LIVE FEED
Subscribe
//

Latest Briefings

Exploits Project Zero Chains 0-Click to Root on Pixel 10 via VPU Driver Flaw
CRITICAL Exploits

Project Zero Chains 0-Click to Root on Pixel 10 via VPU Driver Flaw

Google Project Zero built a working zero-click root exploit chain for the Pixel 10, pivoting from a patched Dolby audio bug to…

by Robbie · 1 month ago
Research CISA Contractor Leaked AWS GovCloud Keys and Plaintext Passwords on GitHub
CRITICAL Research

CISA Contractor Leaked AWS GovCloud Keys and Plaintext Passwords on GitHub

A public GitHub repository maintained by a Nightwing contractor exposed highly privileged AWS GovCloud credentials, plaintext passwords, and internal CISA system files…

by Robbie · 1 month ago
Research Cisco Talos Uncovers BadIIS Malware-as-a-Service Ecosystem Tied to Chinese-Speaking Cybercrime
HIGH Research

Cisco Talos Uncovers BadIIS Malware-as-a-Service Ecosystem Tied to Chinese-Speaking Cybercrime

Cisco Talos researchers have identified a commodity BadIIS malware variant powering a mature malware-as-a-service operation used by Chinese-speaking threat actors to conduct…

by Robbie · 1 month ago
Exploits Alleged Kimwolf Botmaster ‘Dort’ Arrested in Canada, Faces U.S. Charges
CRITICAL Exploits

Alleged Kimwolf Botmaster ‘Dort’ Arrested in Canada, Faces U.S. Charges

Jacob Butler, a 23-year-old Ottawa man, has been arrested by Canadian police and charged in both Canada and the United States for…

by Robbie · 1 month ago
Research Netherlands Seizes 800 Servers, Arrests 2 in Russian Cyberattack Infrastructure Bust
HIGH Research

Netherlands Seizes 800 Servers, Arrests 2 in Russian Cyberattack Infrastructure Bust

Dutch financial crime investigators arrested two men and seized over 800 servers tied to hosting infrastructure used to support Russian-linked DDoS attacks,…

by Robbie · 1 month ago
Research Cisco Talos Releases EvidenceForge for Realistic Synthetic Security Logs
Research

Cisco Talos Releases EvidenceForge for Realistic Synthetic Security Logs

EvidenceForge is a new open-source tool from Cisco Talos that generates correlated, realistic security log datasets across 20-plus formats to support threat…

by Robbie · 1 month ago
Research Encryption Optional: How Cyber Extortion Is Evolving Beyond Ransomware
HIGH Research

Encryption Optional: How Cyber Extortion Is Evolving Beyond Ransomware

Unit 42 research shows ransomware encryption dropped to 78% of extortion cases in 2025, as threat actors pivot to pure data theft…

by Robbie · 1 month ago
Vulnerabilities Smarter Vulnerability Triage: Pairing CVSS With EPSS and GCVE
Vulnerabilities

Smarter Vulnerability Triage: Pairing CVSS With EPSS and GCVE

Cisco Talos argues that severity scores alone make poor prioritization tools, and outlines a practical triage stack combining CVSS, EPSS, and the…

by Robbie · 1 month ago
AI Security Meta’s AI Support Bot Exploited to Reset Instagram Passwords
HIGH AI Security

Meta’s AI Support Bot Exploited to Reset Instagram Passwords

Pro-Iranian hackers circulated a Telegram tutorial showing how to trick Meta's AI customer support assistant into linking a new email address to…

by Robbie · 1 month ago
Research Operation FlutterBridge: New macOS Backdoor Spreads via Google Ads
HIGH Research

Operation FlutterBridge: New macOS Backdoor Spreads via Google Ads

Unit 42 researchers have identified a macOS malvertising campaign delivering a Flutter-based backdoor called FlutterShell, capable of browser hijacking, shell command execution,…

by Robbie · 1 month ago
Research Inside Cisco Talos Threat Hunting: Hypotheses, Telemetry, and Human Judgment
MEDIUM Research

Inside Cisco Talos Threat Hunting: Hypotheses, Telemetry, and Human Judgment

Cisco Talos has published a detailed look at its hypothesis-driven threat hunting methodology, including a real-world case study showing how correlated firewall…

by Robbie · 1 month ago
Research Microsoft Teams Becomes Prime Vector for IT Impersonation Phishing
HIGH Research

Microsoft Teams Becomes Prime Vector for IT Impersonation Phishing

Threat actors including APT29 are exploiting overly permissive Teams federation settings to impersonate IT staff and trick employees into approving MFA prompts.…

by Robbie · 1 month ago
1 33 34 35 37

THE 0600 BRIEF

Every critical CVE and AI-security story, in your inbox each morning.