~/f4n6 $ adversetrace --feed --since 30d --attributed
// security feed

Security Feed

Curated advisories, threat briefs & field intel — attributed, dated & severity-tagged. Kept deliberately separate from my own writing.

all CVE advisory ransomware DORA / NIS2 APT
19 Aug 2026 Jeff Davies
Server Mistake Exposes StopAndProtect’s Hacked WordPress Network

1. Executive summary Check Point Research reports a malware operation labelled StopAndProtect that used compromised WordPress sites to present fake CAPTCHA prompts, distribute malware,

19 Aug 2026 Jeff Davies
Describing attacks with crime script analysis

1. Executive summary Cisco Talos describes crime script analysis as a method for mapping business email compromise (BEC) into attacker actions, decision points and

19 Aug 2026 Jeff Davies
OpenAI puts major frontier AI training run on hold over cyber risks

1. Executive summary According to a single Help Net Security report, OpenAI paused frontier reinforcement-learning activity for two weeks, with its largest planned

19 Aug 2026 Jeff Davies
Clop-Linked Windchill Web Shell Decrypts Credentials and Maps Engineering Data

1. Executive summary Internet-exposed PTC Windchill and FlexPLM systems are reportedly being compromised through CVE-2026-12569, followed by deployment of a tailored

19 Aug 2026 Jeff Davies
StopAndProtect Uses Nearly 2,000 Hacked WordPress Sites to Spread Malware and Steal Data

1. Executive summary Check Point, as reported by The Hacker News, identified a global campaign using nearly 2,000 compromised WordPress sites for ClickFix

18 Aug 2026 Jeff Davies
More than 200 victims of Medusa ransomware identified over the last year, CISA says

1. Executive summary CISA and the FBI have published an updated advisory confirming that the Medusa ransomware-as-a-service (RaaS) operation has compromised

18 Aug 2026 Jeff Davies
CVE-2026-65400 — Apple macOS: Apple macOS Improper Authentication Vulnerability

1. Executive summary CVE-2026-65400 is a critical (CVSS 9.8) improper authentication vulnerability (CWE-287) in Apple macOS Screen Sharing that allows

18 Aug 2026 Jeff Davies
CISA Malcolm

1. Executive summary CISA published ICS advisory ICSA-26-230-01 disclosing six vulnerabilities in the Malcolm network traffic analysis tool suite, a platform

18 Aug 2026 Jeff Davies
CVE-2026-55040 — Microsoft SharePoint: Microsoft SharePoint Weak Authentication Vulnerability

1. Executive summary CVE-2026-55040 is a critical (CVSS 9.1) weak authentication vulnerability in Microsoft Office SharePoint that allows an unauthenticated, remote

18 Aug 2026 Jeff Davies
CVE-2026-59310 — Broadcom VMware vCenter: Broadcom VMware vCenter Path Traversal Vulnerability

1. Executive summary CVE-2026-59310 is a critical (CVSS 9.8) path traversal vulnerability (CWE-22) in the Broadcom VMware vCenter Syslog server.

18 Aug 2026 Jeff Davies
CVE-2026-33824 — Microsoft Internet Key Exchange (IKE) Service Extensions: Microsoft Internet Key Exchange (IKE) Service Extensions Double Free Vulnerability

1. Executive summary CVE-2026-33824 is a critical (CVSS 9.8) double free vulnerability (CWE-415) in the Microsoft Windows Internet Key Exchange

18 Aug 2026 Jeff Davies
Critical GitLab Zero-Click Flaw Poses Mitigation Challenges

1. Executive summary A critical zero-click vulnerability, CVE-2026-19478 (CVSS 9.4), affects self-managed GitLab instances. The flaw is classified as