Detection Engineering

Live Detection Feed

200 reports with real, generated multi-format detection content — refreshed automatically as new intelligence is ingested.

This live feed aggregates real detection content (Sigma, KQL, Splunk, osquery, Suricata) generated alongside individual intelligence reports as they are published. For the 8 hand-curated flagship Sigma rules covering major CISA KEV vulnerabilities, see the Detection Engineering hub.

2026-07-29 · MEDIUM

Hugging Face built an interactive replay of the OAl agent that breached them

Suricata (1)
View full report + detection content →
2026-07-29 · HIGH

netfoil: Incorrect block responses could lead to localhost traffic

Suricata (1)
View full report + detection content →
2026-07-29 · HIGH

proot-distro has a Container Isolation Bypass via Crafted Restore Archive

Suricata (1)
View full report + detection content →
2026-07-28 · HIGH

Style Dictionary - Prototype Pollution in convertTokenData utility function

Suricata (2)
View full report + detection content →
2026-07-28 · HIGH

`datamodel-code-generator` vulnerable to code injection via unescaped carriage return in `--extra-template-data` `comment` field

Suricata (2)
View full report + detection content →
2026-07-28 · HIGH

datamodel-code-generator vulnerable to SSRF via --url: no host/IP validation, follows redirects

Suricata (1)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-28 · MEDIUM

Flying Eagle Android RAT: TLS Certificate Pivots, Panel Fingerprints, and 170 Servers Across Hong Kong ASNs

Suricata (2)
View full report + detection content →
2026-07-28 · HIGH

How We Hacked Thousands of Data Centers in Minutes Using a 20-Year-Old Vulnerability

Suricata (2)
View full report + detection content →
2026-07-26 · MEDIUM

PoCumentary, an agent-friendly tool for recording PoCs

Suricata (3)
View full report + detection content →
2026-07-26 · MEDIUM

Update: Thank you guys so much for all the help!

Suricata (3)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-25 · MEDIUM

Reverse Engineering Windows Data Deduplication: From Research to an Open-Source Recovery Tool

Suricata (3)
View full report + detection content →
2026-07-24 · HIGH

CVE-2026-16632: A flaw has been found in boazsegev facil.io up to 0.7.4. Affected is the function websocket_on_protocol_error in the lib

Suricata (1)
View full report + detection content →
2026-07-24 · MEDIUM

Announcing the External Penetration Testing Program Pack

Suricata (1)
View full report + detection content →
2026-07-24 · HIGH

@fastify/static vulnerable to route guard bypass via path traversal

Suricata (1)
View full report + detection content →
2026-07-24 · HIGH

js-yaml: Exponential parsing time in flow collections leads to denial of service

Suricata (1)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-24 · HIGH

Claude Code: Sandbox Escape via Git Worktree Path Confusion Allows Unsandboxed Code Execution

Suricata (1)
View full report + detection content →
2026-07-24 · HIGH

electron-updater: Cross-origin redirect leaks `PRIVATE-TOKEN` and mixed-case `Authorization` credentials in `builder-util-runtime`

Suricata (1)
View full report + detection content →
2026-07-24 · HIGH

React Router: Unauthenticated Denial of Service via Inefficient Route Matching

Suricata (1)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-24 · HIGH

electron-updater: Uncontrolled search path elements within `AppImage` built by `app-builder-lib`

Suricata (1)
View full report + detection content →
2026-07-24 · HIGH

CVE-2026-12688 - ProfileGrid < 5.9.9.7 - Unauthenticated Payment Bypass and Forced Group Membership via PayPal IPN Forgery

Suricata (1)
View full report + detection content →
2026-07-24 · CRITICAL

Critical: Cal.com before 5.9.9 Remote Code Execution via RSC (CVE-2025-55182)

Suricata (1)
View full report + detection content →
2026-07-24 · CRITICAL

CVE-2025-71389 - Cal.com before 5.9.9 Remote Code Execution via RSC

Suricata (1)
View full report + detection content →
2026-07-23 · MEDIUM

Amplitude customers using domain proxies should update their configuration immediately.

Suricata (1)
View full report + detection content →
2026-07-23 · MEDIUM

A project is publishing full analyses of AI-discovered 0-days - first batch of 10 with reproducible exploits

Suricata (2)
View full report + detection content →
2026-07-22 · MEDIUM

Cybersecurity statistics of the week (July 13th - July 19th)

Suricata (2)

MITRE ATT&CK: [object Object], [object Object]

View full report + detection content →
2026-07-22 · MEDIUM

I ran a paid bug-bounty-style game against my own multimodal prompt firewall, it didn't make money, so here's the code, the model and 13k real bypass attempts

Suricata (3)
View full report + detection content →
2026-07-22 · HIGH

I was reporter #11 for a WPForms PayPal webhook vulnerability (CVE-2026-4986)

Suricata (3)
View full report + detection content →
2026-07-21 · HIGH

Gitea: Denial of Service (CPU & Memory Exhaustion) via O(N^2) String Concatenation in Debian Package Upload

Suricata (1)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-21 · HIGH

fast-uri vulnerable to host confusion via failed IDN canonicalization

Suricata (1)
View full report + detection content →
2026-07-21 · HIGH

PostgreSQL JDBC Driver: Silent channel-binding authentication downgrade via unsupported certificate algorithms

Suricata (1)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-21 · HIGH

Microsoft Security Advisory CVE-2026-50527 – .NET Denial of Service Vulnerability

Suricata (1)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-21 · HIGH

Microsoft Security Advisory CVE-2026-50650 – .NET Elevation of Privilege Vulnerability

Suricata (1)
View full report + detection content →
2026-07-21 · HIGH

Microsoft Security Advisory CVE-2026-56170 – .NET Denial of Service Vulnerability

Suricata (2)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-21 · HIGH

Microsoft Security Advisory CVE-2026-47303 – .NET Elevation of Privilege Vulnerability

Suricata (2)
View full report + detection content →
2026-07-21 · HIGH

Microsoft Security Advisory CVE-2026-47300 – .NET Elevation of Privilege Vulnerability

Suricata (2)
View full report + detection content →
2026-07-21 · MEDIUM

NotCVE registry index — public records of vulnerabilities that shipped without a CVE

Suricata (2)
View full report + detection content →
2026-07-21 · MEDIUM

XSSer v.1.9 - "Bl4ck Swarm!" released

Suricata (2)
View full report + detection content →
2026-07-21 · MEDIUM

New Release: UFONet v2.0 - "R3DST4R!"...

Suricata (2)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-20 · HIGH

Composer: Arbitrary file write outside vendor via malicious transitive package name

Suricata (1)
View full report + detection content →
2026-07-20 · HIGH

vLLM denial of service via prompt embeds on M-RoPE models

Suricata (1)

MITRE ATT&CK: [object Object], [object Object]

View full report + detection content →
2026-07-19 · MEDIUM

Recovering from a malicious APK installation on CMF Phone. HELP!

Sigma (1)KQL (1)Splunk (1)osquery (1)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-19 · HIGH

CVE-2026-13473: IBM Storage Protect Client 8.1.0.0 through 8.1.27.0, 8.1.27.1, and 8.2.0.0 through 8.2.1.0 IBM Storage Protect is vulner

Suricata (5)
View full report + detection content →
2026-07-19 · MEDIUM

From 50 to 703: Expanding Unit 42's Gameograf Adware Chrome Extension Campaign

Suricata (1)
View full report + detection content →
2026-07-17 · HIGH

Prompty: Arbitrary file read via file reference expansion

Suricata (1)
View full report + detection content →
2026-07-17 · HIGH

CVE lookup that shows the actual fix (KB / package version / Apple train), plus a no-key API. Built partly because NVD's API keeps flaking out

Suricata (2)
View full report + detection content →
2026-07-17 · HIGH

CVE-2026-50147: Metabase is an open-source business intelligence and embedded analytics tool. From 1.57.0 until 1.57.19.1, 1.58.14.1, 1.

Suricata (2)
View full report + detection content →
2026-07-17 · MEDIUM

AI security project: PromptShield

Suricata (1)
View full report + detection content →
2026-07-17 · MEDIUM

If you've given an AI agent real credentials, how are you scoping what it can reach?

Suricata (3)
View full report + detection content →
2026-07-17 · MEDIUM

Published research article on IEEE about supply chain attacks and preventive security measures

Suricata (7)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-17 · MEDIUM

deberíaa pagar por esto?

Suricata (4)
View full report + detection content →
2026-07-17 · MEDIUM

Is ast_grep_cli 0.44.1 on PyPI compromised? Windows Defender detected Trojan:Win64/Lazy!MTB during install

Suricata (3)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-17 · MEDIUM

Alerts on Server Loopback Traffic?

Suricata (3)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-17 · MEDIUM

Advice on Detection Engineering

Suricata (4)
View full report + detection content →
2026-07-17 · MEDIUM

The Invisible Guardians of the Internet: An Introduction to Content Moderation &amp; Trust &amp; Safety

Suricata (6)
View full report + detection content →
2026-07-17 · MEDIUM

cybersec VS data science

Suricata (4)
View full report + detection content →
2026-07-17 · MEDIUM

ISC Stormcast For Friday, July 17th, 2026 https://isc.sans.edu/podcastdetail/10012, (Fri, Jul 17th)

Suricata (2)
View full report + detection content →
2026-07-16 · MEDIUM

Beta BIOS/UEFI

Suricata (4)
View full report + detection content →
2026-07-16 · HIGH

ArcadeDB: IMPORT DATABASE allows SSRF and arbitrary local file read by authenticated users

Suricata (1)
View full report + detection content →
2026-07-16 · HIGH

Pheditor: Incomplete command sanitization in terminal feature allows RCE via pipe operator, backtick substitution, and newline injection

Suricata (1)
View full report + detection content →
2026-07-16 · HIGH

Pheditor has an authenticated terminal command whitelist bypass

Suricata (1)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-16 · MEDIUM

Apple Sued Over Reported 'Hide My Email' Flaw

Suricata (6)
View full report + detection content →
2026-07-16 · MEDIUM

New Exploitable BOLA Found in Immich (self-hosted media platform)

Suricata (6)
View full report + detection content →
2026-07-16 · MEDIUM

With AI, Your Entire Internet History is Attributable to you Personally

Suricata (6)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-16 · MEDIUM

Teen hackers jailed after live-streaming the 16-hour TfL attack

Suricata (6)
View full report + detection content →
2026-07-16 · MEDIUM

Open-sourced my Claude Code team kit for secure multi-agent development and governance. Feedback welcome.

Suricata (4)
View full report + detection content →
2026-07-16 · MEDIUM

This might be a dumb question

Suricata (4)
View full report + detection content →
2026-07-16 · MEDIUM

How to Measure the Revenue Impact of Security Hardening Projects with a Simple Formula

Suricata (5)
View full report + detection content →
2026-07-16 · MEDIUM

SOC Analyst platforms and lacks

Suricata (4)
View full report + detection content →
2026-07-16 · MEDIUM

Preciso de ajuda

Suricata (4)
View full report + detection content →
2026-07-16 · MEDIUM

[$13337] Confused Deputy: Google IdP Universal Account Takeover via Device Code Flow Hijacking

Suricata (5)
View full report + detection content →
2026-07-16 · MEDIUM

No Shark is Safe: Millions of Shark Vacuums are Vulnerable to RCE

Suricata (5)
View full report + detection content →
2026-07-16 · MEDIUM

Top 10 Data Center and AI Infrastructure Security Risks

Suricata (7)
View full report + detection content →
2026-07-16 · MEDIUM

The British teenager who hacked into Vegas casinos from an east London flat

Suricata (5)
View full report + detection content →
2026-07-16 · MEDIUM

Critical NGINX vulnerability discovered: hackers can attempt to crash servers or even gain code execution

Suricata (5)
View full report + detection content →
2026-07-16 · HIGH

Proof of concept for CVE-2026-58635 LPE in Windows Braille Narrator service

Suricata (5)
View full report + detection content →
2026-07-16 · MEDIUM

Files relating to India’s largest nuclear power plant Kudankulam exposed in data breach

Suricata (5)
View full report + detection content →
2026-07-16 · MEDIUM

Please Stop Making Me Opt Out of AI

Suricata (6)
View full report + detection content →
2026-07-16 · MEDIUM

Moroccan intelligence insider reveals widespread use of Pegasus hacking software | Morocco

Suricata (6)
View full report + detection content →
2026-07-16 · MEDIUM

Learning DevSecOps - Week 2

Suricata (5)
View full report + detection content →
2026-07-16 · MEDIUM

When Inclusive Language ends in phishing

Suricata (5)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-16 · MEDIUM

AI Agent for reconaissasion

Suricata (6)
View full report + detection content →
2026-07-16 · HIGH

ASUS bsitf.sys (CVE-2026-13585): Arbitrary Physical Memory Mapping via Unvalidated IOCTL

Suricata (6)
View full report + detection content →
2026-07-16 · MEDIUM

i get stuck

Suricata (4)
View full report + detection content →
2026-07-16 · MEDIUM

Subject: Advisory Submission: EZ Game Booster - Cleartext Storage of Sensitive Credentials (CWE-312)

Suricata (3)
View full report + detection content →
2026-07-16 · MEDIUM

ISC Stormcast For Thursday, July 16th, 2026 https://isc.sans.edu/podcastdetail/10010, (Thu, Jul 16th)

Suricata (2)
View full report + detection content →
2026-07-15 · MEDIUM

Greene County, Georgia, cybersecurity incident disrupts services

Suricata (6)
View full report + detection content →
2026-07-15 · HIGH

@andrea9293/mcp-documentation-server: Web UI API binds to all interfaces without authentication by default

Suricata (1)
View full report + detection content →
2026-07-15 · MEDIUM

Getting mitre techniques a customer raw detection rule covers

Suricata (3)
View full report + detection content →
2026-07-15 · HIGH

MantisBT: Stored XSS in print_all_bug_page_word.php

Suricata (4)
View full report + detection content →
2026-07-15 · MEDIUM

File-Binding, Process-Binding, and Silo-Binding - new process impersonation techniques for EDR evasion

Suricata (7)
View full report + detection content →
2026-07-15 · MEDIUM

Sophos: The State of Ransomware 2026: Payments are dropping but encryption is climbing

Suricata (7)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-15 · MEDIUM

Coverage-First SOC: why domains and telemetry matter as much as threat intel

Suricata (3)
View full report + detection content →
2026-07-15 · MEDIUM

Runtime detection for ECS/EC2, what are people actually using?

Suricata (3)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-15 · MEDIUM

KQL Queries for new Chaotic Eclipse Zero day 'Legacy Hive'

Suricata (5)
View full report + detection content →
2026-07-15 · MEDIUM

Need help reverse engineering an Android APK used in a UPI fraud

Suricata (3)

MITRE ATT&CK: [object Object], [object Object]

View full report + detection content →
2026-07-15 · MEDIUM

HN Security - My Semgrep C/C++ ruleset is ready for prime time again

Suricata (4)
View full report + detection content →
2026-07-15 · MEDIUM

The Memory Heist - How I tricked Claude into leaking your deepest, darkest secrets

Suricata (4)
View full report + detection content →
2026-07-15 · MEDIUM

(More) Unauthenticated Arbitrary Code Execution in ServiceNow

Suricata (4)
View full report + detection content →
2026-07-15 · MEDIUM

ISC Stormcast For Wednesday, July 15th, 2026 https://isc.sans.edu/podcastdetail/10008, (Wed, Jul 15th)

Suricata (2)
View full report + detection content →
2026-07-15 · MEDIUM

ISC2 Board of Directors Election is open.

Suricata (3)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-14 · MEDIUM

Hochul halts new data center approvals via executive order

Suricata (6)
View full report + detection content →
2026-07-14 · HIGH

Woodpecker: Privilege escalation via unrestricted serviceAccountName in the Kubernetes backend

Suricata (1)

MITRE ATT&CK: [object Object], [object Object]

View full report + detection content →
2026-07-14 · HIGH

Anyquery: Server-Side Request Forgery (SSRF) via Unrestricted SQLite Virtual Table Modules in Server Mode

Suricata (2)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-14 · HIGH

Ech0: ParseAcceptLanguage `_` separator bypass enables ~70x CPU amplification via Accept-Language header in i18n.Middleware

Suricata (1)
View full report + detection content →
2026-07-14 · MEDIUM

LegacyHive : Windows user profile service arbitrary hive load elevation of privileges vulnerability

Suricata (4)
View full report + detection content →
2026-07-14 · HIGH

Woodpecker gRPC agent_id metadata can be spoofed- cross-tenant agent impersonation

Suricata (4)
View full report + detection content →
2026-07-14 · MEDIUM

🇨🇳 Suspected Chinese Operators Use Claude Code and DeepSeek to Breach Government Systems Across Four Countries

Suricata (6)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-14 · HIGH

Fedify has an incomplete SSRF mitigation after GHSA-p9cg-vqcc-grcx: validatePublicUrl allows special-use IPv4 ranges

Suricata (2)
View full report + detection content →
2026-07-14 · MEDIUM

AsyncAPI Supply Chain Compromise via GitHub Actions

Suricata (6)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-14 · MEDIUM

&quot;Windows event log monitoring&quot; the event IDs that actually matter vs the ones gets ignored

Sigma (1)KQL (1)Splunk (1)osquery (1)Suricata (3)

MITRE ATT&CK: [object Object], [object Object], [object Object]

View full report + detection content →
2026-07-14 · MEDIUM

ESET discovered 11 vulnerable UEFI shim bootloaders signed by Microsoft that allow attackers to bypass Secure Boot by exploiting decade-old vulnerabilities

Suricata (6)
View full report + detection content →
2026-07-14 · MEDIUM

Source-reviewing 200+ self-hosted multi-tenant AI/SaaS apps for tenant isolation: 78 leaked across tenants (the &quot;un-retrofitted read sibling&quot;)

Suricata (4)
View full report + detection content →
2026-07-14 · MEDIUM

Cybersecurity projects

Suricata (4)
View full report + detection content →
2026-07-14 · MEDIUM

Smashing the ServiceNow Sandbox – Pre Authentication RCE

Suricata (5)
View full report + detection content →
2026-07-14 · MEDIUM

When LLMs do more than they have to

Suricata (5)
View full report + detection content →
2026-07-14 · MEDIUM

RFC8555 ACME servers and DNS auth reusal

Suricata (5)
View full report + detection content →
2026-07-14 · MEDIUM

How an Infostealer Infection Led to a Sophisticated ClickFix Campaign at Artlist

Suricata (6)
View full report + detection content →
2026-07-14 · MEDIUM

@asyncapi/specs (2.7M weekly downloads) got compromised today via a malicious CI commit

Suricata (6)
View full report + detection content →
2026-07-14 · MEDIUM

The US government warns that Russia state hackers are coming after your router

Suricata (6)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-14 · MEDIUM

Addressing the state-layer gap in autonomous actor architectures: Byzantine fault tolerance without consensus

Suricata (7)
View full report + detection content →
2026-07-14 · MEDIUM

Nightmare Eclipse could be dropping his big promised exploit today

Suricata (4)
View full report + detection content →
2026-07-14 · MEDIUM

Writing an Evasive .NET Shellcode Loader

Suricata (4)
View full report + detection content →
2026-07-14 · MEDIUM

Enhancing the Threat Intelligence AI Model with Technical Knowledge About Windows Kernel Mode Malware

Suricata (5)
View full report + detection content →
2026-07-14 · MEDIUM

Zimbra Classic Web Client has a critical stored XSS, patched in ZCS 10.1.19 (reported by Google TAG, no CVE yet, not flagged as exploited in the wild)

Suricata (3)
View full report + detection content →
2026-07-14 · MEDIUM

Digital twins are becoming security infrastructure - not just monitoring tools

Suricata (5)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-14 · MEDIUM

Enhancing IIoT Security Using Digital Twins in Industry

Suricata (4)
View full report + detection content →
2026-07-14 · MEDIUM

ISC Stormcast For Tuesday, July 14th, 2026 https://isc.sans.edu/podcastdetail/10006, (Tue, Jul 14th)

Suricata (2)
View full report + detection content →
2026-07-14 · MEDIUM

AXON Body camera 3 of 4 hardware reverse cracking output video!

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

ExporTheft: 11 &quot;AI Chat Exporter&quot; Chrome extensions upload full chat content on PDF export, while the store listing says &quot;No uploads to external servers&quot;

Suricata (6)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-13 · MEDIUM

Context Bombs: Using AI Guardrails as a defensive mechanism

Suricata (5)
View full report + detection content →
2026-07-13 · MEDIUM

CET-Compliant Callstack Spoofing via Thread Pool &amp; Enum Callback Trampolining (Rust PoC)

Suricata (5)
View full report + detection content →
2026-07-13 · MEDIUM

Im taking ec council cct exam

Suricata (4)
View full report + detection content →
2026-07-13 · HIGH

DIRAC: Pilot code downloaded over unverified HTTPS connection

Suricata (1)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-13 · HIGH

DIRAC: SQL injection and lack of access control in PilotManager service

Suricata (1)
View full report + detection content →
2026-07-13 · MEDIUM

Every AI coding agent writes the secrets you paste straight to a plaintext history file — and nobody scans it

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

Stolen from

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

Official jscrambler npm package compromised: malicious versions 8.14, 8.16, 8.17, and 8.20

Suricata (6)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-13 · MEDIUM

Now, defenders are embracing the prompt injection, too

Suricata (6)
View full report + detection content →
2026-07-13 · MEDIUM

World Cup grudge attackers may have scored Argentine FA access via year-old infostealer infection

Suricata (5)
View full report + detection content →
2026-07-13 · MEDIUM

I vibed an Application Inventory Service

Suricata (7)
View full report + detection content →
2026-07-13 · MEDIUM

SOC homelab with 16gb RAM

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

What's your pre-deployment security checklist for a web app before going live?

Suricata (3)
View full report + detection content →
2026-07-13 · MEDIUM

RELATÓRIOS

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

July 14th Nightmare Eclipse

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

Can recon workflow get any easier and smarter than this ?

Suricata (5)
View full report + detection content →
2026-07-13 · MEDIUM

How the TLS handshake works, and why half of it is gone

Suricata (7)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-13 · MEDIUM

Demande d'avis

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

Presales Engineer (Cybersecurity)

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

Balbooa Forms Joomla Flaw Lets Hackers Hijack Sites With a Single Upload

Suricata (6)
View full report + detection content →
2026-07-13 · MEDIUM

The way forward

Suricata (4)
View full report + detection content →
2026-07-13 · HIGH

Dell BIOS Passwords: Weak XOR Encryption Allows Recovery from SPI Flash (CVE-2026-40639)

Suricata (5)
View full report + detection content →
2026-07-13 · MEDIUM

Persistence via Fake AMSI Provider | Playbook &amp; Detection Strategies

Suricata (5)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-13 · MEDIUM

Total Isolation of legacy Control System is valid option to ….

Suricata (6)
View full report + detection content →
2026-07-13 · MEDIUM

A hardware security AI assistant that checks chips for hidden backdoors

Suricata (5)
View full report + detection content →
2026-07-13 · MEDIUM

Passed OSCP from Rajasthan things nobody told me about preparation

Suricata (3)
View full report + detection content →
2026-07-13 · MEDIUM

Large-scale exploitation campaign targeting website content management systems (CMS)

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

LIEF 1.0.0 is out featuring a brand-new Runtime API

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

Participants Needed: Master's Research on AI Governance &amp; the EU AI Act

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

ISC Stormcast For Monday, July 13th, 2026 https://isc.sans.edu/podcastdetail/10004, (Mon, Jul 13th)

Suricata (2)
View full report + detection content →
2026-07-13 · MEDIUM

Been building my own edr; today it operates in ring 0

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

Data Sharing With Vendors

Suricata (4)
View full report + detection content →
2026-07-12 · MEDIUM

Vulnerability in Realtek driver allows DMA controller abuse from user mode with no additional hardware or driver

Suricata (5)
View full report + detection content →
2026-07-12 · MEDIUM

IT Governance vs AI Governance

Suricata (4)
View full report + detection content →
2026-07-12 · MEDIUM

Artlist.io appears to have been compromised by a ClickFix attack

Suricata (5)
View full report + detection content →
2026-07-12 · HIGH

CVE-2026-47291: Windows Critical Unauthenticated Remote Code Execution in HTTP.sys

Suricata (5)
View full report + detection content →
2026-07-12 · MEDIUM

Passive security measurement of 10,020 .it domains: CSP, cookies, TLS and email authentication

Suricata (6)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-12 · MEDIUM

What's stopping big orgs to replicate those AI Security startups themselves?

Suricata (3)
View full report + detection content →
2026-07-12 · MEDIUM

Hacking Apple - SQL Injection to Remote Code Execution

Suricata (6)
View full report + detection content →
2026-07-12 · MEDIUM

Can gamification actually improve security awareness?

Suricata (5)
View full report + detection content →
2026-07-12 · MEDIUM

Anonymity + security

Suricata (4)
View full report + detection content →
2026-07-12 · MEDIUM

Microsoft is rewriting Windows patch guidance because of AI - Help Net Security

Suricata (6)
View full report + detection content →
2026-07-11 · MEDIUM

Looking for Cybersecurity Contributors – Building an Open-Source AI Bot Detection Project

Suricata (4)
View full report + detection content →
2026-07-11 · MEDIUM

Ransomware negotiator hired to represent victims was working for the attackers

Suricata (6)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-11 · MEDIUM

Thoughts on Aikido.dev?

Suricata (4)
View full report + detection content →
2026-07-11 · MEDIUM

Freelancing on cybersec/ai

Suricata (4)
View full report + detection content →
2026-07-11 · MEDIUM

Microsoft admits Windows 11 has a GDID tracker with no off switch, first documented publicly in an FBI hacker complaint

Suricata (6)
View full report + detection content →
2026-07-11 · MEDIUM

BloodBash Feedback Needed Before DEF CON 34 Red Team Village Talk - AD/hybrid Recon Tool

Suricata (4)
View full report + detection content →
2026-07-11 · MEDIUM

Scanning malicious websites with arbitrary number of VPN tunnels (Part 2)

Suricata (5)
View full report + detection content →
2026-07-11 · MEDIUM

Destructive Windows backdoor stuffs multiple wipers and ransomware code into a single package

Suricata (5)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-11 · MEDIUM

How does insider threat software fit into your security workflow?

Suricata (3)
View full report + detection content →
2026-07-11 · MEDIUM

DarkLayer — Ransomware Tower Defense. Free, in your browser.

Suricata (4)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-11 · MEDIUM

CTO at NCSC Summary: week ending July 12th

Suricata (6)
View full report + detection content →
2026-07-11 · MEDIUM

Precision Vs Accuracy

Suricata (7)
View full report + detection content →
2026-07-11 · MEDIUM

Physical security work and research with NASA and DARPA

Suricata (3)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-11 · MEDIUM

A degree in CS or AI engineering &amp; robotics

Suricata (3)
View full report + detection content →
2026-07-10 · MEDIUM

How do you keep archived firewall logs usable during a threat hunt?

Suricata (5)
View full report + detection content →
2026-07-10 · MEDIUM

Inside Raton RAT: A Commodity Trojan That Tries to Do Everything

Suricata (5)
View full report + detection content →
2026-07-10 · HIGH

Clauster: Non-loopback deployments can serve the dashboard unauthenticated when auth.enabled is unset

Suricata (1)
View full report + detection content →
2026-07-10 · MEDIUM

Closing the Timing Gap: Defensive Temporal Observability

Suricata (6)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-10 · MEDIUM

How are you handling SSL inspection without constantly breaking developer tooling?

Suricata (3)
View full report + detection content →
2026-07-10 · MEDIUM

Uptick in email bombing

Suricata (4)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-10 · MEDIUM

Training recommendations for SOC teams in the age of AI?

Suricata (3)
View full report + detection content →
2026-07-10 · MEDIUM

CISA KEV Threat Intel Orchestrator

Suricata (4)
View full report + detection content →
2026-07-10 · MEDIUM

Who is interested in digital forensics

Suricata (3)
View full report + detection content →
2026-07-10 · MEDIUM

Crypto Investigations using AI

Suricata (7)
View full report + detection content →
2026-07-10 · MEDIUM

Can AI imitate APT behavior well enough to confuse attribution?

Suricata (5)
View full report + detection content →
2026-07-10 · MEDIUM

Can AI-generated adversaries break TTP-based attribution? (arXiv 2026)

Suricata (5)
View full report + detection content →
2026-07-10 · MEDIUM

Towards CSI: What's the best harness? (arXiv 2026)

Suricata (6)
View full report + detection content →
2026-07-10 · MEDIUM

'HalluSquatting' Turns AI Hallucinations Into Botnet Delivery Mechanism

Suricata (6)
View full report + detection content →
2026-07-10 · MEDIUM

New research: Why no single AI agent harness wins every cybersecurity task

Suricata (5)
View full report + detection content →