home.social

Search

1000 results for “alien”

  1. @brib the removable cross stitch mesh for clothing is called "waste canvas" (excuse the amazon link: a.co/d/0bJu5Sgz)

    i've used it for #visibleMending on my son's shirts before and it's awesome: dice.camp/@Alien_Sunset/114274

  2. @brib the removable cross stitch mesh for clothing is called "waste canvas" (excuse the amazon link: a.co/d/0bJu5Sgz)

    i've used it for #visibleMending on my son's shirts before and it's awesome: dice.camp/@Alien_Sunset/114274

  3. @brib the removable cross stitch mesh for clothing is called "waste canvas" (excuse the amazon link: a.co/d/0bJu5Sgz)

    i've used it for #visibleMending on my son's shirts before and it's awesome: dice.camp/@Alien_Sunset/114274

  4. Ewine van Dishoeck, astronomer: ‘We are the first generation who can bring the question of life on other planets from the realm of philosophy into real science’.

    The Dutch astrochemist visited Barcelona to take part in Cosmocaixa’s ‘Greats of Science’ series.

    mediafaro.org/article/20260510

    #Space #Astronomy #Chemistry #Science #AlienLife

  5. The ancient Maya civilization has intrigued many, with some proposing that their achievements were influenced by aliens. This theory, also relevant to ancient Egypt, has drawn criticism for lacking conclusive evidence. #maya #aliens connectparanormal.net/2024/01/

  6. Boop Beep: the bot says it's #selfPromo time!

    You can buy my hand block printed art on handbound notebooks and other items on ko-fi!
    ko-fi.com/alien_sunset/shop

    you can find more ways to support me at alien-sunset.neocities.org

  7. Boop Beep: the bot says it's #selfPromo time!

    You can buy my hand block printed art on handbound notebooks and other items on ko-fi!
    ko-fi.com/alien_sunset/shop

    you can find more ways to support me at alien-sunset.neocities.org

  8. Boop Beep: the bot says it's #selfPromo time!

    You can buy my hand block printed art on handbound notebooks and other items on ko-fi!
    ko-fi.com/alien_sunset/shop

    you can find more ways to support me at alien-sunset.neocities.org

  9. Boop Beep: the bot says it's #selfPromo time!

    You can buy my hand block printed art on handbound notebooks and other items on ko-fi!
    ko-fi.com/alien_sunset/shop

    you can find more ways to support me at alien-sunset.neocities.org

  10. Boop Beep: the bot says it's #selfPromo time!

    You can buy my hand block printed art on handbound notebooks and other items on ko-fi!
    ko-fi.com/alien_sunset/shop

    you can find more ways to support me at alien-sunset.neocities.org

  11. Mysterious hacker organization operating secretly for 6 years is exploiting critical cPanel vulnerability to deploy backdoor trojans

    A previously unknown threat group designated Mr_Rot13 has been exploiting CVE-2026-41940, a critical authentication bypass vulnerability in cPanel & WHM, to compromise Linux servers globally. Active since at least 2020, the group deploys a Go-based payload installer that plants SSH keys, PHP webshells, malicious JavaScript for credential harvesting, and a cross-platform remote access tool called Filemanager. Stolen data is exfiltrated to attacker-controlled Telegram channels and command servers. The group has maintained operational security for six years with extremely low detection rates. Attack infrastructure includes domains registered as early as 2020, with over 2,000 attacking IP addresses observed worldwide. The campaign primarily targets cPanel installations and WordPress systems, with confirmed compromise of Southeast Asian government and military entities resulting in 4.37GB of sensitive data theft.

    Pulse ID: 6a01847e13b4074a8d4b6381
    Pulse Link: otx.alienvault.com/pulse/6a018
    Pulse Author: AlienVault
    Created: 2026-05-11 07:25:50

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Asia #BackDoor #CredentialHarvesting #CyberSecurity #DataTheft #Government #InfoSec #Java #JavaScript #Linux #Military #OTX #OpenThreatExchange #PHP #RAT #RDP #SSH #Telegram #Trojan #Troll #Vulnerability #Word #Wordpress #bot #AlienVault

  12. Inside a phishing panel

    Security researchers gained direct access to Doko's Panel, a real-time phishing platform used in criminal campaigns by ShinyHunters and BlackFile groups. The investigation revealed four distinct infrastructure clusters operating independently customized variants of the tooling. Attacks combine voice phishing with adversary-in-the-middle techniques targeting enterprise identity providers like Okta, Microsoft, and Google, as well as cryptocurrency exchanges. Operators call victims impersonating IT helpdesk staff, directing them to combosquatted domains where credentials and MFA tokens are manually relayed in real-time. Confirmed breaches include SoundCloud (30M records), Match Group (10M records), Betterment (20M records), and Crunchbase. Over 400 domains have been identified linked to these operations. Evidence shows extensive use of AI language models in developing phishing infrastructure, with operators leveraging legitimate services to rapidly deploy and rotate attack infrastructure.

    Pulse ID: 6a019872d2134a70b4d8a5bf
    Pulse Link: otx.alienvault.com/pulse/6a019
    Pulse Author: AlienVault
    Created: 2026-05-11 08:50:58

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #AdversaryInTheMiddle #Cloud #CyberSecurity #Google #InfoSec #MFA #MFATokens #Microsoft #OTX #OpenThreatExchange #Phishing #RAT #bot #cryptocurrency #AlienVault

  13. Honeypot reveals botnet exploiting scriptText to launch DDoS attacks on game servers

    Analysts observed attackers exploiting a Jenkins honeypot to deploy a new DDoS botnet targeting video game servers. Leveraging Jenkins scriptText abuse, the threat actors achieved remote code execution by sending malicious Groovy scripts to intentionally misconfigured instances with weak passwords. The multi-platform payload targets both Windows and Linux systems, deploying malware that evades detection through process renaming and daemonization. The botnet supports multiple attack vectors including UDP floods, TCP attacks, HTTP requests, and game-specific techniques targeting Valve Source Engine servers. Infrastructure hosted in Vietnam serves dual purposes for payload distribution and command-and-control communications. The campaign demonstrates continued opportunistic exploitation of internet-facing services, with gaming industry servers being primary targets for distributed denial-of-service attacks.

    Pulse ID: 6a0199674dd4cf450633dd32
    Pulse Link: otx.alienvault.com/pulse/6a019
    Pulse Author: AlienVault
    Created: 2026-05-11 08:55:03

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #CyberSecurity #DDoS #DoS #HTTP #HoneyPot #InfoSec #Linux #Malware #OTX #OpenThreatExchange #Password #Passwords #RAT #RCE #RemoteCodeExecution #TCP #UDP #Vietnam #Windows #Word #bot #botnet #AlienVault

  14. New TrickMo Variant: Device Take Over malware targeting Banking, Fintech, Wallet & Auth apps

    A new variant of the TrickMo Android banking trojan was identified between January and February 2026, representing a substantial platform redesign rather than new capabilities. The malware has migrated its command-and-control infrastructure entirely onto The Open Network (TON) using .adnl endpoints, moving away from conventional internet infrastructure. Active campaigns have targeted banking and wallet users in France, Italy, and Austria. Once accessibility permissions are granted, operators gain real-time device control including credential phishing, keylogging, screen recording, SMS interception, and bidirectional remote control. New features include network reconnaissance capabilities and SSH tunnelling that transform infected devices into programmable network pivots and SOCKS5 proxy exit nodes, enabling operators to bypass IP-based fraud detection systems while accessing victim networks.

    Pulse ID: 6a019c5f0a3344d92c4302a3
    Pulse Link: otx.alienvault.com/pulse/6a019
    Pulse Author: AlienVault
    Created: 2026-05-11 09:07:43

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Android #Bank #BankingTrojan #CyberSecurity #Endpoint #France #InfoSec #Italy #Malware #OTX #OpenThreatExchange #Phishing #Proxy #RAT #RCE #SMS #SSH #Trojan #bot #socks5 #AlienVault

  15. AI-Assisted Lure Factory Targets Developers & Gamers

    A large-scale malware campaign tracked as TroyDen's Lure Factory has been identified distributing LuaJIT-based infostealers through over 300 delivery packages hosted on GitHub. The operation uses AI-generated lure names incorporating obscure biological taxonomy and medical terminology to target developers, gamers, Roblox players, and crypto users. The malware employs a two-component design with a renamed LuaJIT runtime and encrypted Lua payload that evades sandbox detection through anti-analysis checks and extreme sleep delays. Upon execution, it disables proxy detection, captures desktop screenshots, performs geolocation, and exfiltrates data to C2 servers in Frankfurt. The infrastructure demonstrates scalability with multiple IP addresses serving identical encrypted commands, while maintaining simultaneous campaigns across gaming cheats, developer tools, phone trackers, and VPN crackers.

    Pulse ID: 69fdc9a2b94badfe5abacbcb
    Pulse Link: otx.alienvault.com/pulse/69fdc
    Pulse Author: AlienVault
    Created: 2026-05-08 11:31:46

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #CyberSecurity #GitHub #InfoSec #InfoStealer #LUA #Malware #OTX #OpenThreatExchange #Proxy #RAT #VPN #bot #developers #AlienVault

  16. Abuse of Cloud-Native Infrastructure in Modern Phishing Campaigns

    An investigation has revealed a structural evolution in phishing operations where threat actors conduct entire campaigns through legitimate, enterprise-trusted cloud infrastructure rather than attacker-controlled systems. Adversaries weaponize platforms employees use daily, including cloud storage, productivity suites, and OAuth authentication endpoints. Attacks originate from legitimate Google or Microsoft systems, passing all authentication checks while linking to whitelisted cloud services. Multi-factor authentication is bypassed without touching passwords, and victim organizations show no anomalous SIEM events at compromise time. Campaigns employ five stages: delivery via provider-owned infrastructure, payload hosting on legitimate cloud storage, execution within browser memory using native APIs, credential theft through legitimate authentication flows, and persistent presence through licensed services. Detection requires behavioral analysis rather than traditional indicators, as attackers operate enti...

    Pulse ID: 69fe0ae9bf660196169e557b
    Pulse Link: otx.alienvault.com/pulse/69fe0
    Pulse Author: AlienVault
    Created: 2026-05-08 16:10:17

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Browser #Cloud #CyberSecurity #Endpoint #Google #InfoSec #Microsoft #OTX #OpenThreatExchange #Password #Passwords #Phishing #RAT #Rust #Troll #Word #bot #AlienVault

  17. OPERATION SILENTCANVAS: JPEG BASED MULTISTAGE POWERSHELL INTRUSION

    A sophisticated multi-stage intrusion campaign was identified leveraging a weaponized PowerShell payload disguised as a JPEG image file (sysupdate.jpeg) to deploy a trojanized ConnectWise ScreenConnect instance for covert remote access. The attack likely originates through social engineering techniques including phishing emails or malicious attachments. Upon execution, the malware establishes a staging environment, retrieves additional payloads from attacker-controlled infrastructure, and dynamically compiles a custom launcher using Microsoft's legitimate .NET compiler (csc.exe) to evade detection. The intrusion abuses ComputerDefaults.exe and a malicious ms-settings registry hijack to perform a fileless UAC bypass and obtain elevated privileges. Once elevated, the malware deploys a persistent service masquerading as OneDriveServers and launches a modified ScreenConnect framework capable of credential interception, remote command execution, surveillance operations, SYSTEM-level execution, encrypted command...

    Pulse ID: 6a008382641183db3b20fef5
    Pulse Link: otx.alienvault.com/pulse/6a008
    Pulse Author: AlienVault
    Created: 2026-05-10 13:09:22

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #ConnectWise #CyberSecurity #EDR #Email #InfoSec #Malware #Microsoft #NET #OTX #OpenThreatExchange #Phishing #PowerShell #RAT #RCE #RemoteCommandExecution #ScreenConnect #SocialEngineering #Trojan #Troll #bot #AlienVault

  18. Alien
    Release date: 1979-05-25
    During its return to the earth, commercial spaceship Nostromo intercepts a distress signal from a distant planet. When a three-member team of the crew discovers a chamber containing thousands of eggs on the planet, a creature inside one of the eggs attacks an explorer. The entire crew is unaware of the impending nightmare set to descend upon them when the alien parasite planted inside its unfortunate host is birthed.

    https://www.themoviedb.org/movie/348
    #film #films #movie #movies #poster #posters #history #design #typography #horror #horrormovies
  19. @AlienJay @ZDF @tagesschau @pruef_de

    Ist SWR nicht ein Teil der ARD?

    swr.de/swraktuell/baden-wuertt

    Die haben auch im Februar darüber berichtet...

    Ja, OK, sie könnten auch noch mehr darüber berichten...

    #PRÜF