5 Aug 2026, 12:35 UTC19 viewsread 6 August 2026 Photo
18 Malicious npm Packages Deliver Cross-Platform RAT to Alibaba Tool Users
#News
Posted On 📆 : Tue, 04 Aug 2026 00:13:53 +0530
Cybersecurity researchers have discovered a new set of malicious npm packages that target users of Alibaba developer tools with a cross-platform remote access trojan (RAT) as part of a sophisticated, targeted software supply chain attack targeting Chinese-speaking environments.
One of the…
Signed DailyWriteUps
5 Aug 2026, 12:35 UTC3 viewsread 6 August 2026 Photo
New cPanel Critical Flaw Could Let Hosting Customers Run SQL as Database Root
#News
Posted On 📆 : Tue, 04 Aug 2026 16:06:27 +0530
cPanel has patched a flaw that let an authenticated hosting customer execute SQL in the database's root context, crossing the privilege boundary between a cPanel account and the server's administrative database identity. It shipped in a targeted security release that closes two other ro…
Signed DailyWriteUps
5 Aug 2026, 12:35 UTC8 viewsread 6 August 2026 Photo
DOUBLECUP Uses ClickFix and Cached PNGs to Deliver CountLoader and DeviceManager RAT
#News
Posted On 📆 : Tue, 04 Aug 2026 14:33:23 +0530
A new Russian loader-as-a-service (LaaS) codenamed DOUBLECUP has been using ClickFix lures as a way to stage malware-laced PNG images in victims' browser cache and ultimately deliver CountLoader and a previously undocumented remote access trojan called DeviceManager.
"The first …
Signed DailyWriteUps
5 Aug 2026, 12:35 UTC15 viewsread 6 August 2026 Photo
CISA Adds Exploited N-able N-central Flaw to KEV After Customer Compromises
#News
Posted On 📆 : Tue, 04 Aug 2026 12:30:13 +0530
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a high-severity security flaw impacting N-able N-central to its Known Exploited Vulnerabilities (KEV) catalog following reports of active exploitation in the wild.
The vulnerability, tracked as CVE-2026-1857…
Signed DailyWriteUps
5 Aug 2026, 12:35 UTC3 viewsread 6 August 2026 Photo
Google Deletes 3 ADK AI Workflows After Malicious GitHub Issue Could Trigger Privileged Agent
#News
Posted On 📆 : Tue, 04 Aug 2026 16:46:23 +0530
Google deleted three AI agent workflows from its Agent Development Kit (ADK) Python repository. Pillar Security showed that a public GitHub issue could manipulate a triage agent into triggering a privileged code-fixing agent.
The researchers said the public agent could …
Signed DailyWriteUps
5 Aug 2026, 12:35 UTC4 viewsread 6 August 2026 Photo
Keyv-Linked npm Worm Poisons Hundreds of Packages, Plants Claude Code and VS Code Hooks
#News
Posted On 📆 : Tue, 04 Aug 2026 19:00:23 +0530
A credential-stealing npm worm that first appeared in [email protected] spread beyond the Keyv and Cacheable namespaces into hundreds of packages across multiple organizations on August 4, 2026.
SafeDep verified 353 poisoned versions across 79 package names in the npm registry. Its …
Signed DailyWriteUps
5 Aug 2026, 12:35 UTC3 viewsread 6 August 2026 Photo
Fake Adobe and Zoom Updates Install ScreenConnect for Persistent Remote Access
#News
Posted On 📆 : Tue, 04 Aug 2026 18:41:22 +0530
Cybersecurity researchers have disclosed details of an active, multi-wave campaign that employs social engineering lures themed around Adobe and Zoom software updates, business document reviews, and system maintenance utilities to stealthily deploy Remote Monitoring and Management (RMM…
Signed DailyWriteUps
5 Aug 2026, 12:35 UTC4 viewsread 6 August 2026 Photo
When Vibe Hacking Turns AI into the Junior Hacker Every Adversary Always Wanted
#News
Posted On 📆 : Tue, 04 Aug 2026 17:00:00 +0530
The cybersecurity industry has spent decades assuming that offensive capability scales with technical expertise.
That assumption is starting to break.
Security teams have long estimated risk by ranking attacker sophistication. Nation-state actors sat at one end. Organized criminal g…
Signed DailyWriteUps
5 Aug 2026, 12:35 UTC11 viewsread 6 August 2026 Photo
Greatness PhaaS Adds Device Code Phishing to Bypass MFA and Steal Tokens
#News
Posted On 📆 : Tue, 04 Aug 2026 22:57:39 +0530
The commercial phishing-as-a-service (PhaaS) toolkit known as Greatness has become the latest crimeware solution to add support for device code phishing, a rapidly growing cyber threat that abuses the legitimate OAuth 2.0 Device Authorization Grant to bypass Multi-Factor Authentication (MFA)…
Signed DailyWriteUps
4 Aug 2026, 12:37 UTC17 viewsread 6 August 2026 Photo
Hugging Face Diffusers Flaws Could Let Model Repositories Execute Arbitrary Code
#News
Posted On 📆 : Mon, 03 Aug 2026 12:10:31 +0530
Three high-severity security flaws have been disclosed in Hugging Face's Diffusers library that could allow crafted model repositories to stealthily execute arbitrary code on machines that load it, opening the artificial intelligence (AI) supply chain to security risk.
"These vulner…
Signed DailyWriteUps
4 Aug 2026, 12:37 UTC6 viewsread 6 August 2026 Photo
PNLD Breach Exposes U.K. Police and Government Contact Details on Dark Web
#News
Posted On 📆 : Mon, 03 Aug 2026 14:43:56 +0530
The Police National Legal Database (PNLD) has confirmed that police, government and customer contact information was compromised and published on the dark web.
The data included names, organisations and work email addresses belonging to police officers, police staff, criminal justice prof…
Signed DailyWriteUps
4 Aug 2026, 12:37 UTC9 viewsread 6 August 2026 Photo
Thermo Fisher Patches Flaw That Could Make DNA File Tampering Nearly Undetectable
#News
Posted On 📆 : Mon, 03 Aug 2026 13:35:30 +0530
Thermo Fisher Scientific has patched a flaw in select Applied Biosystems human identification software that could allow data files to be altered before analysis software loads them.
The vendor's July 31 security bulletin says nearly undetectable changes to .fsa and .hid outputs cou…
Signed DailyWriteUps
Showing the 12 most recent of 20 posts we hold for @Xpykerz. View and reaction counts are the latest single reading for each post, not a live figure, and a recent post is still accumulating both. A view count marked ≈ was rounded by Telegram before we ever saw it — t.me prints views in full below 1,000 and to three significant figures above, so ≈1,200,000 means somewhere between 1,150,000 and 1,249,999. Unmarked counts are exact. Text is reproduced from the public post preview and truncated for length.