~/f4n6 $ adversetrace --feed --since 30d --attributed
// security feed

Security Feed

Curated advisories, threat briefs & field intel — attributed, dated & severity-tagged. Kept deliberately separate from my own writing.

all CVE advisory ransomware DORA / NIS2 APT
11 Jun 2026 Jeff Davies
ShinyHunters claims it hacked 100 orgs by exploiting an Oracle PeopleSoft 0-day

1. Executive summary The threat actor group "ShinyHunters" claims to have compromised over 100 organizations, including the University of Nottingham, by exploiting

11 Jun 2026 Jeff Davies
ShinyHunters Targets Education Sector with Oracle PeopleSoft Exploit

1. Executive summary Threat actor UNC6240 (attributed publicly to "ShinyHunters") is actively exploiting CVE-2026-35273, a critical remote code execution vulnerability

11 Jun 2026 Jeff Davies
Path traversal flaw in AI dev platform Langflow exploited in attacks

1. Executive summary Threat actors are actively exploiting CVE-2026-5027, a high-severity (CVSS 8.8) path traversal vulnerability in the AI development

11 Jun 2026 Jeff Davies
Max severity Ivanti Sentry vulnerability now exploited in attacks

1. Executive summary Threat actors are actively exploiting CVE-2026-10520, a maximum-severity (CVSS 10.0) OS command injection vulnerability in Ivanti Sentry

11 Jun 2026 Jeff Davies
Unpatched NTLM Leakage in Windows search: URI Handler, Same Bug, No CVE, No Fix

1. Executive summary A native Windows URI handler (search:) contains an unpatched NTLM credential leakage vulnerability functionally identical to the recently patched Snipping Tool

10 Jun 2026 Jeff Davies
The ‘Miasma’ worm source code briefly leaked on GitHub

1. Executive summary The source code for 'Miasma', a credential-stealing supply chain worm previously targeting Red Hat and Microsoft ecosystems, was

10 Jun 2026 Jeff Davies
Oracle PeopleSoft servers hacked in ShinyHunters data theft attacks

1. Executive summary The ShinyHunters extortion group claims to have compromised over 100 organizations by exploiting a "gadget chain" of legacy and

10 Jun 2026 Jeff Davies
Microsoft patches Exchange Server zero-day exploited in attacks

1. Executive summary Microsoft has released security updates addressing CVE-2026-42897, a high-severity Cross-Site Scripting (XSS) vulnerability in Microsoft Exchange Server

09 Jun 2026 Jeff Davies
ServiceNow discloses security incident exposing customer data

1. Executive summary ServiceNow has confirmed a security incident wherein threat actors exploited an unauthenticated access flaw in a specific API endpoint to query

09 Jun 2026 Jeff Davies
Ransomware: shinyhunters named nottingham.ac.uk (GB)

Issuer: Adverse Trace Date issued: 2026-06-09 Version: 1.0 1. Executive summary The ransomware group "shinyhunters" has claimed responsibility for

09 Jun 2026 Jeff Davies
New Veeam vulnerability exposes backup servers to RCE attacks

Issuer: Adverse Trace Date issued: 2026-06-09 Version: 1.0 1. Executive summary Veeam has released patches for CVE-2026-44963, a critical

09 Jun 2026 Jeff Davies
Miasma worms its way onto GitHub as attack kit goes open source

Issuer: Adverse Trace Date issued: 2026-06-09 Version: 1.0 1. Executive summary The "Miasma" supply-chain attack toolkit, previously used