LIVE FEED
Subscribe
//

Latest Briefings

Research Cloud Bucket Hijacking Technique Threatens Data Streams Across AWS, GCP, and Azure
HIGH Research

Cloud Bucket Hijacking Technique Threatens Data Streams Across AWS, GCP, and Azure

Unit 42 researchers have disclosed a bucket hijacking method that exploits globally unique bucket names across major cloud providers, allowing attackers to…

by Robbie · 1 day ago
Exploits Scattered Spider Members Plead Guilty on Day One of UK Trial
HIGH Exploits

Scattered Spider Members Plead Guilty on Day One of UK Trial

Two key members of the Scattered Spider cybercrime group admitted to hacking Transport for London and conspiring in a series of ransomware…

by Robbie · 1 day ago
AI Security Malicious Skills Persist on ClawHub Despite AI Agent Marketplace Scanning
HIGH AI Security

Malicious Skills Persist on ClawHub Despite AI Agent Marketplace Scanning

Unit 42 researchers found five undetected malicious skills in OpenClaw's ClawHub marketplace between February and May 2026, including macOS infostealers and novel…

by Robbie · 1 day ago
Research How Windows COM Becomes a Weapon: A Technical Primer from Cisco Talos
Research

How Windows COM Becomes a Weapon: A Technical Primer from Cisco Talos

Cisco Talos breaks down how threat actors exploit the Component Object Model for lateral movement, persistence, evasion, and more, offering reverse-engineering guidance…

by Robbie · 1 day ago
Exploits Poland Arrests Four in SIM-Swapping Gang Behind Millions in Crypto Theft
HIGH Exploits

Poland Arrests Four in SIM-Swapping Gang Behind Millions in Crypto Theft

Polish authorities, working with the FBI and HSI, have detained four members of a cybercrime group that breached telecom infrastructure and hijacked…

by Robbie · 1 day ago
Exploits Phishing Campaign Hits Hotels in Europe and Asia with Node.js Implant
MEDIUM Exploits

Phishing Campaign Hits Hotels in Europe and Asia with Node.js Implant

Microsoft has flagged an active phishing operation targeting hospitality organizations since April 2026, delivering a Node.js-based implant through photo-themed ZIP file lures.

by Robbie · 1 day ago
Exploits Polymarket Hit by Supply Chain Attack, $3 Million in Crypto Stolen
HIGH Exploits

Polymarket Hit by Supply Chain Attack, $3 Million in Crypto Stolen

A compromised third-party vendor injected a malicious script into Polymarket's frontend, enabling attackers to steal roughly $3 million from at least 11…

by Robbie · 1 day ago
Exploits Klue Supply Chain Breach Widens as Extortion Takes a Chaotic Turn
HIGH Exploits

Klue Supply Chain Breach Widens as Extortion Takes a Chaotic Turn

Nearly two dozen confirmed victims have emerged from the Klue supply chain attack, while the threat actor behind the breach has reportedly…

by Robbie · 1 day ago
Exploits PTC Windchill Flaw Exploited in the Wild, CISA Issues KEV Alert
CRITICAL Exploits

PTC Windchill Flaw Exploited in the Wild, CISA Issues KEV Alert

A remote code execution vulnerability in PTC Windchill and FlexPLM is being actively exploited to deploy persistent webshells, marking the first confirmed…

by Robbie · 1 day ago
Vulnerabilities Russian Intelligence Actors Evolve Signal Phishing to Steal Backup Recovery Keys
HIGH Vulnerabilities

Russian Intelligence Actors Evolve Signal Phishing to Steal Backup Recovery Keys

A campaign attributed to Russian Intelligence Services has expanded beyond account hijacking to trick high-value targets into surrendering their Signal Backup Recovery…

by Robbie · 1 day ago
Research Uni-App Framework Underpins 236,000 Investment Scam Domains
HIGH Research

Uni-App Framework Underpins 236,000 Investment Scam Domains

Researchers at Infoblox have traced more than 236,000 scam-related second-level domains to a shared infrastructure built on the Chinese open-source framework Uni-App,…

by Robbie · 1 day ago
AI Security OpenAI Restricts GPT-5.6 Sol Rollout, Touts Stronger Cyber Safeguards
AI Security

OpenAI Restricts GPT-5.6 Sol Rollout, Touts Stronger Cyber Safeguards

OpenAI has released three GPT-5.6 variants, Sol, Terra, and Luna, in a tightly controlled preview tied to U.S. government engagement, with Sol…

by Robbie · 1 day ago
1 7 8 9

THE 0600 BRIEF

Every critical CVE and AI-security story, in your inbox each morning.