<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:media="http://search.yahoo.com/mrss/">
<channel>
<title>AEU — Security Insights</title>
<link>https://alickaj.eu/</link>
<atom:link href="https://alickaj.eu/feed.xml" rel="self" type="application/rss+xml"/>
<description>Innovation. Imagination. Limitless.</description>
<language>en</language>
<lastBuildDate>Sun, 26 Jul 2026 19:09:24 +0000</lastBuildDate>
<generator>AEU Showcase</generator>
<item>
<title>Malvertising Campaigns Evade Detection by Assembling Malware Directly in the Browser</title>
<link>https://alickaj.eu/?read=malvertising-campaigns-evade-detection-by-assembling-malware-directly-in-the-bro</link>
<guid isPermaLink="true">https://alickaj.eu/?read=malvertising-campaigns-evade-detection-by-assembling-malware-directly-in-the-bro</guid>
<pubDate>Sun, 26 Jul 2026 12:52:18 +0000</pubDate>
<description>Attackers are using a new malvertising technique that delivers malware in fragmented pieces and uses JavaScript to rebuild the executable client-side, bypassing traditional security filters.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-2e3b448e3bbefd3d.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-2e3b448e3bbefd3d.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>DevMan RaaS Portal Lowers Barrier to Entry for Ransomware Attacks</title>
<link>https://alickaj.eu/?read=devman-raas-portal-lowers-barrier-to-entry-for-ransomware-attacks</link>
<guid isPermaLink="true">https://alickaj.eu/?read=devman-raas-portal-lowers-barrier-to-entry-for-ransomware-attacks</guid>
<pubDate>Sun, 26 Jul 2026 12:53:53 +0000</pubDate>
<description>A new ransomware-as-a-service platform, DevMan, integrates payload generation, victim management, and affiliate payments into a single dashboard, making it easier for criminals to launch and profit from attacks.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-f46a25d792228bfb.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-f46a25d792228bfb.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>BlueNoroff Phishing Kit Impersonates Zoom to Steal Crypto Wallets</title>
<link>https://alickaj.eu/?read=bluenoroff-phishing-kit-impersonates-zoom-to-steal-crypto-wallets</link>
<guid isPermaLink="true">https://alickaj.eu/?read=bluenoroff-phishing-kit-impersonates-zoom-to-steal-crypto-wallets</guid>
<pubDate>Sun, 26 Jul 2026 12:55:02 +0000</pubDate>
<description>A new phishing kit from the BlueNoroff group uses fake Zoom invitations to silently profile cryptocurrency wallets before delivering malware, putting businesses and website owners at risk of data theft.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-08f63b2f5a384a7a.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-08f63b2f5a384a7a.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>Golden Chickens Threat Group Returns with Four New Malware Families</title>
<link>https://alickaj.eu/?read=golden-chickens-threat-group-returns-with-four-new-malware-families</link>
<guid isPermaLink="true">https://alickaj.eu/?read=golden-chickens-threat-group-returns-with-four-new-malware-families</guid>
<pubDate>Sun, 26 Jul 2026 12:56:37 +0000</pubDate>
<description>Cybersecurity outlets report the revival of Golden Chickens with four novel malware families and modular implants, signaling heightened risks for online platforms.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-62200606cb7b9c3e.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-62200606cb7b9c3e.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>Steam Forum ClickFix Scam Silently Installs XMRig Cryptominer via Fake PowerShell Fixes</title>
<link>https://alickaj.eu/?read=steam-forum-clickfix-scam-silently-installs-xmrig-cryptominer-via-fake-powershel</link>
<guid isPermaLink="true">https://alickaj.eu/?read=steam-forum-clickfix-scam-silently-installs-xmrig-cryptominer-via-fake-powershel</guid>
<pubDate>Sun, 26 Jul 2026 12:58:47 +0000</pubDate>
<description>Threat actors are exploiting Steam discussion forums with ClickFix social engineering, tricking gamers into running malicious PowerShell commands that secretly deploy XMRig miners.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-a7df7ffa5e05842f.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-a7df7ffa5e05842f.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>JavaScript-Powered Malvertising Builds Malware Silently in Browser Memory</title>
<link>https://alickaj.eu/?read=javascript-powered-malvertising-builds-malware-silently-in-browser-memory</link>
<guid isPermaLink="true">https://alickaj.eu/?read=javascript-powered-malvertising-builds-malware-silently-in-browser-memory</guid>
<pubDate>Sun, 26 Jul 2026 13:00:01 +0000</pubDate>
<description>A sophisticated malvertising operation tricks crypto traders with fake sites that use JavaScript to construct malware entirely in the browser, avoiding network-based defenses. The campaign targets users in Asia-Pacific a…</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-207ba2c04dca1160.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-207ba2c04dca1160.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>ShinyHunters Data Leaks Fuel $2,000 Bitcoin Sextortion Scam</title>
<link>https://alickaj.eu/?read=shinyhunters-data-leaks-fuel-2-000-bitcoin-sextortion-scam</link>
<guid isPermaLink="true">https://alickaj.eu/?read=shinyhunters-data-leaks-fuel-2-000-bitcoin-sextortion-scam</guid>
<pubDate>Sun, 26 Jul 2026 13:01:29 +0000</pubDate>
<description>Threat actors are leveraging email addresses from past ShinyHunters data breaches to send sextortion emails demanding Bitcoin payments, though the hacking group denies involvement.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-761b2a971cb2b357.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-761b2a971cb2b357.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>ChatGPT Global Outage Disrupts AI Services, OpenAI Rushes Fix</title>
<link>https://alickaj.eu/?read=chatgpt-global-outage-disrupts-ai-services-openai-rushes-fix</link>
<guid isPermaLink="true">https://alickaj.eu/?read=chatgpt-global-outage-disrupts-ai-services-openai-rushes-fix</guid>
<pubDate>Sun, 26 Jul 2026 13:02:47 +0000</pubDate>
<description>OpenAI&apos;s ChatGPT and API suffered a worldwide outage, affecting millions of users and websites integrated with the service. Recovery was completed after almost an hour.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-25ca120783f73471.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-25ca120783f73471.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>OnTrac Data Breach Exposes Customer Information After Network Intrusion</title>
<link>https://alickaj.eu/?read=ontrac-data-breach-exposes-customer-information-after-network-intrusion</link>
<guid isPermaLink="true">https://alickaj.eu/?read=ontrac-data-breach-exposes-customer-information-after-network-intrusion</guid>
<pubDate>Sun, 26 Jul 2026 13:03:52 +0000</pubDate>
<description>Parcel delivery firm OnTrac alerts customers that hackers accessed personal data during a three-day network breach, prompting free credit monitoring services.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-ce229faccda08040.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-ce229faccda08040.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>Open-Source Hermes AI Agent Used to Automate Thai Ministry Cyberattack</title>
<link>https://alickaj.eu/?read=open-source-hermes-ai-agent-used-to-automate-thai-ministry-cyberattack</link>
<guid isPermaLink="true">https://alickaj.eu/?read=open-source-hermes-ai-agent-used-to-automate-thai-ministry-cyberattack</guid>
<pubDate>Sun, 26 Jul 2026 13:05:47 +0000</pubDate>
<description>Exposed attacker infrastructure revealed how the Hermes AI agent in YOLO mode automated post-exploitation tasks, including privilege escalation and system mapping, against Thailand’s Ministry of Finance.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-d3aafaf0b39734ab.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-d3aafaf0b39734ab.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>Hackers Hijack Hotel Wi-Fi DNS to Redirect Microsoft 365 Logins</title>
<link>https://alickaj.eu/?read=hackers-hijack-hotel-wi-fi-dns-to-redirect-microsoft-365-logins</link>
<guid isPermaLink="true">https://alickaj.eu/?read=hackers-hijack-hotel-wi-fi-dns-to-redirect-microsoft-365-logins</guid>
<pubDate>Sun, 26 Jul 2026 13:07:13 +0000</pubDate>
<description>Attackers compromise hotel and conference center Wi-Fi gateways, altering DNS to redirect users to fake Microsoft 365 login pages and steal credentials or bypass MFA via device code phishing.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-bc184f0aa3d15eec.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-bc184f0aa3d15eec.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>Unpatched Fastjson 1.x Remote Code Execution Flaw Under Active Attack</title>
<link>https://alickaj.eu/?read=unpatched-fastjson-1-x-remote-code-execution-flaw-under-active-attack</link>
<guid isPermaLink="true">https://alickaj.eu/?read=unpatched-fastjson-1-x-remote-code-execution-flaw-under-active-attack</guid>
<pubDate>Sun, 26 Jul 2026 02:30:59 +0000</pubDate>
<description>Attackers are exploiting a critical RCE vulnerability in Fastjson 1.x, with no official patch available. Site owners using Java-based applications are urged to mitigate immediately.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/aeu-logo.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/aeu-logo.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>GitLab RCE Proof-of-Concept Released: Authenticated Attackers Can Execute Commands as &apos;git&apos; User</title>
<link>https://alickaj.eu/?read=gitlab-rce-proof-of-concept-released-authenticated-attackers-can-execute-command</link>
<guid isPermaLink="true">https://alickaj.eu/?read=gitlab-rce-proof-of-concept-released-authenticated-attackers-can-execute-command</guid>
<pubDate>Sun, 26 Jul 2026 02:32:26 +0000</pubDate>
<description>A security researcher has published a working proof-of-concept for a remote code execution flaw in GitLab, allowing authenticated users to run arbitrary commands on the server with the privileges of the &apos;git&apos; user.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/aeu-logo.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/aeu-logo.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>Cl0p Ransomware Affiliates Exploit Unpatched RCE in PTC Windchill and FlexPLM</title>
<link>https://alickaj.eu/?read=cl0p-ransomware-affiliates-exploit-unpatched-rce-in-ptc-windchill-and-flexplm</link>
<guid isPermaLink="true">https://alickaj.eu/?read=cl0p-ransomware-affiliates-exploit-unpatched-rce-in-ptc-windchill-and-flexplm</guid>
<pubDate>Sun, 26 Jul 2026 02:34:11 +0000</pubDate>
<description>The Cl0p ransomware group is actively exploiting an unauthenticated remote code execution flaw in PTC&apos;s Windchill and FlexPLM products, targeting internet-exposed servers to deploy ransomware. Immediate patching and acce…</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-f621cfe04f2ed530.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-f621cfe04f2ed530.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>Certighost Exploit Allows Low-Privileged AD Users to Impersonate Domain Controllers</title>
<link>https://alickaj.eu/?read=certighost-exploit-allows-low-privileged-ad-users-to-impersonate-domain-controll</link>
<guid isPermaLink="true">https://alickaj.eu/?read=certighost-exploit-allows-low-privileged-ad-users-to-impersonate-domain-controll</guid>
<pubDate>Sun, 26 Jul 2026 02:35:45 +0000</pubDate>
<description>A new Active Directory exploit enables attackers with minimal privileges to hijack domain controller identities, posing serious risks to domain-joined web servers and hosting environments.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-21628fd8a2de567f.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-21628fd8a2de567f.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>Thai Ministry Breach Shows Rise of AI-Powered Post-Exploitation Agents</title>
<link>https://alickaj.eu/?read=thai-ministry-breach-shows-rise-of-ai-powered-post-exploitation-agents</link>
<guid isPermaLink="true">https://alickaj.eu/?read=thai-ministry-breach-shows-rise-of-ai-powered-post-exploitation-agents</guid>
<pubDate>Sun, 26 Jul 2026 02:37:08 +0000</pubDate>
<description>Hackers deployed an autonomous AI agent to maintain access and move laterally inside the Thai Finance Ministry—a technique that could threaten web hosting and business networks.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-8c9a4ceddc500a8f.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-8c9a4ceddc500a8f.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>AI Agent Uncovers Critical Zero-Day Flaws in Redis, Crafts Exploit Code</title>
<link>https://alickaj.eu/?read=ai-agent-uncovers-critical-zero-day-flaws-in-redis-crafts-exploit-code</link>
<guid isPermaLink="true">https://alickaj.eu/?read=ai-agent-uncovers-critical-zero-day-flaws-in-redis-crafts-exploit-code</guid>
<pubDate>Sun, 26 Jul 2026 02:38:26 +0000</pubDate>
<description>Researchers reveal that the AI agent Kimi K3 autonomously discovered multiple zero-day vulnerabilities in the popular in-memory database Redis and developed a working remote code execution exploit, raising urgent concern…</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-df6feab457c0e0ec.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-df6feab457c0e0ec.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>Fake Notepad++ Plugin Spreads MATCHBOIL.V2 Backdoor in UAC-0099 Campaign</title>
<link>https://alickaj.eu/?read=fake-notepad-plugin-spreads-matchboil-v2-backdoor-in-uac-0099-campaign</link>
<guid isPermaLink="true">https://alickaj.eu/?read=fake-notepad-plugin-spreads-matchboil-v2-backdoor-in-uac-0099-campaign</guid>
<pubDate>Sun, 26 Jul 2026 02:40:01 +0000</pubDate>
<description>A malicious plugin for Notepad++ is being used by threat group UAC-0099 to deliver the MATCHBOIL.V2 backdoor, posing risks to developers and their managed websites.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-49ce1d22d2a71c7c.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-49ce1d22d2a71c7c.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>WP-SHELLSTORM Backdoor Compromises Thousands of WordPress Sites Found on Exposed Server</title>
<link>https://alickaj.eu/?read=wp-shellstorm-backdoor-compromises-thousands-of-wordpress-sites-found-on-exposed</link>
<guid isPermaLink="true">https://alickaj.eu/?read=wp-shellstorm-backdoor-compromises-thousands-of-wordpress-sites-found-on-exposed</guid>
<pubDate>Sun, 26 Jul 2026 02:41:06 +0000</pubDate>
<description>An uncovered hacker control server has brought to light a vast WordPress backdoor campaign. Thousands of sites are infected with the WP-SHELLSTORM malware, granting attackers lasting unauthorized access.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-3d14a355740b65bb.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-3d14a355740b65bb.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>New Mistic Backdoor Linked to KongTuke Spotted in ClickFix and ModeloRAT Campaigns</title>
<link>https://alickaj.eu/?read=new-mistic-backdoor-linked-to-kongtuke-spotted-in-clickfix-and-modelorat-campaig</link>
<guid isPermaLink="true">https://alickaj.eu/?read=new-mistic-backdoor-linked-to-kongtuke-spotted-in-clickfix-and-modelorat-campaig</guid>
<pubDate>Sun, 26 Jul 2026 02:42:24 +0000</pubDate>
<description>A newly discovered backdoor named Mistic has been associated with the KongTuke threat actor, appearing in ClickFix and ModeloRAT malware campaigns. Website owners should review their security posture.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-666b25b32ef0939b.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-666b25b32ef0939b.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>ShapedPlugin WordPress Pro Plugins Compromised in Coordinated Supply Chain Breach</title>
<link>https://alickaj.eu/?read=shapedplugin-wordpress-pro-plugins-compromised-in-coordinated-supply-chain-breac</link>
<guid isPermaLink="true">https://alickaj.eu/?read=shapedplugin-wordpress-pro-plugins-compromised-in-coordinated-supply-chain-breac</guid>
<pubDate>Sun, 26 Jul 2026 02:43:31 +0000</pubDate>
<description>A supply chain attack backdoored ShapedPlugin&apos;s premium WordPress plugins, putting sites at risk. Users must audit, update, and scan immediately.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-2ce34d4bc99a9a63.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-2ce34d4bc99a9a63.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>Gravity SMTP WordPress Plugin Exploited to Steal API Keys</title>
<link>https://alickaj.eu/?read=gravity-smtp-wordpress-plugin-exploited-to-steal-api-keys</link>
<guid isPermaLink="true">https://alickaj.eu/?read=gravity-smtp-wordpress-plugin-exploited-to-steal-api-keys</guid>
<pubDate>Sun, 26 Jul 2026 02:44:36 +0000</pubDate>
<description>Attackers are actively exploiting a vulnerability in the Gravity SMTP WordPress plugin to extract API keys, putting email-sending configurations and site communications at risk.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-47fe62a9b363942f.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-47fe62a9b363942f.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>Certighost Exploit Lets Low-Privileged AD Users Impersonate a Domain Controller</title>
<link>https://alickaj.eu/?read=certighost-exploit-lets-low-privileged-ad-users-impersonate-a-domain-controller</link>
<guid isPermaLink="true">https://alickaj.eu/?read=certighost-exploit-lets-low-privileged-ad-users-impersonate-a-domain-controller</guid>
<pubDate>Sat, 25 Jul 2026 02:30:56 +0000</pubDate>
<description>A new attack technique named Certighost enables low-privileged Active Directory users to masquerade as a domain controller, opening the door to credential theft and full network compromise.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-283f9b048caadb87.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-283f9b048caadb87.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>ChatGPT’s AgentForger Flaw Enables Rogue Workspace Agents via Phishing Links</title>
<link>https://alickaj.eu/?read=chatgpt-s-agentforger-flaw-enables-rogue-workspace-agents-via-phishing-links</link>
<guid isPermaLink="true">https://alickaj.eu/?read=chatgpt-s-agentforger-flaw-enables-rogue-workspace-agents-via-phishing-links</guid>
<pubDate>Sat, 25 Jul 2026 02:32:08 +0000</pubDate>
<description>A vulnerability in ChatGPT’s AgentForger could let attackers deploy malicious workspace agents through a single phishing link, risking data exfiltration and unauthorized access.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-d43d2a88720f40da.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-d43d2a88720f40da.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>Microsoft Fixes Critical Bing SVG Flaw; Attackers Could Execute System Commands</title>
<link>https://alickaj.eu/?read=microsoft-fixes-critical-bing-svg-flaw-attackers-could-execute-system-commands</link>
<guid isPermaLink="true">https://alickaj.eu/?read=microsoft-fixes-critical-bing-svg-flaw-attackers-could-execute-system-commands</guid>
<pubDate>Sat, 25 Jul 2026 02:34:08 +0000</pubDate>
<description>A vulnerability in Microsoft Bing&apos;s image processing allowed crafted SVG files to run code with SYSTEM privileges. The patch highlights why secure file handling is essential for all web services.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-3f283ad957ed4a4e.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-3f283ad957ed4a4e.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>AI Agent Hermes Deployed Unattended for Post-Exploitation at Thai Finance Ministry</title>
<link>https://alickaj.eu/?read=ai-agent-hermes-deployed-unattended-for-post-exploitation-at-thai-finance-minist</link>
<guid isPermaLink="true">https://alickaj.eu/?read=ai-agent-hermes-deployed-unattended-for-post-exploitation-at-thai-finance-minist</guid>
<pubDate>Sat, 25 Jul 2026 02:35:39 +0000</pubDate>
<description>A hacker reportedly ran the Hermes AI agent autonomously after breaching Thailand&apos;s Ministry of Finance, highlighting the growing role of AI in automating cyberattacks and the need for advanced defenses.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-8239526967df147a.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-8239526967df147a.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>NodeBB Patches Eight AI-Discovered Flaws Allowing Admin Takeover and Private Message Access</title>
<link>https://alickaj.eu/?read=nodebb-patches-eight-ai-discovered-flaws-allowing-admin-takeover-and-private-mes</link>
<guid isPermaLink="true">https://alickaj.eu/?read=nodebb-patches-eight-ai-discovered-flaws-allowing-admin-takeover-and-private-mes</guid>
<pubDate>Sat, 25 Jul 2026 02:37:14 +0000</pubDate>
<description>A new wave of AI-driven vulnerability scanning uncovered critical security holes in NodeBB forum software, putting private chats and administrator accounts at risk; patches have been released.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-dd3c71c164d4d5a5.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-dd3c71c164d4d5a5.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>AI Agents Uncover Critical Redis Zero-Days, Craft Working Exploits</title>
<link>https://alickaj.eu/?read=ai-agents-uncover-critical-redis-zero-days-craft-working-exploits</link>
<guid isPermaLink="true">https://alickaj.eu/?read=ai-agents-uncover-critical-redis-zero-days-craft-working-exploits</guid>
<pubDate>Sat, 25 Jul 2026 02:38:25 +0000</pubDate>
<description>Researchers demonstrated that AI agents can autonomously find and exploit Redis vulnerabilities, raising stakes for database security in web hosting environments.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-6d85941f139ee717.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-6d85941f139ee717.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>Fake Notepad++ Plugin Found Dropping MATCHBOIL.V2 Trojan in Ongoing Attacks</title>
<link>https://alickaj.eu/?read=fake-notepad-plugin-found-dropping-matchboil-v2-trojan-in-ongoing-attacks</link>
<guid isPermaLink="true">https://alickaj.eu/?read=fake-notepad-plugin-found-dropping-matchboil-v2-trojan-in-ongoing-attacks</guid>
<pubDate>Sat, 25 Jul 2026 02:39:46 +0000</pubDate>
<description>A malicious add-on posing as a legitimate Notepad++ extension is being used to infect developer machines with the MATCHBOIL.V2 remote access trojan, putting website source code, credentials, and hosting environments at r…</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-852d7225f48a5e8d.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-852d7225f48a5e8d.webp" medium="image" type="image/webp"/>
</item>
<item>
<title>Android Spyware, PLC Attacks, and AI Prompt Injection: What Site Owners Need to Know</title>
<link>https://alickaj.eu/?read=android-spyware-plc-attacks-and-ai-prompt-injection-what-site-owners-need-to-kno</link>
<guid isPermaLink="true">https://alickaj.eu/?read=android-spyware-plc-attacks-and-ai-prompt-injection-what-site-owners-need-to-kno</guid>
<pubDate>Sat, 25 Jul 2026 02:41:26 +0000</pubDate>
<description>A weekly threat roundup reminds web administrators to stay vigilant against mobile spyware that may steal credentials, attacks on industrial controllers, and malicious AI prompts.</description>
<category>Security Insights</category>
<enclosure url="https://alickaj.eu/aeu-assets/news/aeu-0fad97e2f1c1223d.webp" type="image/webp" length="0"/>
<media:content url="https://alickaj.eu/aeu-assets/news/aeu-0fad97e2f1c1223d.webp" medium="image" type="image/webp"/>
</item>
</channel>
</rss>
