Archive

A collection of 72 issues

Latest

Cyber News 13NOV2025

General * AWS touts their MadPot honeypot - saw signs of earlier Citrix attacks before the patches were released. * https://aws.amazon.com/blogs/security/amazon-discovers-apt-exploiting-cisco-and-citrix-zero-days/ * https://www.bleepingcomputer.com/news/security/hackers-exploited-citrix-cisco-ise-flaws-in-zero-day-attacks/ * https://www.cybersecuritydive.com/news/threat-actor-zero-day-flaws-cisco-ise-citrix/805281/ * https://therecord.media/advanced-hacker-exploiting-cisco-citrix-z

Cyber News 12NOV2025

General * Yet another Managed File Transfer system getting pwned. Nice chain of mis-understood security in the host header, chained with an interesting use of anti-virus path configuration, to gain RCE as SYSTEM. * https://www.bleepingcomputer.com/news/security/hackers-abuse-triofox-antivirus-feature-to-deploy-remote-access-tools/ * (Same product, different defect) https://www.huntress.com/blog/gladinet-centrestack-triofox-local-file-inclusion-flaw * Rhadamantys

Cyber News 06NOV2025

General * Actively exploited WordPress email plugin 'Post SMTP', can be used to read WordPress password-reset emails, enabling account takeover. * https://www.wordfence.com/blog/2025/11/400000-wordpress-sites-affected-by-account-takeover-vulnerability-in-post-smtp-wordpress-plugin/ * https://www.bleepingcomputer.com/news/security/hackers-exploit-wordpress-plugin-post-smtp-to-hijack-admin-accounts/ * Google's Threat Intelligence Group (GTIG) on attacker use of AI tools. Yes

Subscribe to Deuxieme RE Banque News

Sign up now to get access to the library of members-only issues.
Jamie Larson
Subscribe