~/f4n6 $ adversetrace --feed --since 30d --attributed
// security feed

Security Feed

Curated advisories, threat briefs & field intel — attributed, dated & severity-tagged. Kept deliberately separate from my own writing.

all CVE advisory ransomware DORA / NIS2 APT
28 Jul 2026 Jeff Davies
Ransomware: anubis named Prelys Courtage (FR)

1. Executive summary On 28 July 2026, the ransomware group "anubis" publicly claimed a data breach against Prelys Courtage, a major mortgage

28 Jul 2026 Jeff Davies
AutoIT Payload Injector

1. Executive summary An active email campaign distributing a multi-stage AutoIT payload injector has been observed since late July 2026. The attack chain

28 Jul 2026 Jeff Davies
Shadow AI incident response begins with logs that may already be gone

1. Executive summary LevelBlue reports a consistent and growing operational gap in EMEA financial services: employees are using unsanctioned generative AI platforms ("shadow

28 Jul 2026 Jeff Davies
Critical TeamCity Flaw Could Let Attackers Run OS Commands Without Logging In

1. Executive summary JetBrains has disclosed CVE-2026-63077, a CRITICAL vulnerability (CVSS 9.8, CWE-502 — Deserialization of Untrusted Data) affecting all TeamCity

27 Jul 2026 Jeff Davies
CVE-2025-68686 — Fortinet FortiOS: Fortinet FortiOS Exposure of Sensitive Information to an Unauthorized Actor Vulnerability

1. Executive summary CVE-2025-68686 is a MEDIUM-severity (CVSS 5.9, CVSS:3.1/AV:N/AC:H/PR:N/UI:N/

27 Jul 2026 Jeff Davies
Operation BlueDash Deploys Level RMM and ScreenConnect via Fake Teams Update

1. Executive summary A phishing campaign dubbed "Operation BlueDash" is targeting organisations with Microsoft Teams-themed "secure document" lures that

27 Jul 2026 Jeff Davies
Microsoft Defender for Endpoint leaves some Linux boxes defenseless after update

1. Executive summary Microsoft has disclosed two defects in Defender for Endpoint (MDE) on Linux arising from the 101.26042.x update train. The

27 Jul 2026 Jeff Davies
An OS Command Injection vulnerability in Progress Software LoadMaster, ECS Connection Manager,...

1. Executive summary Progress Software has disclosed multiple high-severity vulnerabilities — including OS command injection, incorrect authorization, and missing authorization flaws — across LoadMaster, ECS

27 Jul 2026 Jeff Davies
CVE-2026-16812 — Arista VeloCloud Orchestrator: Arista VeloCloud Orchestrator On-Prem OS Command Injection Vulnerability

1. Executive summary CVE-2026-16812 is a CVSS 10.0 CRITICAL OS command injection vulnerability (CWE-78) in Arista VeloCloud Orchestrator (VCO) On-

27 Jul 2026 Jeff Davies
MedusaHVNC Malware Uses Hidden Windows Desktops to Evade Detection

1. Executive summary MedusaHVNC is a remote access trojan (RAT) offered as malware-as-a-service (MaaS) and promoted via a dedicated website and

27 Jul 2026 Jeff Davies
PoC exploit released for critical AD CS domain-takeover flaw (CVE-2026-54121)

1. Executive summary A proof-of-concept (PoC) exploit and technical details for CVE-2026-54121 (dubbed "Certighost") were publicly released on

27 Jul 2026 Jeff Davies
AWS gives DevOps teams an AI investigator for firewall incidents

1. Executive summary AWS has launched an AI-powered DevOps Agent feature for troubleshooting AWS Network Firewall incidents. The agent automates log inspection, firewall