~/f4n6 $ adversetrace --feed --since 30d --attributed
// security feed

Security Feed

Curated advisories, threat briefs & field intel — attributed, dated & severity-tagged. Kept deliberately separate from my own writing.

all CVE advisory ransomware DORA / NIS2 APT
20 Jul 2026 Jeff Davies
Attackers Combo Up Evasion Tactics for BEC Phishing

1. Executive summary A threat campaign dubbed "The TFF Trap" is using business email compromise (BEC) phishing as an initial access vector

20 Jul 2026 Jeff Davies
HOLLOWGRAPH malware turns Microsoft 365 calendars into an espionage channel

1. Executive summary Group-IB has disclosed HOLLOWGRAPH, a targeted espionage implant that uses compromised Microsoft 365 mailboxes as a command-and-control (C2)

20 Jul 2026 Jeff Davies
WordPress Exploitation Underway (CVE-2026-63030), (Mon, Jul 20th)

1. Executive summary CVE-2026-63030 (CVSS 9.8 CRITICAL, CWE-436) is an unauthenticated remote code execution vulnerability in WordPress Core, exploited via

20 Jul 2026 Jeff Davies
Ransomware: safepay named wdk.de (DE)

1. Executive summary On 2026-07-20, the group "safepay" publicly listed wdk.de — the Frankfurt am Main-based association of German

20 Jul 2026 Jeff Davies
Ransomware: safepay named lbb-treuhand.de (DE)

1. Executive summary On 2026-07-20, the ransomware group "safepay" publicly claimed a victim, lbb-treuhand.de, a German tax consulting,

20 Jul 2026 Jeff Davies
Ransomware: safepay named cenesco.de (DE)

1. Executive summary On 2026-07-20, the ransomware group "safepay" publicly listed the German IT services company cenesco.de as a

20 Jul 2026 Jeff Davies
FakeGit Campaign Uses 7,600 GitHub Repositories to Spread SmartLoader Malware

1. Executive summary The FakeGit campaign, disclosed by Island researchers, has created approximately 7,600 malicious GitHub repositories using 6,600 lookalike developer profiles

20 Jul 2026 Jeff Davies
Risky Bulletin: Hacker wipes Romania's entire land registry database

1. Executive summary A threat actor using the handle "ByteToBreach" breached Romania's National Agency for Cadastre and Real Estate Advertising

20 Jul 2026 Jeff Davies
SleeperGem Uses Three Malicious RubyGems Packages to Target Developer Machines

1. Executive summary Three malicious RubyGems packages — git_credential_manager (v2.8.0–2.8.3), Dendreo (v1.1.3, v1.1.4), and

20 Jul 2026 Jeff Davies
A forensic tool for backdoored code completions in AI assistants

1. Executive summary Researchers from the University of Louisville and the University of North Texas published CodeTracer, a forensic tool designed to trace harmful

19 Jul 2026 Jeff Davies
WordPress Core "wp2shell" RCE flaws get public exploits, patch now

1. Executive summary Two vulnerabilities in WordPress Core — CVE-2026-63030 (REST API batch-route confusion) and CVE-2026-60137 (SQL injection in the

19 Jul 2026 Jeff Davies
Two new high severity WordPress vulnerabilities, patch immediately!

1. Executive summary WordPress Core versions 6.8 through 7.0.1 are affected by two vulnerabilities patched in the 7.0.2 security