π€ Trojanized Newtonsoft.Json fork on NuGet hides game-rigging code targeting Digitain sportsbook. Package "Newtonsoftt.Json.Net" typosquats the real library and includes logic to rig live betting results.
π https://thehackernews.com/2026/07/trojanized-newtonsoftjson-fork-hides.html
#SupplyChain #Malware #ReverseEngineering #CyberSec
HOLY SHIT I FOUND IT
It was called the "ROBOT COLORING BOOK"
It just had some space tanks on the cover. look at how badass this is
Investigation Scenario π
Alert: Microsoft Defender for Endpoint: Behavior:Win32/SuspClickFix.F detected on a Windows 11 workstation.
No additional context is provided. What artifacts would you examine first to determine whether the user executed the ClickFix command?
To go further, what would you look for to determine whether the alert represents the beginning of an ACR Stealer intrusion?
Woof. That data breach at Suno last year, but only just disclosed last week, affected over 55 million users, including their names, physical addresses, and phone numbers, according to Have I Been Pwned.
Bypass for ad-blockers: https://web.archive.org/web/20260721144937/https://techcrunch.com/2026/07/21/ai-music-generator-suno-breach-affects-55m-users-per-have-i-been-pwned/
"Dionysius Thrax" sounds like a hammy villain wearing absurdly bulky, spiky armor while zipping around in a hovercraft, but actually he was one of history's biggest nerds https://en.wikipedia.org/wiki/Dionysius_Thrax
Writeup & POC: CVE-2026-49176 Windows WalletService to SYSTEM (LPE) https://davidcarliez.github.io/blog/cve-2026-49176-walletservice-to-system/
"I know that my life has always been vertebrated by two desires: the desire to know and the desire to help, to be of use."
A new page of my comic Ekphrasis, which you can read for free at https://ekphrasiscomic.neocities.org/