September 16, 2025
September 16, 2025
When we decompile an APK and see an unreadable https://t.co/BbQf3H943H.bundle, it could be Hermes bytecode. Using https://t.co/DBonMwpUBM we can make it readable and look for interesting endpoints, keys, or app flows.#bugbounty
— Aditi Singh (@aditi_singghh) September 14, 2025
Have you seen? Microsoft just completely restructured their fundamental security guidance, and it's awesome! ✨
— Daniel Bradley (@DanielatOCN) September 15, 2025
This guidance serves as a perfect starting point for those aiming to better protect their M365 tenants! As well as this, I've also written some guidance for you on how… pic.twitter.com/9EZ4tqorYT
Hey you accidentally made it more secure https://t.co/3n8nmAiaVj
— Justin Elze (@HackingLZ) September 15, 2025
🛡️ DEFCON Workshop: Putting EDRs in Their Place - 💀 Killing and Silencing EDR Agents Like an Adversary https://t.co/Of9CwS0Kyq #cyber #threathunting #infosec
— Blue Team News (@blueteamsec1) September 14, 2025
Black Hat has posted my full keynote from Black Hat USA 2025.
— @mikko (@mikko) September 15, 2025
What an amazing stage, and 12,000 people in the audience. Thank You.
Here's the video. https://t.co/cYPQ0z2y8B
Got access to an AWS infrastructure during your RedTeam and you don't know how to do access persistence other than just adding an AccessKey ? 🫤
— OtterHacker (@OtterHacker) September 15, 2025
Step up your game with new TTPs ! 🫡
From IAM modification to lambda hijacking, 1001 ways to keep access !https://t.co/XMFF1QUUTJ
macOS Tahoe ships with a 0day ...based on a bug disclosed 8(!) years ago at #OBTS v1.0 🫣
— Patrick Wardle (@patrickwardle) September 15, 2025
New post: "From Spotlight to Apple Intelligence: Abusing an 0day to steal the data that fuels macOS AI": https://t.co/5lWdLBgozL ...with open-source PoC!
Takeaway? Always attend #OBTS 😄
Today, we present with *Phoenix*: 🔥 two new Rowhammer patterns + ⏱️ self-correcting refresh sync + 🔨 PC bit flips on all tested SK Hynix DDR5 DIMMs. More information: https://t.co/z1EQZkEQjd #Rowhammer #DDR5 #DRAM #HardwareSecurity #ETHZurich #COMSEC
— Patrick (@pjattke) September 15, 2025
Got 10 CVEs and 4 Acks in macOS Tahoe release. Probably the most I ever got for a single release. 😎
— Csaba Fitzl (@theevilbit) September 15, 2025
Upgrade your devices.https://t.co/nEt7ffsFvv
Google confirms hackers gained access to law enforcement portal - @LawrenceAbramshttps://t.co/nLgOsZrDtDhttps://t.co/nLgOsZrDtD
— BleepingComputer (@BleepinComputer) September 15, 2025
— Simone Margaritelli (@evilsocket) September 15, 2025
Find new associated domains with this simple Google dork:
— bugcrowd (@Bugcrowd) September 15, 2025
"© <COMPANY>. all rights reserved." -".<COMPANY>.com"
Check this out 👇 pic.twitter.com/2BboZzJ0qO
GitHub - volticks/CVE-2025-21692-poc: Proof of concept source code and misc files for my CVE-2025-21692 exploit, kernel version 6.6.75 - https://t.co/IFkx3bUHKG
— blueblue (@piedpiper1616) September 15, 2025