#Attack

2025-12-09

Sheldon Roma’s attack on autistic man was ‘mistaken vigilante justice’

Roma’s lawyer Jesse Lang pushed for his client’s name to be permanently suppressed, citing the safety of him…
#NewsBeep #News #Headlines #Attack #autistic #Justice #man #mistaken #NewZealand #NZ #on #romas #sheldon #vigilante #was
newsbeep.com/298317/

General Strike Nowstrike@libranet.de
2025-12-08

Syrians' General Strike Against the Jolani Regime · Western Media Confused by the Destructive Capabilities of the Mysterious 303 Missile · world ...

The US Secretary of War, at an event at the John F. Kennedy Center in Washington, D.C., left reporters' questions about the possibility of US ground attacks on Venezuela unanswered.#US #Secretary #of #War #Refuses #to #Answer #Questions #About #Attack #on #Venezuela
US Secretary of War Refuses to Answer Questions About Attack on Venezuela

2025-12-08

Mt Wellington daylight attack: Second man arrested in relation to alleged stabbing

The Herald has been told the man was set upon after being knocked from his motorcycle. Auckland City…
#NewsBeep #News #Headlines #alleged #Arrested #Attack #auckland #been #connection #daylight #in #man #mt #NewZealand #NZ #relation #second #stabbing #suburb #to #wellington #with
newsbeep.com/296412/

libramoonlibramoon
2025-12-07

theguardian.com/us-news/2025/d

Senator says ’ caused ‘horrific’ injuries to unresisting man as he was
Patty Murray of Washington state said ICE agents lied to Wilmer Toledo-Martinez to lure him outside before dog attacked him

..."An ICE agent lured Wilmer out of his home under false pretenses, posing as a construction worker who claimed to have hit Wilmer’s car and ne...

BeyondMachines :verified:beyondmachines1@infosec.exchange
2025-12-06

Active exploitation reported of command injection flaw in Array Networks AG Series VPN gateways

Array Networks has patched a critical command injection vulnerability in its Array AG Series secure access gateways that has been actively exploited since August 2025. Attackers are installing PHP webshells and creating unauthorized accounts to gain persistent access to compromised systems. Despite a patch being available since May 2025 (ArrayOS AG version 9.4.5.9), many organizations remain vulnerable.

**If you have Array AG Series access gateways, plan an urgent update to ArrayOS AG version 9.4.5.9. Your devices are actively hacked, and they can't be hidden from the internet. They are designed to be accessible from the Internet. if you can't update right away, disable the DesktopDirect feature or apply URL filtering to stop semicolons in URLs. Check your systems for webshells, unauthorized accounts, or any suspicious activity.**
#cybersecurity #infosec #attack #activeexploit
beyondmachines.net/event_detai

2025-12-06

Kaitāia woman sentenced after four dogs injure neighbours in Kaiwaka attack

On March 15, 2025, Walker-Haturini was in Kaitāia when her ex-partner allegedly let one of their four dogs…
#NewsBeep #News #Headlines #after #Attack #Dogs #four #in #injure #kaitia #kaiwaka #neighbours #NewZealand #NZ #sentenced #woman
newsbeep.com/292317/

Anarchism Newsanarchismhub@todon.nl
2025-12-05

Puget Sound Anarchists: **Social War Bulletin #1 – Against Flock and its World**

pugetsoundanarchists.org/socia

anonymous submission – The first issue of the Social War Bulletin – Against Flock and Its World This is an irregular print counter-info…

#Analysis #Attack #Surveillance #Automatedlicenseplatereaders #Flock #Publication

Osna.FMosnafm
2025-12-05

The rhetoric surrounding Germany's domestic intelligence agency, the Verfassungsschutz, has escalated sharply following controversial remarks made by Alice Weid... news.osna.fm/?p=26153 |

BeyondMachines :verified:beyondmachines1@infosec.exchange
2025-12-05

Critical remote code execution flaw in Sneeit Framework WordPress Plugin actively exploited

A critical remote code execution vulnerability (CVE-2025-6389) in the Sneeit Framework WordPress plugin is under active exploitation. The flaw allows unauthenticated attackers to create admin accounts, upload backdoors, and fully compromise servers.

**If you're using the Sneeit Framework WordPress plugin, immediately update to version 8.4 or later. Your site is vulnerable and is actively attacked. Check your WordPress site for unauthorized administrator accounts (especially username "arudikadis") and suspicious PHP files in your uploads directory to ensure you haven't been compromised.**
#cybersecurity #infosec #attack #activeexploit
beyondmachines.net/event_detai

BeyondMachines :verified:beyondmachines1@infosec.exchange
2025-12-05

7-Zip vulnerability that enables remote code execution actively exploited

A critical vulnerability in 7-Zip (CVE-2025-11001) that allows remote code execution through malicious ZIP archives is being actively exploited in the wild, targeting healthcare and financial services organizations.

**If you are using 7-Zip, this is urgent. Hackers are exploiting the 7-Zip flaw exploitable just by opening a malicious ZIP file. Update your 7-Zip software to version 25.01 or later ASAP.**
#cybersecurity #infosec #attack #activeexploit
beyondmachines.net/event_detai

BeyondMachines :verified:beyondmachines1@infosec.exchange
2025-12-05

Multiple threat groups are exploiting the critical React/Nex.js vulnerability

Active exploitation i underway for "React2Shell" (CVE-2025-55182), a critical CVSS 10.0 remote code execution vulnerability in React Server Components that allows attackers to abuse unsafe deserialization in the Flight protocol. Organizations must treat this as an emergency event and immediately update.

**THIS IS URGENT: If you're running server side React 19.x or Next.js 15.x/16.x (or frameworks using React Server Components like Waku or Redwood), attackers are already hacking your systems. Prioritize patching right now.**
#cybersecurity #infosec #attack #activeexploit
beyondmachines.net/event_detai

Ulfh3dnarUlfh3dnar
2025-12-05
Ulfh3dnarUlfh3dnar
2025-12-05
2025-12-04

A single hostage remains in Gaza after identification of Thai worker’s remains

JERUSALEM — Remains that militants in Gaza handed to Israel as part of the first phase of the ceasefire deal…
#NewsBeep #News #Headlines #airstrike #Attack #Ceasefiredeal #deadpalestinians #firstphase #Gaza #hostage #IL #Israel #militant #oct. #people #remain #sudthisakrinthalak #thaiworker #thursday
newsbeep.com/289627/

2025-12-04

Good luck! In the long run, there is only one serious defense against DDoS and other attacks: federation. I’m really looking forward to @forgejo
supporting federation for repository forks and pull requests.

#DDoS #attack #federation #fediverse #forgejo #opensource

BeyondMachines :verified:beyondmachines1@infosec.exchange
2025-12-03

Microsoft silently mitigates Windows LNK Zero-Day flaw exploited by state-backed hackers

Microsoft silently patched a high-severity Windows LNK vulnerability (CVE-2025-9491) that was actively exploited by at least 11 state-backed hacking groups and cybercrime organizations to hide malicious commands within .lNK files by padding them beyond the 260-character visibility limit. The flaw, which targeted European diplomatic entities and government departments, initially was not patched by Microsoft despite exploitation. The November 2025 fix is incomplete as it doesn't remove existing malicious code or warn users about suspicious files.

**Apply the November 2025 Windows updates immediately to partially mitigate a vulnerability, which allows hackers to hide malicious commands in .LNK shortcut files. Also, be EXTREMELY cautious opening any .LNK files from emails or downloads, especially from ZIP archives - even after updating, only open shortcuts from sources you can absolutely verify and trust.**
#cybersecurity #infosec #attack #activeexploit
beyondmachines.net/event_detai

BeyondMachines :verified:beyondmachines1@infosec.exchange
2025-12-03

Critical privilege escalation flaw in King Addons for Elementor plugin enables takeover of WordPress Sites

A critical privilege escalation vulnerability (CVE-2025-8489) in the King Addons for Elementor WordPress plugin allows unauthenticated attackers to create administrator accounts due to improper validation of user roles during registration. Over 48,000 exploitation attempts are already reported as blocked by WordFence.

**If you're using King Addons for Elementor plugin, immediately update to version 51.1.35 or later. There is an actively exploited vulnerability to create rogue administrator accounts. After updating, review all user accounts on your WordPress site and remove any suspicious or unknown administrator accounts that shouldn't be there.**
#cybersecurity #infosec #attack #activeexploit
beyondmachines.net/event_detai

Bot Anime (Openings/Endings)botanime@masto.sadrarin.com
2025-12-03
2025-12-03

Nam thiếu niên 19 tuổi ở Brazil trèo rào vào chuồng sư tử, bị sư tử cái tấn công kinh hoàng dẫn đến tử vong. Video ghi lại cảnh tượng gây sốc! #SưTử #TấnCông #Brazil #TaiNạn #Lion #Attack #Dangerous #Wildlife

vietnamnet.vn/nam-thieu-nien-b

Client Info

Server: https://mastodon.social
Version: 2025.07
Repository: https://github.com/cyevgeniy/lmst