DEV Community

#threatintel

Gathering, analyzing, and applying intelligence about threats and threat actors.

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Hacker Ethics in Enterprise Security: Rob Juncker's Moral Framework

Hacker Ethics in Enterprise Security: Rob Juncker's Moral Framework

Comments
6 min read
Kiteworks EPG CVE-2026-54154: Pre-Auth RCE with Potential Root Escalation

Kiteworks EPG CVE-2026-54154: Pre-Auth RCE with Potential Root Escalation

1
Comments
7 min read
Warlock: Ransomware Deployment from SYSVOL After SharePoint Compromise

Warlock: Ransomware Deployment from SYSVOL After SharePoint Compromise

1
Comments
9 min read
September 2026 Security Review: Attacks Following Legitimate Features and AI Execution Capabilities

September 2026 Security Review: Attacks Following Legitimate Features and AI Execution Capabilities

1
Comments
6 min read
KillSec Takedown: Juvenile RaaS Operations & Law Enforcement Attribution

KillSec Takedown: Juvenile RaaS Operations & Law Enforcement Attribution

Comments
5 min read
GTIG: Vulnerability Trends in the AI Era and AI Infrastructure Attack Surfaces

GTIG: Vulnerability Trends in the AI Era and AI Infrastructure Attack Surfaces

2
Comments
5 min read
Two Zammad Zero-Days: DIVD Reports Session Compromise, Root Access, and Data Theft

Two Zammad Zero-Days: DIVD Reports Session Compromise, Root Access, and Data Theft

1
Comments
8 min read
Truffle Security: Over 540,000 Valid Credentials Confirmed in Public GitHub Repositories

Truffle Security: Over 540,000 Valid Credentials Confirmed in Public GitHub Repositories

1
Comments
5 min read
Cisco Catalyst SD-WAN Manager CVE-2026-76504: URI Encoding Bypasses Authentication for Admin API Access

Cisco Catalyst SD-WAN Manager CVE-2026-76504: URI Encoding Bypasses Authentication for Admin API Access

1
Comments
6 min read
TA419 Targets AI Policy Experts with BitB and Evilginx AiTM Phishing

TA419 Targets AI Policy Experts with BitB and Evilginx AiTM Phishing

1
Comments
7 min read
Storm-3068: Account Takeover via SSPR Leads to Kubernetes Credential Theft Through Azure DevOps

Storm-3068: Account Takeover via SSPR Leads to Kubernetes Credential Theft Through Azure DevOps

1
Comments
9 min read
Star Blizzard: RedFlick Uses Scheduled Tasks to Deploy CosmicPulse

Star Blizzard: RedFlick Uses Scheduled Tasks to Deploy CosmicPulse

1
Comments
9 min read
Apple CoreGraphics CVE-2026-86950: Arbitrary Code Execution via Crafted File Processing, with Exploitation Reported

Apple CoreGraphics CVE-2026-86950: Arbitrary Code Execution via Crafted File Processing, with Exploitation Reported

1
Comments
8 min read
Dark Web Reality Check: What I Found After 3 Weeks

Dark Web Reality Check: What I Found After 3 Weeks

Comments
3 min read
Supabase Misconfiguration: Readable Tables in 16,326 Databases, Sensitive Data Confirmed in Some Cases

Supabase Misconfiguration: Readable Tables in 16,326 Databases, Sensitive Data Confirmed in Some Cases

2
Comments
9 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.