~/f4n6 $ adversetrace --feed --since 30d --attributed
// security feed

Security Feed

Curated advisories, threat briefs & field intel — attributed, dated & severity-tagged. Kept deliberately separate from my own writing.

all CVE advisory ransomware DORA / NIS2 APT
25 Jun 2026 Jeff Davies
Lantronix Serial-to-IP Converter Flaw Exploited in Attacks After OT Threat Warning

1. Executive summary CISA added CVE-2025-67038 (CVSS 9.8 CRITICAL, CWE-94 Code Injection) to its Known Exploited Vulnerabilities (KEV) catalog on

25 Jun 2026 Jeff Davies
Europe Evolves Into Ransomware's Favorite Region

1. Executive summary DarkReading reports a strategic shift by ransomware operators toward European targets, specifically EU organisations and their supply-chain suppliers, following a

25 Jun 2026 Jeff Davies
New Mistic Backdoor Linked to KongTuke in ClickFix and ModeloRAT Campaigns

1. Executive summary A new stealthy backdoor dubbed Mistic (also tracked as MLTBackdoor) has been deployed in financially motivated attacks against organisations in the

25 Jun 2026 Jeff Davies
Mass npm Supply Chain Attack: 20 Leo Platform Packages Compromised

1. Executive summary On 2026-06-24, an attacker published malicious versions of 20 npm packages in the Leo Platform ecosystem in a coordinated

25 Jun 2026 Jeff Davies
Mandiant reveals how Cisco SD-WAN zero-day attacks gained root access

1. Executive summary Mandiant has published detailed attack-chain analysis of CVE-2026-20245 (CVSS 7.8 HIGH, CWE-116), a now-patched privilege-

25 Jun 2026 Jeff Davies
Microsoft uses AI to link two malware operations in racketeering suit

1. Executive summary On 2026-06-24, Microsoft's Digital Crimes Unit (DCU), Europol, and industry partners (ESET, BitSight, MBSD, IBM X-Force,

25 Jun 2026 Jeff Davies
The Identity Problem Hiding in AI Agent Deployments

1. Executive summary CrowdStrike has published analysis identifying a structural identity-management weakness in enterprise AI agent deployments: OAuth access tokens conforming to RFC

25 Jun 2026 Jeff Davies
Microsoft, Europol lead global takedown of infostealer malware

1. Executive summary On 2026-06-24, Microsoft's Digital Crimes Unit (DCU), Europol, and industry partners (Bitdefender, Bitsight, ESET, IBM X-Force,

25 Jun 2026 Jeff Davies
LastPass says hackers stole customer support case data during Klue breach

1. Executive summary LastPass has disclosed that attackers exfiltrated customer personal information and customer support case records from its Salesforce environment after OAuth tokens

25 Jun 2026 Jeff Davies
StealC and Amadey: Breaking down infostealers and the cybercrime services that deliver them

1. Executive summary On 2026-06-24, Microsoft's Digital Crimes Unit (DCU), working with Europol and industry partners, announced a coordinated disruption

25 Jun 2026 Jeff Davies
StrikeShark: investigating a new campaign delivering Cobalt Strike through SharkLoader

1. Executive summary Kaspersky researchers identified a previously undocumented malware family, "SharkLoader," deployed by a threat cluster tracked as "StrikeShark"

24 Jun 2026 Jeff Davies
Hackers Exploiting Cisco Unified CM Vulnerability

1. Executive summary Threat actors are actively exploiting CVE-2026-20230, a high-severity server-side request forgery (SSRF) flaw in Cisco Unified Communications