Intelligence Feed
- ZDI-26-718: Cisco ISE MnTRESTLivelogService XML External Entity Processing Information Disclosure Vulnerability
- Auditing in the age of (good enough) AI
- A Vault with a Heap-View: The Uncomfortable Space Between AgentCore Harness and Identity
- Foreign actors breach Colorado water systems
- Ransomware attack on Kansas county will affect some services
- HHS OCR Settles HIPAA Security Rule Violations with Ambry Genetics
- Fake parcel delivery messages steal your card and bank details
- Did an AI really try to break free from human control?
- New Android malware uses AI to steal bank logins and PINs
- TraderTraitor Backdoors Resurface on Victim with No Crypto Ties
- HTTP QUERY Method: The Grey Zone Between GET And POST.
- Anthropic's Claude Struggles with CAPTCHAs
- Friday Squid Blogging: On Squid Egg Sacs
- Secure Enterprise Sharing with Access Reviews for Microsoft 365
- Fake LastPass Authenticator GitHub repos push new Rapuncel infostealer
- Gyazo Server Flaw Exposes 23.6 Million User Records
- Transparent Tribe Deploys New Rust Backdoor Using Private GitHub Repositories for C2
- New WordPress Click2Shell Flaw Forces Theme Installs, Can Chain to Code Execution
- Public Exploits Released for Four Linux Kernel Flaws That Enable Local Root
- ZDI-26-714: Samsung rlottie Stack-based Buffer Overflow Remote Code Execution Vulnerability