REPORTS
Fresh threat intelligence we ingest from public vendor and research feeds — each report linked to its original source. Search, filter by source, and open the reference.
Reports
Newest first. Search, filter by source, open the original.
850 reports · page 22 of 22
arxiv_cs_cr · tlp:amber · 5/11/2026, 4:00:00 AM
Forensic analysis of video data deletion and recovery in Honeywell surveillance file system arXiv:2605.07430v1 Announce Type: new Abstract: Real-time video surveillance systems store recorded video using digital video recorders (DVRs) and network video recorders (NVRs). To support continuous high-volume video storage, these devices employ specialized, nonstandard file systems that are often proprietary and undocumented. This lack of documentation significantly increases the …
Read original ↗https://arxiv.org/abs/2605.07430arxiv_cs_cr · tlp:amber · 5/11/2026, 4:00:00 AM
Narrow Secret Loyalty Dodges Black-Box Audits arXiv:2605.06846v1 Announce Type: new Abstract: Recent work identifies secret loyalties as a distinct threat from standard backdoors. A secret loyalty causes a model to covertly advance the interests of a specific principal while appearing to operate normally. We construct the first model organisms of narrow secret loyalties. We fine-tune Qwen-2.5-Instruct at three scales (1.5B, 7B, 32B) to encourage users towards extreme harmful…
arxiv_cs_cr · tlp:amber · 5/11/2026, 4:00:00 AM
McNdroid: A Longitudinal Multimodal Benchmark for Robust Drift Detection in Android Malware arXiv:2605.06894v1 Announce Type: new Abstract: Machine learning (ML) in real-world systems must contend with concept drift, adversarial actors, and a spectrum of potential features with varying costs and benefits. Malware naturally exhibits all of these complexities, but for the same reason, it is challenging to curate and organize data to study these factors. We present McNdroid, to…
Read original ↗https://arxiv.org/abs/2605.06894arxiv_cs_cr · tlp:amber · 5/11/2026, 4:00:00 AM
From Conceptual Scaffold to Prototype: A Standardized Zonal Architecture for Wi-Fi Security Training arXiv:2605.07400v1 Announce Type: new Abstract: Wi-Fi is the dominant wireless access technology, but its widespread use also exposes systems to threats such as rogue access points, deauthentication attacks, and other IEEE 802.11-specific vulnerabilities. Although Cyber Ranges (CRs) have become valuable platforms for cybersecurity training and experimentation, existing wirele…
Read original ↗https://arxiv.org/abs/2605.07400arxiv_cs_cr · tlp:amber · 5/11/2026, 4:00:00 AM
PAMPOS: Causal Transformer-based Trajectory Prediction for Attack-Agnostic Misbehavior Detection in V2X Networks arXiv:2605.06833v1 Announce Type: new Abstract: Misbehavior detection in Vehicle-to-Everything (V2X) networks is a second line of defense against insider falsification attacks that cryptographic mechanisms alone cannot address. Existing learning-based Misbehavior Detection Schemes (MDSs) are supervised, requiring labeled attack samples at training time, thus faili…
Read original ↗https://arxiv.org/abs/2605.06833arxiv_cs_cr · tlp:amber · 5/11/2026, 4:00:00 AM
Combating Organized Platform Abuse: Amplifying Weak Risk Signals with Structural Information arXiv:2605.07383v1 Announce Type: new Abstract: Large-scale online service platforms face severe challenges from organized platform abuse: multiple forms such as credit card fraud and promotion abuse continually emerge, characterized by large numbers of involved accounts, rapid outbreaks, and constantly shifting tactics. Existing mainstream approaches, whether heuristic rules limited…
Read original ↗https://arxiv.org/abs/2605.07383arxiv_cs_cr · tlp:amber · 5/11/2026, 4:00:00 AM
A Unified Open-Set Framework for Scalable PUF-Based Authentication of Heterogeneous IoT Devices arXiv:2605.07340v1 Announce Type: new Abstract: As modern cyber systems scale to include large populations of heterogeneous IoT devices, securing them against impersonation and forgery is a critical cybersecurity challenge. Physical Unclonable Functions (PUFs) offer a lightweight, hardware-rooted trust anchor for IoT security. However, different PUF architectures possess distinct …
Read original ↗https://arxiv.org/abs/2605.07340arxiv_cs_cr · tlp:amber · 5/11/2026, 4:00:00 AM
Aquaman: A Transparent Proxy Architecture for Quantum Resilient Key Establishment arXiv:2605.06932v1 Announce Type: new Abstract: The harvest-now, decrypt-later (HNDL) threat--adversaries intercepting and archiving ciphertext today for retrospective decryption once quantum computers mature--turns the future quantum threat into a present liability for the public-key primitives (RSA, Diffie-Hellman, ECC) that anchor modern session-key exchange. We present Aquaman, a transparen…
Read original ↗https://arxiv.org/abs/2605.06932arxiv_cs_cr · tlp:amber · 5/11/2026, 4:00:00 AM
When the Ruler is Broken: Parsing-Induced Suppression in LLM-Based Security Log Evaluation arXiv:2605.07293v1 Announce Type: new Abstract: LLM-based SOC log classifiers are commonly evaluated using regular-expression pipelines that extract structured fields from free-form model output. We demonstrate that this practice introduces a class of silent, systematic evaluation errors, which we term parsing-induced suppression that can cause a fully functional model to appear comple…
Read original ↗https://arxiv.org/abs/2605.07293arxiv_cs_cr · tlp:amber · 5/11/2026, 4:00:00 AM
Language Models Can Autonomously Hack and Self-Replicate arXiv:2605.06760v1 Announce Type: new Abstract: We demonstrate that language models can autonomously replicate their weights and harness across a network by exploiting vulnerable hosts. The agent independently finds and exploits a web-application vulnerability, extracts credentials, and deploys an inference server with a copy of its harness and prompt on the compromised host. We test four vulnerability classes: hash by…
Read original ↗https://arxiv.org/abs/2605.06760