Detection Engineering

Live Detection Feed

200 reports with real, generated multi-format detection content — refreshed automatically as new intelligence is ingested.

This live feed aggregates real detection content (Sigma, KQL, Splunk, osquery, Suricata) generated alongside individual intelligence reports as they are published. For the 8 hand-curated flagship Sigma rules covering major CISA KEV vulnerabilities, see the Detection Engineering hub.

2026-07-21 · MEDIUM

NotCVE registry index — public records of vulnerabilities that shipped without a CVE

Suricata (2)
View full report + detection content →
2026-07-21 · MEDIUM

XSSer v.1.9 - "Bl4ck Swarm!" released

Suricata (2)
View full report + detection content →
2026-07-21 · MEDIUM

New Release: UFONet v2.0 - "R3DST4R!"...

Suricata (2)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-20 · HIGH

Composer: Arbitrary file write outside vendor via malicious transitive package name

Suricata (1)
View full report + detection content →
2026-07-20 · HIGH

vLLM denial of service via prompt embeds on M-RoPE models

Suricata (1)

MITRE ATT&CK: [object Object], [object Object]

View full report + detection content →
2026-07-19 · MEDIUM

Recovering from a malicious APK installation on CMF Phone. HELP!

Sigma (1)KQL (1)Splunk (1)osquery (1)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-19 · HIGH

CVE-2026-13473: IBM Storage Protect Client 8.1.0.0 through 8.1.27.0, 8.1.27.1, and 8.2.0.0 through 8.2.1.0 IBM Storage Protect is vulner

Suricata (5)
View full report + detection content →
2026-07-19 · MEDIUM

From 50 to 703: Expanding Unit 42's Gameograf Adware Chrome Extension Campaign

Suricata (1)
View full report + detection content →
2026-07-17 · HIGH

Prompty: Arbitrary file read via file reference expansion

Suricata (1)
View full report + detection content →
2026-07-17 · HIGH

CVE lookup that shows the actual fix (KB / package version / Apple train), plus a no-key API. Built partly because NVD's API keeps flaking out

Suricata (2)
View full report + detection content →
2026-07-17 · HIGH

CVE-2026-50147: Metabase is an open-source business intelligence and embedded analytics tool. From 1.57.0 until 1.57.19.1, 1.58.14.1, 1.

Suricata (2)
View full report + detection content →
2026-07-17 · MEDIUM

AI security project: PromptShield

Suricata (1)
View full report + detection content →
2026-07-17 · MEDIUM

If you've given an AI agent real credentials, how are you scoping what it can reach?

Suricata (3)
View full report + detection content →
2026-07-17 · MEDIUM

Published research article on IEEE about supply chain attacks and preventive security measures

Suricata (7)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-17 · MEDIUM

deberíaa pagar por esto?

Suricata (4)
View full report + detection content →
2026-07-17 · MEDIUM

Is ast_grep_cli 0.44.1 on PyPI compromised? Windows Defender detected Trojan:Win64/Lazy!MTB during install

Suricata (3)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-17 · MEDIUM

Alerts on Server Loopback Traffic?

Suricata (3)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-17 · MEDIUM

Advice on Detection Engineering

Suricata (4)
View full report + detection content →
2026-07-17 · MEDIUM

The Invisible Guardians of the Internet: An Introduction to Content Moderation & Trust & Safety

Suricata (6)
View full report + detection content →
2026-07-17 · MEDIUM

cybersec VS data science

Suricata (4)
View full report + detection content →
2026-07-17 · MEDIUM

ISC Stormcast For Friday, July 17th, 2026 https://isc.sans.edu/podcastdetail/10012, (Fri, Jul 17th)

Suricata (2)
View full report + detection content →
2026-07-16 · MEDIUM

Beta BIOS/UEFI

Suricata (4)
View full report + detection content →
2026-07-16 · HIGH

ArcadeDB: IMPORT DATABASE allows SSRF and arbitrary local file read by authenticated users

Suricata (1)
View full report + detection content →
2026-07-16 · HIGH

Pheditor: Incomplete command sanitization in terminal feature allows RCE via pipe operator, backtick substitution, and newline injection

Suricata (1)
View full report + detection content →
2026-07-16 · HIGH

Pheditor has an authenticated terminal command whitelist bypass

Suricata (1)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-16 · MEDIUM

Apple Sued Over Reported 'Hide My Email' Flaw

Suricata (6)
View full report + detection content →
2026-07-16 · MEDIUM

New Exploitable BOLA Found in Immich (self-hosted media platform)

Suricata (6)
View full report + detection content →
2026-07-16 · MEDIUM

With AI, Your Entire Internet History is Attributable to you Personally

Suricata (6)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-16 · MEDIUM

Teen hackers jailed after live-streaming the 16-hour TfL attack

Suricata (6)
View full report + detection content →
2026-07-16 · MEDIUM

Open-sourced my Claude Code team kit for secure multi-agent development and governance. Feedback welcome.

Suricata (4)
View full report + detection content →
2026-07-16 · MEDIUM

This might be a dumb question

Suricata (4)
View full report + detection content →
2026-07-16 · MEDIUM

How to Measure the Revenue Impact of Security Hardening Projects with a Simple Formula

Suricata (5)
View full report + detection content →
2026-07-16 · MEDIUM

SOC Analyst platforms and lacks

Suricata (4)
View full report + detection content →
2026-07-16 · MEDIUM

Preciso de ajuda

Suricata (4)
View full report + detection content →
2026-07-16 · MEDIUM

[$13337] Confused Deputy: Google IdP Universal Account Takeover via Device Code Flow Hijacking

Suricata (5)
View full report + detection content →
2026-07-16 · MEDIUM

No Shark is Safe: Millions of Shark Vacuums are Vulnerable to RCE

Suricata (5)
View full report + detection content →
2026-07-16 · MEDIUM

Top 10 Data Center and AI Infrastructure Security Risks

Suricata (7)
View full report + detection content →
2026-07-16 · MEDIUM

The British teenager who hacked into Vegas casinos from an east London flat

Suricata (5)
View full report + detection content →
2026-07-16 · MEDIUM

Critical NGINX vulnerability discovered: hackers can attempt to crash servers or even gain code execution

Suricata (5)
View full report + detection content →
2026-07-16 · HIGH

Proof of concept for CVE-2026-58635 LPE in Windows Braille Narrator service

Suricata (5)
View full report + detection content →
2026-07-16 · MEDIUM

Files relating to India’s largest nuclear power plant Kudankulam exposed in data breach

Suricata (5)
View full report + detection content →
2026-07-16 · MEDIUM

Please Stop Making Me Opt Out of AI

Suricata (6)
View full report + detection content →
2026-07-16 · MEDIUM

Moroccan intelligence insider reveals widespread use of Pegasus hacking software | Morocco

Suricata (6)
View full report + detection content →
2026-07-16 · MEDIUM

Learning DevSecOps - Week 2

Suricata (5)
View full report + detection content →
2026-07-16 · MEDIUM

When Inclusive Language ends in phishing

Suricata (5)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-16 · MEDIUM

AI Agent for reconaissasion

Suricata (6)
View full report + detection content →
2026-07-16 · HIGH

ASUS bsitf.sys (CVE-2026-13585): Arbitrary Physical Memory Mapping via Unvalidated IOCTL

Suricata (6)
View full report + detection content →
2026-07-16 · MEDIUM

i get stuck

Suricata (4)
View full report + detection content →
2026-07-16 · MEDIUM

Subject: Advisory Submission: EZ Game Booster - Cleartext Storage of Sensitive Credentials (CWE-312)

Suricata (3)
View full report + detection content →
2026-07-16 · MEDIUM

ISC Stormcast For Thursday, July 16th, 2026 https://isc.sans.edu/podcastdetail/10010, (Thu, Jul 16th)

Suricata (2)
View full report + detection content →
2026-07-15 · MEDIUM

Greene County, Georgia, cybersecurity incident disrupts services

Suricata (6)
View full report + detection content →
2026-07-15 · HIGH

@andrea9293/mcp-documentation-server: Web UI API binds to all interfaces without authentication by default

Suricata (1)
View full report + detection content →
2026-07-15 · MEDIUM

Getting mitre techniques a customer raw detection rule covers

Suricata (3)
View full report + detection content →
2026-07-15 · HIGH

MantisBT: Stored XSS in print_all_bug_page_word.php

Suricata (4)
View full report + detection content →
2026-07-15 · MEDIUM

File-Binding, Process-Binding, and Silo-Binding - new process impersonation techniques for EDR evasion

Suricata (7)
View full report + detection content →
2026-07-15 · MEDIUM

Sophos: The State of Ransomware 2026: Payments are dropping but encryption is climbing

Suricata (7)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-15 · MEDIUM

Coverage-First SOC: why domains and telemetry matter as much as threat intel

Suricata (3)
View full report + detection content →
2026-07-15 · MEDIUM

Runtime detection for ECS/EC2, what are people actually using?

Suricata (3)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-15 · MEDIUM

KQL Queries for new Chaotic Eclipse Zero day 'Legacy Hive'

Suricata (5)
View full report + detection content →
2026-07-15 · MEDIUM

Need help reverse engineering an Android APK used in a UPI fraud

Suricata (3)

MITRE ATT&CK: [object Object], [object Object]

View full report + detection content →
2026-07-15 · MEDIUM

HN Security - My Semgrep C/C++ ruleset is ready for prime time again

Suricata (4)
View full report + detection content →
2026-07-15 · MEDIUM

The Memory Heist - How I tricked Claude into leaking your deepest, darkest secrets

Suricata (4)
View full report + detection content →
2026-07-15 · MEDIUM

(More) Unauthenticated Arbitrary Code Execution in ServiceNow

Suricata (4)
View full report + detection content →
2026-07-15 · MEDIUM

ISC Stormcast For Wednesday, July 15th, 2026 https://isc.sans.edu/podcastdetail/10008, (Wed, Jul 15th)

Suricata (2)
View full report + detection content →
2026-07-15 · MEDIUM

ISC2 Board of Directors Election is open.

Suricata (3)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-14 · MEDIUM

Hochul halts new data center approvals via executive order

Suricata (6)
View full report + detection content →
2026-07-14 · HIGH

Woodpecker: Privilege escalation via unrestricted serviceAccountName in the Kubernetes backend

Suricata (1)

MITRE ATT&CK: [object Object], [object Object]

View full report + detection content →
2026-07-14 · HIGH

Anyquery: Server-Side Request Forgery (SSRF) via Unrestricted SQLite Virtual Table Modules in Server Mode

Suricata (2)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-14 · HIGH

Ech0: ParseAcceptLanguage `_` separator bypass enables ~70x CPU amplification via Accept-Language header in i18n.Middleware

Suricata (1)
View full report + detection content →
2026-07-14 · MEDIUM

LegacyHive : Windows user profile service arbitrary hive load elevation of privileges vulnerability

Suricata (4)
View full report + detection content →
2026-07-14 · HIGH

Woodpecker gRPC agent_id metadata can be spoofed- cross-tenant agent impersonation

Suricata (4)
View full report + detection content →
2026-07-14 · MEDIUM

🇨🇳 Suspected Chinese Operators Use Claude Code and DeepSeek to Breach Government Systems Across Four Countries

Suricata (6)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-14 · HIGH

Fedify has an incomplete SSRF mitigation after GHSA-p9cg-vqcc-grcx: validatePublicUrl allows special-use IPv4 ranges

Suricata (2)
View full report + detection content →
2026-07-14 · MEDIUM

AsyncAPI Supply Chain Compromise via GitHub Actions

Suricata (6)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-14 · MEDIUM

"Windows event log monitoring" the event IDs that actually matter vs the ones gets ignored

Sigma (1)KQL (1)Splunk (1)osquery (1)Suricata (3)

MITRE ATT&CK: [object Object], [object Object], [object Object]

View full report + detection content →
2026-07-14 · MEDIUM

ESET discovered 11 vulnerable UEFI shim bootloaders signed by Microsoft that allow attackers to bypass Secure Boot by exploiting decade-old vulnerabilities

Suricata (6)
View full report + detection content →
2026-07-14 · MEDIUM

Source-reviewing 200+ self-hosted multi-tenant AI/SaaS apps for tenant isolation: 78 leaked across tenants (the "un-retrofitted read sibling")

Suricata (4)
View full report + detection content →
2026-07-14 · MEDIUM

Cybersecurity projects

Suricata (4)
View full report + detection content →
2026-07-14 · MEDIUM

Smashing the ServiceNow Sandbox – Pre Authentication RCE

Suricata (5)
View full report + detection content →
2026-07-14 · MEDIUM

When LLMs do more than they have to

Suricata (5)
View full report + detection content →
2026-07-14 · MEDIUM

RFC8555 ACME servers and DNS auth reusal

Suricata (5)
View full report + detection content →
2026-07-14 · MEDIUM

How an Infostealer Infection Led to a Sophisticated ClickFix Campaign at Artlist

Suricata (6)
View full report + detection content →
2026-07-14 · MEDIUM

@asyncapi/specs (2.7M weekly downloads) got compromised today via a malicious CI commit

Suricata (6)
View full report + detection content →
2026-07-14 · MEDIUM

The US government warns that Russia state hackers are coming after your router

Suricata (6)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-14 · MEDIUM

Addressing the state-layer gap in autonomous actor architectures: Byzantine fault tolerance without consensus

Suricata (7)
View full report + detection content →
2026-07-14 · MEDIUM

Nightmare Eclipse could be dropping his big promised exploit today

Suricata (4)
View full report + detection content →
2026-07-14 · MEDIUM

Writing an Evasive .NET Shellcode Loader

Suricata (4)
View full report + detection content →
2026-07-14 · MEDIUM

Enhancing the Threat Intelligence AI Model with Technical Knowledge About Windows Kernel Mode Malware

Suricata (5)
View full report + detection content →
2026-07-14 · MEDIUM

Zimbra Classic Web Client has a critical stored XSS, patched in ZCS 10.1.19 (reported by Google TAG, no CVE yet, not flagged as exploited in the wild)

Suricata (3)
View full report + detection content →
2026-07-14 · MEDIUM

Digital twins are becoming security infrastructure - not just monitoring tools

Suricata (5)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-14 · MEDIUM

Enhancing IIoT Security Using Digital Twins in Industry

Suricata (4)
View full report + detection content →
2026-07-14 · MEDIUM

ISC Stormcast For Tuesday, July 14th, 2026 https://isc.sans.edu/podcastdetail/10006, (Tue, Jul 14th)

Suricata (2)
View full report + detection content →
2026-07-14 · MEDIUM

AXON Body camera 3 of 4 hardware reverse cracking output video!

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

ExporTheft: 11 "AI Chat Exporter" Chrome extensions upload full chat content on PDF export, while the store listing says "No uploads to external servers"

Suricata (6)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-13 · MEDIUM

Context Bombs: Using AI Guardrails as a defensive mechanism

Suricata (5)
View full report + detection content →
2026-07-13 · MEDIUM

CET-Compliant Callstack Spoofing via Thread Pool & Enum Callback Trampolining (Rust PoC)

Suricata (5)
View full report + detection content →
2026-07-13 · MEDIUM

Im taking ec council cct exam

Suricata (4)
View full report + detection content →
2026-07-13 · HIGH

DIRAC: Pilot code downloaded over unverified HTTPS connection

Suricata (1)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-13 · HIGH

DIRAC: SQL injection and lack of access control in PilotManager service

Suricata (1)
View full report + detection content →
2026-07-13 · MEDIUM

Every AI coding agent writes the secrets you paste straight to a plaintext history file — and nobody scans it

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

Stolen from

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

Official jscrambler npm package compromised: malicious versions 8.14, 8.16, 8.17, and 8.20

Suricata (6)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-13 · MEDIUM

Now, defenders are embracing the prompt injection, too

Suricata (6)
View full report + detection content →
2026-07-13 · MEDIUM

World Cup grudge attackers may have scored Argentine FA access via year-old infostealer infection

Suricata (5)
View full report + detection content →
2026-07-13 · MEDIUM

I vibed an Application Inventory Service

Suricata (7)
View full report + detection content →
2026-07-13 · MEDIUM

SOC homelab with 16gb RAM

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

What's your pre-deployment security checklist for a web app before going live?

Suricata (3)
View full report + detection content →
2026-07-13 · MEDIUM

RELATÓRIOS

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

July 14th Nightmare Eclipse

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

Can recon workflow get any easier and smarter than this ?

Suricata (5)
View full report + detection content →
2026-07-13 · MEDIUM

How the TLS handshake works, and why half of it is gone

Suricata (7)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-13 · MEDIUM

Demande d'avis

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

Presales Engineer (Cybersecurity)

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

Balbooa Forms Joomla Flaw Lets Hackers Hijack Sites With a Single Upload

Suricata (6)
View full report + detection content →
2026-07-13 · MEDIUM

The way forward

Suricata (4)
View full report + detection content →
2026-07-13 · HIGH

Dell BIOS Passwords: Weak XOR Encryption Allows Recovery from SPI Flash (CVE-2026-40639)

Suricata (5)
View full report + detection content →
2026-07-13 · MEDIUM

Persistence via Fake AMSI Provider | Playbook & Detection Strategies

Suricata (5)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-13 · MEDIUM

Total Isolation of legacy Control System is valid option to ….

Suricata (6)
View full report + detection content →
2026-07-13 · MEDIUM

A hardware security AI assistant that checks chips for hidden backdoors

Suricata (5)
View full report + detection content →
2026-07-13 · MEDIUM

Passed OSCP from Rajasthan things nobody told me about preparation

Suricata (3)
View full report + detection content →
2026-07-13 · MEDIUM

Large-scale exploitation campaign targeting website content management systems (CMS)

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

LIEF 1.0.0 is out featuring a brand-new Runtime API

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

Participants Needed: Master's Research on AI Governance & the EU AI Act

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

ISC Stormcast For Monday, July 13th, 2026 https://isc.sans.edu/podcastdetail/10004, (Mon, Jul 13th)

Suricata (2)
View full report + detection content →
2026-07-13 · MEDIUM

Been building my own edr; today it operates in ring 0

Suricata (4)
View full report + detection content →
2026-07-13 · MEDIUM

Data Sharing With Vendors

Suricata (4)
View full report + detection content →
2026-07-12 · MEDIUM

Vulnerability in Realtek driver allows DMA controller abuse from user mode with no additional hardware or driver

Suricata (5)
View full report + detection content →
2026-07-12 · MEDIUM

IT Governance vs AI Governance

Suricata (4)
View full report + detection content →
2026-07-12 · MEDIUM

Artlist.io appears to have been compromised by a ClickFix attack

Suricata (5)
View full report + detection content →
2026-07-12 · HIGH

CVE-2026-47291: Windows Critical Unauthenticated Remote Code Execution in HTTP.sys

Suricata (5)
View full report + detection content →
2026-07-12 · MEDIUM

Passive security measurement of 10,020 .it domains: CSP, cookies, TLS and email authentication

Suricata (6)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-12 · MEDIUM

What's stopping big orgs to replicate those AI Security startups themselves?

Suricata (3)
View full report + detection content →
2026-07-12 · MEDIUM

Hacking Apple - SQL Injection to Remote Code Execution

Suricata (6)
View full report + detection content →
2026-07-12 · MEDIUM

Can gamification actually improve security awareness?

Suricata (5)
View full report + detection content →
2026-07-12 · MEDIUM

Anonymity + security

Suricata (4)
View full report + detection content →
2026-07-12 · MEDIUM

Microsoft is rewriting Windows patch guidance because of AI - Help Net Security

Suricata (6)
View full report + detection content →
2026-07-11 · MEDIUM

Looking for Cybersecurity Contributors – Building an Open-Source AI Bot Detection Project

Suricata (4)
View full report + detection content →
2026-07-11 · MEDIUM

Ransomware negotiator hired to represent victims was working for the attackers

Suricata (6)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-11 · MEDIUM

Thoughts on Aikido.dev?

Suricata (4)
View full report + detection content →
2026-07-11 · MEDIUM

Freelancing on cybersec/ai

Suricata (4)
View full report + detection content →
2026-07-11 · MEDIUM

Microsoft admits Windows 11 has a GDID tracker with no off switch, first documented publicly in an FBI hacker complaint

Suricata (6)
View full report + detection content →
2026-07-11 · MEDIUM

BloodBash Feedback Needed Before DEF CON 34 Red Team Village Talk - AD/hybrid Recon Tool

Suricata (4)
View full report + detection content →
2026-07-11 · MEDIUM

Scanning malicious websites with arbitrary number of VPN tunnels (Part 2)

Suricata (5)
View full report + detection content →
2026-07-11 · MEDIUM

Destructive Windows backdoor stuffs multiple wipers and ransomware code into a single package

Suricata (5)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-11 · MEDIUM

How does insider threat software fit into your security workflow?

Suricata (3)
View full report + detection content →
2026-07-11 · MEDIUM

DarkLayer — Ransomware Tower Defense. Free, in your browser.

Suricata (4)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-11 · MEDIUM

CTO at NCSC Summary: week ending July 12th

Suricata (6)
View full report + detection content →
2026-07-11 · MEDIUM

Precision Vs Accuracy

Suricata (7)
View full report + detection content →
2026-07-11 · MEDIUM

Physical security work and research with NASA and DARPA

Suricata (3)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-11 · MEDIUM

A degree in CS or AI engineering & robotics

Suricata (3)
View full report + detection content →
2026-07-10 · MEDIUM

How do you keep archived firewall logs usable during a threat hunt?

Suricata (5)
View full report + detection content →
2026-07-10 · MEDIUM

Inside Raton RAT: A Commodity Trojan That Tries to Do Everything

Suricata (5)
View full report + detection content →
2026-07-10 · HIGH

Clauster: Non-loopback deployments can serve the dashboard unauthenticated when auth.enabled is unset

Suricata (1)
View full report + detection content →
2026-07-10 · MEDIUM

Closing the Timing Gap: Defensive Temporal Observability

Suricata (6)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-10 · MEDIUM

How are you handling SSL inspection without constantly breaking developer tooling?

Suricata (3)
View full report + detection content →
2026-07-10 · MEDIUM

Uptick in email bombing

Suricata (4)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-10 · MEDIUM

Training recommendations for SOC teams in the age of AI?

Suricata (3)
View full report + detection content →
2026-07-10 · MEDIUM

CISA KEV Threat Intel Orchestrator

Suricata (4)
View full report + detection content →
2026-07-10 · MEDIUM

Who is interested in digital forensics

Suricata (3)
View full report + detection content →
2026-07-10 · MEDIUM

Crypto Investigations using AI

Suricata (7)
View full report + detection content →
2026-07-10 · MEDIUM

Can AI imitate APT behavior well enough to confuse attribution?

Suricata (5)
View full report + detection content →
2026-07-10 · MEDIUM

Can AI-generated adversaries break TTP-based attribution? (arXiv 2026)

Suricata (5)
View full report + detection content →
2026-07-10 · MEDIUM

Towards CSI: What's the best harness? (arXiv 2026)

Suricata (6)
View full report + detection content →
2026-07-10 · MEDIUM

'HalluSquatting' Turns AI Hallucinations Into Botnet Delivery Mechanism

Suricata (6)
View full report + detection content →
2026-07-10 · MEDIUM

New research: Why no single AI agent harness wins every cybersecurity task

Suricata (5)
View full report + detection content →
2026-07-10 · MEDIUM

Network of 200 GitHub Repositories Used for Malware Infection

Sigma (1)KQL (1)Splunk (1)osquery (1)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-10 · MEDIUM

Need help with my project

Suricata (4)
View full report + detection content →
2026-07-10 · MEDIUM

ISC Stormcast For Friday, July 10th, 2026 https://isc.sans.edu/podcastdetail/10002, (Fri, Jul 10th)

Suricata (2)
View full report + detection content →
2026-07-09 · HIGH

YesWiki has Unauthenticated Server-Side Request Forgery via ActivityPub `Signature.keyId`

Suricata (1)
View full report + detection content →
2026-07-09 · MEDIUM

SIEM Solution Recommendations

Suricata (4)
View full report + detection content →
2026-07-09 · MEDIUM

SOC analyst (1 YOE) doing full investigations/remediation — what practical IR skills should I actually be building?

Suricata (4)
View full report + detection content →
2026-07-09 · MEDIUM

Suspected Russian Threat Actor Impersonates Legitimate Crypto Wallets to Deploy Remote Utilities

Suricata (5)
View full report + detection content →
2026-07-09 · HIGH

Micronaut doesn't set a maximum redirect count for its HTTP Client, enabling infinite loop DoS

Suricata (4)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-09 · MEDIUM

A Puerto Rico Government Agency Exposed 1 Million Social Security Numbers

Suricata (6)
View full report + detection content →
2026-07-09 · MEDIUM

MOD REQUEST: Can you ban the excessive AI posters please?

Suricata (3)
View full report + detection content →
2026-07-09 · MEDIUM

Why the HTTP QUERY Method Is a Bad Idea, and Accept-Query Is Why

Suricata (5)
View full report + detection content →
2026-07-09 · MEDIUM

Seeking Refferals

Suricata (4)
View full report + detection content →
2026-07-09 · MEDIUM

[REVIVE-SA-2026-003] Revive Adserver Vulnerabilities

Suricata (2)
View full report + detection content →
2026-07-09 · MEDIUM

ISC Stormcast For Thursday, July 9th, 2026 https://isc.sans.edu/podcastdetail/10000, (Thu, Jul 9th)

Suricata (2)
View full report + detection content →
2026-07-08 · MEDIUM

FABLE 5 AND OPUS

Suricata (4)
View full report + detection content →
2026-07-08 · HIGH

DSpace has possible Remote Code Execution (RCE) through Velocity Templates used by LDN

Suricata (4)
View full report + detection content →
2026-07-08 · MEDIUM

AI agents went from "cool demo" to "exploiting CVEs in 10 hours"

Suricata (5)
View full report + detection content →
2026-07-08 · MEDIUM

Are companies thinking about insurance/liability for AI tool usage, or is that not on the radar yet?

Suricata (3)
View full report + detection content →
2026-07-08 · MEDIUM

1 in 2 devices sold in Africa exfiltrate data to China

Suricata (5)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-08 · MEDIUM

BTL1 done, now what?

Suricata (4)
View full report + detection content →
2026-07-08 · MEDIUM

Meta Glasses

Suricata (4)
View full report + detection content →
2026-07-08 · MEDIUM

Drift Corpus: binary diffs of 240+ 2026 Windows kernel patches

Suricata (7)
View full report + detection content →
2026-07-08 · MEDIUM

Researchers Find New GhostApproval Bug in Many AI Coding Assistants

Suricata (5)
View full report + detection content →
2026-07-08 · MEDIUM

CISSP Exam

Suricata (4)
View full report + detection content →
2026-07-08 · MEDIUM

The teenage millionaire hacker from Tower Hamlets who took down TfL

Suricata (5)
View full report + detection content →
2026-07-08 · MEDIUM

Internal web app testing

Suricata (4)
View full report + detection content →
2026-07-08 · MEDIUM

ISC Stormcast For Wednesday, July 8th, 2026 https://isc.sans.edu/podcastdetail/9998, (Wed, Jul 8th)

Suricata (2)
View full report + detection content →
2026-07-08 · MEDIUM

Bad Epoll: The bug missed by Mythos

Suricata (4)
View full report + detection content →
2026-07-07 · MEDIUM

2026 Chainanalysis Crime Report

Suricata (4)
View full report + detection content →
2026-07-07 · MEDIUM

Open-source AI security risk register mapped to MITRE ATLAS, OWASP LLM/Agentic Apps, and NIST AI 100-2

Suricata (5)
View full report + detection content →
2026-07-07 · MEDIUM

Safer-dependencies: A toolkit for claude code to ensure dependencies used aren't vuln, don't use abandoned packages, implement cooldown to avoid supply chain attacks, etc...

Suricata (4)

MITRE ATT&CK: [object Object]

View full report + detection content →
2026-07-07 · MEDIUM

How dumb is it ?

Suricata (4)
View full report + detection content →
2026-07-07 · MEDIUM

MEP Martin Sonneborn was cutoff after pointing out the questionable rationale for the reintroduction of Chat Control.

Suricata (6)
View full report + detection content →
2026-07-07 · MEDIUM

Cybersecurity statistics of the week (June 29th - July 5th)

Suricata (6)
View full report + detection content →
2026-07-07 · MEDIUM

Company is bragging about having an Agentic SOC in production then posts a senior role asking for IR, DFIR, threat hunting AND training experience. Am I reading this right?

Suricata (3)
View full report + detection content →