REPORTS
Fresh threat intelligence we ingest from public vendor and research feeds — each report linked to its original source. Search, filter by source, and open the reference.
Reports
Newest first. Search, filter by source, open the original.
2210 reports · page 16 of 56
the_record · tlp:amber · 7/8/2026, 1:03:00 PM
EU unveils cyber plan to reduce reliance on foreign AI systems The communication, adopted in Strasbourg on July 7, is built around three pillars: making frontier AI “safe, accessible and deployable” for European cybersecurity, preparing the EU’s cyber ecosystem and scaling European AI capabilities. EU unveils cyber plan to reduce reliance on foreign AI systems | The Record from Recorded Future News Leadership Cybercrime Nation-state Influence Operations Technology Cyber Dai…
Read original ↗https://therecord.media/eu-unveils-cyber-plan-to-reduce-reliance-on-foreign-aithe_hacker_news · tlp:amber · 7/8/2026, 1:00:00 PM
New Ghost Phishing Wave Is Breaking Traditional Email Security A recent EvilTokens campaign targeting businesses across the US and Europe is exposing a new email security blind spot. This “ghost phishing” technique keeps the malicious page hidden until it decrypts and comes to life inside the victim’s browser. For security leaders, the risk is clear: traditional URL checks may miss the attack while Microsoft 365 access, sensitive data, and response time New Ghost Phishing W…
the_hacker_news · tlp:amber · 7/8/2026, 12:52:15 PM
SCMBANKER Malware Uses ClickFix Lures to Target Mexican Banking Users A new banking fraudulent operation is targeting customers of Mexican banks, fintech, payment processors, and cryptocurrency exchanges using ClickFix lures. The activity cluster, tracked by Elastic Security Labs under the moniker REF6045, involves infecting victims through fake CAPTCHA verification pages that deceive them into running a malicious command that installs a PowerShell toolkit dubbed SCMBANKER …
Read original ↗https://thehackernews.com/2026/07/scmbanker-malware-uses-clickfix-lures.htmllwn_kernel · tlp:amber · 7/8/2026, 12:50:59 PM
Security updates for Wednesday Security updates have been issued by AlmaLinux (container-tools:rhel8, kernel-rt, libreoffice, nodejs:22, nodejs:24, opentelemetry-collector, perl-HTTP-Daemon, and python-markdown), Debian (dpkg, imagemagick, and postfix), Fedora (betterleaks, docker-compose, firefox, helm, perl-Compress-Raw-Bzip2, perl-IO-Compress, perl-JavaScript-Minifier-XS, python-cramjam, python-fastar, python-pillow-jxl-plugin, python-rignore, and tor), Oracle (grafana, g…
Read original ↗https://lwn.net/Articles/1081798krebs_on_security · tlp:amber · 7/8/2026, 12:31:39 PM
Felons, Fraudsters Flog Offensive Cybersecurity Startup A cybersecurity startup dangling millions of dollars to acquire zero-day security vulnerabilities in popular software is run by a pair of far-right conspiracy theorists and convicted felons whose most recent ventures included fake intelligence companies and a now-defunct AI-based lobbying platform they operated under assumed names. A cybersecurity startup dangling millions of dollars to acquire zero-day security vulner…
Read original ↗https://krebsonsecurity.com/2026/07/felons-fraudsters-flog-offensive-cybersecurity-startupsecurityweek · tlp:amber · 7/8/2026, 12:15:00 PM
Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations The "Rogue Agent" vulnerability could have enabled attackers to silently manipulate AI conversations, exfiltrate data, and compromise every Dialogflow CX agent within the same Google Cloud project. The post Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations appeared first on SecurityWeek . Google Dialogflow CX Bug Allowed Attackers to Hijack AI Conversations - SecurityWeek SECURITYWEEK …
Read original ↗https://www.securityweek.com/google-dialogflow-cx-bug-allowed-attackers-to-hijack-ai-conversationsthe_hacker_news · tlp:amber · 7/8/2026, 11:51:24 AM
GitHub 'Verified' Commits Can Be Rewritten Into New Hashes Without Breaking Signatures New research shows that a signed Git commit's hash is not the one-of-a-kind name that much of the software world assumes it to be. Given any signed commit, someone without the signing key can mint a second commit with the same files, author, and date, and a valid signature, GitHub still stamps "Verified." Everything a reviewer would check matches. The commit's hash does not. That matters …
Read original ↗https://thehackernews.com/2026/07/github-verified-commits-can-be.htmlthe_hacker_news · tlp:amber · 7/8/2026, 11:30:00 AM
The Verification Step Is the New ATO Battleground in 2026 For years, account takeover (ATO) followed a predictable script. Attackers bought stolen credentials in bulk, ran them through automated tools, and waited for matches. Credential stuffing was cheap, scalable, and for defenders, relatively well understood. That era is ending. Not because attackers gave up, but because the front door finally got harder to kick in. Passkeys are now mainstream. The Verification Step Is t…
Read original ↗https://thehackernews.com/2026/07/the-verification-step-is-new-ato.htmlthe_hacker_news · tlp:amber · 7/8/2026, 11:21:07 AM
GitHub Copilot Refuses Harmful Requests in Chat, Then Writes Them in Code An AI coding assistant that refuses to answer a dangerous request in its chat box can answer it anyway if the same request is broken into small, ordinary-looking steps inside a code editor. That is the finding of a new study of GitHub Copilot by researchers Abhishek Kumar and Carsten Maple. The models they tested through Copilot, Claude from Anthropic, and Gemini from Google, refused GitHub …
Read original ↗https://thehackernews.com/2026/07/github-copilot-refuses-harmful-requests.htmltrail_of_bits · tlp:amber · 7/8/2026, 11:00:00 AM
Mutation testing comes to DAML In April we released Mewt , our open-source mutation-testing engine that finds the gaps in your test suite. Today we’re expanding it with support for DAML, the language Canton Network applications are written in. Mewt now reads DAML, generates several classes of mutants (including two built for DAML’s authorization primitives), and runs them through your existing test suite to count how many mutants survive. If you want to try it, simply …
Read original ↗https://blog.trailofbits.com/2026/07/08/mutation-testing-comes-to-damlsecurityweek · tlp:amber · 7/8/2026, 10:45:25 AM
CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws Two newly disclosed critical vulnerabilities in Adobe ColdFusion and Langflow join two Joomla extension flaws in CISA's Known Exploited Vulnerabilities catalog, with federal agencies given until July 10 to patch. The post CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Joomla Flaws appeared first on SecurityWeek . CISA Urges Immediate Patching of Exploited ColdFusion, Langflow, Jo…
Read original ↗https://www.securityweek.com/cisa-urges-immediate-patching-of-exploited-coldfusion-langflow-joomla-flawssecurityweek · tlp:amber · 7/8/2026, 10:30:55 AM
Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection Researchers show how attackers can use a crafted public GitHub Issue to trick AI-powered workflows into exposing data from private repositories without authentication. The post Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection appeared first on SecurityWeek . Critical Vulnerability Exposes GitHub Agentic Workflows to Prompt Injection - SecurityWeek SECURITYWEEK NETWORK: Cyb…
Read original ↗https://www.securityweek.com/critical-vulnerability-exposes-github-agentic-workflows-to-prompt-injectionthe_hacker_news · tlp:amber · 7/8/2026, 9:04:33 AM
China-Linked UAT-7810 Expands ORB Network With New LONGLEASH Malware A Chinese threat actor tracked as UAT-7810 is actively refining its bespoke malware to expand its Operational Relay Box (ORB) network by breaking into internet-facing networking devices. According to findings from Cisco Talos, UAT-7810 is an advanced persistent threat (APT) actor that's responsible for maintaining and proliferating LapDogs, an ORB network that first came to light in June 2025. China-Linked…
Read original ↗https://thehackernews.com/2026/07/china-linked-uat-7810-expands-orb.htmleset · tlp:amber · 7/8/2026, 8:45:00 AM
ESET Threat Report H1 2026 A view of the H1 2026 threat landscape as seen by ESET telemetry and from the perspective of ESET threat detection and research experts. ESET Threat Report H1 2026 Award-winning news, views, and insight from the ESET security community English Español Deutsch Português Français TIPS & ADVICE BUSINESS SECURITY ESET RESEARCH About ESET Research Blogposts Podcasts White papers Threat reports WeLiveScience FEATURED Ukraine crisis – Digital securit…
Read original ↗https://www.welivesecurity.com/en/eset-research/eset-threat-report-h1-2026ars_security · tlp:amber · 7/8/2026, 7:00:51 AM
Hackers can use 9 of the most popular AI tools to assemble massive botnets "HalluSquatting" weaponizes LLMs' inability to say "I don't know." In the brief history of AI security, the prompt injection has quickly become the top threat. Large language models are inherently unable to distinguish between legitimate instructions provided by users and malicious ones sneaked into emails, source code, and other third-party content the models are processing. This makes it trivial to…
Read original ↗https://arstechnica.com/security/2026/07/hackers-can-use-9-of-the-most-popular-ai-tools-to-assemble-massive-botnetsthe_hacker_news · tlp:amber · 7/8/2026, 6:16:44 AM
15-Year-Old GhostLock Flaw Enables Root and Container Escape on Most Linux Distros Researchers at Nebula Security have disclosed GhostLock (CVE-2026-43499), a 15-year-old Linux kernel flaw that lets any logged-in user take full root control of a machine that has not been patched. The vulnerable code has shipped by default in essentially every mainstream distribution since 2011. The flaw needs no special permission, no unusual settings, and no network 15-…
Read original ↗https://thehackernews.com/2026/07/15-year-old-ghostlock-flaw-enables-root.htmlthe_hacker_news · tlp:amber · 7/8/2026, 5:33:12 AM
CISA Adds 4 Actively Exploited Adobe, Joomla, and Langflow Flaws to KEV The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday added four security flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. The vulnerabilities are listed below - CVE-2026-48282 (CVSS score: 10.0) - A path traversal vulnerability in Adobe ColdFusion that could lead to arbitrary code execution in the context of the CISA Adds 4 Active…
Read original ↗https://thehackernews.com/2026/07/cisa-adds-4-actively-exploited-adobe.htmlarxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
LibFHE: A Numba-Based CUDA-Python Library for Non-RNS CKKS-BGV Fully Homomorphic Encryption on GPUs arXiv:2607.05920v1 Announce Type: new Abstract: It has been a decade since the fourth-generation FHE framework, CKKS, was proposed; yet, there is still no indicator pointing toward a fifth-generation successor; and in recent years, numerous studies have explored GPU acceleration to improve the efficiency of homomorphic computations. In this paper, we propose LibFHE, a high-per…
Read original ↗https://arxiv.org/abs/2607.05920arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Context-to-Execution Integrity for LLM Agents arXiv:2607.06000v1 Announce Type: new Abstract: Language-model agents read attacker-writable context to solve tasks. Tool execution needs a separate authority check for protected sink fields, sink-interpreted payloads, and the invocation event. Context-to-Execution Integrity (CXI) is an execution-boundary system for this setting. Policies mark protected sink fields, typed releases carry narrow validated values from writable conte…
Read original ↗https://arxiv.org/abs/2607.06000arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
MSCENet: A Multi-Scale Correlation Enhanced Network for Anomaly Detection arXiv:2607.05864v1 Announce Type: new Abstract: In the field of multivariate time series anomaly detection, against the backdrop of increasing data complexity and complex dependencies across multiple temporal scales, traditional methods often struggle to simultaneously capture temporal dynamic features and intricate inter-series correlations. To address this, we propose an innovative framework, MSCENet…
Read original ↗https://arxiv.org/abs/2607.05864arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Withdrawability in Fiat-Shamir with aborts constructions arXiv:2607.05831v1 Announce Type: new Abstract: This article presents an extension of the work performed by Liu, Baek and Susilo on withdrawable signatures to the Fiat-Shamir with aborts paradigm. We introduce an abstract construction, and provide security proofs for this proposal. As an instantiation, we provide a concrete withdrawable signature scheme based on a no-hint, full-t Dilithium-style Fiat-Shamir with aborts…
Read original ↗https://arxiv.org/abs/2607.05831arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Unicode TAG-Block Concealment of Tool-Metadata Payloads in the Model Context Protocol: An Approval-View Fidelity Gap Across Three Independent Server Implementations arXiv:2607.05744v1 Announce Type: new Abstract: The Model Context Protocol (MCP) is the dominant way coding agents discover and invoke external tools. A server advertises each tool through a tools/list handshake that returns a name, a natural-language description, and a JSON input schema. The client renders this …
Read original ↗https://arxiv.org/abs/2607.05744arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Multi-Channel Spread-Spectrum Code Watermarking arXiv:2607.06009v1 Announce Type: new Abstract: Attributing code to the large language model that produced it is essential for provenance, licensing, and misuse accountability, yet no deployed watermark meets this need. Generation-time schemes require access to the producing model and cannot be applied to third-party code, while post-hoc schemes work on any code but carry at most 4 bits of payload, far too few to distinguish th…
Read original ↗https://arxiv.org/abs/2607.06009arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
The Balkanization of Execution-Security Research for AI Coding Agents: Isolation, Access Control, and Time-of-Check-to-Time-of-Use Vulnerabilities arXiv:2607.05743v1 Announce Type: new Abstract: AI coding agents now read repositories, call tools, and execute shell commands with limited human oversight, and a fast-growing body of work studies whether the execution layer around them is actually safe. That literature is scattered. Papers on sandbox isolation, capability and acc…
Read original ↗https://arxiv.org/abs/2607.05743arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
From Regression to Prior-Aware Inference: Solving the ILWE Family in Randomness Leakage Attacks against ML-DSA arXiv:2607.05921v1 Announce Type: new Abstract: ML-DSA is a representative lattice-based signature scheme standardized by NIST. It relies on signing randomness and rejection sampling to ensure that released signatures are statistically independent of the secret key. Practical implementations, however, may leak partial information about this randomness, and such leak…
Read original ↗https://arxiv.org/abs/2607.05921arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
aiAuthZ: Off-Host, Identity-Bound Authorization for AI Agents arXiv:2607.05518v1 Announce Type: new Abstract: AI agents issue tool calls on the basis of text they cannot verify, so any party who controls part of the context can forge the appearance of authority. I evaluate 15 contemporary language models against eight attack scenarios derived from a published corpus of real agent incidents and find that refusal varies from 100% down to 38% across fully evaluated models; the …
Read original ↗https://arxiv.org/abs/2607.05518arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
REAN: Reconstruction-aware ECG Anonymization Based on Privacy--Utility Orthogonality arXiv:2607.06037v1 Announce Type: new Abstract: A shared electrocardiogram (ECG) is itself a biometric fingerprint that can re-identify a patient and reveal personal information. Recent ECG anonymizers transform the signal before sharing to reduce privacy leakage. However, existing methods still face a privacy--utility trade-off, in which preserving privacy often compromises utility while pr…
Read original ↗https://arxiv.org/abs/2607.06037arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Poster: Mind the Gap -- Characterizing the Temporal Blind Spot Between GSB and DNS Resolution arXiv:2607.06134v1 Announce Type: new Abstract: Google Safe Browsing (GSB) and DNS resolution operate concurrently during browser navigation, yet their packet-level synchronization remains understudied. This work characterizes the timing gap (\(\Delta_{time}\)) between GSB-related query close events and parallel DNS resolution responses, identifying a consistent temporal offset with…
Read original ↗https://arxiv.org/abs/2607.06134arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Full-range Binary Classifier Calibration for Stable Model Updates in Production arXiv:2607.05481v1 Announce Type: new Abstract: Detection models running in adversarial environments face a malicious distribution that drifts rapidly while the benign distribution stays comparatively stable, so teams retrain and redeploy constantly to stay ahead of new threats. Retraining tends to change the output prediction scores, which breaks downstream users of the model. For these security…
Read original ↗https://arxiv.org/abs/2607.05481arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Privilege and confidentiality in generative AI workflows arXiv:2607.05479v1 Announce Type: new Abstract: Generative AI (GenAI) systems store and process client data in three distinct ways: in the model's parameters through training and memorisation, in the context window during a live session, and in knowledge databases for retrieval-augmented generation (RAG). Each mode creates different and often counter-intuitive risks to confidentiality and legal professional privilege, …
Read original ↗https://arxiv.org/abs/2607.05479arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
ShadowProbe: Language-Extensible Detection of Hidden Algorithmic Complexity Vulnerabilities arXiv:2607.05474v1 Announce Type: new Abstract: Algorithmic Complexity Vulnerabilities (ACVs) arise when adversarial inputs trigger worst-case execution behavior, causing severe performance degradation or Denial-of-Service conditions. A key but underexplored source is shadow complexity: non-trivial computational costs hidden inside seemingly benign standard library APIs. Because these…
Read original ↗https://arxiv.org/abs/2607.05474arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
The Masks We (Think We) Wear: Privacy Threats of Browser-Extension Wallets in the Web3 Ecosystem arXiv:2607.06141v1 Announce Type: new Abstract: Cryptocurrency wallets are the primary interface for managing pseudonymous blockchain addresses, viewing balances, and interacting with Web3 applications. Although users typically assume that their addresses remain independent of each other unless intentionally revealed, modern wallets routinely communicate with both blockchain infr…
Read original ↗https://arxiv.org/abs/2607.06141arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Evaluating calibrated refusal and safe usefulness in dual-use biology settings arXiv:2607.05462v1 Announce Type: new Abstract: As AI agents are incorporated into life science workflows, the capabilities that speed discovery might also enable misuse. We present BioSecBench-Refusal, a benchmark for risk identification and refusal behavior for biological research tasks. The benchmark pairs 61 Routine tasks, legitimate analyses adapted from the published literature, with 46 Red-…
Read original ↗https://arxiv.org/abs/2607.05462arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Abductive Corroboration of Probabilistic AI Models for Forensic Synthetic Media Detection arXiv:2607.05434v1 Announce Type: new Abstract: Artificial Intelligence (AI) models, at their core, apply general learnings from broad datasets to individual circumstances using probabilistic behaviour. This inductive approach stands in contrast to deductive reasoning approaches which seek to prove conclusions from their premises. However, research has shown that deductive reasoning wit…
Read original ↗https://arxiv.org/abs/2607.05434arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
How Stable Is a PNT Resilience Score? Decision-Instability of Single-Number Resilience Ratings under Framework-Aligned Weighting arXiv:2607.05415v1 Announce Type: new Abstract: Authoritative positioning, navigation, and timing (PNT) resilience frameworks (the DHS Resilient PNT Conformance Framework, RPCF, and peers) define what resilience means but supply only self-attestation: a checklist or a maturity Level, with no engine and no measurement. We build the missing measureme…
Read original ↗https://arxiv.org/abs/2607.05415arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Beyond the Syntax: Do Security Experts Trust LLMs for NIDS Rule Engineering? arXiv:2607.05916v1 Announce Type: new Abstract: As network threats evolve, manual NIDS rule engineering has become a critical operational bottleneck. While Large Language Models (LLMs) show promise for automating this process, their ability to produce production-ready rules remains unvalidated. This paper presents a human-centered investigation into LLM-based NIDS rule engineering, formalizing a gro…
Read original ↗https://arxiv.org/abs/2607.05916arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Proof of Execution: Runtime Verification for Governed AI Agent Actions arXiv:2607.05397v1 Announce Type: new Abstract: Agent systems increasingly execute rather than advise. When an AI agent queries regulated data, invokes effectful tools, and mutates persistent state, correctness is not captured by whether a terminal output looks plausible. The operative questions are whether each step was authorized under a contract, whether the recorded history is tamper-evident, and whet…
Read original ↗https://arxiv.org/abs/2607.05397arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Reproducible Validation of Voucher-Based L2 Interoperability: Diagnosing an ERC-4337 Compatibility Issue in an EIL SDK Implementation arXiv:2607.05914v1 Announce Type: new Abstract: Ethereum Layer-2 (L2) ecosystems improve scalability but also fragment users, liquidity, gas funding, and execution across rollups. Consequently, cross-rollup interoperability is not only a bridging problem but also a wallet, execution, and validation problem. Ethereum Interop Layer (EIL) propose…
Read original ↗https://arxiv.org/abs/2607.05914arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
i-EXAM: Instructable and Explainable Attack Connectivity Graph Modeler arXiv:2607.05888v1 Announce Type: new Abstract: i-EXAM is a planning-powered tool that helps system administrators to create security profiles of complex networks and perform what-if analyses to identify network hardening strategies. It leverages planning compilation that provides soundness and completeness guarantees to identify attack paths, evaluate security metrics, generate diverse hardening strategi…
Read original ↗https://arxiv.org/abs/2607.05888arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Code-Level Cost Function Generation for Spatial Image Steganography Using RAG-Enhanced Large Language Models arXiv:2607.05868v1 Announce Type: new Abstract: Designing cost functions of adaptive steganography traditionally requires extensive manual tuning, while deep learning methods lack interpretability. Although large language models (LLMs) offer an automated alternative via evolutionary generation, they often violate domain specific mathematical constraints due to a lack …
Read original ↗https://arxiv.org/abs/2607.05868