INTEL_REPORT
Google Project Zero · published 12/16/2025, 10:00:00 AM · TLP amber
Summary
Ingested excerpt (first ~500 chars of normalized text).
Welcome to the new Project Zero Blog While on Project Zero, we aim for our research to be leading-edge, our blog design was … not so much. We welcome readers to our shiny new blog! For the occasion, we asked members of Project Zero to dust off old blog posts that never quite saw the light of day. And while we wish we could say the techniques they cover are no longer relevant, there is still a lot of work that needs to be done to protect users against zero days. Our new blog …
https://projectzero.google/2025/12/welcome.html
sha256:b62f6f962755056acc6a254a6d0a429957e53d49423c04300b378a2d4defa9d5
What we pulled out
Deterministic extractor (IOC + allowlisted tokens + ATT&CK IDs present in DB).
Indicators
Linked with report → mentions → indicator. Values open the indicator workspace.
No indicators linked for this report.
Malware families
Allowlist token matches only.
Threat actors mentioned
Allowlist mentions — not a formal attribution verdict.
ATT&CK techniques
MITRE IDs referenced in text and present in local technique table.
CONTINUE INVESTIGATION
High-signal pivots without leaving the thread you started in search.
Browse the report corpus.