Security Feed
Curated advisories, threat briefs & field intel — attributed, dated & severity-tagged. Kept deliberately separate from my own writing.
1. Executive summary A threat campaign dubbed "The TFF Trap" is using business email compromise (BEC) phishing as an initial access vector
1. Executive summary Group-IB has disclosed HOLLOWGRAPH, a targeted espionage implant that uses compromised Microsoft 365 mailboxes as a command-and-control (C2)
1. Executive summary CVE-2026-63030 (CVSS 9.8 CRITICAL, CWE-436) is an unauthenticated remote code execution vulnerability in WordPress Core, exploited via
1. Executive summary On 2026-07-20, the group "safepay" publicly listed wdk.de — the Frankfurt am Main-based association of German
1. Executive summary On 2026-07-20, the ransomware group "safepay" publicly claimed a victim, lbb-treuhand.de, a German tax consulting,
1. Executive summary On 2026-07-20, the ransomware group "safepay" publicly listed the German IT services company cenesco.de as a
1. Executive summary The FakeGit campaign, disclosed by Island researchers, has created approximately 7,600 malicious GitHub repositories using 6,600 lookalike developer profiles
1. Executive summary A threat actor using the handle "ByteToBreach" breached Romania's National Agency for Cadastre and Real Estate Advertising
1. Executive summary Three malicious RubyGems packages — git_credential_manager (v2.8.0–2.8.3), Dendreo (v1.1.3, v1.1.4), and
1. Executive summary Researchers from the University of Louisville and the University of North Texas published CodeTracer, a forensic tool designed to trace harmful
1. Executive summary Two vulnerabilities in WordPress Core — CVE-2026-63030 (REST API batch-route confusion) and CVE-2026-60137 (SQL injection in the
1. Executive summary WordPress Core versions 6.8 through 7.0.1 are affected by two vulnerabilities patched in the 7.0.2 security