Skip to content

  • Home
  • Tools
    • IOC Defang/Refang Tool
    • Universal Encoder Decoder
    • File Hash Calculator
    • Password Crack Time Simulator
    • Multi-URL IOC Checker
  • CyberSecurity News
  • Latest Cyber Attack
  • Vulnerabilities
  • Threat Advisories
  • MITRE ATT&CK
    • Collection
    • Command and Control
    • Credential Access
    • Defense Evasion
    • Discovery
    • Execution
    • Exfiltration
    • Impact
    • Initial Access
    • Lateral Movement
    • Persistence
    • Privilege Escalation
    • Reconnaissance
    • Resource Development
  • Ransomware
  • Malware
  • Cyber Kill Chain

  • Home
  • Tools
    • IOC Defang/Refang Tool
    • Universal Encoder Decoder
    • File Hash Calculator
    • Password Crack Time Simulator
    • Multi-URL IOC Checker
  • CyberSecurity News
  • Latest Cyber Attack
  • Vulnerabilities
  • Threat Advisories
  • MITRE ATT&CK
    • Collection
    • Command and Control
    • Credential Access
    • Defense Evasion
    • Discovery
    • Execution
    • Exfiltration
    • Impact
    • Initial Access
    • Lateral Movement
    • Persistence
    • Privilege Escalation
    • Reconnaissance
    • Resource Development
  • Ransomware
  • Malware
  • Cyber Kill Chain

December 2025

From Cookie to Compromise: A Technical Analysis of Session Hijacking

  • Credential Access
CyberDefenderDecember 24, 2025December 24, 20257 mins0
1. What Is Browser Session Hijacking? Browser session hijacking is an attack where an adversary takes control…
continue reading..

DNS is not “just infrastructure” — it’s a data channel

  • Command and Control
CyberDefenderDecember 24, 2025December 24, 20255 mins0
DNS (Domain Name System) traffic is commonly abused for data exfiltration because it is trusted, ubiquitous, and…
continue reading..

Keyloggers: Technical Overview, Indicators of Compromise (IOCs), and Incident Response

  • Collection
CyberDefenderDecember 24, 2025December 24, 20256 mins0
1. What Is a Keylogger? A keylogger is a surveillance tool that captures keyboard input (and often…
continue reading..

The VPN That Wasn’t: How a Paid Chrome Extension Turned Browsers into Silent Surveillance Tools

  • Cyber Threat Intelligence
AegironDecember 23, 2025December 23, 202511 mins0
Introduction Browser extensions are often installed with very little scrutiny. They promise convenience, speed, and productivity—and once…
continue reading..

CVE-2025-29970: A Silent Windows Privilege Escalation Lurking in the Brokering File System

  • Threat Advisories
AegironDecember 23, 2025December 23, 202510 mins0
Vulnerability Overview Executive Summary CVE-2025-29970 is a local privilege escalation vulnerability caused by a use-after-free condition in…
continue reading..

CVE-2025-38352: Kernel-Level Race Condition Enabling Local Privilege Escalation

  • Threat Advisories
AegironDecember 23, 2025December 24, 202513 mins0
Vulnerability Overview Executive Summary CVE-2025-38352 is a race condition vulnerability in the Linux kernel, specifically within the…
continue reading..

CVE-2025-68613: Critical n8n Remote Code Execution Vulnerability Allowing Full Server Takeover

  • Threat Advisories
AegironDecember 23, 2025December 23, 202521 mins0
Quick Facts Attribute Details CVE ID CVE-2025-68613 Severity Critical (CVSS score: 9.9) Affected Product n8n Workflow Automation…
continue reading..

PART B: SOC Detection, Hunting & Incident Response Toolkit – CVE-2023-52163

  • Vulnerabilities
AegironDecember 23, 2025December 24, 20258 mins1
1. ASSET DISCOVERY & INVENTORY PowerShell: Find-DigieverDevices.ps1 Parameter Block What this actually means Why this matters operationally…
continue reading..

Part A: When Time Settings Become a Backdoor – CVE-2023-52163

  • Vulnerabilities
AegironDecember 23, 2025December 24, 20257 mins0
Vulnerability Overview Vulnerability Name: Unauthenticated Remote Command ExecutionCVE ID: CVE-2023-52163Affected Product: Digiever DS-2105 Pro Network Video RecorderVendor:…
continue reading..

Loki 2.1 Malware: Inside a Stealth Loader Chain Leveraging PowerShell, Go, and C++

  • Cyber Threat Intelligence
AegironDecember 23, 2025December 23, 20258 mins0
Status: Active exploitation with new C++ dropper (November 2025) Delivery: Windows shortcut (LNK) files in ZIP archives…
continue reading..
  • 1
  • …
  • 17
  • 18
  • 19
  • 20
  • 21
  • …
  • 41

Recent Posts

  • Ransomware Group ‘Gentlemen’ Industrializes EDR Evasion with Kernel-Le…
    Jun 22, 2026
  • SmartApeSG Compromises Okendo Reviews Widget, Exposing Thousands of E-…
    Jun 22, 2026
  • Cybercriminals Exploit Fake Microsoft Teams Transcripts to Deploy Pers…
    Jun 22, 2026
  • Thousands Targeted, Hundreds Compromised: Inside the FortiBleed Creden…
    Jun 22, 2026
  • Novel GhoLoader malware campaign detected, using unique ’10 mous…
    Jun 22, 2026
  • INC Ransomware Emerges as a Major Global Cyber Threat, Rapidly Expandi…
    Jun 19, 2026
  • Dropping Elephant Deploys Advanced Fileless Malware, Neutralizing AMSI…
    Jun 19, 2026
  • ShinyHunters Exploits Oracle PeopleSoft Zero-Day, Compromises Universi…
    Jun 19, 2026
  • Cybercriminals Weaponize Wallpaper Engine to Hijack Steam Accounts in …
    Jun 19, 2026
  • AI-Powered ClickFix Campaign Targets Brazilian Banks, Deploys SmartRAT…
    Jun 19, 2026

Popular Posts

  • Thousands Targeted, Hundreds Compromised: Inside the FortiBleed Creden…
    Jun 22, 2026
  • Cybercriminals Exploit Fake Microsoft Teams Transcripts to Deploy Pers…
    Jun 22, 2026
  • SmartApeSG Compromises Okendo Reviews Widget, Exposing Thousands of E-…
    Jun 22, 2026
  • Novel GhoLoader malware campaign detected, using unique ’10 mous…
    Jun 22, 2026
  • Ransomware Group ‘Gentlemen’ Industrializes EDR Evasion with Kernel-Le…
    Jun 22, 2026

Find Me On

© 2026 CyberP1. All Rights Reserved.
  • Contact
  • Privacy Policy
  • Terms of Service