Showing 100 articles max
Black & White Path
Black & White Path
May 24, 2026 · Information Security

WhatsApp’s 3 Billion User Data Leak: Encryption Myths Shattered

In May 2026 a hacker named NormalLeVrai released roughly 3 billion WhatsApp records on the dark web, prompting a Texas lawsuit against Meta, a public accusation by Telegram’s Pavel Durov, and a detailed technical analysis exposing gaps between WhatsApp’s end‑to‑end encryption theory and its real‑world implementation, followed by risk assessments and mitigation advice for enterprises and individuals.

End-to-End EncryptionInformation SecuritySignal Protocol
0 likes · 15 min read
WhatsApp’s 3 Billion User Data Leak: Encryption Myths Shattered
Java Companion
Java Companion
May 23, 2026 · Information Security

Spending 25 yuan on ChatGPT Plus Reveals the Full Gray‑Market Resale Chain

The author shows how buying a ChatGPT Plus subscription for just 25 yuan via a Turkish Apple ID enables resellers to reuse the same Apple receipt, exploiting OpenAI’s lack of purchaser binding, and outlines the entire gray‑market workflow, its profitability, and the associated security risks.

Apple receipt vulnerabilityChatGPT PlusOpenAI security
0 likes · 8 min read
Spending 25 yuan on ChatGPT Plus Reveals the Full Gray‑Market Resale Chain
Black & White Path
Black & White Path
May 23, 2026 · Information Security

kn-live-dbg: A Debugger‑Like Windows Kernel Live Debugging Tool

kn-live-dbg is a lightweight, debugger‑styled Windows kernel memory browser that uses a kernel driver and a user‑mode TUI to read/write virtual and physical memory, enumerate callbacks, parse symbols, and even provide AI‑assisted command planning, offering a faster alternative to WinDbg for specific security research tasks.

AI assistantDbgHelpWindows kernel
0 likes · 12 min read
kn-live-dbg: A Debugger‑Like Windows Kernel Live Debugging Tool
Black & White Path
Black & White Path
May 23, 2026 · Information Security

GopherTrunk: A Pure‑Go Cluster Radio Scanner Supporting All Major Protocols (P25, DMR, TETRA, NXDN)

GopherTrunk is an open‑source, pure‑Go cluster radio scanner that decodes control channels for ten major digital trunking protocols—including P25, DMR, TETRA, NXDN—and amateur modes, offering zero‑dependency binaries, cross‑platform support, multiple UI options, and advanced DSP pipelines for physical‑penetration testing and radio security research.

DSPGoOpen Source
0 likes · 15 min read
GopherTrunk: A Pure‑Go Cluster Radio Scanner Supporting All Major Protocols (P25, DMR, TETRA, NXDN)
Black & White Path
Black & White Path
May 23, 2026 · Information Security

Telegram’s MTProto Design Flaw Lets Trackers Bypass VPNs and Proxies

A technical review reveals that Telegram’s MTProto protocol exposes a permanent 64‑bit device identifier (auth_key_id) in clear text, enabling passive observers—including ISPs, mobile carriers, and state surveillance—to track users across app restarts, IP changes, VPNs, and even Tor, rendering secret chats and PFS ineffective.

MTProtoTelegramauth_key_id
0 likes · 11 min read
Telegram’s MTProto Design Flaw Lets Trackers Bypass VPNs and Proxies
Black & White Path
Black & White Path
May 22, 2026 · Information Security

NGINX Poolslip 0‑Day RCE: Should You Panic?

A newly disclosed nginx‑poolslip 0‑day RCE affecting NGINX 1.31.0 targets the internal memory‑pool, requires a rare non‑default configuration, and while no public PoC exists, analysis of 4,000 real configurations found none exploitable, prompting specific mitigation steps.

0dayRCEconfiguration
0 likes · 9 min read
NGINX Poolslip 0‑Day RCE: Should You Panic?
Black & White Path
Black & White Path
May 22, 2026 · Information Security

How KAIDO RAT v3.0 Redefines Bank Malware with Modular PIX Hijacking and AI Credential Harvesting

KAIDO RAT v3.0, a .NET 9‑based modular malware suite with over 60 plugins, targets Brazil's PIX payment system, injects malicious QR codes, locks user devices, harvests AI platform credentials, and employs advanced evasion techniques, while the article also offers detailed defense recommendations.

.NET 9AI credential theftBanking malware
0 likes · 8 min read
How KAIDO RAT v3.0 Redefines Bank Malware with Modular PIX Hijacking and AI Credential Harvesting
Black & White Path
Black & White Path
May 22, 2026 · Information Security

GitHub Breach Aftermath: Data Sold to LAPSUS$ for $95,000

After TeamPCP posted a $50,000 offer for 4,000 private GitHub repositories, the data was transferred to LAPSUS$, the price doubled to $95,000, and the breach highlighted a supply‑chain attack chain that now threatens infrastructure credentials and prompts urgent self‑audit steps.

GitHubInformation SecurityLAPSUS$
0 likes · 9 min read
GitHub Breach Aftermath: Data Sold to LAPSUS$ for $95,000
ITPUB
ITPUB
May 21, 2026 · Information Security

Malicious VS Code Extension Exposes 3,800 GitHub Private Repos, Hacker Sells Code for $50K

On May 20, GitHub disclosed that a compromised VS Code extension installed by an employee allowed the hacker group TeamPCP to steal credentials, clone roughly 3,800 private repositories, and list the source code for a $50,000 auction on the dark web, highlighting a severe software‑supply‑chain threat.

Credential TheftGitHubInformation Security
0 likes · 8 min read
Malicious VS Code Extension Exposes 3,800 GitHub Private Repos, Hacker Sells Code for $50K
Ops Community
Ops Community
May 21, 2026 · Information Security

How to Harden Docker in Production: From Image Scanning to Runtime Protection

This guide walks DevOps engineers through a complete Docker hardening workflow—explaining the security model, recommending safe base images, removing secrets, applying multi‑stage builds, enforcing image signing, configuring runtime privileges, resource limits, network isolation, logging, and continuous audit with tools like Trivy, Cosign, Falco and CIS benchmarks.

CIS BenchmarkDockerHardening
0 likes · 29 min read
How to Harden Docker in Production: From Image Scanning to Runtime Protection
IT Services Circle
IT Services Circle
May 21, 2026 · Information Security

Did the GitHub Breach Aim to ‘Fix’ Availability? Inside the TeamPCP Attack

In May 2026 GitHub disclosed that a malicious VS Code extension installed on an employee’s machine led to the theft of roughly 3,800 private repositories by the threat group TeamPCP, which demanded $50 k for the data, claimed the breach was about availability, and later expanded the campaign into a supply‑chain worm targeting PyPI packages and cloud credentials.

GitHubInformation SecuritySupply Chain Attack
0 likes · 8 min read
Did the GitHub Breach Aim to ‘Fix’ Availability? Inside the TeamPCP Attack
Black & White Path
Black & White Path
May 21, 2026 · Information Security

Inside The Gentlemen RaaS Leak: Attack‑Defense Dynamics in Modern Ransomware

The article dissects the May 2026 leak of the ransomware‑as‑a‑service group The Gentlemen, detailing its rapid rise, profit‑sharing model, edge‑device entry points, AI‑assisted tool development, supply‑chain attacks, internal breach, and concrete blue‑team mitigation recommendations.

AI-assisted MalwareAttack ChainBlue Team
0 likes · 12 min read
Inside The Gentlemen RaaS Leak: Attack‑Defense Dynamics in Modern Ransomware
James' Growth Diary
James' Growth Diary
May 19, 2026 · Information Security

Securing AI Tool Calls with PermissionGate and BashSandbox: A Deep Dive

The article analyzes the security challenges of AI coding assistants that can read files, run shell commands, and call external APIs, and presents a layered defense architecture—PermissionGate for tool‑level gating and BashSandbox for command‑level filtering—detailing design principles, risk classifications, user‑authorization flows, and prompt‑injection detection.

AI securityAccess ControlBashSandbox
0 likes · 28 min read
Securing AI Tool Calls with PermissionGate and BashSandbox: A Deep Dive