~/f4n6 $ adversetrace --feed --since 30d --attributed
// security feed

Security Feed

Curated advisories, threat briefs & field intel — attributed, dated & severity-tagged. Kept deliberately separate from my own writing.

all CVE advisory ransomware DORA / NIS2 APT
18 Jun 2026 Jeff Davies
Oracle June 2026 Critical Security Patch Update Addresses 243 CVEs (CVE-2026-35273)

1. Executive summary Oracle's June 2026 Critical Security Patch Update (CSPU) addresses 243 CVEs across 245 patches in 11 product families, with

18 Jun 2026 Jeff Davies
GentleKiller targets more than 400 security processes across 48 products

1. Executive summary ESET has disclosed a portfolio of EDR-killer tools used by the ransomware-as-a-service (RaaS) operation "Gentlemen,"

18 Jun 2026 Jeff Davies
Crypto Clipper uses Tor and worm-like propagation for persistence and control

1. Executive summary Microsoft Threat Intelligence has documented a Windows-based cryptocurrency clipper ("CryptoBandits") active since February 2026 that propagates via malicious

18 Jun 2026 Jeff Davies
Evil-WinRM through 3.9, fixed in commit 6ecd570, contains a path traversal vulnerability in the...

1. Executive summary A path traversal vulnerability (CVE-2026-55201, High severity, status: Unreviewed) has been disclosed in Evil-WinRM through version 3.9,

18 Jun 2026 Jeff Davies
Massive password-stealing attack hits 75k Fortinet firewalls

1. Executive summary A threat actor has compiled a verified database of working credentials for approximately 75,000 Fortinet / FortiGate firewall devices spanning 21,

18 Jun 2026 Jeff Davies
FortiBleed leak exposes Fortinet VPN credentials for 73,000 devices.

1. Executive summary A data leak dubbed "FortiBleed" has exposed what appears to be a collection of Fortinet and FortiGate VPN credentials

18 Jun 2026 Jeff Davies
F5 Patches Critical, High-Severity NGINX Vulnerabilities

1. Executive summary F5 has released out-of-band security updates addressing multiple vulnerabilities in NGINX, NGINX Plus, and NGINX Gateway Fabric. The two

18 Jun 2026 Jeff Davies
Open WebUI: Redirect-Bypass SSRF in OAuth `_process_picture_url` (incomplete-fix sibling of CVE-2026-45401)

1. Executive summary A server-side request forgery (SSRF) vulnerability exists in Open WebUI's OAuth profile-picture handling that allows an attacker

18 Jun 2026 Jeff Davies
Cisco adds another SD-WAN box to max-severity bug advisory

1. Executive summary Cisco has amended its February 2026 advisory for CVE-2026-20127 (CVSS 10.0, improper authentication) to add Cisco Catalyst SD-

16 Jun 2026 Jeff Davies
Ransomware gang abuses Microsoft Teams relays to hide malicious traffic

1. Executive summary DragonForce ransomware operators have been observed deploying a custom Go-based remote access trojan (RAT) dubbed Backdoor.Turn that tunnels command-

16 Jun 2026 Jeff Davies
From a VHDX File to a Remcos RAT, (Tue, Jun 16th)

1. Executive summary A multi-stage malware campaign delivers the Remcos remote access trojan (RAT) to Windows endpoints via a malicious ZIP archive containing

16 Jun 2026 Jeff Davies
Pickle in the Middle – Hijacking Vertex AI Model Uploads for Cross-Tenant RCE

1. Executive summary Unit 42 has disclosed a vulnerability in the Google Cloud Vertex AI Python SDK (google-cloud-aiplatform) that allows an attacker