~/f4n6 $ adversetrace --feed --since 30d --attributed
// security feed

Security Feed

Curated advisories, threat briefs & field intel — attributed, dated & severity-tagged. Kept deliberately separate from my own writing.

all CVE advisory ransomware DORA / NIS2 APT
02 Sep 2026 Jeff Davies
Two critical Chrome flaws put users at risk on malicious websites

1. Executive summary Google Chrome Stable 152.0.7977.75/.76 for Windows and macOS and 152.0.7977.75 for Linux fixes 26

02 Sep 2026 Jeff Davies
Ransomware: anubis named Marlborough Partners (GB)

1. Executive summary Ransomware.live indexed a public claim associating “anubis” with UK capital-solutions advisory firm Marlborough Partners and describing the event as

02 Sep 2026 Jeff Davies
Attackers Exploit Critical Switchvox Flaw to Deploy Reverse Shells Without Credentials

1. Executive summary Attackers are reportedly exploiting CVE-2026-9586 in internet-facing Sangoma Switchvox SMB Edition 8.3 (104997), using unauthenticated SQL injection

02 Sep 2026 Jeff Davies
Counterfeit installers to system compromise: Tracking a deceptive software download campaign

1. Executive summary Microsoft reports an active campaign using counterfeit Chinese-language software-download sites to compromise Windows systems, primarily within China-based operations

01 Sep 2026 Jeff Davies
Rockwell Automation Logix Platform

1. Executive summary On 2026-09-01 CISA published advisory ICSA-26-244-03, republishing a Rockwell Automation advisory covering CVE-2026-9637, a

01 Sep 2026 Jeff Davies
Rockwell Automation RSLinx Classic

1. Executive summary CISA has republished a Rockwell Automation advisory (ICSA-26-244-01, 2026-09-01) covering four denial-of-service vulnerabilities in

01 Sep 2026 Jeff Davies
Rockwell Automation ControlLogix, CompactLogix, CompactLogix 5480, GuardLogix, Compact GuardLogix

1. Executive summary CISA has republished a Rockwell Automation advisory (ICSA-26-244-05) covering a network-reachable denial-of-service vulnerability — CVE-2021-

01 Sep 2026 Jeff Davies
Leaked Russian Cyber-Operations Training Materials

1. Executive summary Leaked training and personnel records from Bauman Moscow State Technical University's Department No. 4 describe a formalised Russian force-

01 Sep 2026 Jeff Davies
Iranian Hackers Pose as Recruiters to Deliver Cross-Platform RATs Through Coding Tests

1. Executive summary The Iranian-aligned actor tracked as Nimbus Manticore (also tracked as "Iranian Dream Job") has been attributed to two

01 Sep 2026 Jeff Davies
Iranian cyber spies target aviation, fintech developers with new malware

1. Executive summary Kaspersky GReAT has documented a spear-phishing campaign by the Iran-linked actor Mirage Kitten (also tracked as UNC1549, Smoke Sandstorm,

01 Sep 2026 Jeff Davies
Ransomware: BrainCipher named crmeyer.com (DE)

1. Executive summary On 2026-08-31, the BrainCipher ransomware group listed crmeyer.com — a German (DE) organisation — on its leak site, claiming compromise

01 Sep 2026 Jeff Davies
So Your CFO's Phone Has Been Pwned: A DFIR Journey

1. Executive summary Censys ARC (researcher: Aidan Holland) has published a DFIR walkthrough — the two incidents are fictional, but the malware families and infrastructure