Sys-Admin Up
رفتن به کانال در Telegram
InfoSec, Hacks, Perks, Tools, IT/IS Courses, CVE… Contains part of the news that was not included in the Sys-Admin & InfoSec Channel (@sysadm_in_channel)
نمایش بیشتر1 091
مشترکین
-124 ساعت
-37 روز
+830 روز
آرشیو پست ها
1 091
New TrickMo Variant: Device Take Over malware targeting Banking, Fintech, Wallet & Auth apps
..The malware’s primary command-and-control channel has been migrated onto The Open Network (TON) using .adnl endpoints routed through an embedded local TON proxy..:
https://www.threatfabric.com/blogs/new-trickmo-variant-device-take-over-malware-targeting-banking-fintech-wallet-auth-app
1 091
Bleeding Llama: Critical Unauthenticated Memory Leak in Ollama
https://www.cyera.com/research/bleeding-llama-critical-unauthenticated-memory-leak-in-ollama
1 091
PCPJack | Cloud Worm Evicts TeamPCP and Steals Credentials at Scale
https://www.sentinelone.com/labs/cloud-worm-evicts-teampcp-and-steals-credentials-at-scale/
1 091
Donuts and Beagles: Fake Claude site spreads backdoor
https://www.sophos.com/en-us/blog/donuts-and-beagles-fake-claude-site-spreads-backdoor
1 091
Donuts and Beagles: Fake Claude site spreads backdoor
https://www.sophos.com/en-us/blog/donuts-and-beagles-fake-claude-site-spreads-backdoor
1 091
A CVSS 10.0 in Gemini CLI: How Agentic Workflows Are Reshaping Supply Chain Risk
https://novee.security/blog/google-gemini-cli-rce-vulnerability-cvss-10-critical-security-advisory/
1 091
CVE-2025-29635: Mirai Campaign Targets D-Link Devices
https://www.akamai.com/blog/security-research/2026/apr/cve-2025-29635-mirai-campaign-targets-d-link-devices
1 091
Internet Protocol Version 8 (IPv8)
coming..
https://www.ietf.org/archive/id/draft-thain-ipv8-00.html
1 091
Claude Code Hooks as Initial Access & Persistence
https://www.s0ld13r.kz/posts/claude-code-backdoor/
1 091
Windows Defender threatens to completely take over the SYSTEM
Источник: https://www.anti-malware.ru/news/2026-04-16-111332/49724
Windows Defender realizes that a malicious file has a cloud tag, for whatever stupid and hilarious reason, the antivirus that's supposed to protect decides that it is a good idea to just rewrite the file it found again to it's original location.
The PoC abuses this behaviour to overwrite system files and gain administrative privileges.
https://github.com/Nightmare-Eclipse/RedSun
1 091
Oen-Source Security Operations Center (SOC)
A Complete Guide to Establishing, Managing, and Maintaining a Modern SOC
1 091
OpenSSL Security Advisory [7th April 2026]
==========================================
Incorrect Failure Handling in RSA KEM RSASVE Encapsulation (CVE-2026-31790)
==========================================
https://openssl-library.org/news/secadv/20260407.txt
اکنون در دسترس! پژوهش تلگرام ۲۰۲۵ — مهمترین بینشهای سال 
