#rce — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #rce, aggregated by home.social.
-
Weekly Cyber Security Newsletter Bulletin – Entra ID RCE, Claude Code Ransomware, T-Mobile Cable, Azure Credential Theft +20 Stories
Indicators extracted from public reporting. Source: https://cybersecuritynews.com/cyber-security-newsletter-bulletin-august/
Pulse ID: 6a8b260da48fae71c37000fb
Pulse Link: https://otx.alienvault.com/pulse/6a8b260da48fae71c37000fb
Pulse Author: CyberHunter_NL
Created: 2026-08-23 16:55:41Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Azure #CyberSecurity #HTTP #HTTPS #InfoSec #OTX #OpenThreatExchange #RCE #RansomWare #bot #CyberHunter_NL
-
Chińskie grupy APT wykorzystują podatność CVE-2026-59310 do masowych ataków na środowiska VMware vCenter
Zespół reagowania na incydenty firmy QUIRSO podczas analizy powłamaniowej serwera VMware vCenter natrafił na ślady globalnej kampanii, sterowanej najprawdopodobniej przez chińską grupę APT. Badania wykazały, że cyberprzestępcy wykorzystali krytyczną podatność CVE-2026-59310 (CVSS 9.8) w usłudze Syslog Server. Równolegle zidentyfikowali próby użycia drugiej luki CVE-2026-59309 (CVSS 9.8) jednak analitycy nie powiązali...
-
Hackers infect Android car head units with proxy botnet malware
Indicators extracted from public reporting. Source: https://securelist.com/android-head-unit-malware/121106/
Pulse ID: 6a89b871c96a8775a97fd5cd
Pulse Link: https://otx.alienvault.com/pulse/6a89b871c96a8775a97fd5cd
Pulse Author: CyberHunter_NL
Created: 2026-08-22 14:55:45Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Android #CyberSecurity #HTTP #HTTPS #InfoSec #Malware #OTX #OpenThreatExchange #Proxy #RCE #SecureList #bot #botnet #CyberHunter_NL
-
Grok Zero-Click Attack Steals Chat Data Using Encrypted Prompt Injection
Indicators extracted from public reporting. Source: https://adversa.ai/blog/cryptographic-context-injection-grok-data-theft/
Pulse ID: 6a8901bb9c1388a4bafaf914
Pulse Link: https://otx.alienvault.com/pulse/6a8901bb9c1388a4bafaf914
Pulse Author: CyberHunter_NL
Created: 2026-08-22 01:56:11Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #HTTP #HTTPS #InfoSec #OTX #OpenThreatExchange #RCE #bot #CyberHunter_NL
-
2026-08-21: SmartApeSG ClickFix campaign leads to two RATs
Indicators extracted from public reporting. Source: https://www.malware-traffic-analysis.net/2026/08/21/index.html
Pulse ID: 6a889165b097c9fea9c95d72
Pulse Link: https://otx.alienvault.com/pulse/6a889165b097c9fea9c95d72
Pulse Author: CyberHunter_NL
Created: 2026-08-21 17:56:53Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #HTML #HTTP #HTTPS #InfoSec #Malware #NET #OTX #OpenThreatExchange #RAT #RCE #SmartApeSg #bot #CyberHunter_NL
-
Android Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy Botnet
Indicators extracted from public reporting. Source: https://securelist.com/android-head-unit-malware/121106/
Pulse ID: 6a888313c9f88c699eae9eb1
Pulse Link: https://otx.alienvault.com/pulse/6a888313c9f88c699eae9eb1
Pulse Author: CyberHunter_NL
Created: 2026-08-21 16:55:47Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Android #CyberSecurity #HTTP #HTTPS #InfoSec #Malware #OTX #OpenThreatExchange #Proxy #RCE #SecureList #bot #botnet #CyberHunter_NL
-
CVE-2026-77806, a CVSS 9.8 SPIP unauthenticated RCE, is exploited in the wild. A public Metasploit module and full details are now available.
#CVE202677806 #SPIP #RCE #ExploitedInTheWild #Metasploit #CMS
-
Apache CloudStack patched 20 flaws. CVE-2026-50112, a critical bug, allows cross-tenant remote code execution as root on KVM hypervisor hosts.
#ApacheCloudStack #CVE202650112 #RCE #KVM #CloudSecurity #IaaS
-
Chinese Hackers Use AI Agents to Exploit Web Servers and Automate Attacks
Indicators extracted from public reporting. Source: https://blog.talosintelligence.com/uat-10147-chinese-speaking-adversary-integrates-agentic-ai-into-post-compromise-operations/
Pulse ID: 6a8867325d4b7e6ebca35a51
Pulse Link: https://otx.alienvault.com/pulse/6a8867325d4b7e6ebca35a51
Pulse Author: CyberHunter_NL
Created: 2026-08-21 14:56:50Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Chinese #CyberSecurity #HTTP #HTTPS #InfoSec #OTX #OpenThreatExchange #RAT #RCE #Talos #bot #CyberHunter_NL
-
Hackers Use Fake Google Gemini Installer to Deploy Vidar Stealer and Steal Browser Credentials
Indicators extracted from public reporting. Source: https://telegram.me/share/url?url=https://cybersecuritynews.com/fake-google-gemini-installer/&text=Hackers+Use+Fake+Google+Gemini+Installer+to+Deploy+Vidar+Stealer+and+Steal+Browser+Credentials
Pulse ID: 6a883cd3267d21c3675a3a86
Pulse Link: https://otx.alienvault.com/pulse/6a883cd3267d21c3675a3a86
Pulse Author: CyberHunter_NL
Created: 2026-08-21 11:56:02Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Browser #CyberSecurity #Google #HTTP #HTTPS #InfoSec #OTX #OpenThreatExchange #RCE #Telegram #Vidar #bot #CyberHunter_NL
-
Bandwidth-Sharing App Can Turn Employee Devices Into Gateways to Internal Networks
Indicators extracted from public reporting. Source: https://www.silentpush.com/blog/peer2profit-astroproxy/
Pulse ID: 6a8820a72c12cdd1a022136b
Pulse Link: https://otx.alienvault.com/pulse/6a8820a72c12cdd1a022136b
Pulse Author: CyberHunter_NL
Created: 2026-08-21 09:55:51Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #HTTP #HTTPS #InfoSec #OTX #OpenThreatExchange #Proxy #RCE #bot #CyberHunter_NL
-
The invisible passenger in your car
Indicators extracted from public reporting. Source: https://securelist.com/android-head-unit-malware/121106/
Pulse ID: 6a88129425e8190825aa2854
Pulse Link: https://otx.alienvault.com/pulse/6a88129425e8190825aa2854
Pulse Author: CyberHunter_NL
Created: 2026-08-21 08:55:48Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Android #CyberSecurity #HTTP #HTTPS #InfoSec #Malware #OTX #OpenThreatExchange #RCE #SecureList #bot #CyberHunter_NL
-
DOJ Charges 17 Iranian Hackers in IRGC-Linked Campaign That Stole 31.5TB of Research Data
Indicators extracted from public reporting. Source: https://www.justice.gov/opa/pr/17-iranians-charged-conducting-massive-cyber-theft-campaign-behalf-islamic-revolutionary
Pulse ID: 6a880480823c6a8bf25fa3c0
Pulse Link: https://otx.alienvault.com/pulse/6a880480823c6a8bf25fa3c0
Pulse Author: CyberHunter_NL
Created: 2026-08-21 07:55:44Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #HTTP #HTTPS #IRGC #InfoSec #Iran #Islam #OTX #OpenThreatExchange #RCE #bot #CyberHunter_NL
-
CVE-2026-32475 (CVSS 9.8) is an unauthenticated file upload flaw in Elementor Pro. It threatens complete site compromise across 6 million sites.
#ElementorPro #CVE202632475 #WordPress #RCE #FileUpload #WebSecurity
-
Hackers Exploit TrueConf Servers to Push Malware Through Legitimate Video Conference Downloads
Indicators extracted from public reporting. Source: https://ics-cert.kaspersky.com/publications/reports/2026/08/12/head-mare-exploits-vulnerabilities-in-trueconf-server-to-deliver-phantomcore-malware/
Pulse ID: 6a87f6783ab4c393dd31b010
Pulse Link: https://otx.alienvault.com/pulse/6a87f6783ab4c393dd31b010
Pulse Author: CyberHunter_NL
Created: 2026-08-21 06:55:52Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #HTTP #HTTPS #ICS #InfoSec #Kaspersky #Malware #OTX #OpenThreatExchange #RCE #bot #CyberHunter_NL
-
China-Linked Spy Campaign Uses Five New Malware Families Against Central Asian Governments
Indicators extracted from public reporting. Source: https://www.bitdefender.com/en-us/blog/businessinsights/silkparasite-tracking-china-nexus-apt-across-central-asia
Pulse ID: 6a87f67e4a85b9b9ccc19842
Pulse Link: https://otx.alienvault.com/pulse/6a87f67e4a85b9b9ccc19842
Pulse Author: CyberHunter_NL
Created: 2026-08-21 06:55:58Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Asia #BitDefender #CentralAsia #China #CyberSecurity #Government #HTTP #HTTPS #InfoSec #Malware #OTX #OpenThreatExchange #RCE #bot #CyberHunter_NL
-
July 2026 Infostealer Trend Report
Indicators extracted from public reporting. Source: https://feedly.com/i/subscription/feed%2Fhttps%3A%2F%2Fasec.ahnlab.com%2Fen%2Ffeed%2F
Pulse ID: 6a87f692d0ad3593335ce61d
Pulse Link: https://otx.alienvault.com/pulse/6a87f692d0ad3593335ce61d
Pulse Author: CyberHunter_NL
Created: 2026-08-21 06:56:18Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#2FA #ASEC #AhnLab #CyberSecurity #HTTP #HTTPS #InfoSec #InfoStealer #OTX #OpenThreatExchange #RCE #bot #CyberHunter_NL
-
CVE-2026-77647, a CVSS 9.8 unauthenticated RCE in SPIP before 4.4.20, is exploited in the wild. Update now.
#SPIP #CVE202677647 #RCE #ExploitedInTheWild #CMS #WebSecurity
https://securityonline.info/cve-2026-77647-spip-rce/?utm_source=mastodon&utm_medium=jetpack_social
-
CVE-2026-69836, a CVSS 10 Entra ID remote code execution flaw, was exploited in the wild. Microsoft has fully mitigated it server-side.
#CVE202669836 #EntraID #RemoteCodeExecution #Microsoft #CloudSecurity #RCE
-
How Peer2Profit and Astroproxy Turn Your Bandwidth Into Someone Else's Product
Investigation into residential proxy networks reveals that bandwidth-sharing applications like PEER2PROFIT recruit users to share internet connections for payment, then monetize this bandwidth through commercial proxy service ASTROPROXY at up to 27 times the original cost. Over 72 hours, researchers identified 117,224 unique IPs across residential, mobile, and datacenter pools, with residential pools adding over 1,000 new IPs hourly. These applications install through official channels with user consent, making them invisible to traditional security tools. Reverse engineering of the Windows SDK revealed the communications protocol and backconnect infrastructure coordinating proxy sessions. Testing demonstrated that proxy networks could access internal network resources through simple DNS entries resolving to internal IPs, potentially exposing corporate assets. The scale, legitimacy, and internal network access capabilities present significant risks to organizations where employees may unknowingly expose co...
Pulse ID: 6a8734bb1e57bed1c101e5e9
Pulse Link: https://otx.alienvault.com/pulse/6a8734bb1e57bed1c101e5e9
Pulse Author: AlienVault
Created: 2026-08-20 17:09:15Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #DNS #InfoSec #Mac #OTX #OpenThreatExchange #Proxy #RAT #RCE #Windows #bot #AlienVault
-
Chinese-speaking adversary integrates agentic AI into post-compromise operations
A Chinese-speaking cybercrime group designated UAT-10147 has been identified targeting Windows and Linux web servers worldwide, affecting organizations across government, education, media, technology, and gaming sectors. The adversary exploits publicly disclosed vulnerabilities to achieve initial access at scale, then deploys AI-driven tooling throughout exploitation, reconnaissance, payload generation, validation, and persistence workflows. The operation leverages open-source offensive frameworks including Metasploit, ysoserial, PentestGPT, and DeepAudit to automate intrusion operations. UAT-10147 demonstrates an emerging capability of integrating semi-autonomous AI systems for iterative exploit refinement, adaptive troubleshooting, and operational documentation generation. Targeting includes approximately 170,000 URLs across multiple countries, with post-compromise activities involving deployment of various implants, BadIIS installations, and SEO fraud operations.
Pulse ID: 6a86e8edcfc7cbd751fb1b3d
Pulse Link: https://otx.alienvault.com/pulse/6a86e8edcfc7cbd751fb1b3d
Pulse Author: AlienVault
Created: 2026-08-20 11:45:49Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Chinese #CyberCrime #CyberSecurity #Education #Government #InfoSec #Linux #OTX #OpenThreatExchange #RAT #RCE #Windows #bot #AlienVault
-
Grandoreiro goes north: From Brazil to Mexico with a new DLL sideloading campaign
Grandoreiro, a notorious banking trojan active since 2016 across Latin America, continues operations despite major law enforcement disruption in 2024. Recent campaigns leverage DLL sideloading techniques, abusing the legitimate Duplicate Files Finder application to execute malicious code. The loader incorporates extensive anti-analysis mechanisms including sandbox detection, virtual machine artifact checks, process blacklisting, and environment profiling to evade automated analysis systems. These defensive checks occur before C2 contact, indicating high priority on avoiding detection. Telemetry from June 2026 shows activity concentrated in Latin America, primarily Mexico, with limited presence in Europe and North America. The malware uses custom string obfuscation combining proprietary decryption with Base64 encoding, and communicates with C2 infrastructure over TCP port 6432 using encrypted requests containing host-specific information.
Pulse ID: 6a86146ca27454b03a4cbe2d
Pulse Link: https://otx.alienvault.com/pulse/6a86146ca27454b03a4cbe2d
Pulse Author: AlienVault
Created: 2026-08-19 20:39:08Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#Bank #BankingTrojan #Brazil #CyberSecurity #Europe #InfoSec #LatinAmerica #LawEnforcement #Mac #Malware #Mexico #NorthAmerica #OTX #OpenThreatExchange #RAT #RCE #SMS #SideLoading #TCP #Trojan #bot #AlienVault
-
Post-DEF CON Phishing Uses Malicious Google Doc to Deliver Malware
Following Black Hat and DEF CON conferences, a threat actor targeted attendees through X direct messages, posing as CoinDesk's VP and Head of Marketing to establish trust under the pretext of conference planning. The campaign employed a malicious Google Apps Script embedded in a Google Doc that presented ClickFix-style instructions and manual download options. The attack delivered different payloads based on the victim's operating system: macOS users received AMOS infostealer, while Windows users were infected with NetSupport RAT, a Ledger wallet implant, and a TLS-intercepting proxy. A secondary lure masqueraded as a DocSend installer to deliver additional payloads. The operation demonstrated sophisticated social engineering by leveraging trusted platforms and post-conference networking expectations.
Pulse ID: 6a85d24a1bf7db5b97a4e9f8
Pulse Link: https://otx.alienvault.com/pulse/6a85d24a1bf7db5b97a4e9f8
Pulse Author: AlienVault
Created: 2026-08-19 15:56:58Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#AMOS #CyberSecurity #Edge #Google #InfoSec #InfoStealer #Mac #MacOS #Malware #NetSupport #NetSupportRAT #OTX #OpenThreatExchange #Phishing #Proxy #RAT #RCE #Rust #SocialEngineering #TLS #Windows #bot #AlienVault
-
Rust Supply Chain Attack Puts Build-Time Malware in Crates with 245 Million Downloads
Indicators extracted from public reporting. Source: https://www.wiz.io/blog/rust-supply-chain-attack-on-arrayref-significant-overlap-with-dprk-campaigns
Pulse ID: 6a877807939f52dc55e5712e
Pulse Link: https://otx.alienvault.com/pulse/6a877807939f52dc55e5712e
Pulse Author: CyberHunter_NL
Created: 2026-08-20 21:56:23Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #DPRK #HTTP #HTTPS #InfoSec #Malware #OTX #OpenThreatExchange #RAT #RCE #Rust #SupplyChain #bot #CyberHunter_NL
-
Seven Spring GraphQL vulnerabilities were patched on August 20, including an unsafe deserialization flaw that can lead to remote code execution.
-
Is Cyber missing the Marque?
Indicators extracted from public reporting. Source: https://blog.talosintelligence.com/is-cyber-missing-the-marque/
Pulse ID: 6a875c4522ffb07af4d33053
Pulse Link: https://otx.alienvault.com/pulse/6a875c4522ffb07af4d33053
Pulse Author: CyberHunter_NL
Created: 2026-08-20 19:57:57Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #HTTP #HTTPS #InfoSec #OTX #OpenThreatExchange #RCE #Talos #bot #CyberHunter_NL
-
ThreatsDay: Gogs 10.0 RCE, n8n Workflow-to-RCE, $10M Reward, GLM-5.3 AI Exploit and More
Indicators extracted from public reporting. Source: https://thehackernews.com/2026/08/threatsday-gogs-100-rce-n8n-workflow-to.html
Pulse ID: 6a874db73e7547c8cde5784c
Pulse Link: https://otx.alienvault.com/pulse/6a874db73e7547c8cde5784c
Pulse Author: CyberHunter_NL
Created: 2026-08-20 18:55:51Be advised, this data is unverified and should be considered preliminary. Always do further verification.
#CyberSecurity #HTML #HTTP #HTTPS #InfoSec #OTX #OpenThreatExchange #RCE #bot #CyberHunter_NL