Sys-Admin InfoSec
@sysadm_in_channelNews of cybersecurity / information security, information technology, data leaks / breaches, cve, hacks, tools, trainings * Multilingual (En, Ru). * Chat - @sysadm_in * Job - @sysadm_in_job * DNS - OpenBLD.net * ? - @sysadminkz
Посты канала (20)
- HTTP/2 Bomb https://blog.calif.io/p/codex-discovered-a-hidden-http2-bomb 03.06.2026
- Bumblebee (from Perplexity) Read-only developer endpoint scanner for on-disk package, extension, and developer-tool met… 26.05.2026
- ⚡ DNS is not just about domains. It is about Trust. Recent supply chain incidents are a strong reminder that modern att… 20.05.2026
- NGINX ngx_http_rewrite_module Heap-Based Buffer Overflow (Queries and Signatures Only) An unauthenticated attacker can … 18.05.2026
- Dead.Letter (CVE-2026-45185) How XBOW Found an Unauthenticated RCE on Exim https://xbow.com/blog/dead-letter-cve-2026-4… 13.05.2026
- AppSecFest 2026 - В эту пятницу в Алматы, Farabi Hub Будут экспертные эксперты, тимлиды, специалисты, представители IT-… 13.05.2026
- New TrickMo Variant: Device Take Over malware targeting Banking, Fintech, Wallet & Auth apps ..The malware’s primary co… 12.05.2026
- Ping, Payload, PowerShell: Active Exploitation of CVE-2026-22679 in Weaver E-cology https://blog.vega.io/posts/cve-2026… 11.05.2026
- PamDOORa: Analyzing a New Linux PAM-Based Backdoor for Sale on the Dark Web https://flare.io/learn/resources/blog/pamdo… 08.05.2026
- TCLBANKER: Brazilian Banking Trojan Spreading via WhatsApp and Outlook Trojan that contains a dynamic infection chain w… 08.05.2026
- Breaking the code: Multi-stage ‘code of conduct’ phishing campaign leads to AiTM token compromise https://www.microsoft… 06.05.2026
- BlueNoroff Uses ClickFix, Fileless PowerShell, and AI-Generated Fake Zoom Meetings to Target Web3 Sector https://arctic… 04.05.2026
- Securing the git push pipeline: Responding to a critical remote code execution vulnerability https://github.blog/securi… 30.04.2026
- Kyber Ransomware Double Trouble: Windows and ESXi Attacks Explained https://www.rapid7.com/blog/post/tr-kyber-ransomwar… 28.04.2026
- FakeWallet crypto stealer spreading through iOS apps in the App Store During our investigation, we identified 26 phishi… 21.04.2026
- Internet Protocol Version 8 (IPv8) coming.. https://www.ietf.org/archive/id/draft-thain-ipv8-00.html 21.04.2026
- MCPwn: A CVSS 9.8 One-Line MCP Bug That Hands Over Your Nginx to Anyone on the Network – Actively Exploited in the Wild… 15.04.2026
- SecuritySnack - OpenAI Anti-Ads Malware This report details the discovery of a malicious Chrome extension, named "ChatG… 02.04.2026
- Operation NoVoice: Rootkit Tells No Tales WhatsApp under attack * https://www.mcafee.com/blogs/other-blogs/mcafee-labs/… 02.04.2026
- How TeamPCP's supply chain attack evolved The malicious campaign that started with Trivy and Checkmarx has shifted to L… 27.03.2026