search
infosec community
Trends
- 1Security researcher flags suspected phishing site on Blogspot●Possible Phishing 🎣 on: ⚠️hxxps[:]//ivvvaaannaaalaaawiiiiifamilly[.]blogspot[.]com/ 🧬 Analysis at: https:// urldna.io/sc
A cybersecurity analyst has raised an alert over a suspected phishing page hosted on a Blogspot address with a deliberately distorted spelling designed to imitate a legitimate site. The suspicious link was shared with its characters broken up so it cannot be clicked accidentally, and a technical breakdown of the domain was published via a URL analysis service. The post circulated with phishing and scam hashtags among infosec followers.
- 2BitShot app promo video showcases crypto tracking process●And here is promo video for BitShot app, similar to an article I wrote earlier but showcasing the whole process with scr
A security researcher has shared a promotional video for BitShot, an app demonstrating a complete screen-recorded process tied to bitcoin, OSINT and data scraping. The demo follows an earlier written article by the same person and highlights the tool's open-source approach to cryptocurrency monitoring and privacy-related security research.
- 3Open-source syscall-based implant and C2 tool released●Cross-platform syscall-powered implant & C2 — direct syscalls (Win), raw syscalls (Linux), HTTPS/DNS/ICMP channels. No w
Security researchers are discussing VoidSyscall, a newly shared open-source cross-platform implant and command-and-control framework. The tool uses direct syscalls on Windows and raw syscalls on Linux, bypassing the standard WinAPI layer, and supports HTTPS, DNS and ICMP channels for communication. It is aimed at red team and penetration testing use, and is drawing attention within the infosec community for its evasion-focused design.
- 4Fake Facebook blogspot page flagged as phishing site●Possible Phishing 🎣 on: ⚠️hxxps[:]//zeta-facebook[.]blogspot[.]com 🧬 Analysis at: https:// urldna.io/scan/6abda2b43b7750
Security researchers are warning about a suspected phishing site hosted on a Blogspot address impersonating Facebook. The domain has been defanged and shared alongside a public URL analysis report so others can inspect its infrastructure without risk. Alerts like this circulate in cybersecurity communities to warn users off fake login pages and to help defenders block malicious domains quickly.
- 5Possible phishing site flagged impersonating Toronto Construction Association▼Possible Phishing 🎣 on: ⚠️hxxp[:]//tcaconnect[.]ac-page[.]com/toronto-construction-association-inc 🧬 Analysis at: https:
Cybersecurity researchers are warning of a possible phishing page hosted on a domain mimicking the Toronto Construction Association, shared via a defanged link and analyzed through the URLDNA scanning service. The alert circulates in infosec communities, urging recipients to avoid the link and verify any communications claiming to come from the association.
- 6Cybersecurity researchers flag suspected Office 365 phishing domain●Possible Phishing 🎣 on: ⚠️hxxp[:]//office365licensingsupport[.]com 🧬 Analysis at: https:// urldna.io/scan/6abd40193b7750
Security researchers are warning about a suspected phishing site at office365licensingsupport.com, a domain name that imitates Microsoft's Office 365 branding to trick users into handing over credentials. A public analysis of the domain has been shared via the URLdna scanning service, and warnings are circulating in infosec communities with the domain deliberately defanged to prevent accidental clicks.
- 7Security researchers flag phishing page hosted on GitHub Pages●Possible Phishing 🎣 on: ⚠️hxxps[:]//mail-account-data[.]github[.]io/baec-invitation-tender/beac/error[.]html 🧬 Analysis
Cybersecurity analysts are warning about a phishing site hosted on GitHub Pages that mimics a mail account login, disguised as a BEAC invitation tender page. The suspicious link has been shared with a URL analysis scan so others can inspect its infrastructure. Security communities are urging people to avoid entering credentials on such pages, noting that GitHub Pages hosting is commonly abused to make phishing links look legitimate.
- 8Rebelloon archive book arrival lifts spirits amid ongoing work●Was feeling a little down about all the work that's left to be done when my # rebelloonarchive book arrived today. Remin
A member of the infosec community shared that the arrival of their Rebelloon archive book lifted their mood during a stressful stretch of remaining work. They said the book reminded them how hopeless things felt last January and how they managed to pull through anyway, offering encouragement to others in the bookstodon community facing their own workload.
- 9Critical unauthenticated PHP object injection flaw flagged in Booking Activities▼🚨 CVE-2026-97248 — CVSS 9.8 CRITICAL Unauthenticated PHP Object Injection in Booking Activities 🔎 Details: https:// stem
Security researchers are warning about CVE-2026-97248, a critical vulnerability in the Booking Activities plugin rated 9.8 on the CVSS scale. The flaw is an unauthenticated PHP object injection issue, meaning remote attackers could potentially exploit it without any credentials. Details are being circulated in infosec communities as administrators are urged to check their installations and patch promptly.
- 10Security researcher flags fake Amazon domain▼Possible Phishing 🎣 on: ⚠️hxxps[:]//amazon-arrived[.]com 🧬 Analysis at: https:// urldna.io/scan/6abca5ba3b77500 00955bde
A cybersecurity researcher has flagged a suspicious website at the address amazon-arrived.com as likely phishing, warning that the domain mimics Amazon to deceive visitors. An automated analysis of the URL has been published via the URLDNA scanning service. The alert is being shared within the infosec community, where users are cautioning others not to click links or enter credentials on the site.
- 11Warning issued over phishing attempt on German quote website●Possible Phishing 🎣 on: ⚠️hxxps[:]//www[.]dietzens[.]de/seiten/zitate/auswahl[.]php?suche=%22%2F%3E%3Cimg%20src%3D%22hxx
Security researchers are flagging a possible phishing attack involving the website dietzens.de. A malicious URL on the site's quote search page appears to exploit an image injection technique, redirecting visitors to an external address. The alert, shared on Mastodon by the threat-intelligence account urldna, has drawn attention from the infosec community, who urge users to avoid clicking unsolicited links pointing to the domain.
- 12Firefox flags ip.me with serious security warning●Anyone getting this error too? 🤔 🤷🏼 🫸🏼 "Be careful. Something doesn’t look right. # Firefox spotted a potentially seriou
Firefox users are reporting a browser warning claiming the site ip.me may be a security risk, saying someone could be impersonating the site to steal credit card details, passwords or emails. Users are asking whether others are seeing the same alert, and the reports are circulating among infosec and privacy-minded communities trying to work out whether it is a false positive or a genuine impersonation threat.
- 13Security researchers flag phishing site hosted on Weebly▼Possible Phishing 🎣 on: ⚠️hxxps[:]//esnetdeskfreenetserverservicesdkx[.]weebly[.]com 🧬 Analysis at: https:// urldna.io/s
Cybersecurity researchers are warning about a possible phishing site operating through a Weebly-hosted page that impersonates network or helpdesk services. The suspicious link has been defused and shared with a technical analysis via urldna.io so that other security professionals can inspect the domain and its infrastructure. The report has circulated in infosec communities, which frequently post such alerts to warn the public about scam pages before they spread more widely.
- 14Hacking IP Cameras: Tutorial Exploits Security Flaws●# Hacking IP Cameras: Exploiting Vulnerabilities with Master Hacker Occupy... https:// youtu.be/zCmC5IffIZg?si=s-M4Ob tK
A cybersecurity tutorial is circulating that demonstrates how to hack IP cameras by exploiting their vulnerabilities. Presented under the Occupy banner, the walkthrough covers common weaknesses in consumer surveillance devices and how attackers can abuse them. The item highlights ongoing concerns about poorly secured internet-connected cameras, whose default passwords and unpatched firmware make them frequent targets for intrusion and botnet recruitment.
- 15Security researchers flag possible phishing site on weebly.com▼Possible Phishing 🎣 on: ⚠️hxxps[:]//general-trading[.]weebly[.]com 🧬 Analysis at: https:// urldna.io/scan/6abc66db3b7750
Cybersecurity observers are warning about a suspected phishing page hosted at general-trading.weebly.com, sharing the address in defanged form so others do not accidentally visit it. A technical scan of the URL has been published on urldna.io for analysts to review. The alerts are circulating in infosec communities with tags for phishing, scams and general cybersecurity awareness.
- 16Fake Wells Fargo login page flagged as phishing site▼Possible Phishing 🎣 on: ⚠️hxxps[:]//sites[.]google[.]com/view/wellsfargologinu 🧬 Analysis at: https:// urldna.io/scan/6a
Security researchers are flagging a fraudulent Wells Fargo login page hosted on a Google Sites address, designed to steal customers' banking credentials. The link has been defanged to prevent accidental clicks, and a public scan on URLDNA lets others inspect the site's characteristics. The warning has circulated among infosec community members tracking phishing campaigns.
- 17Fake Facebook phishing site flagged by security researchers●Possible Phishing 🎣 on: ⚠️hxxps[:]//facebook-eu[.]blogspot[.]com/?m=1 🧬 Analysis at: https:// urldna.io/scan/6abcb39a3b7
Security researchers are warning of a phishing site impersonating Facebook, hosted on the address facebook-eu.blogspot.com. The Blogspot domain is a common tactic to lend fake pages legitimacy. The site was submitted to the URLdna scanning service for analysis, and the warning was shared in cybersecurity circles with tags for phishing, scams and infosec. Users are advised to avoid the link and verify Facebook logins only via the official domain.
- 18CrowdSec typo leaves cybersecurity user embarrassed●Wanted to type @ CrowdSec into my browser and ended up with crowdsex. Don’t judge me! # InfoSec
A user in the infosec community shared a slip of the fingers while trying to visit the website of CrowdSec, a cybersecurity company, accidentally landing on a lookalike address reading 'crowdsex' instead. The anecdote was shared lightheartedly, inviting others not to judge, and highlights how easily security-related domain names can be mistyped.
- 19Security researchers flag suspected Amazon phishing domain●Possible Phishing 🎣 on: ⚠️hxxp[:]//amazoninvit[.]com 🧬 Analysis at: https:// urldna.io/scan/6abb5baf3b77500 0050fcbb3 #
Cybersecurity researchers are warning about a suspected phishing site at the domain amazoninvit.com, which impersonates Amazon, likely luring victims through fake invitation or delivery messages. The domain has been submitted for technical analysis on the URLdna scanning platform, and the warning is circulating in information security communities with phishing and scam alerts.
- 20Security Researchers Flag Phishing Site Hosted on Google Sites▼Possible Phishing 🎣 on: ⚠️hxxps[:]//sites[.]google[.]com/view/oiuiruieor98490krejjkljklejkef/home 🧬 Analysis at: https:/
Cybersecurity researchers are warning about a phishing page hosted on Google Sites, sharing a defanged link and a scan report on urlDNA for analysis. The alerts circulated in infosec channels, with warnings that the site is designed to deceive visitors into handing over credentials or personal data. The use of a legitimate Google domain highlights how attackers exploit trusted hosting services.
- 21Security researchers flag possible phishing link▼Possible Phishing 🎣 on: ⚠️hxxps[:]//tinyurl[.]com/e7exuktd 🧬 Analysis at: https:// urldna.io/scan/6abbd2873b77500 0034a0
Cybersecurity analysts are warning about a possible phishing campaign distributed through a shortened TinyURL link. A link-analysis service has published a scan of the address so that users can inspect where the redirect leads before clicking. Alerts like this circulate in information-security communities to warn people off suspicious links and demonstrate how shortened URLs can hide malicious destinations.
- 22Newly exposed host spotted in Fremont data centre●ASN: 63949 Location: Fremont, US Added: 2026-09-29T13:59 # shodansafari # infosec
Security researchers are flagging an internet-facing host registered to ASN 63949, a network range operated by Linode in Fremont, California, that was indexed on 29 September 2026. The finding circulated in information security circles under the shodansafari hashtag, where practitioners share and discuss newly exposed servers, open ports and misconfigured devices discovered through internet-wide scanning.
- 23Security researchers flag possible phishing site 21argarena4.com▼Possible Phishing 🎣 on: ⚠️hxxp[:]//21argarena4[.]com 🧬 Analysis at: https:// urldna.io/scan/6abb5baa3b77500 004b4aab1 #
Cybersecurity observers are warning about a possible phishing website at 21argarena4.com. The domain, which imitates the Arena of Valor ARG Arena branding, has been defanged in warnings and submitted to the URLdna scanning service for analysis. The alert is being shared within infosec communities alongside tags for phishing, scams and general cybersecurity awareness.
- 24Engineers urged to compare system descriptions against state of the art●I really like the idea of writing out a description of your system and then comparing it to the current state of the art
An engineering guide, 'A Staff Engineer's Guide to Inventing Work' by Sujith Jay, is being shared for its suggestion that engineers write out a description of their current system and compare it to the state of the art before inventing new work. Commenters in the engineering and infosec community are endorsing the practice as a practical way to spot gaps and justify new projects.
- 25Security Researchers Flag Facebook Phishing Site on Blogspot●Possible Phishing 🎣 on: ⚠️hxxps[:]//facebok-facebook[.]blogspot[.]com/?m=1 🧬 Analysis at: https:// urldna.io/scan/6abae3
Cybersecurity observers are warning about a suspected phishing site impersonating Facebook, hosted at a lookalike Blogspot address. The domain 'facebok-facebook.blogspot.com' uses a misspelling of the platform's name to trick users. A scan of the URL has been published on URLDNA so others can review the technical details. The warning is circulating among infosec communities, with users urged to treat the link as a scam and avoid entering any credentials.
- 26Microsoft-linked network spotted announcing IP space from Oslo●ASN: AS8075 Location: Oslo, NO Added: 2026-09-25T18:01 # shodansafari # infosec
Autonomous System 8075, the network operated by Microsoft, was observed announcing IP address space located in Oslo, Norway. The observation was logged and shared on 25 September 2026 with the cybersecurity community under the tag #shodansafari. This type of sighting is used by security researchers to track how large cloud and technology providers extend their network presence into new regions and data centre locations.