Cyberhood Sentinel
@cystnl
Followers
62
Following
25
Media
79
Statuses
1K
Stay up-to-date with the latest cyber security news and insights. Join our community of CISOs, SOC team and cyber security enthusiasts.
Earth
Joined October 2019
Apple Security Update - Zero Day Critical Vulnerability By exploiting this vulnerabilities attacker can take control of your device. How : By tricking users in opening a malicious link by phishing, vishing, smishing, whaling, pharming etc.. Impacted versions : 📱 iOS / iPadOS
1
0
0
🚨 Phishing Alert for Indian Users 🇮🇳 Cybercriminals are exploiting tax-themed emails to trick users into opening malicious attachments. These fake “Income Tax” messages can install powerful malware and give attackers full control of your system. 🔹 Don’t trust urgency 🔹
hoodguy.net
Silver Fox is exploiting India’s income tax season with phishing emails to deliver the ValleyRAT remote access trojan. Learn how the campaign works and how to defend
0
0
0
🚨 Critical MongoDB Security Alert 🚨 A severe MongoDB vulnerability, CVE-2025-14847 (MongoBleed), is now being actively exploited in the wild. Attackers can leak sensitive data directly from server memory without authentication by abusing a flaw in MongoDB’s zlib compression
0
0
0
Critical LangChain Core Vulnerability (CVE-2025-68664) A newly disclosed critical vulnerability in LangChain Core is raising major concerns across the AI and security community. The flaw (tracked as CVE-2025-68664, CVSS 9.3) allows attackers to abuse unsafe serialization logic
0
0
0
n8n Security Alert: The vulnerability in the systems can allow attackers to take full control of the automation servers. According to Security researchers over 100,000 + instances might be impacted. If n8n is being run on the production environment it should be patched. Details
1
0
0
Critical Notification for : 💻 Developers using React 19 / Next.js 🏢 Startups & enterprises hosting apps with RSC ☁️ Cloud teams running exposed React workloads 🔐 Security teams monitoring web-facing infrastructure A major flaw in React Server Components is allowing attackers
1
0
2
If you’re a vulnerability, don’t be a 10. Be the girl that turns every “fix me” guy into a shutdown sequence 💀💅
0
0
2
"What are the most efficient ways to build new mental models? Read a lot—just read." From the @navalmanack
https://t.co/Ayrjnrwxqj
navalmanack.com
During decision-making, the brain is a memory prediction machine. A lousy way to do memory prediction is “X happened in the past, therefore X will happen in the future.” It’s too based on specific...
0
0
0
Another day Another WordPress Vulnerability Sneeit WordPress Vulnerability. If you are using Sneeit, the attackers can 1. create admin accounts (unauthorized) 2. Upload webshells/ backdoor 3. run server-level commands 4. modify posts, pages and configs 5. Inject Malware and
hoodguy.net
Critical RCE vulnerability in Sneeit WordPress plugin (CVE-2025-6389) is under active attack — site owners must update to version 8.4 immediately to avoid full site compromise.
1
0
1
Just to Clarify Don't use them interchangeably AI in Security = Using AI to strengthen cybersecurity Security in AI = Applying cybersecurity controls to protect AI systems
0
1
0
Security Warning : Do you use Vibe Coding for building apps or AI assisted code Apps ? Security research has uncovered over 30 vulnerabilities across AI-powered IDEs including GitHub Copilot, Cursor, VibeCode & others. How it can impact : 1. Attacker can take over your apps
hoodguy.net
Researchers reveal 30+ vulnerabilities across AI-powered coding tools — enabling data theft and remote code execution via prompt injection and flawed IDE permissions.
0
0
0
Read Full details about vulnerability here 👇: https://t.co/eZ6rs1akYY
0
0
0
Your WordPress website is at critical Risk If you are using King Addon update the Plugin Immediately Take these steps 1. Update the plugin immediately 2. Check your user accounts 3. Review your logs for suspicious activity 4. Enable a Web Application Firewall (WAF) 5.
1
0
4
Hearing some worrying updates for smartphone users in India. New reports suggest that upcoming devices may ship with a built-in government app that can’t be removed, delivered straight through OTA. This is a pretty big shift — we’ve never had mandatory, undeletable state
1
0
0