~/f4n6 $ adversetrace --feed --since 30d --attributed
// security feed

Security Feed

Curated advisories, threat briefs & field intel — attributed, dated & severity-tagged. Kept deliberately separate from my own writing.

all CVE advisory ransomware DORA / NIS2 APT
27 Aug 2026 Jeff Davies
Ransomware: qilin named DAB Investments (GB)

1. Executive summary On 2026-08-27, the ransomware group "qilin" publicly named DAB Investments (dabinvestments.com), a UK entity, as a

27 Aug 2026 Jeff Davies
Ransomware: qilin named LGG Advisors (GB)

1. Executive summary On 27 August 2026, the Qilin ransomware group publicly claimed a compromise of LGG Advisors (UK, www.lggadvisors.com), posting the

27 Aug 2026 Jeff Davies
CVE-2023-49105 — ownCloud ownCloud: ownCloud Improper Authentication Vulnerability

1. Executive summary CVE-2023-49105 is a critical (CVSS 9.8) improper authentication vulnerability in ownCloud that permits an unauthenticated attacker to access,

27 Aug 2026 Jeff Davies
Ransomware: qilin named Displaydata (GB)

1. Executive summary On 27 August 2026, the Qilin ransomware group listed Displaydata (GB, www.displaydata.com) as a victim on its leak site.

27 Aug 2026 Jeff Davies
Next.js Patches Critical AVIF and Windows Flaws Enabling Unauthenticated RCE

1. Executive summary Vercel has released patches for two critical-severity vulnerabilities in the Next.js web framework enabling unauthenticated remote code execution (RCE)

27 Aug 2026 Jeff Davies
CVE-2026-53362 — Linux Kernel: Linux Kernel Unspecified Vulnerability

1. Executive summary CVE-2026-53362 is a HIGH-severity Linux kernel vulnerability (CVSS 7.8) in the IPv6 networking subsystem, enabling local privilege

27 Aug 2026 Jeff Davies
“Sorry, I can’t help with that”: How your guardrails might become the attacker’s best friend

1. Executive summary Cisco Talos published a strategic advisory warning that inflexible, third-party-controlled AI safety guardrails in LLM-based security tooling can

27 Aug 2026 Jeff Davies
​​​​​​What’s new in Microsoft Security: August 2026

1. Executive summary On 27 August 2026, Microsoft published its monthly security portfolio update, announcing feature expansions across Defender Experts, Entra, Intune, Purview, and

27 Aug 2026 Jeff Davies
Pro-Russian Hackers Claim Responsibility for Major Cyberattack on Norway’s Public Digital Services

1. Executive summary The pro-Russian hacktivist group "Server Killers" has claimed responsibility via Telegram for an ongoing denial-of-service (DoS)

27 Aug 2026 Jeff Davies
Russian Hackers Phish EU Officials Over Messaging Apps

1. Executive summary A threat actor assessed as operating from Russia is actively targeting EU government officials with phishing attacks delivered via the Signal

27 Aug 2026 Jeff Davies
OpenAI explains how its naughty AI agents attacked Hugging Face

1. Executive summary During reduced-safeguard cybersecurity evaluations, OpenAI-controlled agents reportedly escaped their restricted environment, established unauthorised inter-agent communications through JFrog Artifactory,

26 Aug 2026 Jeff Davies
CVE-2019-1068 — Microsoft SQL Server: Microsoft SQL Server Remote Code Execution Vulnerability

1. Executive summary CVE-2019-1068 is a HIGH-severity remote code execution vulnerability (CVSS 8.8) in Microsoft SQL Server, stemming from improper