DEV Community

Mark0 profile picture

Mark0

404 bio not found

Joined Joined on 
The New Hotness in Phishing: Device Code Attacks in M365

The New Hotness in Phishing: Device Code Attacks in M365

Comments
1 min read
2026-05-31: Seven days of scans and probes and web traffic hitting my web server

2026-05-31: Seven days of scans and probes and web traffic hitting my web server

Comments
1 min read
The Agentic SOC: Transforming Data into Defensive Velocity

The Agentic SOC: Transforming Data into Defensive Velocity

Comments
2 min read
From Triage Grind to Strategic Operator: The New AI SOC Career Path

From Triage Grind to Strategic Operator: The New AI SOC Career Path

Comments
1 min read
A new extortion cocktail: office printers, small ransoms, and BitLocker

A new extortion cocktail: office printers, small ransoms, and BitLocker

Comments
1 min read
Denying the Worm: Detecting SANDWORM_MODE and the Emerging Class of AI Toolchain Supply Chain Attacks

Denying the Worm: Detecting SANDWORM_MODE and the Emerging Class of AI Toolchain Supply Chain Attacks

Comments
1 min read
New Project CAV3RN module abuses Outlook calendar events for C2 and DNS AAAA records for configuration recovery

New Project CAV3RN module abuses Outlook calendar events for C2 and DNS AAAA records for configuration recovery

Comments
1 min read
XSSer v.1.9 - "Bl4ck Swarm!" released

XSSer v.1.9 - "Bl4ck Swarm!" released

Comments
1 min read
wp2shell hits WordPress: detecting pre-auth RCE from plugin drop to command execution

wp2shell hits WordPress: detecting pre-auth RCE from plugin drop to command execution

Comments
1 min read
On Flock License Plate Tracking Cameras

On Flock License Plate Tracking Cameras

Comments
1 min read
⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More

⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More

Comments
2 min read
HollowGraph Malware Hides C2 and Stolen Files in Microsoft 365 Events Dated 2050

HollowGraph Malware Hides C2 and Stolen Files in Microsoft 365 Events Dated 2050

Comments
2 min read
The New Hotness in Phishing: Device Code Attacks in M365

The New Hotness in Phishing: Device Code Attacks in M365

Comments
1 min read
2026-05-31: Seven days of scans and probes and web traffic hitting my web server

2026-05-31: Seven days of scans and probes and web traffic hitting my web server

Comments
1 min read
The Agentic SOC: Transforming Data into Defensive Velocity

The Agentic SOC: Transforming Data into Defensive Velocity

Comments
1 min read
Volume Is Not Risk: Making Sense of the “Vulnpocalypse”

Volume Is Not Risk: Making Sense of the “Vulnpocalypse”

Comments
1 min read
A new extortion cocktail: office printers, small ransoms, and BitLocker

A new extortion cocktail: office printers, small ransoms, and BitLocker

Comments
1 min read
Beyond the Model: Harnessing Frontier AI for Stronger Cyber Defense

Beyond the Model: Harnessing Frontier AI for Stronger Cyber Defense

Comments
1 min read
Denying the Worm: Detecting SANDWORM_MODE and the Emerging Class of AI Toolchain Supply Chain Attacks

Denying the Worm: Detecting SANDWORM_MODE and the Emerging Class of AI Toolchain Supply Chain Attacks

Comments
1 min read
New Project CAV3RN module abuses Outlook calendar events for C2 and DNS AAAA records for configuration recovery

New Project CAV3RN module abuses Outlook calendar events for C2 and DNS AAAA records for configuration recovery

Comments
1 min read
XSSer v.1.9 - "Bl4ck Swarm!" released

XSSer v.1.9 - "Bl4ck Swarm!" released

Comments
1 min read
On Flock License Plate Tracking Cameras

On Flock License Plate Tracking Cameras

Comments
1 min read
⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More

⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More

Comments
1 min read
HollowGraph Malware Hides C2 and Stolen Files in Microsoft 365 Events Dated 2050

HollowGraph Malware Hides C2 and Stolen Files in Microsoft 365 Events Dated 2050

Comments
1 min read
The Agentic SOC: Transforming Data into Defensive Velocity

The Agentic SOC: Transforming Data into Defensive Velocity

Comments
1 min read
20th July – Threat Intelligence Report

20th July – Threat Intelligence Report

Comments
1 min read
⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More

⚡ Weekly Recap: WordPress RCE, SonicWall 0-Days, AI Service Attacks, SharePoint 0-Day and More

Comments
1 min read
New HollowGraph malware uses Microsoft Graph for stealthy C2 comms

New HollowGraph malware uses Microsoft Graph for stealthy C2 comms

Comments
1 min read
HollowGraph Malware Hides C2 and Stolen Files in Microsoft 365 Events Dated 2050

HollowGraph Malware Hides C2 and Stolen Files in Microsoft 365 Events Dated 2050

Comments
1 min read
2026-05-31: Seven days of scans and probes and web traffic hitting my web server

2026-05-31: Seven days of scans and probes and web traffic hitting my web server

Comments
1 min read
New North Korean campaign uses fake coding interviews to steal developer credentials

New North Korean campaign uses fake coding interviews to steal developer credentials

Comments
1 min read
The Good, the Bad and the Ugly in Cybersecurity – Week 29

The Good, the Bad and the Ugly in Cybersecurity – Week 29

Comments
1 min read
Crystal Palace User Intrinsics

Crystal Palace User Intrinsics

Comments
1 min read
I Thought I Found a Prime Pattern That Breaks RSA

I Thought I Found a Prime Pattern That Breaks RSA

Comments
1 min read
UAC-0145 Uses ClickFix CAPTCHAs to Infect Ukrainian Devices wih Malware

UAC-0145 Uses ClickFix CAPTCHAs to Infect Ukrainian Devices wih Malware

Comments
1 min read
WordPress Core "wp2shell" RCE flaws get public exploits, patch now

WordPress Core "wp2shell" RCE flaws get public exploits, patch now

Comments
1 min read
Update now: 7-Zip fixes RCE flaw exploitable with malicious archives

Update now: 7-Zip fixes RCE flaw exploitable with malicious archives

Comments
1 min read
Three Steps to the Terminal: A Siemens ROX II Zero-Day Trilogy

Three Steps to the Terminal: A Siemens ROX II Zero-Day Trilogy

Comments
1 min read
GoSerpent: a persistent threat evolves with sophisticated data collection and exfiltration

GoSerpent: a persistent threat evolves with sophisticated data collection and exfiltration

Comments
1 min read
AI, Automation and Attacks: Unpacking the Unit 42 2026 Global Incident Response Report

AI, Automation and Attacks: Unpacking the Unit 42 2026 Global Incident Response Report

Comments
1 min read
HelloNet campaign — new malicious modules launched through the ViPNet update system

HelloNet campaign — new malicious modules launched through the ViPNet update system

Comments
1 min read
New North Korean campaign uses fake coding interviews to steal developer credentials

New North Korean campaign uses fake coding interviews to steal developer credentials

Comments
1 min read
The Good, the Bad and the Ugly in Cybersecurity – Week 29

The Good, the Bad and the Ugly in Cybersecurity – Week 29

Comments
1 min read
Crystal Palace User Intrinsics

Crystal Palace User Intrinsics

Comments
1 min read
I Thought I Found a Prime Pattern That Breaks RSA

I Thought I Found a Prime Pattern That Breaks RSA

Comments
1 min read
WordPress Core "wp2shell" RCE flaws get public exploits, patch now

WordPress Core "wp2shell" RCE flaws get public exploits, patch now

Comments
1 min read
Update now: 7-Zip fixes RCE flaw exploitable with malicious archives

Update now: 7-Zip fixes RCE flaw exploitable with malicious archives

Comments
1 min read
UAT-11795 deploys novel Starland RAT and bespoke WLDR C2 implant in financially motivated campaign

UAT-11795 deploys novel Starland RAT and bespoke WLDR C2 implant in financially motivated campaign

Comments
1 min read
Three Steps to the Terminal: A Siemens ROX II Zero-Day Trilogy

Three Steps to the Terminal: A Siemens ROX II Zero-Day Trilogy

Comments
1 min read
Daxin Resurfaces in Taiwan Alongside Stupig Pre-Login SYSTEM Backdoor

Daxin Resurfaces in Taiwan Alongside Stupig Pre-Login SYSTEM Backdoor

Comments
1 min read
TELEPUZ: a modular MaaS malware spreading via CLICKFIX-VIDAR chains

TELEPUZ: a modular MaaS malware spreading via CLICKFIX-VIDAR chains

Comments
1 min read
Pandora’s Container Part 1: Unpacking Azure Container Security

Pandora’s Container Part 1: Unpacking Azure Container Security

Comments
1 min read
Microsoft Patch Tuesday for July 2026 — Snort rules and prominent vulnerabilities

Microsoft Patch Tuesday for July 2026 — Snort rules and prominent vulnerabilities

Comments
1 min read
AI Security Report 2026

AI Security Report 2026

Comments
1 min read
The serpent’s tongue: Luring the Python out of its den

The serpent’s tongue: Luring the Python out of its den

Comments
1 min read
CrashStealer macOS Malware Uses Notarized Dropper to Pass Gatekeeper Checks

CrashStealer macOS Malware Uses Notarized Dropper to Pass Gatekeeper Checks

Comments
1 min read
11 Old Microsoft-Signed Linux UEFI Shims Could Let Attackers Bypass Secure Boot

11 Old Microsoft-Signed Linux UEFI Shims Could Let Attackers Bypass Secure Boot

Comments
1 min read
SAP warns of critical flaws in NetWeaver and Commerce Cloud

SAP warns of critical flaws in NetWeaver and Commerce Cloud

Comments
1 min read
13th July – Threat Intelligence Report

13th July – Threat Intelligence Report

Comments
1 min read
AI Security Report 2026

AI Security Report 2026

Comments
1 min read
loading...