home.social

#word β€” Public Fediverse posts

Live and recent posts from across the Fediverse tagged #word, aggregated by home.social.

fetched live
  1. 🦊#FoxiMax #1457 3/8 (9 letters)
    foximax.com/

    🟩🟩🟩🟩🟩
    🟩🟩⬜⬜🟩
    🟩🟩⬜🟩🟩

    #foximax #puzzle #game #word #wordgame #wordgames

  2. Numbword #1472
    Solved Β· 2 Guesses Β· No Hint
    Target: 46 Β· Score: 100/100

    ⬜⬜⬜⬜🟦
    🟦🟦🟦🟦🟦

    numbword.com/

    #numbword #puzzle #math #wordgame #game #word #wordgames

  3. 🦊#FoxiMax #1456 6/8 (17 letters)
    foximax.com/

    🟩🟩🟩🟩🟩
    🟩🟩🟩🟩🟩
    🟩⬜🟩🟩🟩
    🟩⬜🟩🟩🟩
    🟩⬜🟩🟩🟩
    ⬜🟩🟩⬜🟩

    #foximax #puzzle #game #word #wordgame #wordgames

  4. Numbword #1471
    Solved Β· 4 Guesses Β· No Hint
    Target: 81 Β· Score: 100/100

    ⬜⬜🟦⬜⬜
    ⬜🟦🟦⬜⬜
    ⬜🟦⬜🟦⬜
    🟦🟦🟦🟦🟦

    numbword.com/

    #numbword #puzzle #math #wordgame #game #word #wordgames

  5. 🦊#FoxiMax #1455 8/8 (22 letters)
    foximax.com/

    🟩🟩🟩🟩🟩
    🟩🟩🟩🟩🟩
    🟩🟩🟩🟩🟩
    🟩🟩🟩🟩🟩
    🟩🟩⬜🟩⬜
    🟩🟩🟩🟩🟩
    🟩🟩🟩🟩🟩
    🟩🟩🟩⬜🟩

    #foximax #puzzle #game #word #wordgame #wordgames

  6. I have opinions about how to tag posts. copy me or don't, I'm not the tag police

    - if there is already a very popular tag for something then use it. like, "videogames" is a pretty popular tag, no need to invent that wheel.

    - if you get to coin a new tag, though, please use underscores for spaces, it should be "3d_printing" and not "3dprinting" for readability.

    - if you are coining a new tag, and there are multiple good options, then use the shortest one, for instance "gamepad" is better than "gamepads" which is better than "controllers".

    on a related topic, never abbreviate the important part of a content warning! it's "cw: headless" not "cw: nbm"! the people who need your content warning the most are the ones who don't have your kink and don't know what that abbreviation means!

    #word #tag #opinion

  7. Distinct Clusters Target Individuals of Interest to Russia

    Three distinct suspected Russian cyber espionage threat clustersβ€”UNC6293, UNC7005, and UNC5976β€”are abusing legitimate authentication flows to target individuals in academia, aerospace, defense, governments, and think tanks across Europe and the United States. These groups conduct sophisticated phishing campaigns using app password phishing, OAuth phishing, device code phishing, and malware deployment. UNC6293 and UNC7005 are assessed with moderate confidence to be initial access clusters linked to ICE RELIC (formerly APT29), while UNC5976 appears distinct. Operations leverage social engineering through fake diplomatic invitations, conference registrations, and file sharing pages. UNC7005 was tied to hospitality captive portal redirects and deployed MaaS infostealers including VIDAR and ATOMIC. These actors abuse legitimate authentication mechanisms including Google OAuth, Microsoft device codes, and WhatsApp device linking to compromise personal accounts, making detection challenging for organizations.

    Pulse ID: 6a8734bac622f3c7b2d9a633
    Pulse Link: otx.alienvault.com/pulse/6a873
    Pulse Author: AlienVault
    Created: 2026-08-20 17:09:14

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #APT29 #CyberSecurity #Espionage #Europe #FileSharing #Google #Government #Hospital #InfoSec #InfoStealer #MaaS #Malware #Microsoft #OTX #OpenThreatExchange #Password #Phishing #RAT #Russia #SMS #SocialEngineering #UnitedStates #Vidar #WhatsApp #Word #bot #AlienVault

  8. Numbword #1470
    Solved Β· 3 Guesses Β· No Hint
    Target: 33 Β· Score: 100/100

    ⬜⬜🟦⬜⬜
    🟦🟦⬜⬜⬜
    🟦🟦🟦🟦🟦

    numbword.com/

    #numbword #puzzle #math #wordgame #game #word #wordgames

  9. Hackers Hide Malware Code Inside English Words to Infect Windows Users

    Indicators extracted from public reporting. Source: gendigital.com/blog/insights/r

    Pulse ID: 6a86f988170e8cbccf5ad369
    Pulse Link: otx.alienvault.com/pulse/6a86f
    Pulse Author: CyberHunter_NL
    Created: 2026-08-20 12:56:40

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #ClearFake #CyberSecurity #HTTP #HTTPS #InfoSec #Malware #OTX #OpenThreatExchange #RCE #Windows #Word #bot #CyberHunter_NL

  10. 🦊#FoxiMax #1454 2/8 (9 letters)
    foximax.com/

    🟩🟩🟩🟩🟩
    🟩🟩🟩🟩🟩

    #foximax #puzzle #game #word #wordgame #wordgames

  11. Numbword #1469
    Solved Β· 4 Guesses Β· No Hint
    Target: 62 Β· Score: 100/100

    ⬜⬜⬜⬜⬜
    ⬜⬜🟦⬜⬜
    ⬜🟦🟦⬜⬜
    🟦🟦🟦🟦🟦

    numbword.com/

    #numbword #puzzle #math #wordgame #game #word #wordgames

  12. MacSync Stealer: C2 Infrastructure Rotation

    On 5 May 2026, a Jamf Protect deployment blocked a download attempt from jacksonvillemma[.]com, four days after the operator's previous MacSync C2 was publicly disclosed. The new C2's TLS certificate was issued within 24 hours of that disclosure. Analysis revealed a Stage 2 zsh loader containing a static api-key value observed across four distinct C2 domains spanning December 2025 to May 2026. URI-pattern pivoting through any.run identified eleven additional candidate C2 domains dating back to February 2026, suggesting parallel infrastructure operation rather than sequential rotation. The loader exfiltrates macOS credentials, browser data, and cryptocurrency wallets, and transmits the victim's account password in cleartext via URL query strings, making it visible in web proxy logs.

    Pulse ID: 6a84bafb3c129cc2f9de2762
    Pulse Link: otx.alienvault.com/pulse/6a84b
    Pulse Author: AlienVault
    Created: 2026-08-18 20:05:15

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #ANYRUN #Browser #CyberSecurity #InfoSec #Mac #MacOS #OTX #OpenThreatExchange #Password #Proxy #RAT #TLS #Word #bot #cryptocurrency #AlienVault

  13. MacSync Stealer Hides Behind 30+ Domains While Stealing Passwords and Sensitive Mac Data

    Indicators extracted from public reporting. Source: cybersecuritynews.com/macsync-

    Pulse ID: 6a85b5fcbb36128c50223b08
    Pulse Link: otx.alienvault.com/pulse/6a85b
    Pulse Author: CyberHunter_NL
    Created: 2026-08-19 13:56:12

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #CyberSecurity #HTTP #HTTPS #InfoSec #Mac #OTX #OpenThreatExchange #Password #Passwords #RCE #Word #bot #CyberHunter_NL

  14. Clop Returns with Custom Implant in Mass-Extortion Campaign

    The Clop threat group has returned to mass exploitation tactics by leveraging CVE-2026-12569 in PTC Windchill, deploying a sophisticated custom web shell designed specifically for data theft and extortion. This purpose-built implant provides immediate full data-theft capability without requiring additional tooling, featuring built-in credential harvesting, database enumeration, and a custom Java class loader for executing arbitrary code in memory. The web shell decrypts credentials from Windchill's keystore, including LDAP manager passwords that could enable enterprise-wide compromise. Its application-specific design allows malicious activity to blend seamlessly with legitimate traffic, making detection significantly more challenging. The implant targets sensitive intellectual property and engineering data stored in Windchill installations across manufacturing enterprises globally.

    Pulse ID: 6a85530dde3c55da4658c63b
    Pulse Link: otx.alienvault.com/pulse/6a855
    Pulse Author: AlienVault
    Created: 2026-08-19 06:54:05

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #CredentialHarvesting #CyberSecurity #DataTheft #Extortion #ICS #InfoSec #Java #Manufacturing #OTX #OpenThreatExchange #Password #Passwords #RAT #SSL #Word #bot #AlienVault

  15. Mirage2FA Hijacks Companies’ Microsoft 365 Sessions, with Over 4K Victims in the US

    Mirage2FA is an active phishing-as-a-service toolkit built to steal Microsoft 365 credentials and authenticated sessions through Adversary-in-the-Middle attacks. Analysis shows 63.7% of identified victims are in the US, with Technology, Manufacturing, and Education among the most targeted industries. The operation generated thousands of compromise events between 2024 and 2026, including stolen session cookies, passwords, and SSO access. Once a Microsoft 365 session is hijacked, attackers gain access to corporate email, sensitive data, and trusted business accounts. The toolkit uses browser-based delivery through .htm, .xhtml, and .svg stagers, QR codes, JavaScript obfuscation, and WebSocket-based AiTM activity. Of 9,426 unique targeted email addresses, 4,532 were potentially compromised, representing approximately 48% success rate.

    Pulse ID: 6a84c514863d37cbadb72833
    Pulse Link: otx.alienvault.com/pulse/6a84c
    Pulse Author: AlienVault
    Created: 2026-08-18 20:48:20

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #2FA #AdversaryInTheMiddle #AitM #Browser #Cookies #CyberSecurity #Education #Email #HTML #InfoSec #Java #JavaScript #Manufacturing #Microsoft #OTX #OpenThreatExchange #Password #Passwords #Phishing #RAT #Rust #SVG #Word #bot #AlienVault

  16. Cl0p Hackers Exploit PTC Windchill Flaw to Steal Passwords and Sensitive Company Data

    Indicators extracted from public reporting. Source: reliaquest.com/blog/clop-retur

    Pulse ID: 6a854563c1a89b92936e12c9
    Pulse Link: otx.alienvault.com/pulse/6a854
    Pulse Author: CyberHunter_NL
    Created: 2026-08-19 05:55:47

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #Cl0p #CyberSecurity #Extortion #HTTP #HTTPS #InfoSec #OTX #OpenThreatExchange #Password #Passwords #RCE #Word #bot #CyberHunter_NL