<?xml version="1.0" encoding="UTF-8"?>
<rss
    version="2.0"
    xmlns:atom="http://www.w3.org/2005/Atom"
>
    <channel>
        <atom:link
            type="application/rss+xml"
            href="https://loideveloper.io.vn/feed/posts"
            rel="self"
        />
        <title><![CDATA[Posts feed]]></title>
        <link><![CDATA[https://loideveloper.io.vn/feed/posts]]></link>
                <description><![CDATA[Latest posts from Ha Xuan Loi]]></description>
        <language>en_US</language>
        <pubDate>2025-10-14T03:08:52+07:00</pubDate>

                    <item>
                <title><![CDATA[Why Unmonitored JavaScript Is Your Biggest Holiday Security Risk]]></title>
                <link>https://loideveloper.io.vn/why-unmonitored-javascript-is-your-biggest-holiday-security-risk</link>
                <description><![CDATA[Think your WAF has you covered? Think again. This holiday season, unmonitored JavaScript is a critical oversight allowing attackers to steal payment data while your WAF and intrusion detection systems see nothing. With the 2025 shopping season weeks away, visibility gaps must close now.]]></description>
                                    <author><![CDATA[Hà Xuân Lợi <loideveloper.37@gmail.com>]]></author>
                                <guid>https://loideveloper.io.vn/why-unmonitored-javascript-is-your-biggest-holiday-security-risk</guid>
                <pubDate>Tue, 14 Oct 2025 03:08:52 +0700</pubDate>
                <enclosure
                    type="image/jpeg"
                    url="http://loideveloper.io.vn/storage/0b8617a7-f4b9-48ba-8bd2-0d3e27b6f2ae.jpg"
                    length="20762"
                />
                            </item>
                    <item>
                <title><![CDATA[⚡ Weekly Recap: WhatsApp Worm, Critical CVEs, Oracle 0-Day, Ransomware Cartel &amp; More]]></title>
                <link>https://loideveloper.io.vn/weekly-recap-whatsapp-worm-critical-cves-oracle-0-day-ransomware-cartel-more</link>
                <description><![CDATA[Every week, the cyber world reminds us that silence doesn't mean safety. Attacks often begin quietly — one unpatched flaw, one overlooked credential, one backup left unencrypted. By the time alarms sound, the damage is done.]]></description>
                                    <author><![CDATA[Hà Xuân Lợi <loideveloper.37@gmail.com>]]></author>
                                <guid>https://loideveloper.io.vn/weekly-recap-whatsapp-worm-critical-cves-oracle-0-day-ransomware-cartel-more</guid>
                <pubDate>Tue, 14 Oct 2025 03:03:04 +0700</pubDate>
                <enclosure
                    type="image/jpeg"
                    url="http://loideveloper.io.vn/storage/7d1a9548-5d78-4423-a695-42c03b91abad.jpg"
                    length="9276"
                />
                            </item>
                    <item>
                <title><![CDATA[New Rust-Based Malware "ChaosBot" Uses Discord Channels to Control Victims' PCs]]></title>
                <link>https://loideveloper.io.vn/new-rust-based-malware-chaosbot-uses-discord-channels-to-control-victims-pcs</link>
                <description><![CDATA[Cybersecurity researchers have disclosed details of a new Rust-based backdoor called ChaosBot that can allow operators to conduct reconnaissance and execute arbitrary commands on compromised hosts.]]></description>
                                    <author><![CDATA[Hà Xuân Lợi <loideveloper.37@gmail.com>]]></author>
                                <guid>https://loideveloper.io.vn/new-rust-based-malware-chaosbot-uses-discord-channels-to-control-victims-pcs</guid>
                <pubDate>Mon, 13 Oct 2025 16:41:05 +0700</pubDate>
                <enclosure
                    type="image/jpeg"
                    url="http://loideveloper.io.vn/storage/c3554336-fede-4a26-9886-501ebf61fcc2.jpg"
                    length="6696"
                />
                            </item>
                    <item>
                <title><![CDATA[New Oracle E-Business Suite Bug Could Let Hackers Access Data Without Login]]></title>
                <link>https://loideveloper.io.vn/new-oracle-e-business-suite-bug-could-let-hackers-access-data-without-login</link>
                <description><![CDATA[Oracle on Saturday issued a security alert warning of a fresh security flaw impacting its E-Business Suite that it said could allow unauthorized access to sensitive data.]]></description>
                                    <author><![CDATA[Hà Xuân Lợi <loideveloper.37@gmail.com>]]></author>
                                <guid>https://loideveloper.io.vn/new-oracle-e-business-suite-bug-could-let-hackers-access-data-without-login</guid>
                <pubDate>Mon, 13 Oct 2025 16:38:18 +0700</pubDate>
                <enclosure
                    type="image/jpeg"
                    url="http://loideveloper.io.vn/storage/86e6fc13-e5a1-4212-b44d-0cbdfa77bbcc.jpg"
                    length="10694"
                />
                            </item>
                    <item>
                <title><![CDATA[Astaroth Banking Trojan Abuses GitHub to Remain Operational After Takedowns]]></title>
                <link>https://loideveloper.io.vn/astaroth-banking-trojan-abuses-github-to-remain-operational-after-takedowns</link>
                <description><![CDATA[Cybersecurity researchers are calling attention to a new campaign that delivers the Astaroth banking trojan that employs GitHub as a backbone for its operations to stay resilient in the face of infrastructure takedowns.]]></description>
                                    <author><![CDATA[Hà Xuân Lợi <loideveloper.37@gmail.com>]]></author>
                                <guid>https://loideveloper.io.vn/astaroth-banking-trojan-abuses-github-to-remain-operational-after-takedowns</guid>
                <pubDate>Mon, 13 Oct 2025 16:35:14 +0700</pubDate>
                <enclosure
                    type="image/jpeg"
                    url="http://loideveloper.io.vn/storage/ca63d6f9-326f-4066-b28b-e113f1de32da.jpg"
                    length="21057"
                />
                            </item>
                    <item>
                <title><![CDATA[Experts Warn of Widespread SonicWall VPN Compromise Impacting Over 100 Accounts]]></title>
                <link>https://loideveloper.io.vn/experts-warn-of-widespread-sonicwall-vpn-compromise-impacting-over-100-accounts</link>
                <description><![CDATA[Experts Warn of Widespread SonicWall VPN Compromise Impacting Over 100 Accounts]]></description>
                                    <author><![CDATA[Hà Xuân Lợi <loideveloper.37@gmail.com>]]></author>
                                <guid>https://loideveloper.io.vn/experts-warn-of-widespread-sonicwall-vpn-compromise-impacting-over-100-accounts</guid>
                <pubDate>Sun, 12 Oct 2025 00:55:56 +0700</pubDate>
                <enclosure
                    type="image/jpeg"
                    url="http://loideveloper.io.vn/storage/40ce5390-bdde-45b6-939d-b5e76fe7a213.jpg"
                    length="7810"
                />
                            </item>
                    <item>
                <title><![CDATA[Hackers Turn Velociraptor DFIR Tool Into Weapon in LockBit Ransomware Attacks]]></title>
                <link>https://loideveloper.io.vn/hackers-turn-velociraptor-dfir-tool-into-weapon-in-lockbit-ransomware-attacks</link>
                <description><![CDATA[Hackers Turn Velociraptor DFIR Tool Into Weapon in LockBit Ransomware Attacks]]></description>
                                    <author><![CDATA[Hà Xuân Lợi <loideveloper.37@gmail.com>]]></author>
                                <guid>https://loideveloper.io.vn/hackers-turn-velociraptor-dfir-tool-into-weapon-in-lockbit-ransomware-attacks</guid>
                <pubDate>Sun, 12 Oct 2025 00:39:39 +0700</pubDate>
                <enclosure
                    type="image/jpeg"
                    url="http://loideveloper.io.vn/storage/318c0861-3479-48e6-afb9-e0592d891737.jpg"
                    length="10282"
                />
                            </item>
                    <item>
                <title><![CDATA[175 Malicious npm Packages with 26,000 Downloads Used in Credential Phishing Campaign]]></title>
                <link>https://loideveloper.io.vn/175-malicious-npm-packages-with-26000-downloads-used-in-credential-phishing-campaign</link>
                <description><![CDATA[Cybersecurity researchers have flagged a new set of 175 malicious packages on the npm registry that have been used to facilitate credential harvesting attacks as part of an unusual campaign.]]></description>
                                    <author><![CDATA[Hà Xuân Lợi <loideveloper.37@gmail.com>]]></author>
                                <guid>https://loideveloper.io.vn/175-malicious-npm-packages-with-26000-downloads-used-in-credential-phishing-campaign</guid>
                <pubDate>Sat, 11 Oct 2025 00:13:41 +0700</pubDate>
                <enclosure
                    type="image/jpeg"
                    url="http://loideveloper.io.vn/storage/934d57be-82f4-4deb-9a53-24b4262e6df7.jpg"
                    length="8480"
                />
                            </item>
                    <item>
                <title><![CDATA[CL0P-Linked Hackers Breach Dozens of Organizations Through Oracle Software Flaw]]></title>
                <link>https://loideveloper.io.vn/cl0p-linked-hackers-breach-dozens-of-organizations-through-oracle-software-flaw</link>
                <description><![CDATA[Dozens of organizations may have been impacted following the zero-day exploitation of a security flaw in Oracle's E-Business Suite (EBS) software since August 9, 2025, Google Threat Intelligence Group (GTIG) and Mandiant said in a new report released Thursday.]]></description>
                                    <author><![CDATA[Hà Xuân Lợi <loideveloper.37@gmail.com>]]></author>
                                <guid>https://loideveloper.io.vn/cl0p-linked-hackers-breach-dozens-of-organizations-through-oracle-software-flaw</guid>
                <pubDate>Sat, 11 Oct 2025 00:11:35 +0700</pubDate>
                <enclosure
                    type="image/jpeg"
                    url="http://loideveloper.io.vn/storage/ae1a4f13-3b33-401f-8770-be0ceffdaa02.jpg"
                    length="4998"
                />
                            </item>
                    <item>
                <title><![CDATA[From Detection to Patch: Fortra Reveals Full Timeline of CVE-2025-10035 Exploitation]]></title>
                <link>https://loideveloper.io.vn/from-detection-to-patch-fortra-reveals-full-timeline-of-cve-2025-10035-exploitation</link>
                <description><![CDATA[Fortra on Thursday revealed the results of its investigation into CVE-2025-10035, a critical security flaw in GoAnywhere Managed File Transfer (MFT) that's assessed to have come under active exploitation since at least September 11, 2025.]]></description>
                                    <author><![CDATA[Hà Xuân Lợi <loideveloper.37@gmail.com>]]></author>
                                <guid>https://loideveloper.io.vn/from-detection-to-patch-fortra-reveals-full-timeline-of-cve-2025-10035-exploitation</guid>
                <pubDate>Sat, 11 Oct 2025 00:09:13 +0700</pubDate>
                <enclosure
                    type="image/jpeg"
                    url="http://loideveloper.io.vn/storage/3871bd06-c9be-4ade-8c39-017eae93a338.jpg"
                    length="16208"
                />
                            </item>
                    <item>
                <title><![CDATA[Stealit Malware Abuses Node.js Single Executable Feature via Game and VPN Installers]]></title>
                <link>https://loideveloper.io.vn/stealit-malware-abuses-nodejs-single-executable-feature-via-game-and-vpn-installers</link>
                <description><![CDATA[Cybersecurity researchers have disclosed details of an active malware campaign called Stealit that has leveraged Node.js' Single Executable Application (SEA) feature as a way to distribute its payloads.]]></description>
                                    <author><![CDATA[Hà Xuân Lợi <loideveloper.37@gmail.com>]]></author>
                                <guid>https://loideveloper.io.vn/stealit-malware-abuses-nodejs-single-executable-feature-via-game-and-vpn-installers</guid>
                <pubDate>Sat, 11 Oct 2025 00:07:11 +0700</pubDate>
                <enclosure
                    type="image/jpeg"
                    url="http://loideveloper.io.vn/storage/67258c0f-009c-4b72-a53d-6b319cadbfd1.jpg"
                    length="5256"
                />
                            </item>
                    <item>
                <title><![CDATA[Microsoft Warns of 'Payroll Pirates' Hijacking HR SaaS Accounts to Steal Employee Salaries]]></title>
                <link>https://loideveloper.io.vn/microsoft-warns-of-payroll-pirates-hijacking-hr-saas-accounts-to-steal-employee-salaries</link>
                <description><![CDATA[A threat actor known as Storm-2657 has been observed hijacking employee accounts with the end goal of diverting salary payments to attacker-controlled accounts.]]></description>
                                    <author><![CDATA[Hà Xuân Lợi <loideveloper.37@gmail.com>]]></author>
                                <guid>https://loideveloper.io.vn/microsoft-warns-of-payroll-pirates-hijacking-hr-saas-accounts-to-steal-employee-salaries</guid>
                <pubDate>Sat, 11 Oct 2025 00:05:07 +0700</pubDate>
                <enclosure
                    type="image/jpeg"
                    url="http://loideveloper.io.vn/storage/089c5203-70de-463f-80c4-dbd1915f4146.jpg"
                    length="10202"
                />
                            </item>
                    <item>
                <title><![CDATA[CRITICAL SECURITY ALERT – UNAUTHORIZED ACCESS DETECTED]]></title>
                <link>https://loideveloper.io.vn/critical-security-alert-unauthorized-access-detected</link>
                <description><![CDATA[Your recent activity has triggered our intrusion detection system.]]></description>
                                    <author><![CDATA[Hà Xuân Lợi <loideveloper.37@gmail.com>]]></author>
                                <guid>https://loideveloper.io.vn/critical-security-alert-unauthorized-access-detected</guid>
                <pubDate>Fri, 10 Oct 2025 11:40:33 +0700</pubDate>
                <enclosure
                    type="image/png"
                    url="http://loideveloper.io.vn/storage/41551106-e7ed-4279-a0cb-b40f3f4e094f.png"
                    length="929278"
                />
                            </item>
                    <item>
                <title><![CDATA[From Phishing to Malware: AI Becomes Russia's New Cyber Weapon in War on Ukraine]]></title>
                <link>https://loideveloper.io.vn/from-phishing-to-malware-ai-becomes-russias-new-cyber-weapon-in-war-on-ukraine</link>
                <description><![CDATA[Russian hackers' adoption of artificial intelligence (AI) in cyber attacks against Ukraine has reached a new level in the first half of 2025 (H1 2025), the country's State Service for Special Communications and Information Protection (SSSCIP) said.]]></description>
                                    <author><![CDATA[Hà Xuân Lợi <loideveloper.37@gmail.com>]]></author>
                                <guid>https://loideveloper.io.vn/from-phishing-to-malware-ai-becomes-russias-new-cyber-weapon-in-war-on-ukraine</guid>
                <pubDate>Fri, 10 Oct 2025 06:17:28 +0700</pubDate>
                <enclosure
                    type="image/jpeg"
                    url="http://loideveloper.io.vn/storage/9d5d1f97-59b5-4c7a-88da-6b390946265f.jpg"
                    length="5846"
                />
                            </item>
                    <item>
                <title><![CDATA[From HealthKick to GOVERSHELL: The Evolution of UTA0388's Espionage Malware]]></title>
                <link>https://loideveloper.io.vn/from-healthkick-to-govershell-the-evolution-of-uta0388s-espionage-malware</link>
                <description><![CDATA[A China-aligned threat actor codenamed UTA0388 has been attributed to a series of spear-phishing campaigns targeting North America, Asia, and Europe that are designed to deliver a Go-based implant known as GOVERSHELL.]]></description>
                                    <author><![CDATA[Hà Xuân Lợi <loideveloper.37@gmail.com>]]></author>
                                <guid>https://loideveloper.io.vn/from-healthkick-to-govershell-the-evolution-of-uta0388s-espionage-malware</guid>
                <pubDate>Fri, 10 Oct 2025 06:14:31 +0700</pubDate>
                <enclosure
                    type="image/jpeg"
                    url="http://loideveloper.io.vn/storage/d40bc347-cc6b-47fd-b644-c1ddead454a4.jpg"
                    length="17644"
                />
                            </item>
                    <item>
                <title><![CDATA[New ClayRat Spyware Targets Android Users via Fake WhatsApp and TikTok Apps]]></title>
                <link>https://loideveloper.io.vn/new-clayrat-spyware-targets-android-users-via-fake-whatsapp-and-tiktok-apps</link>
                <description><![CDATA[A rapidly evolving Android spyware campaign called ClayRat has targeted users in Russia using a mix of Telegram channels and lookalike phishing websites by impersonating popular apps like WhatsApp, Google Photos, TikTok, and YouTube as lures to install them.]]></description>
                                    <author><![CDATA[Hà Xuân Lợi <loideveloper.37@gmail.com>]]></author>
                                <guid>https://loideveloper.io.vn/new-clayrat-spyware-targets-android-users-via-fake-whatsapp-and-tiktok-apps</guid>
                <pubDate>Fri, 10 Oct 2025 06:11:01 +0700</pubDate>
                <enclosure
                    type="image/jpeg"
                    url="http://loideveloper.io.vn/storage/f2e8ecf6-2e52-4efd-9540-316d134e1374.jpg"
                    length="7304"
                />
                            </item>
                    <item>
                <title><![CDATA[Critical Exploit Lets Hackers Bypass Authentication in WordPress Service Finder Theme]]></title>
                <link>https://loideveloper.io.vn/critical-exploit-lets-hackers-bypass-authentication-in-wordpress-service-finder-theme</link>
                <description><![CDATA[Threat actors are actively exploiting a critical security flaw impacting the Service Finder WordPress theme that makes it possible to gain unauthorized access to any account, including administrators, and take control of susceptible sites.]]></description>
                                    <author><![CDATA[Hà Xuân Lợi <loideveloper.37@gmail.com>]]></author>
                                <guid>https://loideveloper.io.vn/critical-exploit-lets-hackers-bypass-authentication-in-wordpress-service-finder-theme</guid>
                <pubDate>Thu, 09 Oct 2025 14:27:42 +0700</pubDate>
                <enclosure
                    type="image/jpeg"
                    url="http://loideveloper.io.vn/storage/7cd36d00-2246-4c25-b6b4-b83b7431f6f2.jpg"
                    length="6516"
                />
                            </item>
                    <item>
                <title><![CDATA[Analyzing ClickFix: The browser-based technique behind infostealer breaches]]></title>
                <link>https://loideveloper.io.vn/analyzing-clickfix-the-browser-based-technique-behind-infostealer-breaches</link>
                <description><![CDATA[ClickFix, FileFix, fake CAPTCHA — whatever you call it, attacks where users interact with malicious scripts in their web browser are a fast-growing source of security breaches.]]></description>
                                    <author><![CDATA[Hà Xuân Lợi <loideveloper.37@gmail.com>]]></author>
                                <guid>https://loideveloper.io.vn/analyzing-clickfix-the-browser-based-technique-behind-infostealer-breaches</guid>
                <pubDate>Thu, 09 Oct 2025 14:24:04 +0700</pubDate>
                <enclosure
                    type="image/png"
                    url="http://loideveloper.io.vn/storage/62ba616d-6ba1-4a7e-95d6-3b3e7b4baa02.png"
                    length="5324"
                />
                            </item>
                    <item>
                <title><![CDATA[Chinese Hackers Weaponize Open-Source Nezha Tool in New Attack Wave]]></title>
                <link>https://loideveloper.io.vn/chinese-hackers-weaponize-open-source-nezha-tool-in-new-attack-wave</link>
                <description><![CDATA[Threat actors with suspected ties to China have turned a legitimate open-source monitoring tool called Nezha into an attack weapon, using it to deliver a known malware called Gh0st RAT to targets.]]></description>
                                    <author><![CDATA[Hà Xuân Lợi <loideveloper.37@gmail.com>]]></author>
                                <guid>https://loideveloper.io.vn/chinese-hackers-weaponize-open-source-nezha-tool-in-new-attack-wave</guid>
                <pubDate>Thu, 09 Oct 2025 00:50:09 +0700</pubDate>
                <enclosure
                    type="image/jpeg"
                    url="http://loideveloper.io.vn/storage/e0860d64-b926-40e2-bbdd-76ffff3aa0ee.jpg"
                    length="13088"
                />
                            </item>
                    <item>
                <title><![CDATA[Hackers Exploit WordPress Sites to Power Next-Gen ClickFix Phishing Attacks]]></title>
                <link>https://loideveloper.io.vn/hackers-exploit-wordpress-sites-to-power-next-gen-clickfix-phishing-attacks</link>
                <description><![CDATA[Cybersecurity researchers are calling attention to a nefarious campaign targeting WordPress sites to make malicious JavaScript injections that are designed to redirect users to sketchy sites.]]></description>
                                    <author><![CDATA[Hà Xuân Lợi <loideveloper.37@gmail.com>]]></author>
                                <guid>https://loideveloper.io.vn/hackers-exploit-wordpress-sites-to-power-next-gen-clickfix-phishing-attacks</guid>
                <pubDate>Thu, 09 Oct 2025 00:41:43 +0700</pubDate>
                <enclosure
                    type="image/jpeg"
                    url="http://loideveloper.io.vn/storage/48f2c12e-9d73-4b18-94cb-b9c9d36fe112.jpg"
                    length="13420"
                />
                            </item>
            </channel>
</rss>
