July 16, 2025
July 16, 2025
Dear attacker, Clear-History does not clear the PSReadLine command history file.
— Stephan Berger (@malmoeb) July 15, 2025
Clear-History, as taken from the official documentation, deletes only entries from the PowerShell session command history.
In contrast, the PSReadLine module stores a history file that contains… pic.twitter.com/02mMFlgFfe
Azure Arc is Microsoft's solution for managing on-premises systems in hybrid environments. My new blog covers how it can it be identified in an enterprise and misconfigurations that could allow it to be used for out-of-band execution and persistence. https://t.co/CI6U1M9Mbn
— Dave Cossa (@G0ldenGunSec) July 3, 2025
While waiting for the Pwn2Own chain, you might want to read this.
— Khoa Dinh (@_l0gg) July 16, 2025
Disclaimer: This is a bug I discovered by accident, and already been resolved. I’m not sure which CVE or patch this maps to.
If you know any information, please feel free to leave a commenthttps://t.co/tIeEhUefPW pic.twitter.com/Ok0tOkmkfv
Stunning @ProPublica investigation: Microsoft uses Chinese engineers to maintain Pentagon systems without much of a check in place.
— Geoffrey Cain (@geoffrey_cain) July 15, 2025
"Digital escorts" -- ex-military with little coding experience -- are supposed to guard against spying. But they can't keep up with foreign… pic.twitter.com/mZBG7tpdLt
Google has just used AI and threat intel to foil a zeroday before it could launch. Working from artifacts gathered by GTIG, Big Sleep was used to identify a vuln before actors could ramp up exploitation. It doesn’t get much better than this in intel. https://t.co/AJevC8xG8N
— John Hultquist (@JohnHultquist) July 15, 2025
“The good news" is that China's Volt Typhoon hacking campaign "really failed," an NSA official said at a cyber conference in New York.
— The Record From Recorded Future News (@TheRecord_Media) July 15, 2025
An FBI official also described an incident of "true cyberwarfare" with the Flax Typhoon group.https://t.co/yuzkCw6QIc