Ciphers Security – Cybersecurity, OSINT, DFIR & Ethical Hacking Library

Latest News

28 Fake Call History Apps Defrauded Users After 7.3 Million Google

Researchers found 28 fraudulent Android apps on Google Play with 7.3 million downloads that claimed.

Read More

PCPJack Cloud Worm Evicts Competitor Malware, Steals Credentials from Docker and

PCPJack is a new self-propagating cloud worm that removes TeamPCP infections, then harvests credentials from.

Read More

Inside Department 4: How Bauman University’s Secret GRU Program Feeds Russia’s

An international investigation reveals Department 4 at Bauman Moscow State Technical University trains 10–15 students.

Read More

TCLBANKER Banking Trojan Spreads via WhatsApp and Outlook Worm Modules

Elastic Security Labs exposes TCLBANKER, a Brazilian banking trojan targeting 59 financial platforms via DLL.

Read More

ShinyHunters Hits Instructure Canvas Again: 9,000 Schools Face May 12 Data

ShinyHunters defaced Canvas login pages on May 7, 2026, claiming a second Instructure breach with.

Read More

Metasploit Adds ARMLE Support to CVE-2026-31431 Copy Fail Linux Root Exploit

Rapid7's May 8 Metasploit update extends CVE-2026-31431 Copy Fail coverage to ARMLE Linux targets and.

Read More

Salt Typhoon Compromises 200+ Networks in Global PRC Telecom Espionage Campaign

CISA AA25-239A: PRC-linked Salt Typhoon exploits CVE-2023-20198 and unpatched routers to compromise 200+ organizations in.

Read More

CISA/USCG Threat Hunt Finds Flat IT/OT Networks and Plain-Text Credentials at

CISA advisory AA25-212A: proactive threat hunt at US critical infrastructure finds plain-text credentials, flat IT/OT.

Read More

Braintrust AWS Breach Exposes AI Provider API Keys, All Customers Ordered

AI evaluation startup Braintrust confirms AWS account breach exposing AI provider API keys. All org.

Read More

Zara Data Breach: 197,000 Records Now in Have I Been Pwned

ShinyHunters breached Zara parent Inditex via analytics vendor Anodot, stealing 192 GB from Google BigQuery..

Read More

PamDOORa: New Linux Backdoor Sells for $900 on Russian Forum, Harvests

PamDOORa is a commercial Linux PAM backdoor sold on the Rehub Russian cybercrime forum. It.

Read More

Attackers Abuse Bun JavaScript Runtime to Spread NWHStealer Infostealer

Malwarebytes researchers find NWHStealer, a Rust-based infostealer, being distributed via the Bun JavaScript runtime to.

Read More

MOST VIEWS POST

Blog

Blog

Port Scanning Techniques: Nmap, Zenmap, and Scanning Through Firewalls

Master every port scanning technique in Nmap: SYN, NULL, FIN, Xmas, Idle scans, firewall.

Blog

Oracle Monthly Critical Security Patch Updates (CSPU) Guide: Runbook Changes and Verification Automation

Oracle's monthly critical security patch update (CSPU) starts May 28, 2026. Update your runbook.

Blog

SHA-1 Algorithm Explained: How It Works, Step by Step

A step-by-step technical breakdown of the SHA-1 algorithm — padding, message schedule, 80-round compression,.

Blog

VENOMOUS#HELPER RMM Detection: Stop SimpleHelp and ScreenConnect Backdoors

VENOMOUS#HELPER hit 80+ orgs via SimpleHelp and ScreenConnect backdoors. Detection checklist, KQL queries, PowerShell.