž¡ Adrienne Lofton àž£àžàžàžàž£àž°àžàž²àžàžà¹àž²àž¢àžàž²àž£àžàž¥àž²àžàžàžàž Pixel àžàžµà¹àž§à¹àž²à¹àž¡à¹ AI àžàž°à¹àžà¹àžàžàž£àž°à¹àžª à¹àžà¹àžàž¹à¹à¹àžà¹àž¢àž±àžà¹àžà¹àžàžàžàžà¹àžà¹àžàžªàžàžàžàž¥àžžà¹àž¡ àžàž±à¹àžàžàžµà¹à¹àžàž·à¹àžà¹àž¥àž°àžàžµà¹àžªàžàžªàž±àž¢ àžàž±àžàžàž±à¹àžàžàž¥àž¢àžžàžàžà¹àžàžàž Google àžàž·àžàžàž²àž£àžàž³à¹àž«à¹ AI à¹àžà¹àžàžªàžŽà¹àžàžàžµà¹àžàž¹à¹à¹àžà¹à¹àž«à¹àžàžàžžàžàžà¹àž² à¹àž¡à¹à¹àžà¹à¹àžà¹àžàž³à¹àžàž©àžàž² àžàžµàž¡àžàž²àžàž¢àž±àžà¹àžà¹ AI àž àž²àž¢à¹àžàžàž¢à¹àž²àž Gemini Live à¹àž¥àž° Veo 3 à¹àžàž·à¹àžà¹àž£à¹àžàžàž£àž°àžàž§àžàžàž²àž£àžàž³àžàž¥àž²àžà¹àž«à¹à¹àž£à¹àž§àžàž¶à¹àžàžàž§à¹àž²à¹àžàžŽàž¡àžàž¶àž 15 àžªàž±àžàžàž²àž«à¹
https://securityonline.info/googles-pixel-ai-strategy-focusing-on-tangible-benefits-not-just-hype
OpenAI àžàž¹àžàžà¹àž²àžàž²àž¢àžàž¢à¹àž²àžàž«àžàž±àžàžàž²àž Gemini 3 àžàžàž Google
àž«àž¥àž±àžàžàž²àž ChatGPT àžàž£àžàžàžàž¥àž²àžàž¡àž²àžàž²àž àžàžàžàžàžµà¹ OpenAI àžàž³àž¥àž±àžà¹àžàžàžŽàžà¹àž£àžàžàžàžàž±àžàžàž£àž±à¹àžà¹àž«àžà¹à¹àž¡àž·à¹àž Google à¹àžàžŽàžàžàž±àž§ Gemini 3 àžàžµà¹àžàž³àžàž°à¹àžàžà¹àž«àžàž·àž GPT-5 à¹àžàž«àž¥àž²àž¢àžàž²àž£àžàžàžªàžàž à¹àž¥àž°àž¡àžµàžàž¹à¹à¹àžà¹àžàž²àžàžàžžà¹àžàžàž¶à¹àžàžàž¢à¹àž²àžàž£àž§àžà¹àž£à¹àž§àžàž²àž 400 àž¥à¹àž²àžà¹àžà¹àž 650 àž¥à¹àž²àžàž£àž²àž¢àžà¹àžà¹àžàž·àžàž àžàž§àž²àž¡à¹àžà¹à¹àžàž£àžµàž¢àžàžàžàž Google àžàž·àžàžàž²àž£à¹àžà¹ TPU àžàžàžàžàž±àž§à¹àžàžà¹àžàžàžàž²àž£àžàž¶à¹àžàžàž² NVIDIA àžàž³à¹àž«à¹àžàž±àžàžàž²à¹àžà¹à¹àž£à¹àž§à¹àž¥àž°àžà¹àžàžàžžàžàžà¹àž³àž¥àž àžàžàž°àžàžµà¹ OpenAI àžà¹àžàžàž¥àžàžàžžàžàž¡àž«àž²àžšàž²àž¥àžàž§à¹àž² 1.4 àž¥à¹àž²àžàž¥à¹àž²àžàžàžàž¥àž¥àž²àž£à¹à¹àžà¹àžàž£àžàžªàž£à¹àž²àžàžàž·à¹àžàžàž²àžà¹àžàž·à¹àžàž£àž±àžàž©àž²àžàž§àž²àž¡à¹àžà¹àžàžàž¹à¹àžàž³ àžªàžàž²àžàžàž²àž£àžà¹àžàžµà¹àžàž³à¹àž«à¹àžàž¥àž²àž AI àžàž¥àž±àžàž¡àž²àžàžžà¹àžàž·àžàžàžàžµàžàžàž£àž±à¹àž à¹àž¥àž°àžàžàž²àžàžàžàžàž OpenAI àžàž¹àžàžàž±àžàžàž²àž¡àžàžàžàž¢à¹àž²àžà¹àžàž¥à¹àžàžŽàž
https://securityonline.info/openai-under-siege-googles-gemini-3-surge-threatens-to-end-chatgpts-early-lead
àžàžµà¹àžàžàž£à¹à¹àž«àž¡à¹ Android Hotspot à¹àžàž£à¹àžªàž±àžàžàž²àžàžàž£à¹àžàž¡àžàž±àž 2.4 GHz + 6 GHz
Android àžàž³àž¥àž±àžà¹àžàžŽà¹àž¡àžàž§àž²àž¡àžªàž²àž¡àž²àž£àžà¹àž«à¹àžàž¹à¹à¹àžà¹àžªàž²àž¡àž²àž£àžà¹àžàž£à¹àž®àžàžàžªàžàžàžà¹àžà¹àžàž£à¹àžàž¡àžàž±àžàžàž±à¹àžàž¢à¹àž²àžàžàž§àž²àž¡àžàžµà¹ 2.4 GHz à¹àž¥àž° 6 GHz àžàž¶à¹àžàžà¹àž§àž¢à¹àž«à¹à¹àžàž·à¹àžàž¡àžà¹àžàžàžžàžàžàž£àžà¹àž£àžžà¹àžà¹àžà¹àž²à¹àž¥àž°à¹àž«àž¡à¹à¹àžà¹à¹àžà¹àž§àž¥àž²à¹àžàžµàž¢àž§àžàž±àž àžàž²àž£àžàž±àžà¹àžàž£àžàžàžµà¹àžàž³à¹àž«à¹àžàž²àž£à¹àžà¹àžàž²àžàžàžŽàžà¹àžàžàž£à¹à¹àžà¹àžàžà¹àž²àžàž¡àž·àžàžàž·àžàž¡àžµàžàž§àž²àž¡àž¢àž·àžàž«àž¢àžžà¹àžàž¡àž²àžàžàž¶à¹àž à¹àžàž¢à¹àžàžàž²àž°à¹àžàžªàžàž²àžàžàž²àž£àžà¹àžàžµà¹àž¡àžµàž«àž¥àž²àž¢àžàžžàžàžàž£àžà¹àž«àž¥àž²àžàž«àž¥àž²àž¢àž£àžžà¹àžàžà¹àžàžà¹àžàž·à¹àžàž¡àžà¹àžàžàž£à¹àžàž¡àžàž±àž àžàž·àžà¹àžà¹àžàžàž²àž£àž¢àžàž£àž°àžàž±àžàžàž£àž°àžªàžàžàž²àž£àžà¹àžàž²àž£à¹àžà¹àžàž²àžàžàžµà¹àžàžàžà¹àžàžàž¢à¹àž¢àžžàž Wi-Fi 6E
https://securityonline.info/android-hotspot-upgrade-new-feature-allows-simultaneous-2-4-ghz-6-ghz-dual-band-sharing
àžàžàžŽàžàž±àžàžŽàžàž²àž£ Hanoi Thief: à¹àžà¹à¹àžàž¥à¹ LNK/àž£àž¹àžàž àž²àžà¹àžàž¡àžàžµàžà¹àž§àž¢ LOTUSHARVEST Stealer
à¹àž®àžà¹àžàžàž£à¹à¹àžà¹àžàž±àžàžàž²à¹àžàžàžàžŽàžà¹àž«àž¡à¹àžàžµà¹à¹àž£àžµàž¢àžàž§à¹àž² “Pseudo-Polyglot” à¹àžàž¢à¹àžà¹à¹àžàž¥à¹ LNK àž«àž£àž·àžàž£àž¹àžàž àž²àžàžàžµà¹àžàž¹à¹àž«àž¡àž·àžàžà¹àž¡à¹àž¡àžµàžàžŽàž©àž àž±àž¢ à¹àžà¹àžàž£àžŽàž ๠à¹àž¥à¹àž§àžà¹àžàžà¹àžà¹àžàžàž±àžàžàž£àž²àž¢à¹àž§à¹à¹àžàž·à¹àžà¹àž«àž¥àžàž¡àž±àž¥à¹àž§àž£à¹ LOTUSHARVEST Stealer àžà¹àž²àž DLL Sideloading àžàž²àž£à¹àžàž¡àžàžµàžàžµà¹àžàž³à¹àž«à¹àžàž¹à¹à¹àžà¹àžàžµà¹à¹àžàžŽàžà¹àžàž¥à¹àžàž±àžàžàž¥à¹àž²àž§à¹àžªàžµà¹àž¢àžàžà¹àžàžàž²àž£àžàž¹àžàžà¹àž¡àž¢àžà¹àžàž¡àž¹àž¥àžªàž³àžàž±àž à¹àžà¹àž àž£àž«àž±àžªàžà¹àž²àžàž«àž£àž·àžàžà¹àžàž¡àž¹àž¥àžªà¹àž§àžàžàž±àž§ à¹àžà¹àžàžàžµàžàž«àžàž¶à¹àžàžàž±àž§àžàž¢à¹àž²àžàžàžµà¹à¹àžªàžàžà¹àž«à¹à¹àž«à¹àžàž§à¹àž²àžàž¹à¹à¹àžàž¡àžàžµà¹àžà¹àžàž§àž²àž¡àžàžŽàžàžªàž£à¹àž²àžàžªàž£àž£àžà¹à¹àžàžàž²àž£àž«àž¥àžàžàž¥àž§àžàžàž²àžà¹àžà¹àžàžàž£à¹
https://securityonline.info/operation-hanoi-thief-hackers-use-pseudo-polyglot-lnk-image-to-deploy-lotusharvest-stealer-via-dll-sideloading
àžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àžà¹àž Devolutions Server (CVE-2025-13757)
àž¡àžµàžàž²àž£àžà¹àžàžàžàžà¹àžàžà¹àž«àž§à¹ SQL Injection àžàžµà¹àž£à¹àž²àž¢à¹àž£àžà¹àž Devolutions Server àžàž¶à¹àžàžàž³à¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžàžµà¹àžà¹àž²àžàžàž²àž£àž¢àž·àžàž¢àž±àžàžàž±àž§àžàžà¹àž¥à¹àž§àžªàž²àž¡àž²àž£àžàžàž¶àžàžà¹àžàž¡àž¹àž¥àž£àž«àž±àžªàžà¹àž²àžàžàž±à¹àžàž«àž¡àžàžàžàžàž¡àž²à¹àžà¹ àžà¹àžàžà¹àž«àž§à¹àžàžµà¹àžàž·àžàž§à¹àž²àžàž±àžàžàž£àž²àž¢àž¡àž²àžà¹àžàž£àž²àž°à¹àžàžŽàžà¹àžàžàž²àžªà¹àž«à¹à¹àžà¹àž²àžàž¶àžàžà¹àžàž¡àž¹àž¥àžàžµà¹àžªàž³àžàž±àžàžàžµà¹àžªàžžàžàžàžàžàž£àž°àžàž àžàž²àž£à¹àžàž¡àžàžµàž¥àž±àžàž©àžàž°àžàžµà¹àžªàž²àž¡àž²àž£àžàžàž³à¹àž«à¹àžàž±à¹àžàžàžàžà¹àžàž£à¹àžªàžµà¹àž¢àžàžà¹àžàžàž²àž£àžªàž¹àžà¹àžªàžµàž¢àžà¹àžàž¡àž¹àž¥à¹àž¥àž°àžàž¹àžàžàžžàžàž£àžžàžàžàž¢à¹àž²àžàž«àžàž±àž àžàž¹à¹àžàž¹à¹àž¥àž£àž°àžàžàžàž¶àžàžàž§àž£à¹àž£à¹àžàžàž±àžà¹àžàžà¹àžàžàžà¹à¹àžà¹à¹àžàžàž±àžàžàžµ
https://securityonline.info/critical-devolutions-server-flaw-cve-2025-13757-allows-authenticated-sql-injection-to-steal-all-passwords
àž¡àž±àž¥à¹àž§àž£à¹ TangleCrypt Packer àžà¹àžàž EDR Killer à¹àžà¹àžàž¥àž²àžàžàžà¹àžàž£àžà¹àžàž
àžàž±àžàž§àžŽàžàž±àž¢àžàžàž§à¹àž² TangleCrypt àžàž¶à¹àžà¹àžà¹àžà¹àžà¹àžà¹àžàžàž£à¹àž¡àž±àž¥à¹àž§àž£à¹àž£àžžà¹àžà¹àž«àž¡à¹ àžàž¹àžàžàžàžà¹àžàžàž¡àž²à¹àžàž·à¹àžàžà¹àžàžàžàž±àžàžà¹àžàž±àž EDR Killer àžàžµà¹àžªàž²àž¡àž²àž£àžàžàž³àž¥àž²àž¢àž£àž°àžàžàžàž£àž§àžàžàž±àžàž àž±àž¢àžàžžàžàžàž²àž¡à¹àžà¹ à¹àžà¹à¹àžàž·à¹àžàžàžàž²àžàž¡àžµàžà¹àžàžàžŽàžàžàž¥àž²àžà¹àžàžàž²àž£à¹àžàžµàž¢àžà¹àžà¹àž àžàž³à¹àž«à¹àž¡àž±àž¥à¹àž§àž£à¹àžàžµà¹à¹àžàžŽàžàžàž²àž£à¹àžàž£àžà¹àžàžà¹àžàž¢à¹àž¡à¹àžàž±à¹àžà¹àž à¹àž¡à¹àžàž°à¹àžà¹àžàž àž±àž¢àžàžžàžàžàž²àž¡àžàžµà¹àžà¹àž²àžàž±àžàž§àž¥ à¹àžà¹àžàž§àž²àž¡àžàžŽàžàžàž¥àž²àžàžàžµà¹àžà¹àžàž³à¹àž«à¹àžàž²àž£à¹àžàž¡àžàžµà¹àž¡à¹à¹àžªàžàžµàž¢àž£ à¹àž¥àž°àžàž²àžà¹àžà¹àžàžàžžàžàžà¹àžàžàžàžµà¹àžà¹àž§àž¢à¹àž«à¹àžàž¹à¹à¹àžàžµà¹àž¢àž§àžàž²àžàžà¹àž²àžàžàž§àž²àž¡àžàž¥àžàžàž àž±àž¢àžªàž²àž¡àž²àž£àžàžàž£àž§àžàžàž±àžà¹àž¥àž°àžà¹àžàžàžàž±àžà¹àžà¹àžà¹àž²àž¢àžàž¶à¹àž
https://securityonline.info/new-tanglecrypt-packer-hides-edr-killer-but-coding-flaws-cause-ransomware-to-crash-unexpectedly
àžàž¥àž¢àžžàžàžà¹à¹àž«àž¡à¹àžàžàž Russian Tomiris APT à¹àžà¹ Telegram/Discord à¹àžà¹àžàžà¹àžàžàžàž²àžàžªàžàžà¹àžàž¡
àžàž¥àžžà¹àž¡à¹àž®àžà¹àžàžàž£à¹ Tomiris APT àžàž²àžàž£àž±àžªà¹àžàžµàž¢àžàž¹àžàžàžàž§à¹àž²à¹àžà¹àž§àžŽàžàžµ “Polyglot” à¹àžàžàž²àž£à¹àžàžàžàž±àž§ à¹àžàž¢à¹àžàž¥àžµà¹àž¢àžà¹àžàž¥àžàžàžàž£à¹àž¡àžªàž·à¹àžàžªàž²àž£àž¢àžàžàžàžŽàž¢àž¡àžàž¢à¹àž²àž Telegram à¹àž¥àž° Discord à¹àž«à¹àžàž¥àž²àž¢à¹àžà¹àžàžà¹àžàžàžàž²àžàžàž§àžàžàžžàž¡àžàž²àž£àžªàžàžà¹àžàž¡àžàž²àžàžàž²àž£àžàž¹àž à¹àžàžàžàžŽàžàžàžµà¹àžàž³à¹àž«à¹àžàž²àž£àžàž£àž§àžàžàž±àžàž¢àž²àžàžàž¶à¹àž à¹àžàž£àž²àž°àžàž¹à¹àž«àž¡àž·àžàžàžàž²àž£à¹àžà¹àžàž²àžàžàžàžàžŽàžàžàžàžàž¹à¹à¹àžà¹àžàž±à¹àž§à¹àž à¹àžà¹àžàž£àžŽàž ๠à¹àž¥à¹àž§à¹àžà¹àžàžàž²àž£àžà¹àžàžàžàž²àž£àžªàž·à¹àžàžªàž²àž£àž£àž°àž«àž§à¹àž²àžà¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹àžàž§àžàžàžžàž¡à¹àž¥àž°à¹àžàž£àž·à¹àžàžàžàžµà¹àžàž¹àžàžàžžàžàž£àžžàž àžàž·àžà¹àžà¹àžàžàž²àž£àž¢àžàž£àž°àžàž±àžàžàž²àž£à¹àžàž¡àžàžµà¹àžà¹àžàžàž£à¹àžàžµà¹àžàž±àžàžà¹àžàžàž¡àž²àžàžàž¶à¹àž
âââââââ https://securityonline.info/russian-tomiris-apt-adopts-polyglot-strategy-hijacking-telegram-discord-as-covert-c2-for-diplomatic-spies
ððð¡ àž£àž§àž¡àžà¹àž²àž§àžàž²àžà¹àž§àž SecurityOnline ð¡ðð
#àž£àž§àž¡àžà¹àž²àž§IT #20251201 #securityonline
ð¡ïž GeoServer àžàžàžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àž XXE (CVE-2025-58360)
à¹àž£àž·à¹àžàžàžàžµà¹à¹àžà¹àžàžàž²àž£à¹àžàž·àžàžàžàž£àž±à¹àžà¹àž«àžà¹àžªàž³àž«àž£àž±àžàžàž¹à¹àžàž¹à¹àž¥àž£àž°àžàžàžàžµà¹à¹àžà¹ GeoServer àžàž¶à¹àžà¹àžà¹àžàžàžàžàžà¹à¹àž§àž£à¹à¹àžà¹àžà¹àžàžàžàž£à¹àžªàžà¹àž²àžàžà¹àžàž¡àž¹àž¥àž àž¹àž¡àžŽàžªàž²àž£àžªàžà¹àžàžš àžà¹àžàžà¹àž«àž§à¹àžàžµà¹àžàž¢àž¹à¹à¹àžàžàž±àžàžà¹àžàž±àž Web Map Service (WMS) àžàžµà¹à¹àžàžŽàžà¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžªàž²àž¡àž²àž£àžàžªà¹àžàžàž³àžªàž±à¹àž XML àžàžµà¹à¹àž¡à¹àžàž¹àžàžàž£àžàžàžàž¢à¹àž²àžà¹àž«àž¡àž²àž°àžªàž¡ àžàž¥àžàž·àžàžªàž²àž¡àž²àž£àžàžàž¶àžà¹àžàž¥à¹àž¥àž±àžàžàž²àžà¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹ àžàž³àžàž²àž£ SSRF à¹àžàž·à¹àžà¹àžàž²àž°àž£àž°àžàžàž àž²àž¢à¹àž àž«àž£àž·àžà¹àž¡à¹à¹àžà¹àžàž³à¹àž«à¹à¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹àž¥à¹àž¡à¹àžà¹àžàž±àžàžàžµ àžàž¹à¹à¹àžàžµà¹àž¢àž§àžàž²àžà¹àžàž°àžàž³à¹àž«à¹àž£àžµàžàžàž±àžà¹àžàžà¹àžàž¢àž±àžà¹àž§àžàž£à¹àžàž±àžàž¥à¹àž²àžªàžžàžà¹àžàž·à¹àžàžàžŽàžàžà¹àžàžà¹àž«àž§à¹ à¹àž¡à¹à¹àžà¹àžàžàž±à¹àžàž£àž°àžàžàžàžµà¹à¹àžàžµà¹àž¢àž§àžà¹àžàžàžàž±àžàžà¹àžàž¡àž¹àž¥à¹àžàžàžàžµà¹àžàž²àžàžàž¹àžà¹àžàž²àž°à¹àžà¹àžà¹àž²àž¢
ð https://securityonline.info/high-severity-geoserver-flaw-cve-2025-58360-allows-unauthenticated-xxe-for-file-theft-and-ssrf
ðµïž TAG-150 àžàž¹à¹à¹àž«à¹àžàž£àžŽàžàž²àž£ Malware-as-a-Service àž£àž²àž¢à¹àž«àž¡à¹ à¹àžà¹ ClickFix àž«àž¥àžàžà¹àž«àž¢àž·à¹àž
àžàž¥àžžà¹àž¡àžàž²àžàžàž²àžàž£àž£àž¡à¹àžà¹àžàžàž£à¹àž«àžà¹àž²à¹àž«àž¡à¹àžàž·à¹àž TAG-150 à¹àžàž¥à¹àžàž¶à¹àžàž¡àž²à¹àžàžàžµ 2025 à¹àž¥àž°àžªàž£à¹àž²àžàžàž§àž²àž¡àžàž±à¹àžàžà¹àž§àžàžàž¢à¹àž²àžàž£àž§àžà¹àž£à¹àž§ àžàž§àžà¹àžàž²à¹àžà¹à¹àžàžàžàžŽàž ClickFix àžàžµà¹àž«àž¥àžàžà¹àž«à¹àžàž¹à¹à¹àžà¹àžàžŽàžàž§à¹àž²àžàž³àž¥àž±àžàžàž³àžàž±à¹àžàžàžàžàž¢àž·àžàž¢àž±àžàž«àž£àž·àžàžàž±àžà¹àžàžàžàžàžàžà¹à¹àž§àž£à¹ à¹àžà¹àžàž£àžŽàž ๠à¹àž¥à¹àž§àžàž·àžàžàž²àž£àžàž±àžàžàž±àžà¹àž«à¹à¹àž«àž¢àž·à¹àžàž£àž±àžàžàž³àžªàž±à¹àž PowerShell àžàžµà¹à¹àžà¹àžàž¡àž±àž¥à¹àž§àž£à¹à¹àžàž àž«àž¥àž±àžàžàž²àžàžàž±à¹àžàžàž°àžàž¹àžàžàžŽàžàžàž±à¹àž CastleLoader à¹àž¥àž° CastleRAT àžàž¶à¹àžà¹àž«à¹àžªàžŽàžàžàžŽà¹àžàž§àžàžàžžàž¡à¹àžàž£àž·à¹àžàžà¹àžàžà¹àžà¹àž¡àž£àž¹àžà¹àžàž àžàž±à¹àžàžàž²àž£àžàž±àžàžàžµàž¢à¹àžàžàž£à¹àž àžàž±àžàž àž²àžàž«àžà¹àž²àžàž à¹àž¥àž°à¹àžàžŽàžà¹àžàž¥àž¥à¹àž£àž°àž¢àž°à¹àžàž¥ àžàž·àžà¹àžà¹àžàžàž²àž£à¹àžàž¡àžàžµàžàžµà¹à¹àžà¹àžàž«àž¥àžàžà¹àž«àž¢àž·à¹àžà¹àž«à¹ “à¹àž®à¹àžàžàž±àž§à¹àžàž” à¹àžàž¢à¹àž¡à¹àž£àž¹à¹àžàž±àž§
ð https://securityonline.info/new-maas-operator-tag-150-uses-clickfix-lure-and-custom-castleloader-to-compromise-469-us-devices
ð» à¹àžàž¡à¹àžàž “Contagious Interview” àžàžàžà¹àžàž²àž«àž¥àžµà¹àž«àžàž·àž àžàž¥à¹àžàž¢à¹àžà¹àžà¹àžàž npm àžàž§à¹àž² 200 àžàž±àž§
àžàž±àžàž§àžŽàžàž±àž¢àžàžàž§à¹àž²àžàž¥àžžà¹àž¡à¹àž®à¹àžà¹àžàžàž£à¹àžàžµà¹à¹àžàž·à¹àžàž¡à¹àž¢àžàžàž±àžà¹àžàž²àž«àž¥àžµà¹àž«àžàž·àžàž¢àž±àžàžàžà¹àžàžŽàžàž«àžà¹àž²àž¥à¹àž²àžàž¹à¹àžàž±àžàžàž²à¹àžàžªàž²àž¢àžàž¥à¹àžàžà¹àžàžà¹àž¥àž° Web3 àžàž§àžà¹àžàž²à¹àžà¹àž§àžŽàžàžµàžàž¥àžàž¡à¹àžà¹àžàžàž²àž£àžªàž±àž¡àž àž²àž©àžà¹àžàž²àž à¹àžàž¢à¹àž«à¹àžàž¹à¹àžªàž¡àž±àžàž£àžàž³ “à¹àžàžàžàžàžªàžàžà¹àžà¹àž” àžàž¶à¹àžàžàž£àžŽàž ๠à¹àž¥à¹àž§à¹àžà¹àžà¹àžà¹àžà¹àžàž npm àžàžµà¹àžàž±àžàž¡àž±àž¥à¹àž§àž£à¹ OtterCookie àž£àžžà¹àžà¹àž«àž¡à¹à¹àžà¹àž²à¹àž à¹àžà¹àžà¹àžàžà¹àž«àž¥à¹àž²àžàžµà¹àžàž¹àžàžàž²àž§àžà¹à¹àž«àž¥àžà¹àžà¹àž¥à¹àž§àžàž§à¹àž²àž«àž¡àž·à¹àžàžàž£àž±à¹àž à¹àž¥àž°àžªàž²àž¡àž²àž£àžàžà¹àž¡àž¢àžà¹àžàž¡àž¹àž¥àžªàž³àžàž±àž à¹àžà¹àž seed phrase àžàžàžàžàž£àž°à¹àžà¹àž²à¹àžàžŽàžàžàž£àžŽàžà¹àž àž£àž«àž±àžªàžà¹àž²àž à¹àž¥àž°à¹àžàž¥à¹àž¥àž±àžàžà¹àž²àž ๠à¹àžà¹àžàž±àžàžàžµ àžàž·àžà¹àžà¹àžàžàž²àž£à¹àžàž¡àžàžµàžàžµà¹à¹àžà¹àžàž£àž°àžàž§àžàžàž²àž£àžªàž¡àž±àžàž£àžàž²àžà¹àžà¹àžà¹àžàž£àž·à¹àžàžàž¡àž·àžà¹àžàžàž²àž£à¹àžàž²àž°àž£àž°àžàž
ð https://securityonline.info/north-koreas-contagious-interview-floods-npm-with-200-new-packages-using-fake-crypto-jobs-to-deploy-ottercookie-spyware
ð ShadowV2 Mirai Botnet àžàžàžªàžàžà¹àžàž¡àžàžµ IoT àž£àž°àž«àž§à¹àž²àž AWS àž¥à¹àž¡àžàž±à¹àž§à¹àž¥àž
à¹àžàžà¹àž§àžàžàžµà¹ AWS à¹àžàžŽàžàžàž²àž£àž¥à¹àž¡àžàž£àž±à¹àžà¹àž«àžà¹à¹àž¡àž·à¹àžà¹àžàž·àžàžàžàžžàž¥àž²àžàž¡ àžàž¥àžžà¹àž¡àžàž¹à¹à¹àžàž¡àžàžµà¹àžà¹à¹àžàžàž²àžªàžàžµà¹àžàž¥à¹àžàž¢ ShadowV2 àžàž¶à¹àžà¹àžà¹àžà¹àž§àžàž£à¹àžàž±àžà¹àž«àž¡à¹àžàžàž Mirai botnet à¹àžàž¢àž¡àžžà¹àžà¹àžà¹àž²à¹àžàžàžµà¹àžàžžàžàžàž£àžà¹ IoT à¹àžà¹àž à¹àž£àž²à¹àžàžàž£à¹à¹àž¥àž°àžàžžàžàžàž£àžà¹à¹àžàž£àž·àžàžà¹àž²àž¢àžàžµà¹àž¡àžµàžà¹àžàžà¹àž«àž§à¹ àžàž²àž£à¹àžàž¡àžàžµàžàž£àž±à¹àžàžàžµà¹àžàž¹àžàž¡àžàžàž§à¹àž²à¹àžà¹àž “àžàž²àž£àžàžàžªàžàž” àž¡àž²àžàžàž§à¹àž²àžàž²àž£à¹àžàž¡àžàžµà¹àžà¹àž¡àž£àž¹àžà¹àžàž à¹àžà¹àžà¹àžªàž²àž¡àž²àž£àžà¹àžà¹àž²àžàž¶àžàžàžžàžàžàž£àžà¹à¹àžàž«àž¥àž²àž¢àžàžžàžàžªàž²àž«àžàž£àž£àž¡àžàž±à¹àž§à¹àž¥àžà¹àžà¹à¹àž¥à¹àž§ ShadowV2 à¹àžà¹à¹àžàžàžàžŽàžà¹àžà¹àž²àž£àž«àž±àžªà¹àžàž·à¹àžàž«àž¥àžàžàž²àž£àžàž£àž§àžàžàž±àž à¹àž¥àž°àžªàž²àž¡àž²àž£àžàžàž³ DDoS à¹àžà¹àž«àž¥àž²àž¢àž£àž¹àžà¹àžàž àžàž·àžà¹àžà¹àžàžªàž±àžàžàž²àžà¹àžàž·àžàžàž§à¹àž² IoT àž¢àž±àžàžàžà¹àžà¹àžàžàžžàžàžà¹àžàžàžªàž³àžàž±àžà¹àžà¹àž¥àžà¹àžà¹àžàžàž£à¹
ð https://securityonline.info/shadowv2-mirai-botnet-launched-coordinated-iot-test-attack-during-global-aws-outage
ðº Bloody Wolf APT àžàž¢àž²àž¢àžàž²àž£à¹àžàž¡àžàžµàžªàž¹à¹à¹àžà¹àžàžµàž¢àžàž¥àž²àž à¹àžà¹ NetSupport RAT
àžàž¥àžžà¹àž¡ APT àžàžµà¹àžàž·à¹àž Bloody Wolf àžàž¶à¹àžà¹àžàž¢à¹àžàž¡àžàžµà¹àžàž£àž±àžªà¹àžàžµàž¢à¹àž¥àž°àžàž²àžàž±àžàžªàžàž²àž àžàžàžàžàžµà¹àžàž¢àž²àž¢à¹àžàž¢àž±àžàžàžµàž£à¹àžàžµàžàžªàžàž²àžà¹àž¥àž°àžàžžàžà¹àžàžàžŽàžªàžàž²àž àžàž§àžà¹àžàž²à¹àžà¹àž§àžŽàžàžµàžªà¹àžàžàžµà¹àž¡àž¥ spear-phishing àžàžµà¹àžàž¥àžàž¡à¹àžà¹àžà¹àžàžàžªàž²àž£àžàž²àžàž£àž²àžàžàž²àž£ à¹àž¡àž·à¹àžà¹àž«àž¢àž·à¹àžà¹àžàžŽàžà¹àžàž¥à¹àžàž°àžàž¹àžàžàž³à¹àžàžàž²àž§àžà¹à¹àž«àž¥àž JAR àžàžµà¹àžàž±àžà¹àžà¹àžàžàž±àžàžàž£àž²àž¢ àžàž¶à¹àžàžªàžžàžàžà¹àž²àž¢àžàžŽàžàžàž±à¹àž NetSupport RAT àžàž¶à¹àžà¹àžà¹àžàžàžàžàžà¹à¹àž§àž£à¹àžàžµà¹àžàžàžàžŽà¹àžà¹à¹àžàžàž²àž£àžà¹àž§àž¢à¹àž«àž¥àž·àžàžà¹àž²àžà¹àžàžàžµ à¹àžà¹àžàž¹àžàžàž³àž¡àž²à¹àžà¹àžàž§àžàžàžžàž¡à¹àžàž£àž·à¹àžàžà¹àž«àž¢àž·à¹àžà¹àžàžàž¥àž±àž ๠àžàž³à¹àž«à¹àžàž²àž£àžàž£àž§àžàžàž±àžàž¢àž²àžàžàž¶à¹àžàž¡àž²àž àžàž²àž£à¹àžà¹à¹àžàž£àž·à¹àžàžàž¡àž·àžàžàžµà¹àžàž¹àžàžà¹àžàžàžàž²àž¡àžàžàž«àž¡àž²àž¢àž¡àž²àžàž³àžàž²àž£à¹àžàž¡àžàžµà¹àžà¹àžàžàžµà¹ à¹àžà¹àžàžàž¥àž¢àžžàžàžà¹àžàžµà¹àžàž³à¹àž«à¹à¹àž¢àžà¹àž¡à¹àžàžàžàž§à¹àž²à¹àžà¹àžàžàž²àž£à¹àžà¹àžàž²àžàžàž£àžŽàžàž«àž£àž·àžàžàž²àž£à¹àž®à¹àž
ð https://securityonline.info/bloody-wolf-apt-expands-to-central-asia-deploys-netsupport-rat-via-custom-java-droppers-and-geo-fencing
ð¡ïž àžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àžà¹àž Apache bRPC (CVE-2025-59789)
à¹àž£àž·à¹àžàžàžàžµà¹à¹àžà¹àžàžàž²àž£àžà¹àžàžàžàžà¹àžàžà¹àž«àž§à¹àžàžµà¹àžàž±àžàžàž£àž²àž¢àž¡àž²àžà¹àž Apache bRPC àžàž¶à¹àžà¹àžà¹àžà¹àžàž£àž¡à¹àž§àžŽàž£à¹àž RPC àžàžµà¹à¹àžà¹àžàž±àžàžàž¢à¹àž²àžà¹àžàž£à¹àž«àž¥àž²àž¢àžªàž³àž«àž£àž±àžàž£àž°àžàžàžàž£àž°àžªàžŽàžàžàžŽàž àž²àžàžªàž¹àž à¹àžà¹àž àžàž²àž£àžà¹àžàž«àž² àžàž²àž£àžàž±àžà¹àžà¹àž à¹àž¥àž°à¹àž¡àžàžàžµàžà¹àž¥àžŽàž£à¹àžàžàžŽàž àžà¹àžàžà¹àž«àž§à¹àžàžµà¹à¹àžàžŽàžàžàž²àžàžàž²àž£àžàž£àž°àž¡àž§àž¥àžàž¥ JSON àžàžµà¹àž¡àžµà¹àžàž£àžàžªàž£à¹àž²àžàžà¹àžàžàž¥àž¶àžà¹àžàžŽàžà¹àž àžàž³à¹àž«à¹à¹àžàžŽàžàžàž²àž£à¹àžà¹àž«àžà¹àž§àž¢àžàž§àž²àž¡àžàž³àžªà¹àžà¹àžàžàžàž¥à¹àžà¹àž¥àž°àžàž³à¹àž«à¹à¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹àž¥à¹àž¡à¹àžà¹àžà¹àž²àž¢ àžàž¹à¹à¹àžàž¡àžàžµàžªàž²àž¡àž²àž£àžàžªà¹àžàžà¹àžàž¡àž¹àž¥ JSON àžàžµà¹àžàžàžà¹àžàžàž¡àž²à¹àžàž·à¹àžàžàž³à¹àž«à¹àž£àž°àžàž crash à¹àžàž¢à¹àžàžàž²àž° àžàžàžà¹àžàž£àžàžµà¹à¹àžàžŽàžàž£àž±àžàžàž£àž²àžàžàžŽàžàžàž²àžà¹àžàž£àž·àžàžà¹àž²àž¢àž àž²àž¢àžàžàžàžàž¶àžà¹àžªàžµà¹àž¢àžàžªàž¹àž àžàž²àžàžàžµàž¡àžàž±àžàžàž²à¹àžà¹àžàžàžà¹àžàžàžà¹à¹àžà¹à¹àžà¹àžà¹àž§àžàž£à¹àžàž±àž 1.15.0 à¹àžàž¢à¹àžàžŽà¹àž¡àžàž²àž£àžàž³àžàž±àžàžàž§àž²àž¡àž¥àž¶àžàžàžàžàžàž²àž£ recursion àžàžµà¹àžà¹àž²à¹àž£àžŽà¹àž¡àžà¹àž 100 à¹àžàž·à¹àžàžà¹àžàžàžàž±àžàžàž²àž£à¹àžàž¡àžàžµ à¹àžà¹àžà¹àžàž²àžàžàž³à¹àž«à¹àžàž²àžàžàž³àžàžàžàžµà¹àžàž¹àžàžà¹àžàžàžàž¹àžàžàžàžŽà¹àžªàžà¹àžàžà¹àž§àž¢
ð https://securityonline.info/cve-2025-59789-critical-flaw-in-apache-brpc-framework-exposes-high-performance-systems-to-crash-risks
ð» Apple à¹àžàž£àžµàž¢àž¡à¹àžà¹ Intel Foundry àžàž¥àžŽàžàžàžŽàž M-Series àžàžà¹àžàžà¹àžà¹àž¥àž¢àžµ 18A àžàžµ 2027
àž¡àžµàž£àž²àž¢àžàž²àžàž§à¹àž² Apple à¹àžà¹àžàž³àžà¹àžàžàžàž¥àžàž¥àž±àžàžàž±àž Intel à¹àžàž·à¹àžà¹àž«à¹àžàž¥àžŽàžàžàžŽàž M-series àž£àžžà¹àžà¹àž£àžŽà¹àž¡àžà¹àžàžàžàžàž£àž°àžàž§àžàžàž²àž£àžàž¥àžŽàž 18A à¹àžàž¢àžàž²àžàž§à¹àž²àžàž°à¹àž£àžŽà¹àž¡àžàž¥àžŽàžàžàž³àžàž§àžàž¡àž²àžà¹àžà¹à¹àžàžà¹àž§àžàžàž¥àž²àžàžàžµ 2027 àžàžµà¹àžàž·àžà¹àžà¹àžàžàž²àž£àžàž¥àž±àžàž¡àž²àžàžàž Intel à¹àžàž«à¹àž§àžà¹àžà¹àžàžžàžàžàž²àžàžàžàž Apple àž«àž¥àž±àžàžàž²àžàžàžµà¹ TSMC àžàž£àžàžàžàžàžàž²àžàž«àž¥àž±àžàž¡àž²àžàž²àž àžàžŽàžàžàžµà¹àžàž¥àžŽàžàžàž°àžàž¹àžà¹àžà¹à¹àž MacBook Air à¹àž¥àž° iPad Pro àžàž¶à¹àžàž¡àžµàž¢àžàžàžàž²àž¢àž£àž§àž¡àžàž§à¹àž² 20 àž¥à¹àž²àžà¹àžàž£àž·à¹àžàžà¹àžàžàžµ 2025 àžàž²àž£à¹àžàž¥àž·à¹àžàžà¹àž«àž§àžàžµà¹àžà¹àž§àž¢à¹àžªàž£àžŽàž¡àžàž§àž²àž¡à¹àžà¹àžà¹àžàž£à¹àžà¹àž«à¹ Intel à¹àžàžàž²àžàž°à¹àž£àžàžàž²àžàžàž¥àžŽàž à¹àžà¹àž¢àž±àžà¹àž¡à¹àžàž£àž°àžàžàžà¹àžàž£àž²àž¢à¹àžà¹àžàžàž TSMC à¹àžàž£àž°àž¢àž°àžªàž±à¹àž
ð https://securityonline.info/apple-eyes-intel-foundry-for-m-series-chips-on-18a-node-by-2027
ð¥ïž Windows 11 àžàžàžàž±àžàž«àž²à¹àžàžàžàžàž¥à¹àžàžàžàžŽàžàžà¹àž§àž¢àž£àž«àž±àžªàžà¹àž²àžàž«àž²àž¢à¹àžàž«àž¥àž±àžàžàž±àžà¹àžàž
àžàž¹à¹à¹àžà¹ Windows 11 àž«àž¥àž²àž¢àžàžà¹àžàžàžàž±àžàž«àž²àž«àž¥àž±àžàžàžŽàžàžàž±à¹àžàžàž±àžà¹àžàžà¹àžàž·àžàžàžªàžŽàžàž«àž²àžàž¡ 2025 àž«àž£àž·àžà¹àž§àžàž£à¹àžàž±àžàž«àž¥àž±àžàžàž²àžàžàž±à¹àž à¹àžàž¢à¹àžàžàžàžàžªàž³àž«àž£àž±àžà¹àžà¹àž²àžªàž¹à¹àž£àž°àžàžàžà¹àž§àž¢àž£àž«àž±àžªàžà¹àž²àžàž«àž²àž¢à¹àžàžàž²àžàž«àžà¹àž²àž¥à¹àžàžàžªàžàž£àžµàž àžàž³à¹àž«à¹àžàž¹à¹àž«àž¡àž·àžàžàž§à¹àž²àž¡àžµà¹àžàžµàž¢àžàžàž²àž£à¹àžà¹àž²àžªàž¹à¹àž£àž°àžàžàžà¹àž§àž¢ PIN à¹àžà¹àž²àžàž±à¹àžàžàžµà¹à¹àžà¹à¹àžà¹ à¹àž¡à¹àžàž£àžŽàž ๠à¹àž¥à¹àž§àžàž±àžàžà¹àžàž±àžàž¢àž±àžàžàž¢àž¹à¹ à¹àžà¹àžàž¹à¹à¹àžà¹àžà¹àžàžàžàž¥àžŽàžàžàž£àžàžàž·à¹àžàžàžµà¹àž§à¹àž²àžàžàžµà¹àžàž§àž£àž¡àžµà¹àžàžàžàž àžàž¶à¹àžàžªàž£à¹àž²àžàžàž§àž²àž¡àžªàž±àžàžªàžà¹àž¥àž°àž¢àžžà¹àžàž¢àž²àž Microsoft àž¢àž·àžàž¢àž±àžàž§à¹àž²àžàž³àž¥àž±àžà¹àžà¹à¹àžà¹àž¥àž°àžàž²àžàž§à¹àž²àžàž°àžàž¥à¹àžàž¢à¹àžàžàžà¹à¹àžà¹à¹àžàžàž±àžà¹àžàžàžàž±àžà¹àž
ð https://securityonline.info/windows-11-bug-makes-lock-screen-password-icon-vanish-after-update
ð± àžàž¥àž¢àžžàžàžà¹ AI àžàžàž Google Pixel à¹àžà¹àžàžàž£àž°à¹àž¢àžàžà¹àžàž£àžŽàž à¹àž¡à¹à¹àžà¹à¹àžà¹àžàž³à¹àžàž©àžàž²
Google àžàž³àž¥àž±àžàžàž¥àž±àžàžàž±àž Pixel à¹àž«à¹à¹àžà¹àžàžªàž¡àž²àž£à¹àžà¹àžàžàžàžµà¹à¹àžàžà¹àžà¹àžàžà¹àž²àž AI à¹àžàž¢à¹àžà¹àžàžàž²àž£à¹àžà¹àžàž²àžàžàžµà¹àžàž±àžàžà¹àžàžà¹àžà¹ à¹àžà¹àž àžàžµà¹àžàžàž£à¹ “Auto Best Take” àžàžµà¹àžà¹àž§àž¢à¹àž«à¹àžàžžàžàžàžàžàž¹àžàžµàžàžµà¹àžªàžžàžà¹àžàž àž²àžàžà¹àž²àž¢àžàž¥àžžà¹àž¡ Adrienne Lofton àž£àžàžàžàž£àž°àžàž²àžàžà¹àž²àž¢àžàž²àž£àžàž¥àž²àžàžàžàž Pixel àžàžµà¹àž§à¹àž²à¹àž¡à¹ AI àžàž°à¹àžà¹àžàžàž£àž°à¹àžª à¹àžà¹àžàž¹à¹à¹àžà¹àž¢àž±àžà¹àžà¹àžàžàžàžà¹àžà¹àžàžªàžàžàžàž¥àžžà¹àž¡ àžàž±à¹àžàžàžµà¹à¹àžàž·à¹àžà¹àž¥àž°àžàžµà¹àžªàžàžªàž±àž¢ àžàž±àžàžàž±à¹àžàžàž¥àž¢àžžàžàžà¹àžàžàž Google àžàž·àžàžàž²àž£àžàž³à¹àž«à¹ AI à¹àžà¹àžàžªàžŽà¹àžàžàžµà¹àžàž¹à¹à¹àžà¹à¹àž«à¹àžàžàžžàžàžà¹àž² à¹àž¡à¹à¹àžà¹à¹àžà¹àžàž³à¹àžàž©àžàž² àžàžµàž¡àžàž²àžàž¢àž±àžà¹àžà¹ AI àž àž²àž¢à¹àžàžàž¢à¹àž²àž Gemini Live à¹àž¥àž° Veo 3 à¹àžàž·à¹àžà¹àž£à¹àžàžàž£àž°àžàž§àžàžàž²àž£àžàž³àžàž¥àž²àžà¹àž«à¹à¹àž£à¹àž§àžàž¶à¹àžàžàž§à¹àž²à¹àžàžŽàž¡àžàž¶àž 15 àžªàž±àžàžàž²àž«à¹
ð https://securityonline.info/googles-pixel-ai-strategy-focusing-on-tangible-benefits-not-just-hype
ð€ OpenAI àžàž¹àžàžà¹àž²àžàž²àž¢àžàž¢à¹àž²àžàž«àžàž±àžàžàž²àž Gemini 3 àžàžàž Google
àž«àž¥àž±àžàžàž²àž ChatGPT àžàž£àžàžàžàž¥àž²àžàž¡àž²àžàž²àž àžàžàžàžàžµà¹ OpenAI àžàž³àž¥àž±àžà¹àžàžàžŽàžà¹àž£àžàžàžàžàž±àžàžàž£àž±à¹àžà¹àž«àžà¹à¹àž¡àž·à¹àž Google à¹àžàžŽàžàžàž±àž§ Gemini 3 àžàžµà¹àžàž³àžàž°à¹àžàžà¹àž«àžàž·àž GPT-5 à¹àžàž«àž¥àž²àž¢àžàž²àž£àžàžàžªàžàž à¹àž¥àž°àž¡àžµàžàž¹à¹à¹àžà¹àžàž²àžàžàžžà¹àžàžàž¶à¹àžàžàž¢à¹àž²àžàž£àž§àžà¹àž£à¹àž§àžàž²àž 400 àž¥à¹àž²àžà¹àžà¹àž 650 àž¥à¹àž²àžàž£àž²àž¢àžà¹àžà¹àžàž·àžàž àžàž§àž²àž¡à¹àžà¹à¹àžàž£àžµàž¢àžàžàžàž Google àžàž·àžàžàž²àž£à¹àžà¹ TPU àžàžàžàžàž±àž§à¹àžàžà¹àžàžàžàž²àž£àžàž¶à¹àžàžàž² NVIDIA àžàž³à¹àž«à¹àžàž±àžàžàž²à¹àžà¹à¹àž£à¹àž§à¹àž¥àž°àžà¹àžàžàžžàžàžà¹àž³àž¥àž àžàžàž°àžàžµà¹ OpenAI àžà¹àžàžàž¥àžàžàžžàžàž¡àž«àž²àžšàž²àž¥àžàž§à¹àž² 1.4 àž¥à¹àž²àžàž¥à¹àž²àžàžàžàž¥àž¥àž²àž£à¹à¹àžà¹àžàž£àžàžªàž£à¹àž²àžàžàž·à¹àžàžàž²àžà¹àžàž·à¹àžàž£àž±àžàž©àž²àžàž§àž²àž¡à¹àžà¹àžàžàž¹à¹àžàž³ àžªàžàž²àžàžàž²àž£àžà¹àžàžµà¹àžàž³à¹àž«à¹àžàž¥àž²àž AI àžàž¥àž±àžàž¡àž²àžàžžà¹àžàž·àžàžàžàžµàžàžàž£àž±à¹àž à¹àž¥àž°àžàžàž²àžàžàžàžàž OpenAI àžàž¹àžàžàž±àžàžàž²àž¡àžàžàžàž¢à¹àž²àžà¹àžàž¥à¹àžàžŽàž
ð https://securityonline.info/openai-under-siege-googles-gemini-3-surge-threatens-to-end-chatgpts-early-lead
ð¶ àžàžµà¹àžàžàž£à¹à¹àž«àž¡à¹ Android Hotspot à¹àžàž£à¹àžªàž±àžàžàž²àžàžàž£à¹àžàž¡àžàž±àž 2.4 GHz + 6 GHz
Android àžàž³àž¥àž±àžà¹àžàžŽà¹àž¡àžàž§àž²àž¡àžªàž²àž¡àž²àž£àžà¹àž«à¹àžàž¹à¹à¹àžà¹àžªàž²àž¡àž²àž£àžà¹àžàž£à¹àž®àžàžàžªàžàžàžà¹àžà¹àžàž£à¹àžàž¡àžàž±àžàžàž±à¹àžàž¢à¹àž²àžàžàž§àž²àž¡àžàžµà¹ 2.4 GHz à¹àž¥àž° 6 GHz àžàž¶à¹àžàžà¹àž§àž¢à¹àž«à¹à¹àžàž·à¹àžàž¡àžà¹àžàžàžžàžàžàž£àžà¹àž£àžžà¹àžà¹àžà¹àž²à¹àž¥àž°à¹àž«àž¡à¹à¹àžà¹à¹àžà¹àž§àž¥àž²à¹àžàžµàž¢àž§àžàž±àž àžàž²àž£àžàž±àžà¹àžàž£àžàžàžµà¹àžàž³à¹àž«à¹àžàž²àž£à¹àžà¹àžàž²àžàžàžŽàžà¹àžàžàž£à¹à¹àžà¹àžàžà¹àž²àžàž¡àž·àžàžàž·àžàž¡àžµàžàž§àž²àž¡àž¢àž·àžàž«àž¢àžžà¹àžàž¡àž²àžàžàž¶à¹àž à¹àžàž¢à¹àžàžàž²àž°à¹àžàžªàžàž²àžàžàž²àž£àžà¹àžàžµà¹àž¡àžµàž«àž¥àž²àž¢àžàžžàžàžàž£àžà¹àž«àž¥àž²àžàž«àž¥àž²àž¢àž£àžžà¹àžàžà¹àžàžà¹àžàž·à¹àžàž¡àžà¹àžàžàž£à¹àžàž¡àžàž±àž àžàž·àžà¹àžà¹àžàžàž²àž£àž¢àžàž£àž°àžàž±àžàžàž£àž°àžªàžàžàž²àž£àžà¹àžàž²àž£à¹àžà¹àžàž²àžàžàžµà¹àžàžàžà¹àžàžàž¢à¹àž¢àžžàž Wi-Fi 6E
ð https://securityonline.info/android-hotspot-upgrade-new-feature-allows-simultaneous-2-4-ghz-6-ghz-dual-band-sharing
ðµïžâïž àžàžàžŽàžàž±àžàžŽàžàž²àž£ Hanoi Thief: à¹àžà¹à¹àžàž¥à¹ LNK/àž£àž¹àžàž àž²àžà¹àžàž¡àžàžµàžà¹àž§àž¢ LOTUSHARVEST Stealer
à¹àž®àžà¹àžàžàž£à¹à¹àžà¹àžàž±àžàžàž²à¹àžàžàžàžŽàžà¹àž«àž¡à¹àžàžµà¹à¹àž£àžµàž¢àžàž§à¹àž² “Pseudo-Polyglot” à¹àžàž¢à¹àžà¹à¹àžàž¥à¹ LNK àž«àž£àž·àžàž£àž¹àžàž àž²àžàžàžµà¹àžàž¹à¹àž«àž¡àž·àžàžà¹àž¡à¹àž¡àžµàžàžŽàž©àž àž±àž¢ à¹àžà¹àžàž£àžŽàž ๠à¹àž¥à¹àž§àžà¹àžàžà¹àžà¹àžàžàž±àžàžàž£àž²àž¢à¹àž§à¹à¹àžàž·à¹àžà¹àž«àž¥àžàž¡àž±àž¥à¹àž§àž£à¹ LOTUSHARVEST Stealer àžà¹àž²àž DLL Sideloading àžàž²àž£à¹àžàž¡àžàžµàžàžµà¹àžàž³à¹àž«à¹àžàž¹à¹à¹àžà¹àžàžµà¹à¹àžàžŽàžà¹àžàž¥à¹àžàž±àžàžàž¥à¹àž²àž§à¹àžªàžµà¹àž¢àžàžà¹àžàžàž²àž£àžàž¹àžàžà¹àž¡àž¢àžà¹àžàž¡àž¹àž¥àžªàž³àžàž±àž à¹àžà¹àž àž£àž«àž±àžªàžà¹àž²àžàž«àž£àž·àžàžà¹àžàž¡àž¹àž¥àžªà¹àž§àžàžàž±àž§ à¹àžà¹àžàžàžµàžàž«àžàž¶à¹àžàžàž±àž§àžàž¢à¹àž²àžàžàžµà¹à¹àžªàžàžà¹àž«à¹à¹àž«à¹àžàž§à¹àž²àžàž¹à¹à¹àžàž¡àžàžµà¹àžà¹àžàž§àž²àž¡àžàžŽàžàžªàž£à¹àž²àžàžªàž£àž£àžà¹à¹àžàžàž²àž£àž«àž¥àžàžàž¥àž§àžàžàž²àžà¹àžà¹àžàžàž£à¹
ð https://securityonline.info/operation-hanoi-thief-hackers-use-pseudo-polyglot-lnk-image-to-deploy-lotusharvest-stealer-via-dll-sideloading
ð àžà¹àžàžà¹àž«àž§à¹àž£à¹àž²àž¢à¹àž£àžà¹àž Devolutions Server (CVE-2025-13757)
àž¡àžµàžàž²àž£àžà¹àžàžàžàžà¹àžàžà¹àž«àž§à¹ SQL Injection àžàžµà¹àž£à¹àž²àž¢à¹àž£àžà¹àž Devolutions Server àžàž¶à¹àžàžàž³à¹àž«à¹àžàž¹à¹à¹àžàž¡àžàžµàžàžµà¹àžà¹àž²àžàžàž²àž£àž¢àž·àžàž¢àž±àžàžàž±àž§àžàžà¹àž¥à¹àž§àžªàž²àž¡àž²àž£àžàžàž¶àžàžà¹àžàž¡àž¹àž¥àž£àž«àž±àžªàžà¹àž²àžàžàž±à¹àžàž«àž¡àžàžàžàžàž¡àž²à¹àžà¹ àžà¹àžàžà¹àž«àž§à¹àžàžµà¹àžàž·àžàž§à¹àž²àžàž±àžàžàž£àž²àž¢àž¡àž²àžà¹àžàž£àž²àž°à¹àžàžŽàžà¹àžàžàž²àžªà¹àž«à¹à¹àžà¹àž²àžàž¶àžàžà¹àžàž¡àž¹àž¥àžàžµà¹àžªàž³àžàž±àžàžàžµà¹àžªàžžàžàžàžàžàž£àž°àžàž àžàž²àž£à¹àžàž¡àžàžµàž¥àž±àžàž©àžàž°àžàžµà¹àžªàž²àž¡àž²àž£àžàžàž³à¹àž«à¹àžàž±à¹àžàžàžàžà¹àžàž£à¹àžªàžµà¹àž¢àžàžà¹àžàžàž²àž£àžªàž¹àžà¹àžªàžµàž¢àžà¹àžàž¡àž¹àž¥à¹àž¥àž°àžàž¹àžàžàžžàžàž£àžžàžàžàž¢à¹àž²àžàž«àžàž±àž àžàž¹à¹àžàž¹à¹àž¥àž£àž°àžàžàžàž¶àžàžàž§àž£à¹àž£à¹àžàžàž±àžà¹àžàžà¹àžàžàžà¹à¹àžà¹à¹àžàžàž±àžàžàžµ
ð https://securityonline.info/critical-devolutions-server-flaw-cve-2025-13757-allows-authenticated-sql-injection-to-steal-all-passwords
ð£ àž¡àž±àž¥à¹àž§àž£à¹ TangleCrypt Packer àžà¹àžàž EDR Killer à¹àžà¹àžàž¥àž²àžàžàžà¹àžàž£àžà¹àžàž
àžàž±àžàž§àžŽàžàž±àž¢àžàžàž§à¹àž² TangleCrypt àžàž¶à¹àžà¹àžà¹àžà¹àžà¹àžà¹àžàžàž£à¹àž¡àž±àž¥à¹àž§àž£à¹àž£àžžà¹àžà¹àž«àž¡à¹ àžàž¹àžàžàžàžà¹àžàžàž¡àž²à¹àžàž·à¹àžàžà¹àžàžàžàž±àžàžà¹àžàž±àž EDR Killer àžàžµà¹àžªàž²àž¡àž²àž£àžàžàž³àž¥àž²àž¢àž£àž°àžàžàžàž£àž§àžàžàž±àžàž àž±àž¢àžàžžàžàžàž²àž¡à¹àžà¹ à¹àžà¹à¹àžàž·à¹àžàžàžàž²àžàž¡àžµàžà¹àžàžàžŽàžàžàž¥àž²àžà¹àžàžàž²àž£à¹àžàžµàž¢àžà¹àžà¹àž àžàž³à¹àž«à¹àž¡àž±àž¥à¹àž§àž£à¹àžàžµà¹à¹àžàžŽàžàžàž²àž£à¹àžàž£àžà¹àžàžà¹àžàž¢à¹àž¡à¹àžàž±à¹àžà¹àž à¹àž¡à¹àžàž°à¹àžà¹àžàž àž±àž¢àžàžžàžàžàž²àž¡àžàžµà¹àžà¹àž²àžàž±àžàž§àž¥ à¹àžà¹àžàž§àž²àž¡àžàžŽàžàžàž¥àž²àžàžàžµà¹àžà¹àžàž³à¹àž«à¹àžàž²àž£à¹àžàž¡àžàžµà¹àž¡à¹à¹àžªàžàžµàž¢àž£ à¹àž¥àž°àžàž²àžà¹àžà¹àžàžàžžàžàžà¹àžàžàžàžµà¹àžà¹àž§àž¢à¹àž«à¹àžàž¹à¹à¹àžàžµà¹àž¢àž§àžàž²àžàžà¹àž²àžàžàž§àž²àž¡àžàž¥àžàžàž àž±àž¢àžªàž²àž¡àž²àž£àžàžàž£àž§àžàžàž±àžà¹àž¥àž°àžà¹àžàžàžàž±àžà¹àžà¹àžà¹àž²àž¢àžàž¶à¹àž
ð https://securityonline.info/new-tanglecrypt-packer-hides-edr-killer-but-coding-flaws-cause-ransomware-to-crash-unexpectedly
ð àžàž¥àž¢àžžàžàžà¹à¹àž«àž¡à¹àžàžàž Russian Tomiris APT à¹àžà¹ Telegram/Discord à¹àžà¹àžàžà¹àžàžàžàž²àžàžªàžàžà¹àžàž¡
àžàž¥àžžà¹àž¡à¹àž®àžà¹àžàžàž£à¹ Tomiris APT àžàž²àžàž£àž±àžªà¹àžàžµàž¢àžàž¹àžàžàžàž§à¹àž²à¹àžà¹àž§àžŽàžàžµ “Polyglot” à¹àžàžàž²àž£à¹àžàžàžàž±àž§ à¹àžàž¢à¹àžàž¥àžµà¹àž¢àžà¹àžàž¥àžàžàžàž£à¹àž¡àžªàž·à¹àžàžªàž²àž£àž¢àžàžàžàžŽàž¢àž¡àžàž¢à¹àž²àž Telegram à¹àž¥àž° Discord à¹àž«à¹àžàž¥àž²àž¢à¹àžà¹àžàžà¹àžàžàžàž²àžàžàž§àžàžàžžàž¡àžàž²àž£àžªàžàžà¹àžàž¡àžàž²àžàžàž²àž£àžàž¹àž à¹àžàžàžàžŽàžàžàžµà¹àžàž³à¹àž«à¹àžàž²àž£àžàž£àž§àžàžàž±àžàž¢àž²àžàžàž¶à¹àž à¹àžàž£àž²àž°àžàž¹à¹àž«àž¡àž·àžàžàžàž²àž£à¹àžà¹àžàž²àžàžàžàžàžŽàžàžàžàžàž¹à¹à¹àžà¹àžàž±à¹àž§à¹àž à¹àžà¹àžàž£àžŽàž ๠à¹àž¥à¹àž§à¹àžà¹àžàžàž²àž£àžà¹àžàžàžàž²àž£àžªàž·à¹àžàžªàž²àž£àž£àž°àž«àž§à¹àž²àžà¹àžàžŽàž£à¹àžà¹àž§àžàž£à¹àžàž§àžàžàžžàž¡à¹àž¥àž°à¹àžàž£àž·à¹àžàžàžàžµà¹àžàž¹àžàžàžžàžàž£àžžàž àžàž·àžà¹àžà¹àžàžàž²àž£àž¢àžàž£àž°àžàž±àžàžàž²àž£à¹àžàž¡àžàžµà¹àžà¹àžàžàž£à¹àžàžµà¹àžàž±àžàžà¹àžàžàž¡àž²àžàžàž¶à¹àž
âââââââð https://securityonline.info/russian-tomiris-apt-adopts-polyglot-strategy-hijacking-telegram-discord-as-covert-c2-for-diplomatic-spies
0 Comments
0 Shares
79 Views
0 Reviews