A mysterious group has hijacked Tor exit nodes to perform SSL stripping attacks

The group ran almost a quarter of all Tor exit nodes. Group still controls 10% of all Tor exit nodes today.

Bad news for vBulletin users:

A security researcher has published yesterday details and exploit code for a vBulletin zero-day

- PoCs available in Bash, Python, and Ruby
- Zero-day is a bypass for CVE-2019-16759, a previous vBulletin zero-day, disclosed in Sep 2019


China is now blocking all encrypted HTTPS traffic that uses TLS 1.3 and ESNI.


Not unexpected, and might be the the first one many countries/companies blocking it.

Crazily Obfuscated PHP backdoor:


Decoded and information here:


A hacker has published today a list of plaintext usernames and passwords, along with IP addresses for more than 900 Pulse Secure VPN enterprise servers.

According to a review, the list includes:

IP addresses of Pulse Secure VPN servers
Pulse Secure VPN server firmware version
SSH keys for each server
A list of all local users and their password hashes
Admin account details
Last VPN logins (including usernames and cleartext passwords)
VPN session cookies


