Security Feed
Curated advisories, threat briefs & field intel — attributed, dated & severity-tagged. Kept deliberately separate from my own writing.
1. Executive summary ClickLock Stealer is a previously undocumented macOS infostealer detailed by Group-IB, active since approximately May 2026, with at least 100
1. Executive summary Kaspersky GReAT has published details of "OkoBot," a sophisticated Windows malware framework active since at least March 2025 that
1. Executive summary CISA has confirmed active in-the-wild exploitation of four Microsoft SharePoint Server vulnerabilities — CVE-2026-32201 (CVSS 6.5 MEDIUM)
1. Executive summary Fortinet FortiSandbox versions 4.4.0 through 4.4.8 contain CVE-2026-39808, a critical (CVSS 9.8) OS command
1. Executive summary On 16 July 2026, the ransomware group "incransom" publicly listed ASA International (asa-international.com) as a victim on
1. Executive summary A flaw in Anthropic's Claude for Chrome browser extension allows a malicious extension co-installed in the same browser
1. Executive summary Cisco Talos has disclosed an active, financially motivated campaign by actor "UAT-11795" (no MITRE ATT&CK profile
1. Executive summary Elastic Security Labs has published a technical report on TELEPUZ, a modular, C-based Windows malware offered under a malware-as-
1. Executive summary Researchers from Seoul National University, the University of Illinois Urbana-Champaign, and Largosoft published a paper on 6 July 2026 detailing
1. Executive summary A financially motivated Russian threat actor tracked as "UAT-11795" is distributing trojanized installers for common enterprise and developer
1. Executive summary A new ransomware actor dubbed "Spirals" completed a full intrusion cycle — from initial access through data theft to file
1. Executive summary F5 released an out-of-band security rollout on 16 July 2026 patching eight vulnerabilities across NGINX Open Source, NGINX Plus,