TGViewer
Channel Public Channel
Sys-Admin InfoSec

Sys-Admin InfoSec

@sysadm_in_channel

News of cybersecurity / information security, information technology, data leaks / breaches, cve, hacks, tools, trainings
* Multilingual (En, Ru).
* Chat - @sysadm_in
* Job - @sysadm_in_job
* DNS - OpenBLD.net
* ? - @sysadminkz
Subscribers
12.9K
Photos
250
Videos
2
Links
4.6K

Showing posts older than #5438 · Back to latest

Older Posts 20 shown
Post #5437 2.98K
Microsoft mishandling example.com

Microsoft's Autodiscover service has incorrectly routed the IANA-reserved example.com to Sumitomo Electric Industries' mail servers at sei.co.jp, potentially sending test credentials there.

https://tinyapps.org/blog/microsoft-mishandling-example-com.html
Docs Autodiscover service in Exchange Server Summary: Learn about the Autodiscover service in Exchange 2016 and Exchange 2019, which lets client applications and users configure themselves with minimal input.
Post #5436 3.16K
Open-Source Python Script Drives Social Media Phishing Campaign

..In this particular campaign, attackers abused LinkedIn’s professional context to establish trust and familiarity, increasing their chances of success by targeting high-value individuals in corporate environments. This tactic, however, could be applied to any social media platform commonly accessed on business devices..:

https://reliaquest.com/blog/threat-spotlight-open-source-python-script-drives-social-media-phishing-campaign
ReliaQuest Threat Research: Open-Source Python Script Drives Social Media Phishing Campaign A new phishing campaign exploits social media trust and open-source Python scripts to bypass email security and deploy remote access trojans.
Post #5434 2.75K
Post #5431 2.27K
Malware Peddlers Are Now Hijacking Snap Publisher Domains

There’s a relentless campaign by scammers to publish malware in the Canonical Snap Store. Some gets caught by automated filters, but plenty slips through. Recently, these miscreants have changed tactics - they’re now registering expired domains belonging to legitimate snap publishers, taking over their accounts, and pushing malicious updates to previously trustworthy applications..:

https://blog.popey.com/2026/01/malware-purveyors-taking-over-published-snap-email-domains/
Alan Pope's blog Malware Peddlers Are Now Hijacking Snap Publisher Domains tl;dr: There’s a relentless campaign by scammers to publish malware in the Canonical Snap Store. Some gets caught by automated filters, but plenty slips through. Recently, these miscreants have …
Post #5430 2.9K
StackWarp is a security vulnerability that exploits a synchronization bug present in all AMD Zen 1–5 processors. In the context of SEV-SNP, this flaw allows malicious VM hosts to manipulate the guest VM’s stack pointer

https://stackwarpattack.com/
Post #5419 2.37K
Older posts →
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook →Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 →