CyberNetSecIO
netsecio.bsky.social
CyberNetSecIO
@netsecio.bsky.social
Cybersecurity professional with over 10 years of specialized experience in security operations, threat intelligence, incident response, and security automation.
Pinned
For Cyber Practitioner's:

Just launched a new SIGMA Generator and STIX Visualizer!

Check it out!
cyber.netsecops.io/sigma-gen/

Post in this thread if you bugs or issue.

Thanks!
Sigma Gen — Detection Rule Viewer & Converter
Load STIX 2.1 bundles to view, inspect, and convert embedded Sigma detection rules to Splunk SPL, Microsoft Sentinel KQL, Elastic EQL, and more. Free detection rule converter by CyberNetSec.io.
cyber.netsecops.io
F5 BIG-IP APM is being actively exploited via a critical RCE zero-day (CVE-2026-94127). CISA has added it to the KEV catalog, mandating an urgent patch. The flaw affects systems with a specific OAuth config. #F5 #BIGIP #CyberSecurity #RCE

🌐 cyber[.]netsecops[.]io
F5 BIG-IP APM Zero-Day (CVE-2026-94127) Actively Exploited for RCE
F5 patches critical 9.8 CVSS RCE vulnerability (CVE-2026-94127) in BIG-IP APM. The zero-day flaw is actively exploited, prompting a CISA KEV alert.
cyber.netsecops.io
September 25, 2026 at 8:31 PM
CISA & FBI issue joint guidance on securing critical infrastructure from third-party ICS integrator risks. The advisory stresses least privilege, robust contracts, and secure remote access monitoring. #ICS #OTsecurity #CISA #SupplyChain

🌐 cyber[.]netsecops[.]io
CISA & FBI Warn of Third-Party Risks to Industrial Control Systems
CISA and the FBI released a joint fact sheet urging critical infrastructure operators to mitigate cyber risks from third-party ICS integrators.
cyber.netsecops.io
September 25, 2026 at 8:31 PM
SolarWinds patches two unauthenticated RCE vulnerabilities in its Observability Self-Hosted platform. CVE-2026-28324 is rated critical (CVSS 9.8). Customers are urged to update to version 2026.2.3 immediately. #SolarWinds #CVE #RCE #PatchTuesday

🌐 cyber[.]netsecops[.]io
SolarWinds Patches Critical Unauthenticated RCE Flaws in Observability Platform
SolarWinds has patched two critical and high-severity RCE vulnerabilities (CVE-2026-28324, CVE-2026-28325) in its Observability Self-Hosted platform.
cyber.netsecops.io
September 25, 2026 at 8:31 PM
A new Windows botnet 'x47.c' is being sold with an 'AI API drain' feature to cause financial harm by exhausting victims' AI service credits. This 'denial of wallet' attack highlights a new threat vector. #Botnet #AI #Cybercrime #DenialofWallet

🌐 cyber[.]netsecops[.]io
New Windows Botnet
A new Windows botnet, x47.c, is being marketed on the dark web with a feature to drain victims
cyber.netsecops.io
September 25, 2026 at 8:31 PM
A new campaign used AI agents to automate attacks on 100+ companies, stealing over 600,000 credit cards. The AI handled reconnaissance, exploitation, and data destruction for as little as $25 per target. #AI #Cybercrime #DataBreach #Magecart

🌐 cyber[.]netsecops[.]io
AI Agents Used to Steal 600,000+ Credit Cards in Automated Attacks
A Chinese-speaking hacker used commercially available AI agents to automate attacks, breaching over 100 companies and stealing more than 600,000 credit...
cyber.netsecops.io
September 25, 2026 at 8:31 PM
Microsoft unmasks ransomware affiliate Storm-2570, linking it to Qilin, DragonForce, Anubis & BERT payloads. The group uses a consistent playbook of RMM tools, ntdsutil, & Rclone, offering key detection points. #ThreatIntel #Ransomware #Storm2570 #Mi...

🌐 cyber[.]netsecops[.]io
Microsoft Links Ransomware Affiliate Storm-2570 to Four Malware Families
Microsoft Threat Intelligence reports that a single ransomware affiliate, Storm-2570, uses a consistent set of TTPs to deploy Qilin, DragonForce, and other...
cyber.netsecops.io
September 25, 2026 at 8:31 PM
🚨 CRITICAL VULNERABILITY: WordPress Core is being actively exploited via CVE-2026-87902 (CVSS 9.2). The unauthenticated path traversal flaw can lead to RCE. Affects versions 4.7.0-7.1.1. Update to 7.1.2 immediately! #WordPress #CVE #CyberSecurity #P...

🌐 cyber[.]netsecops[.]io
Critical WordPress Path Traversal Flaw Actively Exploited (CVE-2026-87902)
A critical path traversal vulnerability, CVE-2026-87902, is being actively exploited in WordPress versions 4.7.0-7.1.1, potentially leading to RCE.
cyber.netsecops.io
September 25, 2026 at 8:31 PM
🚨 Health-ISAC warns of a surge in vishing attacks on healthcare & pharma. Threat actors like ShinyHunters use aggressive phone tactics & fake medical domains to steal credentials and disrupt operations. #Vishing #SocialEngineering #Healthcare #Cyber...

🌐 cyber[.]netsecops[.]io
Healthcare Sector Faces Surge in Social Engineering & Vishing Attacks
The healthcare and pharmaceutical sectors are being targeted by a wave of social engineering and vishing attacks from groups like ShinyHunters, warns...
cyber.netsecops.io
September 25, 2026 at 8:31 PM
New ransomware group 'n0n' escalates extortion by threatening to destroy victim backups, eliminating recovery options. The group uses compromised credentials for initial access and has already hit over a dozen firms. #Ransomware #n0n #CyberSecurity #...

🌐 cyber[.]netsecops[.]io
New Ransomware Group
A new ransomware group called n0n is escalating extortion tactics by threatening to destroy or encrypt victim backups, aiming to prevent recovery and force...
cyber.netsecops.io
September 25, 2026 at 8:31 PM
Extortion group ShinyHunters claims to have breached the FBI using a PeopleSoft zero-day vulnerability. The group alleges data theft of agent and applicant info as revenge. The claim is unconfirmed. #ShinyHunters #CyberAttack #FBI #ZeroDay

🌐 cyber[.]netsecops[.]io
ShinyHunters Claims FBI Hack, Cites Revenge and PeopleSoft Zero-Day
The threat group ShinyHunters has claimed it breached the FBI by exploiting a PeopleSoft zero-day vulnerability, though the claim remains unconfirmed.
cyber.netsecops.io
September 24, 2026 at 10:21 PM
Staffing firm Infotree Global Solutions reports a data breach after an employee accidentally emailed sensitive records, including Social Security numbers, to an unauthorized party. #DataBreach #Privacy #Infosec

🌐 cyber[.]netsecops[.]io
Law Firm Investigates Data Breach at Infotree Global Solutions
The law firm Edelson Lechtzin LLP is investigating a data breach at Infotree Global Solutions after sensitive employee data was exposed via email.
cyber.netsecops.io
September 24, 2026 at 10:21 PM
A GAO report finds the FAA lacks real-time monitoring for cybersecurity threats to aircraft communications like spoofing and jamming. Systems like ACARS and CPDLC are vulnerable. #AviationSecurity #FAA #GAO #Cybersecurity

🌐 cyber[.]netsecops[.]io
GAO: FAA Lacks Real-Time Monitoring for Aviation Cyber Threats
A U.S. GAO report finds the Federal Aviation Administration (FAA) has failed to implement real-time monitoring for cybersecurity threats to aircraft.
cyber.netsecops.io
September 24, 2026 at 10:21 PM
New Thales report finds 67% of manufacturers see AI as a top security risk, with 61% already hit by deepfake attacks. Major gaps in cloud data visibility and encryption persist. #AI #CloudSecurity #Manufacturing #DataThreat

🌐 cyber[.]netsecops[.]io
AI and Cloud Complexity Create New Risks for Manufacturers: Thales
The 2026 Thales Data Threat Report reveals manufacturers
cyber.netsecops.io
September 24, 2026 at 10:21 PM
MGM Resorts International reports a cyberattack, forcing a shutdown of some computer systems to contain the threat. Operational disruptions are ongoing. The nature of the attack is not yet disclosed. #CyberAttack #MGMResorts #IncidentResponse

🌐 cyber[.]netsecops[.]io
MGM Resorts Shuts Down Systems to Contain Unspecified Cyberattack
MGM Resorts International has shut down some of its computer systems to contain a cyberattack identified on September 23, 2026, causing disruptions.
cyber.netsecops.io
September 24, 2026 at 10:21 PM
Ireland's Data Protection Commission fines Google €403M for GDPR violations related to user location data processing. The DPC found a lack of transparency and fairness. #GDPR #Privacy #DataProtection #Google

🌐 cyber[.]netsecops[.]io
Google Fined €403M by Irish DPC for GDPR Location Data Violations
Ireland
cyber.netsecops.io
September 24, 2026 at 10:21 PM
CISA & FBI issue joint guidance on securing critical infrastructure from third-party ICS integrator risks. The advisory stresses least privilege, robust contracts, and secure remote access monitoring. #ICS #OTsecurity #CISA #SupplyChain

🌐 cyber[.]netsecops[.]io
CISA & FBI Warn of Third-Party Risks to Industrial Control Systems
CISA and the FBI released a joint fact sheet urging critical infrastructure operators to mitigate cyber risks from third-party ICS integrators.
cyber.netsecops.io
September 24, 2026 at 10:21 PM
Ransomware attacks surged 22% in July, hitting a 2026 high with 894 cases, reports NCC Group. The Industrials sector and North America remain top targets. #Ransomware #ThreatIntel #Cybersecurity #NCCGroup

🌐 cyber[.]netsecops[.]io
Ransomware Attacks Hit 2026 High in July, NCC Group Reports
Global ransomware attacks hit a 2026 peak in July with 894 incidents, a 22% increase from June, according to a new report from NCC Group.
cyber.netsecops.io
September 23, 2026 at 6:07 PM
BigCommerce discloses a supply-chain data breach via a compromised third-party app, 'Ribon'. Attackers stole an app key, exposing customer PII from multiple merchants between Sept 13-17. #BigCommerce #DataBreach #SupplyChain #Ecommerce

🌐 cyber[.]netsecops[.]io
BigCommerce Data Breach Caused by Compromised Third-Party App
E-commerce platform BigCommerce suffers a supply-chain data breach after an application key for the third-party Ribon app was compromised by attackers.
cyber.netsecops.io
September 23, 2026 at 6:07 PM
Vendors like Barracuda & PDI are launching new tools to combat 'shadow AI.' The platforms aim to discover unsanctioned AI use, prevent sensitive data leakage to LLMs, and help enterprises govern AI adoption securely. #AISecurity #CyberSecurity #DLP

🌐 cyber[.]netsecops[.]io
Vendors Launch New Tools to Secure Enterprise AI Adoption
Cybersecurity vendors including Barracuda and PDI Technologies are launching new platforms to manage
cyber.netsecops.io
September 23, 2026 at 6:07 PM
Water Hydra's DarkMe RAT campaign pivots from zero-days to simple phishing. New attacks use malicious .pif files, process hollowing, and COM hijacking for persistence to steal crypto wallets. #DarkMe #WaterHydra #Phishing #Malware #ThreatIntel

🌐 cyber[.]netsecops[.]io
DarkMe RAT Abandons Zero-Days for Simpler Phishing Attacks
The DarkMe RAT campaign, linked to APT group Water Hydra, has shifted from using zero-days to simple phishing attacks with malicious .
cyber.netsecops.io
September 23, 2026 at 6:07 PM
A malicious NPM package 'indexed-btree' got ~2M weekly downloads by hiding its payload in runtime code, bypassing security scans. It used Ethereum for C2 & earned its creator over €230k. #SupplyChainAttack #NPM #Malware #CyberSecurity

🌐 cyber[.]netsecops[.]io
Malicious
A malicious npm package,
cyber.netsecops.io
September 23, 2026 at 6:07 PM
Cisco Talos uncovers 'CLOSEDQUORUM,' the first malware using a panel of commercial LLMs (Google, Mistral) for autonomous C2. The implant is designed to steal credentials and crypto wallets. #AI #Malware #CyberSecurity #ThreatIntel

🌐 cyber[.]netsecops[.]io
CLOSEDQUORUM: First Malware Found Using AI Panel for C2 Decisions
Cisco Talos discovered CLOSEDQUORUM, a novel Windows malware that uses a panel of commercial AI models like Google Gemini and Mistral for autonomous...
cyber.netsecops.io
September 23, 2026 at 6:07 PM
F5 BIG-IP APM is being actively exploited via a critical RCE zero-day (CVE-2026-94127). CISA has added it to the KEV catalog, mandating an urgent patch. The flaw affects systems with a specific OAuth config. #F5 #BIGIP #CyberSecurity #RCE

🌐 cyber[.]netsecops[.]io
F5 BIG-IP APM Zero-Day (CVE-2026-94127) Actively Exploited for RCE
F5 patches critical 9.8 CVSS RCE vulnerability (CVE-2026-94127) in BIG-IP APM. The zero-day flaw is actively exploited, prompting a CISA KEV alert.
cyber.netsecops.io
September 23, 2026 at 6:07 PM
CISA KEV Alert: Two critical Check Point zero-days (CVE-2026-93616 & CVE-2026-85102) are under active attack. Flaws in Management Servers & VPN gateways allow RCE. Patch immediately. #CyberSecurity #Vulnerability #CheckPoint #PatchNow

🌐 cyber[.]netsecops[.]io
Check Point Zero-Days in Management Servers and VPNs Under Active Attack
Check Point patches two critical, actively exploited zero-day vulnerabilities (CVE-2026-93616, CVE-2026-85102) in its management and VPN products.
cyber.netsecops.io
September 23, 2026 at 6:07 PM
Cybercrime infighting: ShinyHunters has hijacked the data leak site of the Clop ransomware gang. The takeover is allegedly retaliation over a stolen zero-day exploit. ShinyHunters threatens to expose Clop's operations. #ShinyHunters #Clop #Ransomware

🌐 cyber[.]netsecops[.]io
ShinyHunters Hijacks Clop Ransomware Site in Inter-Gang Feud
The ShinyHunters extortion group has hijacked the dark web leak site of the Clop ransomware gang in a public feud over an allegedly stolen zero-day exploit.
cyber.netsecops.io
September 22, 2026 at 6:00 PM