Security Feed
Curated advisories, threat briefs & field intel — attributed, dated & severity-tagged. Kept deliberately separate from my own writing.
1. Executive summary On 2026-07-26, the actor "Global Secret Group" published a claim on its leak site naming Hinduja Tech
1. Executive summary On 2026-07-26, the actor "Global Secret Group" listed Portman Finance Group (UK, ~£300M revenue, 1,000–5,
1. Executive summary On 2026-07-26, the actor "ExfilSquad" publicly claimed a data-theft/extortion operation against the UK Department for
1. Executive summary On 2026-07-26, the actor "ExfilSquad" publicly claimed a ransomware attack against Newcastle University (GB), posting on their
1. Executive summary On 26 July 2026, the actor "ExfilSquad" publicly claimed a ransomware attack against the Police National Legal Database (PNLD)
1. Executive summary On 25 July 2026, the Qilin ransomware group listed GURR Abdichtungstechnik GmbH (Germany) as a victim on its leak site. Attribution
1. Executive summary On 25 July 2026, the ransomware actor "nova" publicly claimed a compromise of SistNet (sistnet.it), a division of
1. Executive summary On 24 July 2026, the Qilin ransomware group listed "GOP" (www.gopltd.com, GB) as a victim on its
1. Executive summary Since at least June 2026, threat actors have compromised Wi-Fi gateway devices at hotels and conference centres, modifying DNS settings
1. Executive summary A sandbox escape vulnerability in Anthropic's Claude Code (CVE-2026-55607) allows an attacker to achieve unsandboxed code execution
1. Executive summary A North Korean threat cluster attributed as BlueNoroff (MITRE G0082) is operating an active, operator-driven phishing kit that impersonates Zoom
1. Executive summary Microsoft has remediated a public-by-default configuration flaw in Azure Automation that, combined with a chain of code-level vulnerabilities,