Skip to content
Navigation menu
Search
Powered by Algolia
Search
Log in
Create account
DEV Community
Close
Follow
User actions
Mark0
404 bio not found
Joined
Joined on
Jan 9, 2026
More info about @mark0_617b45cda9782a
Post
1123 posts published
Comment
0 comments written
Tag
0 tags followed
21st September – Threat Intelligence Report
Mark0
Mark0
Mark0
Follow
Sep 22
21st September – Threat Intelligence Report
#
cybersecurity
#
infosec
#
threatintelligence
#
vulnerability
Comments
Add Comment
1 min read
From Exposure to Lockdown: How AWS Neutralizes Compromised IAM Credentials through Managed Policies
Mark0
Mark0
Mark0
Follow
Sep 22
From Exposure to Lockdown: How AWS Neutralizes Compromised IAM Credentials through Managed Policies
#
cybersecurity
#
infosec
#
aws
#
github
Comments
Add Comment
1 min read
Group Policy hijacked: PAYLOAD ransomware weaponizes Active Directory GPO
Mark0
Mark0
Mark0
Follow
Sep 22
Group Policy hijacked: PAYLOAD ransomware weaponizes Active Directory GPO
#
cybersecurity
#
infosec
#
ransomware
#
activedirectory
Comments
Add Comment
1 min read
Fake LastPass Authenticator Installer Abuses Microsoft-Signed Driver to Kill Antivirus and EDR
Mark0
Mark0
Mark0
Follow
Sep 22
Fake LastPass Authenticator Installer Abuses Microsoft-Signed Driver to Kill Antivirus and EDR
#
cybersecurity
#
infosec
#
malware
#
byovd
Comments
Add Comment
1 min read
Malicious npm packages evade install-script defenses at runtime
Mark0
Mark0
Mark0
Follow
Sep 22
Malicious npm packages evade install-script defenses at runtime
#
cybersecurity
#
infosec
#
javascript
#
node
Comments
Add Comment
1 min read
⚡ Weekly Recap: Cisco 0-Day, AI Agent RCE, ClickFix Attacks, ClickFix Surge, and Browser Hijacks
Mark0
Mark0
Mark0
Follow
Sep 22
⚡ Weekly Recap: Cisco 0-Day, AI Agent RCE, ClickFix Attacks, ClickFix Surge, and Browser Hijacks
#
cybersecurity
#
infosec
#
vulnerability
#
malware
Comments
Add Comment
1 min read
Windows Exploitation Techniques: Dangling COM Object Registrations
Mark0
Mark0
Mark0
Follow
Sep 22
Windows Exploitation Techniques: Dangling COM Object Registrations
#
cybersecurity
#
infosec
#
windows
#
vulnerability
Comments
Add Comment
1 min read
2026-09-14: Backdoor using ScreenConnect from malicious emailt
Mark0
Mark0
Mark0
Follow
Sep 21
2026-09-14: Backdoor using ScreenConnect from malicious emailt
#
cybersecurity
#
infosec
#
malware
#
phishing
Comments
Add Comment
1 min read
2026-09-15: SmartApeSG ClickFix to unidentified RAT to MeshAgent
Mark0
Mark0
Mark0
Follow
Sep 21
2026-09-15: SmartApeSG ClickFix to unidentified RAT to MeshAgent
#
cybersecurity
#
infosec
#
malware
#
threatintel
1
reaction
Comments
Add Comment
1 min read
2026-09-17: Seven days of scans and probes and web traffic hitting my web server
Mark0
Mark0
Mark0
Follow
Sep 21
2026-09-17: Seven days of scans and probes and web traffic hitting my web server
#
cybersecurity
#
infosec
#
networking
#
forensics
1
reaction
Comments
Add Comment
1 min read
‘Nudify’ apps: What to do if someone makes a fake nude of you
Mark0
Mark0
Mark0
Follow
Sep 21
‘Nudify’ apps: What to do if someone makes a fake nude of you
#
cybersecurity
#
infosec
#
privacy
#
deepfake
Comments
Add Comment
1 min read
Critical Pre-Auth RCE in Orkes Conductor Workflow Platform Exploited in the Wild
Mark0
Mark0
Mark0
Follow
Sep 21
Critical Pre-Auth RCE in Orkes Conductor Workflow Platform Exploited in the Wild
#
cybersecurity
#
infosec
#
vulnerability
#
rce
Comments
Add Comment
1 min read
SolarWinds Patches ARM Hard-Coded Key Flaw Enabling Unauthenticated RCE
Mark0
Mark0
Mark0
Follow
Sep 21
SolarWinds Patches ARM Hard-Coded Key Flaw Enabling Unauthenticated RCE
#
cybersecurity
#
infosec
#
vulnerability
#
solarwinds
Comments
Add Comment
1 min read
Malicious npm packages evade install-script defenses at runtime
Mark0
Mark0
Mark0
Follow
Sep 21
Malicious npm packages evade install-script defenses at runtime
Comments
Add Comment
1 min read
A Vault with a Heap-View: The Uncomfortable Space Between AgentCore Harness and Identity
Mark0
Mark0
Mark0
Follow
Sep 21
A Vault with a Heap-View: The Uncomfortable Space Between AgentCore Harness and Identity
#
cybersecurity
#
infosec
#
aws
#
promptinjection
Comments
Add Comment
1 min read
CrowdStrike Named a Leader in The Forrester Wave™: External Threat Intelligence Service Providers, Q3 2026
Mark0
Mark0
Mark0
Follow
Sep 20
CrowdStrike Named a Leader in The Forrester Wave™: External Threat Intelligence Service Providers, Q3 2026
#
cybersecurity
#
infosec
#
threatintelligence
#
ai
Comments
Add Comment
1 min read
Should you care about an “AI slowdown?”
Mark0
Mark0
Mark0
Follow
Sep 20
Should you care about an “AI slowdown?”
#
cybersecurity
#
infosec
#
ai
#
ransomware
Comments
Add Comment
1 min read
The Odyssey and trojans again: MovieReaper attacks users in multiple countries via compromised torrents
Mark0
Mark0
Mark0
Follow
Sep 20
The Odyssey and trojans again: MovieReaper attacks users in multiple countries via compromised torrents
#
cybersecurity
#
infosec
#
malware
#
blockchain
Comments
Add Comment
1 min read
Microsoft Patches CVSS 10.0 Azure AI Foundry Flaw Enabling Unauthorized Privilege Escalation
Mark0
Mark0
Mark0
Follow
Sep 20
Microsoft Patches CVSS 10.0 Azure AI Foundry Flaw Enabling Unauthorized Privilege Escalation
#
cybersecurity
#
infosec
#
azure
#
vulnerability
Comments
Add Comment
1 min read
Critical Pre-Auth RCE in Orkes Conductor Workflow Platform Exploited in the Wild
Mark0
Mark0
Mark0
Follow
Sep 20
Critical Pre-Auth RCE in Orkes Conductor Workflow Platform Exploited in the Wild
#
cybersecurity
#
infosec
#
vulnerability
#
rce
Comments
Add Comment
1 min read
SolarWinds Patches ARM Hard-Coded Key Flaw Enabling Unauthenticated RCE
Mark0
Mark0
Mark0
Follow
Sep 20
SolarWinds Patches ARM Hard-Coded Key Flaw Enabling Unauthenticated RCE
#
cybersecurity
#
infosec
#
solarwinds
#
vulnerability
Comments
Add Comment
1 min read
Win11_26H2 build xta phantom libraries
Mark0
Mark0
Mark0
Follow
Sep 17
Win11_26H2 build xta phantom libraries
#
cybersecurity
#
infosec
#
windows
#
forensic
Comments
Add Comment
1 min read
14th September – Threat Intelligence Report
Mark0
Mark0
Mark0
Follow
Sep 17
14th September – Threat Intelligence Report
#
cybersecurity
#
infosec
#
threatintelligence
#
vulnerability
Comments
Add Comment
1 min read
NightEagle targets Russian companies
Mark0
Mark0
Mark0
Follow
Sep 17
NightEagle targets Russian companies
#
cybersecurity
#
infosec
#
malware
#
apt
Comments
Add Comment
1 min read
PhantomRaven: An LLM-Generated Information Stealer Developed for Bug Bounty Hunting
Mark0
Mark0
Mark0
Follow
Sep 17
PhantomRaven: An LLM-Generated Information Stealer Developed for Bug Bounty Hunting
#
cybersecurity
#
infosec
#
malware
#
npm
Comments
Add Comment
1 min read
CrowdStrike Accelerates Real-Time Data Classification with On-Device AI
Mark0
Mark0
Mark0
Follow
Sep 17
CrowdStrike Accelerates Real-Time Data Classification with On-Device AI
#
cybersecurity
#
infosec
#
ai
#
hardware
Comments
Add Comment
1 min read
Securing the unpatchable in an age of AI-driven vulnerabilities
Mark0
Mark0
Mark0
Follow
Sep 17
Securing the unpatchable in an age of AI-driven vulnerabilities
#
cybersecurity
#
infosec
#
ot
#
networking
Comments
Add Comment
1 min read
Atomic macOS (AMOS) Stealer Activity
Mark0
Mark0
Mark0
Follow
Sep 17
Atomic macOS (AMOS) Stealer Activity
#
cybersecurity
#
infosec
#
macos
#
malware
Comments
Add Comment
1 min read
25 Years of Mass Surveillance Is Enough
Mark0
Mark0
Mark0
Follow
Sep 17
25 Years of Mass Surveillance Is Enough
#
security
#
infosec
#
privacy
#
policy
Comments
Add Comment
1 min read
VectraRAT Can Hack Windows Enterprises for $250 per Month
Mark0
Mark0
Mark0
Follow
Sep 17
VectraRAT Can Hack Windows Enterprises for $250 per Month
#
cybersecurity
#
infosec
#
malware
#
windows
Comments
Add Comment
1 min read
Malware bypasses browser checks to force install Chrome, Edge extensions
Mark0
Mark0
Mark0
Follow
Sep 17
Malware bypasses browser checks to force install Chrome, Edge extensions
#
cybersecurity
#
infosec
#
malware
#
browsersecurity
Comments
Add Comment
1 min read
Win11_26H2 build xta phantom libraries
Mark0
Mark0
Mark0
Follow
Sep 16
Win11_26H2 build xta phantom libraries
#
cybersecurity
#
infosec
#
windows
#
dll
Comments
Add Comment
1 min read
14th September – Threat Intelligence Report
Mark0
Mark0
Mark0
Follow
Sep 16
14th September – Threat Intelligence Report
#
cybersecurity
#
infosec
#
threatintel
#
vulnerability
Comments
Add Comment
1 min read
Unmasking Cloud Identities: From Behavioral Clustering to Automated Detection
Mark0
Mark0
Mark0
Follow
Sep 16
Unmasking Cloud Identities: From Behavioral Clustering to Automated Detection
#
cybersecurity
#
infosec
#
cloud
#
machinelearning
Comments
Add Comment
1 min read
The extension you never installed: KREMLIN forges Chrome's own integrity checks to steal banking sessions
Mark0
Mark0
Mark0
Follow
Sep 16
The extension you never installed: KREMLIN forges Chrome's own integrity checks to steal banking sessions
#
cybersecurity
#
infosec
#
malware
#
chromeextension
Comments
Add Comment
1 min read
VectraRAT Can Hack Windows Enterprises for $250 per Month
Mark0
Mark0
Mark0
Follow
Sep 16
VectraRAT Can Hack Windows Enterprises for $250 per Month
#
cybersecurity
#
infosec
#
malware
#
windows
Comments
Add Comment
1 min read
Black Hat USA 2026 | The 'Breaking' News: The OpenAI–Hugging Face Incident
Mark0
Mark0
Mark0
Follow
Sep 16
Black Hat USA 2026 | The 'Breaking' News: The OpenAI–Hugging Face Incident
#
cybersecurity
#
infosec
#
ai
#
research
Comments
Add Comment
1 min read
What Zero-Day Response Should Be in the Post-Mythos Era
Mark0
Mark0
Mark0
Follow
Sep 16
What Zero-Day Response Should Be in the Post-Mythos Era
#
cybersecurity
#
infosec
#
vulnerability
#
security
Comments
Add Comment
1 min read
Win11_26H2 build xta phantom libraries
Mark0
Mark0
Mark0
Follow
Sep 15
Win11_26H2 build xta phantom libraries
#
cybersecurity
#
infosec
#
windows
#
forensics
Comments
Add Comment
1 min read
14th September – Threat Intelligence Report
Mark0
Mark0
Mark0
Follow
Sep 15
14th September – Threat Intelligence Report
#
cybersecurity
#
infosec
#
vulnerability
#
malware
Comments
Add Comment
1 min read
Unmasking Cloud Identities: From Behavioral Clustering to Automated Detection
Mark0
Mark0
Mark0
Follow
Sep 15
Unmasking Cloud Identities: From Behavioral Clustering to Automated Detection
#
cybersecurity
#
infosec
#
cloud
#
machinelearning
Comments
Add Comment
1 min read
Using AI for Weapons Development
Mark0
Mark0
Mark0
Follow
Sep 15
Using AI for Weapons Development
#
cybersecurity
#
infosec
#
ai
#
policy
Comments
Add Comment
1 min read
Hackers hijack HBO Max Reddit account to push malware in ClickFix ads
Mark0
Mark0
Mark0
Follow
Sep 15
Hackers hijack HBO Max Reddit account to push malware in ClickFix ads
#
cybersecurity
#
infosec
#
malware
#
socialengineering
Comments
Add Comment
1 min read
NetNTLMv1 Is Dead. Long Live NetNTLMv1.
Mark0
Mark0
Mark0
Follow
Sep 10
NetNTLMv1 Is Dead. Long Live NetNTLMv1.
#
cybersecurity
#
infosec
#
cryptography
#
webgpu
Comments
Add Comment
1 min read
Microsoft Patch Tuesday for September 2026 — Snort rules and prominent vulnerabilities
Mark0
Mark0
Mark0
Follow
Sep 10
Microsoft Patch Tuesday for September 2026 — Snort rules and prominent vulnerabilities
#
cybersecurity
#
infosec
#
microsoft
#
vulnerability
Comments
Add Comment
1 min read
Active exploitation of Cisco Secure Firewall Management Center vulnerabilities
Mark0
Mark0
Mark0
Follow
Sep 10
Active exploitation of Cisco Secure Firewall Management Center vulnerabilities
#
cybersecurity
#
infosec
#
vulnerability
#
malware
Comments
Add Comment
1 min read
[0day-rubbish] Royal Server 5.04.50529.0 Local privilege escalation to LocalSystem on the execution path without credential override (7.2)
Mark0
Mark0
Mark0
Follow
Sep 10
[0day-rubbish] Royal Server 5.04.50529.0 Local privilege escalation to LocalSystem on the execution path without credential override (7.2)
#
cybersecurity
#
infosec
#
vulnerability
#
privilegeescalation
Comments
Add Comment
1 min read
ClickFix moves into the browser: Cryptocurrency theft with Google-hosted C2
Mark0
Mark0
Mark0
Follow
Sep 10
ClickFix moves into the browser: Cryptocurrency theft with Google-hosted C2
#
cybersecurity
#
infosec
#
cryptocurrency
#
websecurity
Comments
Add Comment
1 min read
September 2026 Patch Tuesday: Two Exploited Zero-Days and 113 Critical Vulnerabilities Among 972 CVEs
Mark0
Mark0
Mark0
Follow
Sep 10
September 2026 Patch Tuesday: Two Exploited Zero-Days and 113 Critical Vulnerabilities Among 972 CVEs
#
cybersecurity
#
infosec
#
microsoft
#
vulnerability
Comments
Add Comment
1 min read
Untracked Nightmares: The Threats Hiding Behind Commodity Infrastructure
Mark0
Mark0
Mark0
Follow
Sep 10
Untracked Nightmares: The Threats Hiding Behind Commodity Infrastructure
#
cybersecurity
#
infosec
#
malware
#
threatresearch
Comments
Add Comment
1 min read
JSCeal Malware Can Bypass Google Authentication Using Stolen Session Cookies
Mark0
Mark0
Mark0
Follow
Sep 10
JSCeal Malware Can Bypass Google Authentication Using Stolen Session Cookies
#
cybersecurity
#
infosec
#
malware
#
javascript
Comments
Add Comment
1 min read
Infostealer Logs Expose Replayable AI Tokens That Can Bypass MFA
Mark0
Mark0
Mark0
Follow
Sep 10
Infostealer Logs Expose Replayable AI Tokens That Can Bypass MFA
#
cybersecurity
#
infosec
#
ai
#
malware
Comments
Add Comment
1 min read
⚡ Weekly Recap: Chrome 0-Day, Router Hijacks, Coder Supply Chain Attack and More
Mark0
Mark0
Mark0
Follow
Sep 10
⚡ Weekly Recap: Chrome 0-Day, Router Hijacks, Coder Supply Chain Attack and More
#
cybersecurity
#
infosec
#
vulnerability
#
malware
Comments
Add Comment
1 min read
Testing race conditions with memory access tracing and stack-based delay injection
Mark0
Mark0
Mark0
Follow
Sep 10
Testing race conditions with memory access tracing and stack-based delay injection
#
cybersecurity
#
infosec
#
linux
#
kernel
Comments
Add Comment
1 min read
NetNTLMv1 Is Dead. Long Live NetNTLMv1.
Mark0
Mark0
Mark0
Follow
Sep 9
NetNTLMv1 Is Dead. Long Live NetNTLMv1.
#
cybersecurity
#
infosec
#
cryptography
#
webgpu
Comments
Add Comment
1 min read
ClearFake WebDAV infection chain delivers Amatera stealer, ZigCryptoStealer, and NetSupport Manager
Mark0
Mark0
Mark0
Follow
Sep 9
ClearFake WebDAV infection chain delivers Amatera stealer, ZigCryptoStealer, and NetSupport Manager
#
cybersecurity
#
infosec
#
malware
#
amatera
Comments
Add Comment
1 min read
Microsoft Patch Tuesday for September 2026 — Snort rules and prominent vulnerabilities
Mark0
Mark0
Mark0
Follow
Sep 9
Microsoft Patch Tuesday for September 2026 — Snort rules and prominent vulnerabilities
#
cybersecurity
#
infosec
#
microsoft
#
vulnerability
Comments
Add Comment
1 min read
[0day-rubbish] Royal Server 5.04.50529.0 Local privilege escalation to LocalSystem on the execution path without credential override (7.2)
Mark0
Mark0
Mark0
Follow
Sep 9
[0day-rubbish] Royal Server 5.04.50529.0 Local privilege escalation to LocalSystem on the execution path without credential override (7.2)
#
cybersecurity
#
infosec
#
vulnerability
#
exploit
Comments
Add Comment
1 min read
ClickFix moves into the browser: Cryptocurrency theft with Google-hosted C2
Mark0
Mark0
Mark0
Follow
Sep 9
ClickFix moves into the browser: Cryptocurrency theft with Google-hosted C2
#
cybersecurity
#
infosec
#
cryptocurrency
#
javascript
Comments
Add Comment
1 min read
Stealing AI Reasoning Traces
Mark0
Mark0
Mark0
Follow
Sep 9
Stealing AI Reasoning Traces
#
cybersecurity
#
infosec
#
ai
#
security
Comments
Add Comment
1 min read
loading...
We're a place where coders share, stay up-to-date and grow their careers.
Log in
Create account