~/f4n6 $ adversetrace --feed --since 30d --attributed
// security feed

Security Feed

Curated advisories, threat briefs & field intel — attributed, dated & severity-tagged. Kept deliberately separate from my own writing.

all CVE advisory ransomware DORA / NIS2 APT
29 Jun 2026 Jeff Davies
Ransomware: stormous named eogb.co.uk (GB)

1. Executive summary On 2026-06-28, the actor "stormous" publicly claimed a ransomware attack against eogb.co.uk, a UK-registered

26 Jun 2026 Jeff Davies
FBI: Russian hackers now target Signal backup recovery keys

1. Executive summary The FBI and CISA have published an updated public service announcement warning that a phishing campaign attributed to Russian Intelligence Services

26 Jun 2026 Jeff Davies
Malware steals Chrome session cookies to take over your accounts

1. Executive summary A phishing campaign delivering a Windows backdoor via a malicious Chrome extension is actively targeting users. The malware abuses Chrome Native

26 Jun 2026 Jeff Davies
New Linux pedit COW Exploit Enables Root Access by Poisoning Cached Binaries

1. Executive summary CVE-2026-46331 ("pedit COW") is an out-of-bounds write vulnerability in the Linux kernel's traffic-

26 Jun 2026 Jeff Davies
Miasma Malware Targets npm Packages and GitHub Actions in Supply Chain Attack

1. Executive summary A new wave of the Miasma/Mini Shai-Hulud supply-chain malware family has compromised at least 24 npm packages (LeoPlatform,

26 Jun 2026 Jeff Davies
Mirage2FA phishing kit uses HTML smuggling to steal Microsoft 365 credentials

1. Executive summary Fortra researchers have identified "Mirage2FA," a phishing kit that uses short-lived HTML smuggling and obfuscated JavaScript loaders to

26 Jun 2026 Jeff Davies
Self-destructing Mistic backdoor linked to access broker selling corporate footholds to ransomware gangs

1. Executive summary A new backdoor tracked as Mistic (also tracked as MLTBackdoor) has been deployed in financially motivated intrusions since April 2026, targeting

26 Jun 2026 Jeff Davies
Russian APT 'Gamaredon' Upgrades Its Arsenal, Requiring New Defenses

1. Executive summary The Gamaredon Group (MITRE G0047) — a Russia-linked APT operation attributed to FSB state sponsorship — has reportedly upgraded its malware-loading

25 Jun 2026 Jeff Davies
Bluekit phishing kit adopts browser-in-the-middle for login theft

1. Executive summary The Bluekit phishing-as-a-service (PaaS) platform has added browser-in-the-middle (BitM) capabilities, replacing its previous adversary-in-

25 Jun 2026 Jeff Davies
Stealthy new backdoor emerges in attacks on multiple sectors

1. Executive summary Symantec and Carbon Black's Threat Hunter Team have identified a new backdoor dubbed Mistic (also tracked as MLTBackdoor by

25 Jun 2026 Jeff Davies
Update Chrome to patch critical browser security flaws

1. Executive summary Google released Chrome 149.0.7827.196/197 (Windows/Mac) and 149.0.7827.196 (Linux), patching 18 vulnerabilities including four

25 Jun 2026 Jeff Davies
GitLab Patches Code Execution, Information Disclosure Vulnerabilities

1. Executive summary GitLab has released CE/EE security updates — versions 19.1.1, 19.0.3, and 18.11.6 — patching 13 vulnerabilities