Ink Dragon’s Relay Network and Stealthy Offensive Operation

Key Findings In recent months, Check Point Research has identified a new wave of attacks attributed to the Chinese threat actor Ink Dragon. Ink Dragon overlaps with threat clusters publicly reported as Earth Alux, Jewelbug, REF7707, CL-STA-0049, among others. Ink Dragon has expanded its operational focus to new regions – In the last few months, the threat actor’s activities show increased focus on…

Read More

Why it’s time to reset our expectations for AI

Instead we got AI slop, chatbot psychosis, and tools that urgently prompt you to write better email newsletters. Maybe we got what we deserved. Or maybe we need to reevaluate what AI is for. That’s the reality at the heart of a new series of stories, published today, called Hype Correction. We accept that AI…

Read More

esm-dev 136 – Path Traversal

# Exploit Title: esm-dev 136 – Path Traversal # Date: 2025-07-11 # Exploit Author: Byte Reaper #Vendor Homepage: https://github.com/esm-dev/esm.sh # Software Link: https://github.com/esm-dev/esm.sh # CVE-2025-59342 – File : exploit.c – Date : 09/17/2025 – Target : esm-dev – Version: 136 – Target Endpoint : /transform – Target Header : X-Zone-Id – Vuln : …

Read More

Summar Employee Portal 3.98.0 – Authenticated SQL Injection

# Exploit Title: Summar Employee Portal 3.98.0 – Authenticated SQL Injection # Google Dork: inurl:”/MemberPages/quienesquien.aspx” # Date: 09/22/2025 # Exploit Author: Peter Gabaldon – https://pgj11.com/ # Vendor Homepage: https://www.summar.es/ # Software Link: https://www.summar.es/software-recursos-humanos/ # Version: < 3.98.0 # Tested on: Kali # CVE: CVE-2025-40677 # Description: SQL injection vulnerability in Summar Software´s Portal del Empleado….

Read More