Loading…

Whats The Hax?

Daily intelligence on threats, breaches, and defenders

Latest
cybersecurityBrowsers making connection on port 3389 from loopbackcybersecurityDefender Flagged DigiCert Root Certs as MalwareFor [Blue|Purple] Teams in Cyber DefenceVanGuard — open-source single-binary DFIR toolkit (Velociraptor, Hayabusa, Chainsaw, Loki, YARA) with TUI, air-gap support, and 28 pre-built use casescybersecurityAnother breach just hit Canvas (Instructure), and this one is worth a closer look.cybersecurityOver 40% of UK firms suffered cyber attack last year, survey findscybersecurityEU should seek access to Anthropic's Mythos, Bundesbank sayscybersecurityMicrosoft Defender wrongly flags DigiCert certs as Trojan:Win32/Cerdigent.A!dhaFor [Blue|Purple] Teams in Cyber DefenceCVE-2026-31431:我用 DeepSeek 复现了 AI 发现Copy Fail 提权的全过程 - CVE-2026-31431: I used DeepSeek to reproduce the entire process of AI detecting Copy Fail privilege escalation.For [Blue|Purple] Teams in Cyber Defence《APT高级威胁研究报告》(2026 版)- Advanced Threat Research Report (2026 Edition)For [Blue|Purple] Teams in Cyber Defencenginxpulse: 轻量级 Nginx 访问日志分析与可视化面板,提供实时统计、PV 过滤、IP 归属地与客户端解析。- A lightweight Nginx access log analysis and visualization dashboard, providing real-time statistics, PV filtering, IP geolocation, and client resolution.For [Blue|Purple] Teams in Cyber Defence蔓灵花组织使用NUITKA打包的python样本进行投递 - The Manlinghua organization used Python samples packaged in NUITKA for delivery.cybersecurityIBM subsidiary managing Italy's PA infrastructure breached and attackers were inside for 2 weekscybersecurityPrerequisites for CARTPFor [Blue|Purple] Teams in Cyber Defencegdrv3.sys - Reverse Engineering a Signed Kernel Driver with 13 Hardware Access Primitivescybersecurity[ Removed by Reddit ]Reverse Engineering/r/ReverseEngineering's Weekly Questions ThreadFor [Blue|Purple] Teams in Cyber DefenceAdded new vulnerable samples for IoBitUnlocker, Zemana and TfSysMonFor [Blue|Purple] Teams in Cyber DefenceAMSI Page Guard Bypass (Rust PoC)hacking: security in practiceAny good open sources that bypass modern heuristic analysis?For [Blue|Purple] Teams in Cyber DefenceMeet Bluekit: The AI-Powered All-in-One Phishing KitcybersecurityBrowsers making connection on port 3389 from loopbackcybersecurityDefender Flagged DigiCert Root Certs as MalwareFor [Blue|Purple] Teams in Cyber DefenceVanGuard — open-source single-binary DFIR toolkit (Velociraptor, Hayabusa, Chainsaw, Loki, YARA) with TUI, air-gap support, and 28 pre-built use casescybersecurityAnother breach just hit Canvas (Instructure), and this one is worth a closer look.cybersecurityOver 40% of UK firms suffered cyber attack last year, survey findscybersecurityEU should seek access to Anthropic's Mythos, Bundesbank sayscybersecurityMicrosoft Defender wrongly flags DigiCert certs as Trojan:Win32/Cerdigent.A!dhaFor [Blue|Purple] Teams in Cyber DefenceCVE-2026-31431:我用 DeepSeek 复现了 AI 发现Copy Fail 提权的全过程 - CVE-2026-31431: I used DeepSeek to reproduce the entire process of AI detecting Copy Fail privilege escalation.For [Blue|Purple] Teams in Cyber Defence《APT高级威胁研究报告》(2026 版)- Advanced Threat Research Report (2026 Edition)For [Blue|Purple] Teams in Cyber Defencenginxpulse: 轻量级 Nginx 访问日志分析与可视化面板,提供实时统计、PV 过滤、IP 归属地与客户端解析。- A lightweight Nginx access log analysis and visualization dashboard, providing real-time statistics, PV filtering, IP geolocation, and client resolution.For [Blue|Purple] Teams in Cyber Defence蔓灵花组织使用NUITKA打包的python样本进行投递 - The Manlinghua organization used Python samples packaged in NUITKA for delivery.cybersecurityIBM subsidiary managing Italy's PA infrastructure breached and attackers were inside for 2 weekscybersecurityPrerequisites for CARTPFor [Blue|Purple] Teams in Cyber Defencegdrv3.sys - Reverse Engineering a Signed Kernel Driver with 13 Hardware Access Primitivescybersecurity[ Removed by Reddit ]Reverse Engineering/r/ReverseEngineering's Weekly Questions ThreadFor [Blue|Purple] Teams in Cyber DefenceAdded new vulnerable samples for IoBitUnlocker, Zemana and TfSysMonFor [Blue|Purple] Teams in Cyber DefenceAMSI Page Guard Bypass (Rust PoC)hacking: security in practiceAny good open sources that bypass modern heuristic analysis?For [Blue|Purple] Teams in Cyber DefenceMeet Bluekit: The AI-Powered All-in-One Phishing Kit

By Source

Feeds organized so you can skim by site.

Density Sort
CY
cybersecurity
1h ago · 20 items
20 loaded
VanGuard — open-source single-binary DFIR toolkit (Velociraptor, Hayabusa, Chainsaw, Loki, YARA) with TUI, air-gap support, and 28 pre-built use cases 1h ago CVE-2026-31431:我用 DeepSeek 复现了 AI 发现Copy Fail 提权的全过程 - CVE-2026-31431: I used DeepSeek to reproduce the entire process of AI detecting Copy Fail privilege escalation. 2h ago 《APT高级威胁研究报告》(2026 版)- Advanced Threat Research Report (2026 Edition) 2h ago nginxpulse: 轻量级 Nginx 访问日志分析与可视化面板,提供实时统计、PV 过滤、IP 归属地与客户端解析。- A lightweight Nginx access log analysis and visualization dashboard, providing real-time statistics, PV filtering, IP geolocation, and client resolution. 3h ago 蔓灵花组织使用NUITKA打包的python样本进行投递 - The Manlinghua organization used Python samples packaged in NUITKA for delivery. 3h ago gdrv3.sys - Reverse Engineering a Signed Kernel Driver with 13 Hardware Access Primitives 3h ago Added new vulnerable samples for IoBitUnlocker, Zemana and TfSysMon 5h ago AMSI Page Guard Bypass (Rust PoC) 5h ago Meet Bluekit: The AI-Powered All-in-One Phishing Kit 5h ago Malicious Ruby Gems and Go Modules Impersonate Developer Tools to Steal Secrets and Poison CI 5h ago
20 loaded
RE
Reverse Engineering
4h ago · 20 items
/r/ReverseEngineering's Weekly Questions Thread 4h ago GitHub - 03DSmoothie/minecraft-cpp-versions: Minecraft recoded in C++ (multiple versions) 12h ago Automated RASP Bypass with Frida + AI Agent | nutcracker & aipwn demo 19h ago Please critique my reverse engineering ctf platform. It is meant for beginners but I would like input from serious reverse engineers. It is functionally done but I need criticism for further refinements, thank you! 22h ago "AccountDumpling": Hunting Down the Google-Sent Phishing Wave Compromising 30,000+ Facebook Accounts 1d ago How to build .NET obfuscator - Part II 1d ago libghidra - SDK for automating Ghidra from Python, Rust, and C++ 1d ago Release: Open-source CAN bus reverse engineering suite tailored for offline ML signal decoding, MitM injection, and UDS analysis. 1d ago Why my macOS Messages badge lied to me (and the one-line fix) 2d ago Running Adobe’s 1991 PostScript Interpreter in the Browser 2d ago
20 loaded
HS
hacking: security in practice
5h ago · 20 items
20 loaded
"AccountDumpling": Hunting Down the Google-Sent Phishing Wave Compromising 30,000+ Facebook Accounts 6h ago Acoustic Keystroke Recovery - Reconstructing Typed Text from a Laptop Microphone (Full Guide, 85% success rate) 22h ago How to exfiltrate data using only numeric outputs 1d ago For vulnerability research, smaller models run repeatedly can outperform larger frontier models on cost-to-recall. 2d ago Every incident public companies have disclosed to the SEC, in one searchable database 2d ago r/netsec monthly discussion & tool thread 2d ago Handled, Not Hosted: Administrative Activity Inside a Bulletproof Hoster 3d ago Seventeen vulnerabilities in Omi, fourteen days of silence 3d ago High Fidelity Check for the cPanel Authentication Bypass (CVE-2026-41940) 4d ago Copy Fail exploit lets 732 bytes hijack Linux systems and quietly grab root 4d ago
20 loaded
MA
Malware Analysis & Reports
19h ago · 20 items
20 loaded

No matching sources found.