~/f4n6 $ adversetrace --feed --since 30d --attributed
// security feed

Security Feed

Curated advisories, threat briefs & field intel — attributed, dated & severity-tagged. Kept deliberately separate from my own writing.

all CVE advisory ransomware DORA / NIS2 APT
22 Jun 2026 Jeff Davies
Ransomware: BrainCipher named sterlinggloballtd.com (GB)

1. Executive summary On 22 June 2026, the ransomware group "BrainCipher" listed sterlinggloballtd.com, a UK-based entity, on its data-leak

22 Jun 2026 Jeff Davies
One intrusion, two cyberattackers: Uncovering parallel threat activity

1. Executive summary Microsoft's Detection and Response Team (DART) responded to a multi-stage intrusion in which two unrelated threat actors operated

22 Jun 2026 Jeff Davies
22nd June – Threat Intelligence Report

1. Executive summary The 22 June Check Point weekly bulletin surfaces multiple active-exploitation events directly relevant to EMEA financial services. Splunk Enterprise (CVE-

22 Jun 2026 Jeff Davies
MISP core contained multiple broken access-control flaws where authorization checks were...

1. Executive summary MISP core (the open-source threat-intelligence sharing platform) contained multiple broken access-control vulnerabilities in which authorisation checks were performed

22 Jun 2026 Jeff Davies
Fortinet Responds to FortiBleed Campaign

1. Executive summary Fortinet has confirmed a large-scale credential-harvesting campaign, tracked as FortiBleed, that has produced a database of over 86,000

22 Jun 2026 Jeff Davies
More Cybersecurity Firms Disclose Impact From Klue Hack

1. Executive summary Between 11–12 June 2026, threat actors compromised market intelligence platform Klue via a legacy credential associated with an integration service,

22 Jun 2026 Jeff Davies
Klue OAuth breach victim list grows as Icarus hackers claim attack

1. Executive summary Market intelligence platform Klue has confirmed a security incident in which attackers abused a compromised legacy credential tied to an integration

20 Jun 2026 Jeff Davies
New Prinz Eugen ransomware prioritizes recent files for encryption

1. Executive summary A new ransomware operation dubbed Prinz Eugen has been observed targeting organisations with a hands-on-keyboard approach, prioritising recently modified

20 Jun 2026 Jeff Davies
Microsoft links Mastra AI supply chain attack to North Korean hackers

1. Executive summary Microsoft has attributed the compromise of more than 140 npm packages in the @mastra scope to the North Korean state-sponsored

19 Jun 2026 Jeff Davies
FortiBleed Campaign Exposing Credentials for 73,932 FortiGate Systems

1. Executive summary A dataset dubbed "FortiBleed" containing valid administrative and SSL VPN credentials for approximately 73,932 Fortinet FortiGate firewall URLs

19 Jun 2026 Jeff Davies
New Abuse of the ClickOnce Technology, Part 1: The Inner Workings of ClickOnce Application Deployment

1. Executive summary CrowdStrike has published Part 1 of a two-part series documenting abuse of Microsoft's ClickOnce deployment technology. ClickOnce is

19 Jun 2026 Jeff Davies
Cybersecurity Firms Impacted by Klue Supply Chain Attack

1. Executive summary Between 11–17 June 2026, threat actors compromised the backend of Klue, a market-intelligence platform that integrates with multiple SaaS