SecurityInjective Labs GitHub Compromise Pushes Wallet-Key-Stealing npm Packages
VulnerabilitySix New U-Boot Flaws Could Let Malicious Images Crash Devices or Run Code at Boot
SecurityLaser Attack Resets Tangem Wallet Passwords on Cards That Can't Be Patched
VulnerabilityResearcher Details WhatsApp-to-Host Attack Chain Using Three OpenClaw Flaws
MalwareNew MODBEACON RAT Uses gRPC Streaming for Encrypted C2 Traffic
VulnerabilityUnpatched XRING Flaw in XQUIC Lets Remote Clients Crash HTTP/3 Servers
SecurityFrom 17,000 to 1.1 Million Assets: How Lumen Technologies Rebuilt Exposure Management at Scale
BreachExposed Hacker Server Reveals WP-SHELLSTORM Backdooring Thousands of WordPress Sites
BreachStudy of 281 Free Android VPN Apps Finds Traffic Leaks, Unencrypted Data, and Tracking
SecurityHackers Use Fake Microsoft Entra Passkey Enrollment to Gain Microsoft 365 Access
VulnerabilityAttackers Exploit 'Ill Bloom' Vulnerability to Drain Over $5 Million From Cryptocurrency Wallets
MalwareRansomware Negotiator Gets 70 Months in Prison for Aiding BlackCat Attacks
SecurityMy Stack Simulator, (Wed, Jul 8th)
Malware"Comment stuffing" in an HTML phishing attachment as a mechanism for evading AI-based detection?, (Fri, Jul 10th)
SecurityISC Stormcast For Friday, July 10th, 2026 https://isc.sans.edu/podcastdetail/10002, (Fri, Jul 10th)
SecurityISC Stormcast For Thursday, July 9th, 2026 https://isc.sans.edu/podcastdetail/10000, (Thu, Jul 9th)
Security_HELP_ME_ESCAPE_FROM_BELARUS_PLEASE_ [Guest Diary], (Tue, Jul 7th)
SecurityISC Stormcast For Wednesday, July 8th, 2026 https://isc.sans.edu/podcastdetail/9998, (Wed, Jul 8th)
SecurityMore Odd DNS Records: NIMLOC, (Tue, Jul 7th)
SecurityISC Stormcast For Tuesday, July 7th, 2026 https://isc.sans.edu/podcastdetail/9996, (Tue, Jul 7th)
APTRCS and DNS: The NAPTR Record, (Mon, Jul 6th)
SecurityISC Stormcast For Monday, July 6th, 2026 https://isc.sans.edu/podcastdetail/9994, (Mon, Jul 6th)
VulnerabilityWolfSSL, GeoVision, VTK vulnerabilities
SecurityWinning 54% of the time
MalwareUAT-7810 continues building ORB networks using new malware
SecurityCatan and Mouse
SecurityMartin Lee: Running through the Arctic (and the threat landscape)
SecurityARToken: Inside an EvilTokens affiliate panel targeting Microsoft 365
SecurityBeyond IOCs: AI-enabled threat intelligence
SecurityIntroduction to COM usage by Windows threats
SecurityClose Encounters of the Human Kind
SecurityScripting the disassembler: Local agentic reverse engineering through vbdec’s live COM object model
SecurityA tale of two eras
VulnerabilityMicrosoft Patch Tuesday for June 2026 — Snort rules and prominent vulnerabilities
MalwareVidar Stealer Unmasked: Code Signing Abuse, Go Loaders and File Inflation
SecurityHow We Added WebAuthn to a Browser-Based RDP Client
SecurityPhantom Squatting: AI-Hallucinated Domains as a Software Supply Chain Vector
SecurityThreat Brief: Mitigating Large-Scale Credential Attacks
SecurityCL-STA-1062 Targets Southeast Asian Governments and Critical Infrastructure
SecurityOpenClaw’s Skill Marketplace and the Emerging AI Supply Chain Threat
MalwareThe Global Namespace Risk: Universal Bucket Hijacking Technique for Cloud Data Exfiltration
VulnerabilityPickle in the Middle – Hijacking Vertex AI Model Uploads for Cross-Tenant RCE
SecurityInside the Modern SOC: The 72-Minute Race
SecurityTracing Digital Intent: New MacOS Tahoe 26 Artifact Discovered
SecurityTrust No Skill: Integrity Verification for AI Agent Supply Chains
SecurityBlinding the Watchmen: Abusing Cloud Logging Services for Defense Evasion and Visibility
SecurityCavern Manticore: Exposing Iran-Linked Modular C2 Framework
Security6th July – Threat Intelligence Report
Security22nd June – Threat Intelligence Report
MalwareBrowser-Only Ransomware: From LLM Hallucinations to a Practical Attack Technique
Security29th June – Threat Intelligence Report
SecurityFrom Stars to Upvotes: Fake Reputation Fueling a Crypto Clipboard Hijacker
Security15th June – Threat Intelligence Report
VulnerabilityFrom SQLi to RCE – Exploiting LangGraph’s Checkpointer
Security8th June – Threat Intelligence Report
MalwareImpersonation, Click Hijacking, and TDS: Inside a Malware Distribution Ecosystem
Security1st June – Threat Intelligence Report
SecurityAI Threat Landscape Digest March-April 2026
The Hacker News · SANS ISC · Talos · SecureList · Unit 42 · CheckPoint · Dark Reading ·
No tracking · No ads · Server-side RSS · Cached 30 min