Hak2learn g

Why is it recommended to add a salt (a random string of characters) to a password before hashing it?

8 months ago | [YT] | 0

Hak2learn g

🚨 Cyber Threat Alert: #DarkGate Malware via Microsoft Teams 🚨
⚠️ New Campaign Exposed
Hackers are leveraging Microsoft Teams for social engineering, targeting users with the DarkGate malwareβ€”a potent Remote Access Trojan (RAT) linked to credential theft, keylogging, screen captures, and more.

πŸ” The Attack Flow:
1️⃣ Email Bombing: Thousands of emails to overwhelm the victim.
2️⃣ Teams Call Impersonation: Attackers pretend to be external suppliers.
3️⃣ #AnyDesk Installation: Victims are tricked into installing remote access software.
4️⃣ Payload Delivery: #DarkGate is deployed via #AutoIt scripts for espionage and theft.

πŸ›‘οΈ How to Stay Safe:
βœ… Enable Multi-Factor Authentication (MFA).
βœ… #Allowlist approved remote tools; block unverified apps.
βœ… Vet third-party support providers thoroughly.
βœ… Monitor for phishing emails, especially with QR codes, PDFs, or fake Microsoft 365 links.

🌐 Broader Threats:
Phishing is evolvingβ€”exploiting trust in platforms like YouTube, #Docusign, Cloudflare, and even global events. Emotional lures + fake domains = growing risks.

πŸ’‘ Stay vigilant! Cybersecurity starts with awareness and robust protection measures.

#CyberSecurity #Phishing #DarkGate #MicrosoftTeams #StaySafe

8 months ago | [YT] | 0

Hak2learn g

What type of database service is Amazon DynamoDB?
#AWS

8 months ago | [YT] | 0

Hak2learn g

Which AWS service is used for container orchestration in a non-serverless architecture?
#AWS #container

8 months ago | [YT] | 0

Hak2learn g

#CyberAlert of the day
🚨 GitLab Security Update: Critical Vulnerabilities Fixed πŸ”’

πŸ“’ GitLab has released 17.6.2, 17.5.4, and 17.4.6 for CE & EE, addressing severe flaws that could lead to:
πŸ”Ή Account takeovers
πŸ”Ή Denial of service (DoS)
πŸ”Ή Information disclosure
πŸ’‘ Key Vulnerabilities:
πŸ”΄ CVE-2024-11274 (CVSS 8.7): NEL header injection via Kubernetes proxy β†’ Session data exfiltration.
πŸ”΄ CVE-2024-8233 (CVSS 7.5): Unauthenticated requests to diff-files β†’ DoS risk.
πŸ“Œ Other Issues:
βœ… CI_JOB_TOKEN misuse β†’ Unauthorized session access.
βœ… Open redirects, path traversal β†’ Phishing & data leaks.
βœ… XSS & HTML Injection β†’ Exploits without CSP.
πŸ”§ Action Required:
GitLab urges all users to update immediately to secure systems. πŸ™Œ
Read more and Follow @GHak2learn27752 0xHackthelearning in twitter for more updates.

8 months ago | [YT] | 0