Chinese APTs hunting playbook.
A field manual providing detection strategies for specific Chinese actors (ex. APT41) with detailed common TTPs.
A post by SIMKARA.
Source: https://t.co/UkzQ87JDMr
#redteam#blueteam#maldev#malwaredevelopment
🛡️ Kali Linux Integrates Claude AI for Penetration Testing via Model Context Protocol
Source: https://t.co/RxO3wnFJJv
Kali Linux has officially introduced a native AI-assisted penetration testing workflow, enabling security professionals to issue natural-language commands through Anthropic's Claude AI, which are then translated into live terminal commands on a Kali Linux environment, all bridged via the open-source Model Context Protocol (MCP).
Instead of manually running tools like Nmap or Gobuster, a penetration tester can simply type a prompt such as "Port scan scanme.nmap[.]org and check if a security.txt file exists.
#cybersecuritynews #Claude
''GitHub - Maldev-Academy/DumpChromeSecrets: Extract data from modern Chrome versions, including refresh tokens, cookies, saved credentials, autofill data, browsing history, and bookmarks''
#infosec#pentest#redteam#blueteam
https://t.co/Z8rSN2uPOv
This is wild 🤯
Most people are using Claude like a chatbot.
That’s the mistake.
Claude isn’t a chat app.
It’s a multi-layer execution engine.
And in the era of vibe coding, mastering this one layer is pure leverage.
Here’s the shift 👇
Claude has multiple layers: • Chat (ideas)
• Code (implementation)
• MCP (tool connections)
• Skills (reusable automations)
• https://t.co/p9bEYJrS7s (project memory)
But the real unlock?
→ Skills + MCP together.
That’s where Claude stops suggesting…
and starts executing.
When you: • Connect your tools (GitHub, Notion, Slack, Vercel, etc.) • Install reusable skills • Give it persistent project context
You’re no longer “prompting.”
You’re operating an AI teammate.
This is how you: • Auto-create PRDs from meetings
• Deploy apps without touching dashboards
• Generate reports, dashboards, docs in minutes
• Run workflows across your entire stack
No prompt hacking.
No copy-paste loops.
No tab juggling.
Just structured execution.
In vibe coding’s era, this layer is mandatory.
Not optional.
That’s why I’m sharing this cheat sheet.
Master this —
and you won’t need to jump between 20 tutorials again.
Everything you need is here.
The builders who understand layers win. 🚀
🚨ALERT: Potential ZERO-DAY, Attackers Use Corrupted Files to Evade Detection 🧵 (1/3)
⚠️ The ongoing attack evades #antivirus software, prevents uploads to sandboxes, and bypasses Outlook's spam filters, allowing the malicious emails to reach your inbox
The #ANYRUN team discovered that as part of this #zeroday attack, threat actors attempt to conceal the file type by deliberately corrupting it, making it difficult for certain security tools to detect
📌 Our sandbox solves this problem thanks to interactivity. It launches these broken files in their corresponding programs, which allows it to identify #malicious behavior
See example:
https://t.co/8MFElzg47r
🚫 Although these files operate successfully within the OS, they remain undetected by most security solutions due to the failure to apply proper procedures for their file types
They were uploaded to VirusTotal, but all antivirus solutions returned "clean" or “Item Not Found” as they couldn't analyze the file properly
I’m doing two book signing sessions in collaboration with @patrickwardle at Black Hat and Defcon this year! 🥳
@BlackHatEvents
Thursday 8/10 - 12:15pm:
BH Bookstore - Breakers Registration 2
@defcon:
Saturday 8/12 - 11:00am
Caesar’s - Alliance Ballroom - Room 321
Some more EDR Evasion and a PoC for another idea I had - this time to bypass kernel based (ETWti or Kernel Callback) shellcode detections - will be presented and released 🙂🔥
#mcttp. https://t.co/gGzECWPoo4
Microsoft security researchers have surfaced tell-tale patterns to help defenders identify and mitigate cloud cryptojacking, a form of cloud compute resource abuse that involves threat actors compromising cloud tenants to mine cryptocurrency: https://t.co/r2dbvYiC7j
We have been gifted 5 licenses to Malcat standard edition. If you're interested in a license of Malcat, leave a comment below =D
Malcat is a new binary analysis software. More information: https://t.co/sqyNczXxoe
🔍If you are looking for a comprehensive overview of the current #3CX supply chain attack, I created a diagram that shows the attack flow!💥I'll update as soon as the analysis progresses. Stay tuned for the MacOS edition! #cybersecurity#infosec#supplychainattack#3CXpocalypse