~/f4n6 $ adversetrace --feed --since 30d --attributed
// security feed

Security Feed

Curated advisories, threat briefs & field intel — attributed, dated & severity-tagged. Kept deliberately separate from my own writing.

all CVE advisory ransomware DORA / NIS2 APT
23 Jun 2026 Jeff Davies
Guarding AI memory

1. Executive summary Microsoft has published a defensive architecture blog describing how AI "memory" features in M365 Copilot change the threat model

23 Jun 2026 Jeff Davies
Phishing hides in routine Microsoft 365 workflows

1. Executive summary Adversaries are abusing native Microsoft 365 collaboration surfaces — Outlook Groups, shared files, and calendar invitations — to deliver phishing lures that blend

23 Jun 2026 Jeff Davies
When a vendor's breach becomes yours: lessons from the Klue incident

1. Executive summary Market intelligence platform Klue suffered a supply-chain intrusion on 11 June 2026 when a threat actor exploited a compromised legacy

23 Jun 2026 Jeff Davies
CVE-2024-40766: The Patch Fixed the Bug. Nobody Fixed the Configuration., (Tue, Jun 23rd)

1. Executive summary CVE-2024-40766 is an improper access control vulnerability in SonicOS (CVSS 9.3) affecting the management interface and SSLVPN service

23 Jun 2026 Jeff Davies
WhatsApp phishing attack uses fake business docs to hack PCs

1. Executive summary An active malware campaign is distributing malicious VBScript (.vbs) attachments via direct messages on WhatsApp Desktop and WhatsApp Web, using compromised

22 Jun 2026 Jeff Davies
Ransomware: BrainCipher named sterlinggloballtd.com (GB)

1. Executive summary On 22 June 2026, the ransomware group "BrainCipher" listed sterlinggloballtd.com, a UK-based entity, on its data-leak

22 Jun 2026 Jeff Davies
One intrusion, two cyberattackers: Uncovering parallel threat activity

1. Executive summary Microsoft's Detection and Response Team (DART) responded to a multi-stage intrusion in which two unrelated threat actors operated

22 Jun 2026 Jeff Davies
22nd June – Threat Intelligence Report

1. Executive summary The 22 June Check Point weekly bulletin surfaces multiple active-exploitation events directly relevant to EMEA financial services. Splunk Enterprise (CVE-

22 Jun 2026 Jeff Davies
MISP core contained multiple broken access-control flaws where authorization checks were...

1. Executive summary MISP core (the open-source threat-intelligence sharing platform) contained multiple broken access-control vulnerabilities in which authorisation checks were performed

22 Jun 2026 Jeff Davies
Fortinet Responds to FortiBleed Campaign

1. Executive summary Fortinet has confirmed a large-scale credential-harvesting campaign, tracked as FortiBleed, that has produced a database of over 86,000

22 Jun 2026 Jeff Davies
More Cybersecurity Firms Disclose Impact From Klue Hack

1. Executive summary Between 11–12 June 2026, threat actors compromised market intelligence platform Klue via a legacy credential associated with an integration service,

22 Jun 2026 Jeff Davies
Klue OAuth breach victim list grows as Icarus hackers claim attack

1. Executive summary Market intelligence platform Klue has confirmed a security incident in which attackers abused a compromised legacy credential tied to an integration