~/f4n6 $ adversetrace --feed --since 30d --attributed
// security feed

Security Feed

Curated advisories, threat briefs & field intel — attributed, dated & severity-tagged. Kept deliberately separate from my own writing.

all CVE advisory ransomware DORA / NIS2 APT
04 Jul 2026 Jeff Davies
North Korean Hackers Publish 108 Malicious Packages and Extensions in PolinRider Campaign

1. Executive summary The Contagious Interview campaign (MITRE G1052) has expanded into a new supply-chain attack cluster dubbed PolinRider, publishing 108 unique malicious

04 Jul 2026 Jeff Davies
Cyber readiness for SMBs: Getting the basics right

1. Executive summary ESET published a threat-landscape assessment for SMBs noting that AI is lowering the barrier to entry for attackers — improving lure

03 Jul 2026 Jeff Davies
North Korea-Linked npm Packages Mimic Rollup Polyfills to Steal Developer Secrets

1. Executive summary JFrog has identified a campaign distributing malicious npm packages that impersonate the legitimate rollup-plugin-polyfill-node project to deliver remote-

03 Jul 2026 Jeff Davies
Spyware found on phone of European Parliament member probing it

1. Executive summary Citizen Lab researchers have confirmed that the mobile phone of Stelios Kouloglou — a former Member of the European Parliament (MEP) who

03 Jul 2026 Jeff Davies
Incorrect authorization in Microsoft Exchange Online allows an authorized attacker to elevate...

1. Executive summary An incorrect authorization vulnerability in Microsoft Exchange Online permits an authenticated, remote attacker to elevate privileges over a network. The flaw

03 Jul 2026 Jeff Davies
A local privilege escalation vulnerability in the WatchGuard Mobile VPN with SSL client for...

1. Executive summary A local privilege escalation vulnerability (CVE-2026-13079) exists in the WatchGuard Mobile VPN with SSL client for Windows, affecting versions

03 Jul 2026 Jeff Davies
Dev says Google warned him about account hijack – then charged him $11,000 anyway

1. Executive summary Over June 7–8 2026, a solo developer's Google Cloud account incurred $11,089.77 in unauthorised charges driven

02 Jul 2026 Jeff Davies
Smooth AI criminal drives 'first' end-to-end agentic ransomware attack

1. Executive summary Sysdig threat researchers have documented what they assess as the first fully agentic ransomware operation, in which an LLM-driven agent

02 Jul 2026 Jeff Davies
Catan and Mouse

1. Executive summary Cisco Talos published research on ARToken, a phishing-as-a-service (PhaaS) operator panel that shares infrastructure, API contracts, and operational

02 Jul 2026 Jeff Davies
Supreme Court decision threatens EU-US data transfer agreement

1. Executive summary A U.S. Supreme Court ruling that President Trump acted legally in firing FTC Commissioner Rebecca Slaughter without cause has undermined

02 Jul 2026 Jeff Davies
Fake Google and Cloudflare verification pages spread multiple malware families

1. Executive summary An active, evolving ClickFix campaign uses fake Google and Cloudflare verification pages to socially engineer users into executing malicious PowerShell commands,

02 Jul 2026 Jeff Davies
New CitrixBleed Vulnerability Exploited Immediately After Public Disclosure

1. Executive summary A new CitrixBleed-like vulnerability (CVE-2026-8451, CVSS 8.8) in NetScaler ADC and NetScaler Gateway appliances was exploited in