REPORTS
Fresh threat intelligence we ingest from public vendor and research feeds — each report linked to its original source. Search, filter by source, and open the reference.
Reports
Newest first. Search, filter by source, open the original.
2218 reports · page 28 of 56
arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
TGCM: Topic-Guided Generative Disentanglement of Interleaved APT Technique Sequences arXiv:2606.18651v1 Announce Type: new Abstract: In enterprise environments, multiple Advanced Persistent Threat (APT) campaigns often unfold concurrently, producing audit logs in which attack techniques across actors (sources) are interleaved over time. This setting naturally gives rise to an Unknown-K Interleaved Sequence Demixing (UKISD) problem: recovering multiple latent campaigns from a…
Read original ↗https://arxiv.org/abs/2606.18651arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
TIGER: Inverting Transformer Gradients via Embedding-Subspace Distance Optimization arXiv:2606.18312v1 Announce Type: new Abstract: Federated learning allows multiple clients to jointly train a shared model by sending gradient updates to a central server while keeping raw inputs local. However, prior gradient inversion attacks show that these updates can reveal enough information to reconstruct client inputs. Existing attacks on transformers either optimize dummy inputs to m…
arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
Code-Augur: Agentic Vulnerability Detection via Specification Inference arXiv:2606.18619v1 Announce Type: new Abstract: The advent of agentic vulnerability detection is already becoming a watershed moment for software security. Audits conducted entirely by autonomous LLM agents are uncovering critical vulnerabilities in fundamental software underpinning digital society. Many of these vulnerabilities remained masked for years, surfacing only now with AI agents. Yet the reason…
Read original ↗https://arxiv.org/abs/2606.18619arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
MIDS: Detecting Stealthy Masquerade and Tampering Attacks on CAN Bus via Bidirectional Mamba arXiv:2606.18599v1 Announce Type: new Abstract: The Controller Area Network (CAN) protocol is the primary communication standard for Electronic Control Units (ECUs) in modern vehicles, but its lack of encryption and authentication exposes it to a range of security threats. Existing intrusion detection systems are largely tuned to fabrication-style attacks (DoS, fuzzing, ID spoofing r…
Read original ↗https://arxiv.org/abs/2606.18599arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
Lifecycle-Aware Dynamic Analysis for Secure ML Model Execution arXiv:2606.19023v1 Announce Type: new Abstract: The growing reliance on pre-trained Machine Learning (ML) models has introduced new attack surfaces. Recent vulnerabilities demonstrate that malicious behavior can be embedded within model artifacts, often bypassing existing defenses. Current model-scanning solutions primarily rely on static, format-specific rules or known attack signatures, which limit their abilit…
Read original ↗https://arxiv.org/abs/2606.19023arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
TRAP: Benchmark for Task-completion and Resistance to Active Privacy-extraction arXiv:2606.18996v1 Announce Type: new Abstract: Agents are increasingly deployed in document-intensive workflows where sensitive private information is not an edge case but a routine input, e.g., an agent booking a flight needs passport numbers. In such settings, the agent must use private information to complete tasks accurately while never exposing it in its responses, because it cannot verify …
Read original ↗https://arxiv.org/abs/2606.18996arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
A Predictive Neural Network Architecture for Early Detection of Low-Rate Cyberattacks arXiv:2606.18771v1 Announce Type: new Abstract: Low-Rate Denial of Service (LDoS) attacks pose a significant challenge to IoT networks due to their subtle and prolonged nature, often evading traditional intrusion detection systems. This paper presents IDQS (Intrusion Detection via QoS Prediction), a lightweight and proactive framework for early LDoS attack detection. IDQS integrates two new…
Read original ↗https://arxiv.org/abs/2606.18771arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
SafeClawBench: Separating Semantic, Audit-Evidence, and Sandbox Harm in Tool-Using LLM Agents arXiv:2606.18356v1 Announce Type: new Abstract: Tool-using language-model agents introduce security failures that go beyond unsafe text: they can disclose protected objects, write persistent memory, send messages, modify databases, or trigger harmful code and tool effects. Existing evaluations often collapse these stages into a single attack success rate, making it difficult to tell…
Read original ↗https://arxiv.org/abs/2606.18356arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
Image Prompt Reconstruction Attacks on Distributed MLLM Inference Frameworks arXiv:2606.18710v1 Announce Type: new Abstract: Distributed large language model (LLM) inference frameworks connect isolated consumer-grade devices for large-scale model inference, substantially reducing hardware constraints. However, recent studies show that intermediate embeddings transmitted among participants can leak private prompts. As LLMs evolve into multimodal LLMs (MLLMs), this risk extend…
Read original ↗https://arxiv.org/abs/2606.18710arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
Conflict-Aware Retriever Editing for Knowledge Injection Attacks on LLM-Based RAG Systems arXiv:2606.18310v1 Announce Type: new Abstract: Injecting malicious knowledge into retrieval-augmented generation (RAG) systems can manipulate retrieved evidence and mislead downstream generation, posing a serious security threat for AI applications. Existing RAG injection attacks mainly rely on manipulating external knowledge bases, such as crafting malicious corpus. However, the synth…
Read original ↗https://arxiv.org/abs/2606.18310arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
Evaluating Prompting-Based Defenses Against Domain-Camouflaged Injection Attacks arXiv:2606.18530v1 Announce Type: new Abstract: Domain-camouflaged injection attacks embed malicious instructions in retrieved content using domain-appropriate vocabulary, evading standard detectors that rely on syntactic injection markers. When detection fails, practitioners need to know which defense architectures reduce attack success. We evaluate five prompting-based defenses (spotlighting, …
Read original ↗https://arxiv.org/abs/2606.18530arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
From Bits to Mixed-Radix Keys: Horner Decomposition, Uniform Sampling, and the Information-Theoretic QKD Interface of the MR-OTP arXiv:2606.18526v1 Announce Type: new Abstract: The Mixed-Radix One-Time Pad (MR-OTP) extends the classical OTP to heterogeneous alphabets while preserving perfect secrecy. We provide a practical, bias-free method to convert raw binary entropy from a QKD source into uniform mixed-radix keys by identifying Horner's method and its inverse as the natu…
Read original ↗https://arxiv.org/abs/2606.18526arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
Ghost Vectors: Soft-Deleted Embeddings Remain Reconstructible in HNSW Vector Databases arXiv:2606.18497v1 Announce Type: new Abstract: Retrieval-augmented generation (RAG) allows large language models to access external and private corpora for factual, domain-specific responses. Modern RAG pipelines use hierarchical navigable small world (HNSW) vector databases for efficient similarity search. When a user requests data deletion, the systems typically only mark the record as …
Read original ↗https://arxiv.org/abs/2606.18497arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
Agentra: A Supervisable Multi-Agent Framework for Enterprise Intrusion Response arXiv:2606.18325v1 Announce Type: new Abstract: Enterprise intrusion response still depends on static playbooks and analyst-driven triage, creating delay between alert generation and containment. We present Agentra, a supervisable multi-agent Intrusion Response System (IRS) framework that converts alerts from IDS, EDR, and XDR platforms into structured incident response plans grounded in MITRE AT…
Read original ↗https://arxiv.org/abs/2606.18325arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
Understanding the "Airport" Censorship Circumvention Ecosystem in China arXiv:2606.18427v1 Announce Type: new Abstract: In China, a burgeoning underground market sells citizens subscription-based censorship circumvention proxies known as ''airports''. We present the first systematic study of this ecosystem, combining user surveys, social media analysis, and active network measurements. We find that airports are by far the most popular off-the-shelf censorship circumvention t…
Read original ↗https://arxiv.org/abs/2606.18427arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
Evaluating the Effectiveness of LLMs in Aiding Compliance Testing of PKCS#1-v1.5 arXiv:2606.18405v1 Announce Type: new Abstract: Testing implementations of binary protocols for specification compliance requires inputs that satisfy both structural and semantic constraints. Purely random generation and primitive mutations are often insufficient for exploring semantically meaningful behaviors in protocols that rely on Type-Length-Value (TLV) encoding, yet domain-specific compli…
Read original ↗https://arxiv.org/abs/2606.18405arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
Giskard : Byzantine Robust and Confidential Aggregation for Large-Scale Decentralized Learning arXiv:2606.19129v1 Announce Type: new Abstract: Dealing simultaneously with confidentiality and Byzantine behaviors in decentralized learning is a challenging problem. Indeed, in decentralized learning, clients train a machine learning model while keeping their data locally and share their model parameters or gradients with a set of neighbors. While enforcing confidentiality calls …
Read original ↗https://arxiv.org/abs/2606.19129arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
Quantifying Compromise Risk in Exceptional Access Architectures Under Sparse and Indirect Evidence arXiv:2606.19106v1 Announce Type: new Abstract: Lawful exceptional access (EA) systems hold the cryptographic keys that decrypt protected communications for authorised parties. The debate over their risks has been long and qualitative, complicated by two problems: no public dataset of EA-specific compromise events exists, so assessment must use sparse, indirect evidence; and pr…
Read original ↗https://arxiv.org/abs/2606.19106arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
Compute-Budgeted Exploitability Evidence Graphs for Prospective Vulnerability Triage arXiv:2606.19076v1 Announce Type: new Abstract: Defenders cannot patch every newly disclosed vulnerability at once, so exploitability prediction must be evaluated prospectively rather than retrospectively. We study compute-budgeted vulnerability triage in which each CVE is scored only from public evidence visible by a fixed decision time. Advisories, exploit archives, fix commits, and hacker…
Read original ↗https://arxiv.org/abs/2606.19076arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
TopVenues: A Reproducible Corpus and Tooling Substrate for Cybersecurity Literature Reviews arXiv:2606.18320v1 Announce Type: new Abstract: Cybersecurity literature reviews require a reproducible denominator: the set of papers that a protocol includes before screening and synthesis begin. Today, that denominator is often reconstructed from publisher portals, bibliographic indices, and scholarly application programming interfaces (APIs) whose coverage, formats, and query sema…
Read original ↗https://arxiv.org/abs/2606.18320arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
PYPILINE: Malicious PyPI Package Detection via Suspicious API Knowledge and Agent Workflow arXiv:2606.19063v1 Announce Type: new Abstract: The detection of malicious PyPI packages is crucial for maintaining the security of the open source software supply chain. Existing methods, which primarily rely on rules or traditional machine learning, suffer from poor interpretability and difficulty in adapting to novel attacks. To address this, we propose PYPILINE, a novel detection m…
Read original ↗https://arxiv.org/abs/2606.19063arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
The Gate Is Only as Honest as Its Contracts: ContractGuard for the Contract Layer of Risk-Aware Causal Gating arXiv:2606.18550v1 Announce Type: new Abstract: Risk-Aware Causal Gating (RACG) defends tool-augmented LLM agents against indirect prompt injection by removing dangerous tools from the agent's visible action space, so that even a fully injection-compliant agent cannot call a tool it cannot see. We make three points. First, this structural guarantee does not eliminate…
Read original ↗https://arxiv.org/abs/2606.18550arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
Confident yet Concerned: Inconsistencies in Computing Students' Attitudes on Cybersecurity arXiv:2606.18541v1 Announce Type: new Abstract: Today's young adults are most immersed in technology, leading in feelings of powerlessness in managing online privacy across many platforms, and particularly susceptible to phishing attacks. This raises questions about their general, wide-ranging attitudes towards and management of cybersecurity. How do young, tech-savvy adults approach c…
Read original ↗https://arxiv.org/abs/2606.18541arxiv_cs_cr · tlp:amber · 6/18/2026, 4:00:00 AM
AI Sandboxes: A Threat Model, Taxonomy, and Measurement Framework arXiv:2606.18532v1 Announce Type: new Abstract: AI systems are increasingly evaluated in bounded environments that combine isolation, simulation, instrumentation, supervision, and evidence capture. For physical AI, AIoT, and cyber-physical systems, this shift is not a matter of terminology: the system under test may sense, decide, actuate, communicate, and fail through physical processes, networked devices, an…
Read original ↗https://arxiv.org/abs/2606.18532microsoft_mstic · tlp:amber · 6/18/2026, 3:43:04 AM
From package to postinstall payload: Inside the Mastra npm supply chain compromise A poisoned npm package infected 140+ projects with a hidden payload. This report highlights how to detect, hunt, and defend against supply chain attacks using Microsoft Defender and actionable threat intelligence. The post From package to postinstall payload: Inside the Mastra npm supply chain compromise appeared first on Microsoft Security Blog . In this article Attack chain overview Discove…
Read original ↗https://www.microsoft.com/en-us/security/blog/2026/06/17/postinstall-payload-inside-mastra-npm-supply-chain-compromiselwn_kernel · tlp:amber · 6/18/2026, 12:55:14 AM
[$] LWN.net Weekly Edition for June 18, 2026 Inside this week's LWN.net Weekly Edition: Front : State of Fedora; mTHP creation; overlayfs; buffer-heads cleanup; 7.1 statistics. Briefs : curl summer of bliss; 7.1 kernel; AUR compromise; Fedora election; FairScan 2.0; Firefox 152.0; Homebrew 6.0.0; KDE Plasma 6.7; LWN topic list; Quotes; ... Announcements : Newsletters, conferences, security updates, patches, and more.
Read original ↗https://lwn.net/Articles/1077459trend_micro · tlp:amber · 6/18/2026, 12:00:00 AM
PeopleSoft PeopleTools Pre-Authentication RCE: A PSIGW SSRF Chain That Executes Inside the JVM A pre-authentication remote code execution (RCE) chain in Oracle PeopleSoft PeopleTools abuses the Integration Broker's PSIGW gateway to execute code inside the application server's Java virtual machine (JVM), evading behavioral and network sensors. PeopleSoft PeopleTools Pre-Authentication RCE: A PSIGW SSRF Chain That Executes Inside the JVM | Trend Micro (US) search close About …
Read original ↗https://www.trendmicro.com/en_us/research/26/f/PeopleTools.htmlhuggingface_blog · tlp:amber · 6/18/2026, 12:00:00 AM
Is it agentic enough? Benchmarking open models on your own tooling Is it agentic enough? Benchmarking open models on your own tooling Hugging Face Models Datasets Spaces Buckets new Docs Enterprise Pricing Website Tasks HuggingChat Collections Languages Organizations Community Blog Posts Daily Papers Learn Discord Forum GitHub Solutions Team & Enterprise Hugging Face PRO Enterprise Support Inference Providers Inference Endpoints Storage Buckets Log In Sign Up Back to Art…
Read original ↗https://huggingface.co/blog/is-it-agentic-enoughmicrosoft_mstic · tlp:amber · 6/17/2026, 11:11:43 PM
Crypto Clipper uses Tor and worm-like propagation for persistence and control Microsoft Threat Intelligence analyzed a cryptocurrency clipper campaign that combines clipboard theft, wallet replacement, Tor-based communications, and worm-like propagation. Beyond stealing cryptocurrency transactions, the malware establishes persistent access and enables follow-on activity through a lightweight backdoor capability. The post Crypto Clipper uses Tor and worm-like propagation for …
Read original ↗https://www.microsoft.com/en-us/security/blog/2026/06/17/crypto-clipper-uses-tor-worm-like-propagation-for-persistence-controlars_security · tlp:amber · 6/17/2026, 7:54:31 PM
Massive breach spills credentials for thousands of sensitive networks The affected include Oracle, Lenovo, FedEx, a NATO contractor, and Fortinet. Researchers have uncovered a massive breach of Fortinet firewalls that has given Russian-speaking attackers near-unrestricted access to some of the world’s largest and most powerful organizations, including Oracle, Chevron, Lenovo, Federal Express, a NATO defense contractor, and Fortinet itself. Nearly 74,000 Fortinet devices fro…
Read original ↗https://arstechnica.com/security/2026/06/massive-breach-spills-credentials-for-thousands-of-sensitive-networksmicrosoft_mstic · tlp:amber · 6/17/2026, 7:30:00 PM
Beyond the benchmark: Advancing security at AI speed Read how Microsoft Security has advanced its agentic vulnerability detection system, codename MDASH, integrating into real-world workflows across Windows, Azure, and identity systems. The post Beyond the benchmark: Advancing security at AI speed appeared first on Microsoft Security Blog . In this article From the lab into the pipeline This month’s set of discoveries Beyond the headline: What the engineering work taught us…
Read original ↗https://www.microsoft.com/en-us/security/blog/2026/06/17/beyond-the-benchmark-advancing-security-at-ai-speedmicrosoft_mstic · tlp:amber · 6/17/2026, 6:30:00 PM
Forrester names Microsoft a Leader in the 2026 Extended Detection and Response Platforms Wave™ report Microsoft has been named a Leader in The Forrester Wave™: Extended Detection and Response Platforms, Q2 2026. The post Forrester names Microsoft a Leader in the 2026 Extended Detection and Response Platforms Wave™ report appeared first on Microsoft Security Blog . We are excited to share that Microsoft has been named a Leader in The Forrester Wave™: Extended Detection a…
Read original ↗https://www.microsoft.com/en-us/security/blog/2026/06/17/forrester-names-microsoft-a-leader-in-the-2026-extended-detection-and-response-platforms-wave-reportars_security · tlp:amber · 6/17/2026, 5:50:46 PM
"Dangerous" AI models are coming no matter what AI models with advanced hacking capabilities will soon be the norm. Late last week, Anthropic took its new Claude Fable 5 and Mythos 5 AI models offline following a United States government export-control directive barring “any foreign national” from using the services. The company has been in talks with the White House since Friday but has yet to secure an agreement that would allow it to reinstate the offerings. Since Mythos…
Read original ↗https://arstechnica.com/ai/2026/06/dangerous-ai-models-are-coming-no-matter-whatchainalysis · tlp:amber · 6/17/2026, 5:04:10 PM
Seeing the Full Picture: Why Pre- and Post-Designation Exposure Changes Everything in Sanctions Screening Sanctions compliance in crypto isn’t just about knowing who’s on a list today. It’s about understanding the full arc of… The post Seeing the Full Picture: Why Pre- and Post-Designation Exposure Changes Everything in Sanctions Screening appeared first on Chainalysis . Pre- and Post-Designation Sanctions Screening Chainalysis Products Crypto Investigatio…
Read original ↗https://www.chainalysis.com/blog/pre-post-designation-sanctions-screeningmicrosoft_mstic · tlp:amber · 6/17/2026, 5:00:00 PM
AI is accelerating cyberattacks—here’s how to stay ahead See how Microsoft unifies identity and security signals to help teams prevent, detect, and respond to AI-accelerated attacks faster. The post AI is accelerating cyberattacks—here’s how to stay ahead appeared first on Microsoft Security Blog . In March, we wrote that identity security has become the new pressure point for modern cyberattacks . Since then, AI has only increased that pressure. AI helps cyberattacke…
Read original ↗https://techcommunity.microsoft.com/blog/microsoft-entra-blog/ai-is-accelerating-cyberattacks%E2%80%94here%E2%80%99s-how-to-stay-ahead/4528592lwn_kernel · tlp:amber · 6/17/2026, 3:50:07 PM
Fedora F44 election results The results are in for Fedora's F44 election cycle for seats on the Fedora Council , Fedora Engineering Steering Committee , Fedora Mindshare Committee , and EPEL Steering Committee . Miro Hrončok and Aleksandra Fedorova have won seats on the council. Neal Gompa, Fabio Valentini, Michel Lind, Maxwell G, and Simon de Vlieger have been elected to FESCo. Samyak Jain, Akashdeep Dhar, Luis Bazan, and Mat Holmes have all been elected to the Mindshare Co…
Read original ↗https://lwn.net/Articles/1078366lwn_kernel · tlp:amber · 6/17/2026, 3:30:12 PM
Everything security at PyCon US 2026 The Python Software Foundation blog has a post with a summary of the security-related content at PyCon US 2026 with links to slides from important sessions. The recordings will be published to the PyCon US channel on YouTube, and the post will be updated with links to those videos as they are made available. Everything security at PyCon US 2026 [LWN.net] LWN .net News from the source Content Weekly Edition Archives Search Kernel Security…
Read original ↗https://lwn.net/Articles/1078361huggingface_blog · tlp:amber · 6/17/2026, 3:26:44 PM
MolmoMotion: Language-guided 3D motion forecasting MolmoMotion: Language-guided 3D motion forecasting Hugging Face Models Datasets Spaces Buckets new Docs Enterprise Pricing Website Tasks HuggingChat Collections Languages Organizations Community Blog Posts Daily Papers Learn Discord Forum GitHub Solutions Team & Enterprise Hugging Face PRO Enterprise Support Inference Providers Inference Endpoints Storage Buckets Log In Sign Up Back to Articles a]:hidden"> MolmoMotion: L…
Read original ↗https://huggingface.co/blog/allenai/molmomotionlwn_kernel · tlp:amber · 6/17/2026, 2:05:04 PM
[$] Some buffer-heads cleanup work Jan Kara has been working on cleaning up how buffer heads are used by some kernel filesystems. In a short filesystem-track session at the 2026 Linux Storage, Filesystem, Memory Management, and BPF Summit , he gave an update on that work and where it is headed. Topics included generic infrastructure to track buffer heads for metadata, a buffer-head cleanup for the Amiga filesystem, and some planned locking fixes.
Read original ↗https://lwn.net/Articles/1077767checkpoint_research · tlp:amber · 6/17/2026, 1:38:55 PM
From Stars to Upvotes: Fake Reputation Fueling a Crypto Clipboard Hijacker Key Points Introduction In this research, we analyze a clipboard hijacker campaign that is hidden inside a collection of “solutions” and “tools” that claim to give users an unfair advantage. These offers include Solana and Pump.fun sniper bots (automated tools that try to buy new tokens or meme coins faster than other traders), Aviator Predictor […] The post From Stars to Upvotes: Fake Reputatio…
Read original ↗https://research.checkpoint.com/2026/from-stars-to-upvotes-fake-reputation-fueling-a-crypto-clipboard-hijacker