13 Phút Để Mất Tiền: WindRelay Đã Biến Điện Thoại Android Thành Công Cụ Gian Lận NFC Như Thế Nào?Aug 20, 2026·15 min read
13 Minutes to Lose Money: How WindRelay Turned Android Phones into NFC Fraud Tools?Overview Did you know that it only takes 13 short minutes from the moment the victim picks up the phone to receive the support call from the "bank employee" until all the money in the account is evapoAug 20, 2026·12 min read
Storm-1175, StormEncryptor and CVE-2026-18577: When the Patch Closes the Door and the Attacker Is Already InsideAug 20, 2026·18 min read
Bypass MFA without unlocking: The stealth trick of malware targeting Google Password ManagerOverview Just by reading a local LevelDB file on the computer without requiring administrative rights (Admin/System), a common malware can now completely bypass Google's anti-phishing-resistant multi-Aug 20, 2026·9 min read
Interrupt Injection Vulnerability: When the CPU's Specter v2 "shield" is punctured for a few secondsDo you think your system is absolutely safe after activating all Specter v2 defense mechanisms? A recent study from MIT CSAIL may make you think again. By simply inserting a hardware interrupt into a Aug 20, 2026·8 min read
Operation BlueDash: When Legitimate RMM Becomes the Backdoor, and a Public GitHub Repo Tells the Whole StorySummary There is no malware in this campaign. The final payload the victim receives is the official Level RMM installer, downloaded directly from Level's own infrastructure, installed via msiexec withAug 20, 2026·23 min read
When your computer becomes a secret "transfer station" for cyber spiesOverview Imagine: an HR employee at an airline company in Pakistan receives an attractive interview invitation from a recruiting brand that seems very familiar. A video call is scheduled. But that "meAug 20, 2026·8 min read
BdThemes: tấn công chuỗi cung ứng WordPress không sửa một dòng code nàoTóm tắt Không một file mã nguồn nào trên kho WordPress.org bị sửa đổi. Không có bản cập nhật plugin nào được phát hành. Không có file nào trên đĩa thay đổi. Nhưng tài khoản quản trị giả đã được tạo trAug 18, 2026·21 min read
Storm-1175, StormEncryptor và CVE-2026-18577: khi bản vá đóng cửa nhưng kẻ tấn công đã ở bên trongTóm tắt rủi ro CVE-2026-18577 được công bố ngày 02/08/2026. Cùng ngày hôm đó, Microsoft Threat Intelligence quan sát nhóm Storm-1175 bắt đầu triển khai một họ ransomware chưa từng được ghi nhận: StormAug 18, 2026·22 min read