NVNguyễn Văn Trunginblog.fiscybersec.com·32m ago · 20 min readPhoto ZIP Campaign: When Legitimate Emails Become a Malware Delivery WeaponExecutive Summary A legitimate-looking booking email, sent from genuine Calendly infrastructure, sails through SPF, DKIM, DMARC, and CompAuth with a clean pass — yet delivers front-desk staff to a pho00
NVNguyễn Văn Trunginblog.fiscybersec.com·45m ago · 31 min readNimbus RAT: Hackers Exploit Microsoft Teams and Google Drive to Deliver Java-Based RATNimbus RAT: 20 Minutes From a Fake IT Teams Call to a Java RAT Running Over Google Drive 282 emails hit the inbox in 90 minutes, peaking at 26 emails per minute. Forty-five minutes later, an external 00
NVNguyễn Văn Trunginblog.fiscybersec.com·14h ago · 25 min readForg365: Bộ Kit Phishing Giá 400 USD Có Thể Chiếm Tài Khoản Microsoft 365 Ngay Cả Khi Bạn Đổi Mật KhẩuTóm tắt tổng quan Forg365 là một nền tảng phishing-as-a-service nhắm Microsoft 365, bán qua Telegram với giá \(400/tháng hoặc \)3,800/năm, kèm 5 ngày dùng thử miễn phí. ZeroBEC công bố phân tích ngày 00
NVNguyễn Văn Trunginblog.fiscybersec.com·17h ago · 22 min readUAT-7810 Quay Trở Lại Với Bộ Ba Backdoor Mới Nhắm Vào ORB NetworkTổng quan Tháng 6/2025, SecurityScorecard vạch mặt LapDogs - một ORB network China-nexus với hơn 1,000 router SOHO bị nhiễm backdoor ShortLeash. Một năm sau, actor không hề biến mất. Cisco Talos (07/000
NVNguyễn Văn Trunginblog.fiscybersec.com·2d ago · 17 min readNavy Ghost: Khi một lệnh pip install trở thành cánh cửa cho hackerTổng quan Một chiến dịch lâu dài được đặt tên Operation Navy Ghost phát hành 8 package Python độc hại giả danh là fork của Pyrogram (thư viện phổ biến để xây dựng Telegram bot) trên PyPI từ tháng 11/200