~/f4n6 $ adversetrace --feed --since 30d --attributed
// security feed

Security Feed

Curated advisories, threat briefs & field intel — attributed, dated & severity-tagged. Kept deliberately separate from my own writing.

all CVE advisory ransomware DORA / NIS2 APT
16 Jul 2026 Jeff Davies
Srsly Risky Biz: Ransomware Uses AI To Amp Up Negotiations

1. Executive summary A GuidePoint Security report details how data-extortion groups — principally FulcrumSec (active since ~September 2025) and DragonForce (active since 2023) — are

16 Jul 2026 Jeff Davies
Ransom demands are down, email is the top way attackers get in

1. Executive summary Sophos's State of Ransomware 2026 report, based on a survey of 2,158 IT and security leaders whose organisations

15 Jul 2026 Jeff Davies
Zoom warns of critical account takeover vulnerability

1. Executive summary Zoom has disclosed CVE-2026-53412, a critical vulnerability (CVSS 9.8) caused by improper input validation in the Zoom Desktop

15 Jul 2026 Jeff Davies
Google Gemini CLI abused as a hacking agent, malware botnet operator

1. Executive summary A Russian-speaking threat actor dubbed "bandcampro" used Google's open-source Gemini CLI as an autonomous hacking

15 Jul 2026 Jeff Davies
TELEPUZ: a modular MaaS malware spreading via CLICKFIX-VIDAR chains

1. Executive summary Elastic Security Labs reports active in-the-wild distribution of TELEPUZ, a modular, lightweight Windows DLL malware likely operated as a

15 Jul 2026 Jeff Davies
Progress Confirms Zero-Day Vulnerability Behind ShareFile Disruption

1. Executive summary Progress Software has confirmed that a high-severity zero-day vulnerability in ShareFile Storage Zones Controller (SZC) versions 5.x and

15 Jul 2026 Jeff Davies
Ransomware: AiLock named Ferrovial (ES)

1. Executive summary On 15 July 2026, the ransomware operator "AiLock" publicly claimed compromise of Ferrovial, a global infrastructure and mobility operator

15 Jul 2026 Jeff Davies
OkoBot: new sophisticated malware framework targets cryptocurrency users

1. Executive summary Kaspersky has published detailed analysis of "OkoBot," a sophisticated, multi-stage malware framework active since at least April 2025

15 Jul 2026 Jeff Davies
Compromised AsyncAPI npm Packages Deliver Multi-Stage Botnet Malware

1. Executive summary Four npm packages in the @asyncapi namespace (@asyncapi/generator@3.3.1, @asyncapi/generator-helpers@1.1.1, @asyncapi/generator-components@

15 Jul 2026 Jeff Davies
This fake Apple app can unlock your Mac's password vault

1. Executive summary CrashStealer is a new macOS infostealer, discovered by Jamf Threat Labs and publicly reported in July 2026, that masquerades as Apple&

14 Jul 2026 Jeff Davies
Spanish Police take down €140 million cyber fraud ring, arrest four

1. Executive summary Spanish National Police, supported by Interpol and Europol, dismantled a cybercrime and money-laundering organisation that generated approximately €140 million ($160

14 Jul 2026 Jeff Davies
Microsoft Patch Tuesday for July 2026 — Snort rules and prominent vulnerabilities

1. Executive summary Microsoft's July 2026 Patch Tuesday addresses a record 622 vulnerabilities across its product ecosystem, including 57 rated critical. Two