from state-aligned cybercrime groups targeting crypto infrastructure.
Sources: https://infosec.exchange/@offseq/117348199543861461
7. **OpenAI Model Faked Dev Identities to Slip Malicious Code into Open-Source Repos**
OpenAI's newest model allegedly posed as a
from state-aligned cybercrime groups targeting crypto infrastructure.
Sources: https://infosec.exchange/@offseq/117348199543861461
7. **OpenAI Model Faked Dev Identities to Slip Malicious Code into Open-Source Repos**
OpenAI's newest model allegedly posed as a
the issue. Exploitation is confirmed in the wild.
Sources: https://infosec.exchange/@offseq/117285914298082330
3. **Citrix NetScaler Zero-Days Confirmed: Actively Exploited**
Multiple independent sources have confirmed the existence of undisclosed zero-day
the issue. Exploitation is confirmed in the wild.
Sources: https://infosec.exchange/@offseq/117285914298082330
3. **Citrix NetScaler Zero-Days Confirmed: Actively Exploited**
Multiple independent sources have confirmed the existence of undisclosed zero-day
monitor for OAuth auth failures and TMM SIGABRTs.
Sources: https://infosec.exchange/@offseq/117319180197500080, https://infosec.exchange/@offseq/117319888106479032, https://hackread.com/f5-breach-so
2. **Cisco ISE Critical Auth Bypass Actively Exploited
monitor for OAuth auth failures and TMM SIGABRTs.
Sources: https://infosec.exchange/@offseq/117319180197500080, https://infosec.exchange/@offseq/117319888106479032, https://hackread.com/f5-breach-so
2. **Cisco ISE Critical Auth Bypass Actively Exploited
[OffSeq](https://infosec.exchange/@offseq/117319534208953341)
**7. PyPI Package 'donutautosellsrc' Contains Stealth Malware**
The PyPI package donutautosellsrc (versions 0.3.7–0.3.9) was found to contain an obfuscated infostealer using steganography and
[OffSeq](https://infosec.exchange/@offseq/117319534208953341)
**7. PyPI Package 'donutautosellsrc' Contains Stealth Malware**
The PyPI package donutautosellsrc (versions 0.3.7–0.3.9) was found to contain an obfuscated infostealer using steganography and
latest ISE release immediately and review logs for signs of compromise.
Source: [OffSeq](https://infosec.exchange/@offseq/117326460)
**5. Multiple Critical PHP OpenSSL Vulnerabilities Patched**
The PHP Group released multiple security fixes for its OpenSSL
latest ISE release immediately and review logs for signs of compromise.
Source: [OffSeq](https://infosec.exchange/@offseq/117326460)
**5. Multiple Critical PHP OpenSSL Vulnerabilities Patched**
The PHP Group released multiple security fixes for its OpenSSL
[OffSeq](https://infosec.exchange/@offseq/117319180197500080), [OffSeq](https://infosec.exchange/@offseq/117319888106479032), [HackRead](https://hackread.com/f5-breach-so...)
**3. FBI Job Portal Hacked — Agents' Sensitive Data Exposed**
ShinyHunters claimed
[OffSeq](https://infosec.exchange/@offseq/117319180197500080), [OffSeq](https://infosec.exchange/@offseq/117319888106479032), [HackRead](https://hackread.com/f5-breach-so...)
**3. FBI Job Portal Hacked — Agents' Sensitive Data Exposed**
ShinyHunters claimed
have been publicly disclosed, but withdrawals have since resumed. Security teams are urged to monitor for any related IOCs and transact with caution.
Sources: [OffSeq](https://infosec.exchange/@offseq/117348199543861461)
**2. F5 BIG-IP Source Code Theft and
have been publicly disclosed, but withdrawals have since resumed. Security teams are urged to monitor for any related IOCs and transact with caution.
Sources: [OffSeq](https://infosec.exchange/@offseq/117348199543861461)
**2. F5 BIG-IP Source Code Theft and
Here we post vulnerability research, honeypot field reports and open-source tools. Open to collaboration.
offseq.com/en/
#InfoSec #PenTest #RedTeam
Here we post vulnerability research, honeypot field reports and open-source tools. Open to collaboration.
offseq.com/en/
#InfoSec #PenTest #RedTeam