Hunting Copy Fail: 732 Bytes to Root

13Cubed·5.7K views · 3 months ago

In this episode, we'll look at how Copy Fail (CVE-2026-31431) works and highlight key forensic detection opportunities. *** If you enjoy this video, please consider supporting 13Cubed on Patreon at patreon.com/13cubed. *** 📖 Chapters 00:00 - Intro 01:19 - Demo 🛠 Resources CVE-2026-31431 (Copy Fail) Forensics:

OtherCloudflare Blog·3 months ago

Post-quantum encryption for Cloudflare IPsec is generally available

Cloudflare has made post-quantum encryption support for IPsec generally available, implementing hybrid ML-KEM to protect against future quantum computing threats. The company has validated interoperability with Cisco and Fortinet, demonstrating practical compatibility across major networking vendors.

PhishingBitdefender Labs·3 months ago

Operation Road Trap: Fake toll and parking texts are spreading worldwide

Bitdefender Labs has identified Operation Road Trap, a widespread smishing campaign delivering fraudulent toll and parking violation notices to mobile users across 12 countries since December 2025. The attackers impersonate legitimate transport authorities and parking services to deceive drivers, with over 79,000 malicious messages confirmed and the campaign remaining active as of April 2026.

Windows Defender Vulnerability lets malware install into System 32

PC Security Channel·97K views · 4 months ago
Nation-StateWeLiveSecurity·4 months ago

GopherWhisper: A burrow full of malware

ESET Research has identified a previously unknown China-aligned APT group called GopherWhisper that specifically targets Mongolian governmental institutions. The discovery adds another player to the threat landscape focused on state-level espionage in the Asia-Pacific region.

MalwareThe DFIR Report·4 months ago

Bissa Scanner Exposed: AI-Assisted Mass Exploitation and Credential Harvesting

An exposed server provided insight into a large-scale exploitation and credential harvesting operation utilizing the modular Bissa scanner platform. The threat actors integrated Claude Code and OpenClaw AI tools into their workflow to support troubleshooting, orchestration, and refinement of their collection pipeline across multiple victims. This case demonstrates how adversaries are operationalizing AI assistants to scale and automate mass exploitation campaigns.

The AI Conversation I've Been Avoiding

13Cubed·7.3K views · 4 months ago

I’ve got some thoughts about AI. Let’s talk about how it’s changing digital forensics, how I actually use it in practice, and what you need to know if you’re in or entering the field. *** If you enjoy this video, please consider supporting 13Cubed on Patreon at patreon.com/13cubed. *** 📖 Chapters 00:00 - Intro 00:43 - Public Models 05:17 - Local Models 06:37 - DF/IR Tools + AI 08:25 - Vibe Coding 10:02 - Career Advice #Forensics #DigitalForensics #DFIR #ComputerForensics #WindowsForensics

MalwareWeLiveSecurity·4 months ago

New NGate variant hides in a trojanized NFC payment app

ESET researchers have identified a new variant of NGate malware embedded within a trojanized NFC payment application, marking another evolution of the threat. The discovery suggests the malware may have been developed with AI assistance, indicating an escalation in the sophistication of its creation methods.

PhishingWeLiveSecurity·4 months ago

That data breach alert might be a trap

Ignoring a real breach notification invites risk, but falling for a bogus one could be even worse. Stop reacting on autopilot.

Can Zero Trust Security save us? ThreatLocker Test

PC Security Channel·25K views · 4 months ago

Threatlocker Review: Threatlocker is a security solution based on the Zero Trust model: We tested it against various malware, security attacks, simulations to see how it holds up in the real world.

CPU-Z and HWMonitor are Malware!?

PC Security Channel·297K views · 4 months ago
PhishingWeLiveSecurity·4 months ago

Recovery scammers hit you when you’re down: Here’s how to avoid a second strike

Fraud victims face heightened risk of secondary exploitation when scammers target them during recovery efforts using compiled "sucker lists" of prior victims. Recovery scams capitalize on victims' vulnerability and desire to recoup losses, potentially compounding financial and emotional harm. Understanding these targeting tactics is essential for victims to protect themselves from additional fraud attempts.

Load more