Brutkey

TechNadu
@technadu@infosec.exchange
TechNadu
@technadu@infosec.exchange

Boardroom security talks always have:
βœ…βœ… MFA advocates
βœ…βœ… Phishing trainers
❌❌ The β€œpassword spreadsheet” guy

Security basics matter. MFA + phishing awareness + strong passwords block the majority of breaches.

What’s the worst advice you’ve heard in a security meeting?
#CyberSecurity #MFA #Phishing #PasswordSecurity

TechNadu
@technadu@infosec.exchange

🚨🚨 Car Dealer Portal Vulnerability 🚨🚨
Researcher Eaton Zveare found a flaw allowing β€œnational admin” account creation β€” giving access to:
πŸ”“πŸ”“ Remote unlocking of vehicles (2013+)
πŸ“πŸ“ Real-time vehicle tracking
πŸ—‚πŸ—‚ Owner personal & financial data
Patched now, but it exposed 1,000+ dealerships and highlights serious risks in connected car ecosystems.

Full Article Link Below:
⬇⬇️ https://www.technadu.com/carmaker-web-portal-exposes-remote-car-unlocking-vulnerability-and-access-to-1000-dealerships/605745/

#CarHacking #IoT #CyberSecurity #DataBreach #EthicalHacking #Infosec

TechNadu
@technadu@infosec.exchange

🚨🚨 Top Cyber Alerts of the Day 🚨🚨
The digital battlefield is heating up β€” here’s what’s making waves today:

πŸ”₯πŸ”₯ Hacktivist group NoName057(16) targets the Iberian Peninsula with DDoS attacks
πŸ’₯πŸ’₯ WinRAR Zero-Day flaw is under active exploitation β€” patch ASAP
⚠⚠️ North Korean APT ScarCruft shifts gears from spying to ransomware
πŸ”πŸ” Google Calendar invites used to hijack Gemini & leak user data
πŸ•΅πŸ•΅οΈ MedusaLocker ransomware gang openly recruiting pentesters

Stay sharp. Every alert today could be tomorrow’s breach.

#CyberSecurity #CyberAlert #InfoSec #ThreatIntel #HackingNews

TechNadu
@technadu@infosec.exchange

🚨🚨 Win-DDoS: Four zero-click DoS flaws in Windows RPC & LDAP let attackers crash Domain Controllers or turn them into untraceable DDoS nodes.

SafeBreach research shows legit components can be weaponized β€” bypassing defenses.

Details:
⬇⬇️
https://www.technadu.com/four-zero-click-dos-flaws-abuse-windows-rpc-and-ldap-to-launch-large-scale-ddos-via-domain-controllers/605736/

#CyberSecurity #InfoSec #Microsoft #DDoS #ZeroDay #ActiveDirectory

TechNadu
@technadu@infosec.exchange

🚨🚨 Qilin ransomware claims breach of offshore incorporator Formacompany & Co., alleging money laundering.
Leaked: real names, financial docs, client records.
Not confirmed, but could be significant for offshore secrecy.
Story
πŸ‘‰πŸ‘‰ https://www.technadu.com/qilin-ransomware-claims-formacompany-co-real-names-leak-accuses-the-offshore-company-of-money-laundering/605720/

#CyberSecurity #Ransomware #DataBreach #Qilin #InfoSec

TechNadu
@technadu@infosec.exchange

🚨🚨 WinRAR CVE-2025-8088 (CVSS 8.8) exploited in the wild.
Malicious archives β†’ path traversal β†’ code exec. Linked to Paper Werewolf ops.
Patch to v7.13 immediately.

Question: After so many WinRAR zero-days, would you trust it for enterprise use?

#WinRAR #ZeroDay #CVE20258088 #InfoSec

TechNadu
@technadu@infosec.exchange

Every keystroke leaves a trace.
Without a VPN, that trace is visible to ISPs, data brokers, and opportunistic attackers.

A VPN doesn’t just mask your IPβ€”it encrypts the conversation entirely, closing the gaps attackers exploit.
It’s the difference between sending a postcard and sealing a letter.

#Infosec #VPN #Encryption #DataProtection #SecurityBestPractices

TechNadu
@technadu@infosec.exchange

Every day, cyber risks are real for everyone, not just enterprises.
What’s your biggest concern?
πŸ›‘πŸ›‘

Vote & drop your reasoning β€” the discussion is just as valuable as the poll results.

#CyberSecurity #InfoSec #OnlineSafety

TechNadu
@technadu@infosec.exchange

🚍🚍 Smart Bus Cyber Risks Uncovered🚍🚍
DEF CON research shows public Wi-Fi on smart buses is often linked to APTS & ADAS systems β€” allowing potential:
πŸ“πŸ“ Bus tracking
πŸ—ΊπŸ—ΊοΈ GPS route changes
πŸŽ₯πŸŽ₯ Camera access
πŸ“‚πŸ“‚ Passenger/driver data theft
https://www.technadu.com/smart-bus-travellers-may-have-their-data-stolen-routes-changed-and-onboard-camera-accessed-via-wi-fi-security-gaps/605676/

Would you still ride?
#CyberSecurity #PublicTransport #IoT #WiFiSecurity

TechNadu
@technadu@infosec.exchange

🚨🚨 Robocall Crackdown: 37 Telecom Providers Warned 🚨🚨

Operation Robocall Roundup, led by AG Aaron M. Frey & 50 AGs, is targeting networks that fail FCC compliance and enable scam robocalls.

Infractions include:
- Skipping Robocall Mitigation Database
- Ignoring traceback
- No prevention plans

FCC is already removing some from its network.

πŸ’¬πŸ’¬ What’s the right penalty for these providers?

#CyberSecurity #Telecom #Robocalls #FCC