Sign in

J0rgE

@rnix1478.bsky.social
287 followers 320 following 177 posts

Cloud System Administrator, Network, CCNA, Cybersecurity, A+, azure cloud, Microsoft Defender, Microsoft Sentinel #Boricua/🇵🇷

PostsRepliesMedia
J0rgE @rnix1478.bsky.social · 01/09/2026
share.google/WFoHLHBsEz7f...
share.google
Microsoft tests fix for latest hours-long Outlook outage | TechCrunch
Microsoft says it's testing a fix for the widespread Outlook issues that have led to email delays and failures.
000
J0rgE @rnix1478.bsky.social · 30/08/2026
share.google/ifIjPFibwaMg...
share.google
Fake MyChart texts and emails are targeting patients. Here's what to know
Fake MyChart texts and emails are targeting patients for personal information and passwords. Here's how to spot the phishing scam.
000
J0rgE @rnix1478.bsky.social · 29/08/2026
share.google/EtrHYJpGh6lA...
share.google
US federal agency confirms data breach in wake of claims by ransomware group
A ransomware group gained access to a computer system containing information about targets of investigations by the Bureau of Alcohol, Tobacco, ​Firearms and Explosives, a spokesperson for the U.S. ag...
000
J0rgE @rnix1478.bsky.social · 28/08/2026
share.google/gxALWdcLYvOG...
share.google
ServiceNow warns of three max severity security vulnerabilities
ServiceNow released security patches for three new maximum-severity AI Platform vulnerabilities that can be exploited in code injection, SQL injection, and privilege escalation attacks.
000
J0rgE @rnix1478.bsky.social · 25/08/2026
share.google/gZ4hUl5VdXD7...
share.google
Nonprofits report losing all data after Microsoft discontinues license grants
After Microsoft retired its grant program, which offered nonprofits its services for free, some organizations report losing all their data without receiving adequate warnings from the tech giant.
000
J0rgE @rnix1478.bsky.social · 22/08/2026
share.google/KvM5bMBGYnyX...
share.google
Critical Microsoft Entra ID Vulnerability Enables Remote Code Execution Attacks
Microsoft has confirmed that a critical remote code execution flaw in Entra ID, its cloud-based identity and access management platform.
010
J0rgE @rnix1478.bsky.social · 19/08/2026
share.google/2btGRua2eaTV...
share.google
Healthtech firm CareCloud data breach impacts 3.7 million patients
U.S. healthcare IT company CareCloud disclosed that the data breach incident it suffered earlier this year has impacted more than 3.7 million individuals.
000
J0rgE @rnix1478.bsky.social · 13/08/2026
share.google/rxIfEPGKelQc...
share.google
Sandworm hackers target IT pros with trojanized WireGuard VPN client
Hackers associated with the Russian threat group Sandworm have been targeting system administrators and IT professionals through fake job offers since at least May.
000
J0rgE @rnix1478.bsky.social · 13/08/2026
share.google/k5DPX9Y01Srl...
share.google
Hackers Breach Polish Power Plant Controls via Private Cellular Network and Shut Turbine
Attackers pivoted through a private cellular APN to shut a turbine and water treatment system at a Polish CHP plant serving 50,000 residents.
000
J0rgE @rnix1478.bsky.social · 13/08/2026
share.google/xu9sOM3loXbs...
share.google
Mozilla Revokes Firefox and Thunderbird Linux Signing Key After Key Lands in Private Repo
Mozilla revokes a Firefox and Thunderbird Linux signing subkey after an unencrypted copy landed in a private repository.
000
J0rgE @rnix1478.bsky.social · 13/08/2026
share.google/hx1fDJ96HEli...
share.google
A Phishing Email Changed a Company’s Payment Info, Then $63,599 Was Sent to Her Accounts, Police Say
A phishing email that appeared to come from a real business client led an employee to change payment information, and police say the mistake ultimately ... Read More
000
J0rgE @rnix1478.bsky.social · 07/08/2026
share.google/BqbD9vdxRuhH...
share.google
Penetration testing
The article provides an overview of the penetration testing process and how to perform a pen test against your app running in Azure infrastructure.
000
J0rgE @rnix1478.bsky.social · 07/08/2026
share.google/BSTzn7ROgWwB...
share.google
Passkeys by default and retirement of Microsoft-provided SMS and voice authentication - Microsoft Entra ID
Learn how to prepare for the retirement of Microsoft provided SMS and Voice authentication in Microsoft Entra ID and migrate users to passkeys.
000
J0rgE @rnix1478.bsky.social · 06/08/2026
share.google/uJ3eLi4rjJFq...
share.google
2 New Jersey municipal water systems targeted in cyberattacks
Two municipal water systems in New Jersey were targeted in cyberattacks in the last week, widely thought to be the work of Iran, the state said Wednesday.
000
J0rgE @rnix1478.bsky.social · 25/07/2026
Free Copilot is turning into a demo as Microsoft shifts real features to paid tiers share.google/aMVqHDDZMLss...
share.google
Microsoft keeps stripping features from free Copilot to push paid subscriptions
Microsoft has cut off Whiteboard for personal accounts, retired Copilot Podcasts, and now Deep Research is being replaced by a Microsoft 365 Premium feature. Free Copilot is shrinking fast, and the be...
000
J0rgE @rnix1478.bsky.social · 25/07/2026
New RefluXFS Linux flaw lets attackers gain root privileges share.google/95sxYdsCNXkM...
share.google
New RefluXFS Linux flaw lets attackers gain root privileges
A nine-year-old race condition vulnerability in the Linux kernel's XFS filesystem, tracked as CVE-2026-64600, allows local attackers to overwrite protected files and gain root privileges.
010
J0rgE @rnix1478.bsky.social · 16/06/2026
pwnedlabs.io/roadmaps/clo...
pwnedlabs.io
000
J0rgE @rnix1478.bsky.social · 16/06/2026
Source: X share.google/uTAOmz9BrYdR...
share.google
Tom Dörr (@tom_doerr) on X
OSINT toolkit for IP, phone, and username tracking https://t.co/KzzhqXT9dH https://t.co/t8Td3oI0w0
000
J0rgE @rnix1478.bsky.social · 11/06/2026
Recently I was promoted to Cloud systems administrator which is a step closer to my goal to become a cloud security engineer. Now I need to double my efforts to study and lab every day
000
J0rgE @rnix1478.bsky.social · 20/05/2026
Source: BleepingComputer share.google/zEJccAIpROc5...
share.google
Cybercrime service disrupted for abusing Microsoft platform to sign malware
Microsoft says it has disrupted a malware-signing-as-a-service (MSaaS) operation that abused the company's Artifact Signing service to generate fraudulent code-signing certificates used by ransomware ...
000
J0rgE @rnix1478.bsky.social · 29/04/2026
Source: The Hacker News share.google/QiFps3WRDjSt...
share.google
VECT 2.0 Ransomware Irreversibly Destroys Files Over 131KB on Windows, Linux, ESXi
VECT 2.0 destroys files over 131KB due to nonce flaw, launched December 2025, making ransom payments useless.
000
J0rgE @rnix1478.bsky.social · 21/04/2026
share.google/y5bwlElsl17k...
share.google
PoC Exploit Released for Windows Snipping Tool NTLM Hash Leak Vulnerability
A proof-of-concept (PoC) exploit has been publicly released for a newly disclosed vulnerability in Microsoft's Snipping Tool that allows attackers to silently steal users' Net-NTLM credential hashes b...
000
J0rgE @rnix1478.bsky.social · 14/04/2026
www.darkreading.com/cloud-securi...
darkreading.com
APT41 Delivers 'Undetectable' Backdoor to Steal Cloud Credentials
The China-backed threat group is targeting AWS, Google, Azure, and Alibaba cloud environments and using typosquatting to obscure C2 communication.
000
J0rgE @rnix1478.bsky.social · 27/03/2026
Source: CyberScoop share.google/B1iPbMw0h4sF...
share.google
Former NSA chiefs worry American offensive edge in cybersecurity is slipping
A systemic numbness to cyberattacks has exposed the U.S. economy and its institutions to ever-widening threats. Retired four-star military officials worry the worst day in cyber is yet to come.
000
J0rgE @rnix1478.bsky.social · 21/03/2026
Source: X share.google/OZSd5VR78Faj...
share.google
000
J0rgE @rnix1478.bsky.social · 07/03/2026
www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
FBI investigates breach of surveillance and wiretap systems
The U.S. Federal Bureau of Investigation (FBI) confirmed on Thursday that it's investigating a breach that affected systems used to manage surveillance and wiretap warrants.
000
J0rgE @rnix1478.bsky.social · 23/02/2026
www.101labs.net/comptia-secu...
101labs.net
Lab 37 – Using gobuster to discover directories - 101Labs.net
Gobuster is a free opensource tool used to brute force URLs, discovering available files and directories in web sites. It can also discover DNS subdomains.
000
J0rgE @rnix1478.bsky.social · 20/02/2026
Source: BleepingComputer share.google/iAOQhP4KSnX2...
share.google
Hackers target Microsoft Entra accounts in device code vishing attacks
Threat actors are targeting technology, manufacturing, and financial organizations in campaigns that combine device code phishing and voice phishing (vishing) to abuse the OAuth 2.0 Device Authorizati...
000
J0rgE @rnix1478.bsky.social · 24/01/2026
www.techbuzz.ai/articles/rus...
techbuzz.ai
Russian Hackers Hit Poland's Grid with Wiper Malware
Sandworm's DynoWiper malware targeted Poland's energy infrastructure in failed attack
000
J0rgE @rnix1478.bsky.social · 19/01/2026
Source: Cyber Security News share.google/4yPkddCzVIFp...
share.google
Argus - Python-powered Toolkit for Information Gathering and Reconnaissance
Argus is a comprehensive Python-based toolkit designed for reconnaissance tasks in cybersecurity. The developers recently released version 2.0, expanding it to include 135 modules.
000
J0rgE @rnix1478.bsky.social · 18/01/2026
Doing some rooms in TryHackme about reading logs, this Linux command helped me a lot grep -woi “word” file.txt | wc -l
000
J0rgE @rnix1478.bsky.social · 11/01/2026
amp.9news.com.au/article/182a...
amp.9news.com.au
Instagram password reset email: Millions of users warned to be on the lookout for suspicious password reset emails
000
J0rgE @rnix1478.bsky.social · 09/01/2026
Source: The Hacker News share.google/GDEL1yQToFcE...
share.google
CISA Retires 10 Emergency Cybersecurity Directives Issued Between 2019 and 2024
CISA has closed 10 emergency cybersecurity directives issued between 2019 and 2024 after required actions were completed and enforced under BOD 22-01.
000
J0rgE @rnix1478.bsky.social · 07/01/2026
blog.cloudflare.com/bgp-route-le...
blog.cloudflare.com
A closer look at a BGP anomaly in Venezuela
There has been speculation about the cause of a BGP anomaly observed in Venezuela on January 2. We take a look at BGP route leaks, and dive into what the data suggests caused the anomaly in question.
000
J0rgE @rnix1478.bsky.social · 03/01/2026
www.clearphish.ai/news/europea...
clearphish.ai
European Space Agency Confirms Breach of External Servers - ClearPhish | Best Phishing Simulation
The European Space Agency (ESA) has confirmed a cybersecurity breach impacting external servers used for collaborative engineering, with hackers claiming access to source code, credentials, and intern...
000
J0rgE @rnix1478.bsky.social · 02/01/2026
Source: BleepingComputer share.google/B0dAFjOEKvpy...
share.google
IBM warns of critical API Connect auth bypass vulnerability
IBM urged customers to patch a critical authentication bypass vulnerability in its API Connect enterprise platform that could allow attackers to access apps remotely.
000
J0rgE @rnix1478.bsky.social · 26/12/2025
Source: The Hacker News share.google/1A1u7Vm1RyFM...
share.google
New MacSync macOS Stealer Uses Signed App to Bypass Apple Gatekeeper
A new MacSync macOS stealer spreads via a signed, notarized fake installer, bypassing Apple Gatekeeper before Apple revoked the certificate.
010
J0rgE @rnix1478.bsky.social · 25/12/2025
github.com/advisories/G...
github.com
CVE-2025-68664 - GitHub Advisory Database
LangChain serialization injection vulnerability enables secret extraction in dumps/loads APIs
010
J0rgE @rnix1478.bsky.social · 15/12/2025
mlq.ai/news/700cred...
mlq.ai
MLQ.ai | AI for investors
000
J0rgE @rnix1478.bsky.social · 15/12/2025
Source: BleepingComputer share.google/hBVc0JvgYqI6...
share.google
Over 10,000 Docker Hub images found leaking credentials, auth keys
More than 10,000 Docker Hub container images expose data that should be protected, including live credentials to production systems, CI/CD databases, or LLM model keys.
010
J0rgE @rnix1478.bsky.social · 10/12/2025
www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
Windows PowerShell now warns when running Invoke-WebRequest scripts
Microsoft says Windows PowerShell now warns when running scripts that use the Invoke-WebRequest cmdlet to download web content, aiming to prevent potentially risky code from executing.
000
J0rgE @rnix1478.bsky.social · 09/12/2025
www.darkreading.com/vulnerabilit...
darkreading.com
Exploitation Activity Ramps Up Against React2Shell
Attacks against CVE-2025-55182, which began almost immediately after public disclosure, have increased as more threat actors take advantage of the flaw.
000
J0rgE @rnix1478.bsky.social · 06/12/2025
Source: TechRadar share.google/1tkAZOH90uHN...
share.google
Over 70 US banks and credit unions affected by Marquis ransomware breach - here's what we know
Marquis was struck with ransomware
000
J0rgE @rnix1478.bsky.social · 06/12/2025
Source: Forbes share.google/4MZTelpmmeA9...
share.google
Google Starts Sharing All Your Text Messages With Your Employer
Warning: What happens on your Android, doesn’t stay on your Android — not if it's a work phone.
000
J0rgE @rnix1478.bsky.social · 13/11/2025
Source: BleepingComputer share.google/9XyCtzUWXiuq...
share.google
Hackers exploited Citrix, Cisco ISE flaws in zero-day attacks
An advanced threat actor exploited the critical vulnerabilities "Citrix Bleed 2" (CVE-2025-5777) in NetScaler ADC and Gateway, and CVE-2025-20337 affecting Cisco Identity Service Engine (ISE) as zero-...
000
J0rgE @rnix1478.bsky.social · 12/11/2025
Source: GBHackers News share.google/j39USur3S1lC...
share.google
Attackers Exploit Active Directory Sites to Escalate Privileges and Compromise Domain
Researchers have uncovered a dangerous attack vector targeting Active Directory Sites, a critical yet often overlooked component of enterprise network infrastructure.
000
J0rgE @rnix1478.bsky.social · 06/11/2025
Source: The Hacker News share.google/uqrxQs1pBk0w...
share.google
Cisco Warns of New Firewall Attack Exploiting CVE-2025-20333 and CVE-2025-20362
Cisco Warns of New Firewall Attack Exploiting CVE-2025-20333 and CVE-2025-20362 | Read more hacking news on The Hacker News cybersecurity news website and learn how to protect against cyberattacks and...
000
J0rgE @rnix1478.bsky.social · 04/11/2025
www.bleepingcomputer.com/news/securit...
bleepingcomputer.com
OAuth Device Code Phishing: Azure vs. Google Compared
Device code phishing abuses the OAuth device flow, and Google and Azure produce strikingly different attack surfaces. Register for Huntress Labs' Live Hack to learn about attack techniques, defensive ...
000
J0rgE @rnix1478.bsky.social · 02/11/2025
www.forbes.com/sites/daveyw...
forbes.com
Ongoing Ransomware Attacks Exploit Linux Vulnerability, CISA Warns
Three myths debunked in one warning from America's Cyber Defense Agency, CISA: Ransomware is not dead. Windows is not the only attack surface. Linux can be exploited.
000
J0rgE @rnix1478.bsky.social · 02/11/2025
Source: The Trail of Bits Blog share.google/zjo1BusyyK2u... Interesting reading
share.google
The cryptography behind electronic passports
This blog post describes how electronic passports work, the threats within their threat model, and how they protect against those threats using cryptography. It also discusses the implications of usin...
000