REPORTS
Fresh threat intelligence we ingest from public vendor and research feeds — each report linked to its original source. Search, filter by source, and open the reference.
Reports
Newest first. Search, filter by source, open the original.
2250 reports · page 33 of 57
cisa_alerts · tlp:amber · 6/11/2026, 12:00:00 PM
Brickcom Cameras View CSAF Summary Successful exploitation of these vulnerabilities could allow a remote unauthenticated attacker to gain unauthorized access to live video feeds, retrieve sensitive visual information from affected premises, and obtain administrative control of the device. The following versions of Brickcom Cameras are affected: Brickcom Cube 3.2.3.5.6 Brickcom Dome 3.2.3.5.6 Brickcom Bullet 3.2.3.5.6 Brickcom Box 3.2.3.5.6 CVSS Vendor Equipment V…
Read original ↗https://www.cisa.gov/news-events/ics-advisories/icsa-26-162-03cisa_alerts · tlp:amber · 6/11/2026, 12:00:00 PM
Naxclow IoT Platform View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to impersonate devices, intercept or manipulate communications, harvest sensitive credentials at scale, or gain unauthorized access. The following versions of Naxclow IoT Platform are affected: Smart Doorbell X3 vers:all/* X Smart Home vers:all/* V720 vers:all/* ix cam vers:all/* CVSS Vendor Equipment Vulnerabilities v3 9.8 Naxclow Naxclow I…
cisa_alerts · tlp:amber · 6/11/2026, 12:00:00 PM
Yarbo Android/iOS Mobile Application and Cloud Infrastructure View CSAF Summary Successful exploitation of these vulnerabilities could allow an attacker to obtain hard-coded credentials, gain access to telemetry data, and potentially send operational commands to the robot fleet. The following versions of Yarbo Android/iOS Mobile Application and Cloud Infrastructure are affected: Yarbo Android/IOS mobile application Cloud MQTT infrastructure vers:all/* CVSS Vendor Equipment V…
Read original ↗https://www.cisa.gov/news-events/ics-advisories/icsa-26-162-01cisa_alerts · tlp:amber · 6/11/2026, 12:00:00 PM
CISA Adds One Known Exploited Vulnerability to Catalog CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog , based on evidence of active exploitation. CVE-2026-10520 Ivanti Sentry OS Command Injection Vulnerability This type of vulnerability is a frequent attack vector for malicious cyber actors and poses significant risks to the federal enterprise. Binding Operational Directive (BOD) 26-04: Prioritizing Security Updates Based on Risk es…
Read original ↗https://www.cisa.gov/news-events/alerts/2026/06/11/cisa-adds-one-known-exploited-vulnerability-catalogunit42 · tlp:amber · 6/11/2026, 10:00:24 AM
Trust No Skill: Integrity Verification for AI Agent Supply Chains Protect enterprise AI agents from supply chain risks by auditing third-party skills for hidden vulnerabilities and multi-stage attack chains. The post Trust No Skill: Integrity Verification for AI Agent Supply Chains appeared first on Unit 42 . Trust No Skill: Integrity Verification for AI Agent Supply Chains Menu Tools ATOMs Security Consulting About Us Under Attack? Threat Research Center Threat Research Ma…
Read original ↗https://unit42.paloaltonetworks.com/ai-agent-supply-chain-riskseset · tlp:amber · 6/11/2026, 8:45:00 AM
OceanLotus: From external espionage to domestic targeting A shift in operational pattern of the infamous Vietnam-aligned APT group OceanLotus: From external espionage to domestic targeting Award-winning news, views, and insight from the ESET security community English Español Deutsch Português Français TIPS & ADVICE BUSINESS SECURITY ESET RESEARCH About ESET Research Blogposts Podcasts White papers Threat reports WeLiveScience FEATURED Ukraine crisis – Digital security …
Read original ↗https://www.welivesecurity.com/en/eset-research/oceanlotus-external-espionage-domestic-targetingarxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
Can Open-Source LLM Agents Replace Static Application Security Testing Tools? An Empirical Assessment arXiv:2606.11672v1 Announce Type: new Abstract: This paper explores the value of agentic AI tools for cybersecurity purposes. We evaluate the efficacy of a general-purpose GenAI Large Language Model- (GenAI-) based agent when powered by three different Ollama-hosted general-purpose open source models. We assess each agent's performance using precision, recall, false positive…
Read original ↗https://arxiv.org/abs/2606.11672arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
VIPIR: A Versatile GPU Framework for Integrating Private Information Retrieval Protocols arXiv:2606.11536v1 Announce Type: new Abstract: While private information retrieval (PIR) enables private database services by fully concealing access patterns, it simultaneously requires high computational throughput, large memory capacity, and substantial memory bandwidth. We introduce VIPIR, a versatile GPU framework that co-designs PIR protocols with GPU acceleration. We develop a un…
Read original ↗https://arxiv.org/abs/2606.11536arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
Hiding the Trees in the Forest: Building Network Covert Channels with Hash-Based Covert Carrier Filtering arXiv:2606.11532v1 Announce Type: new Abstract: As an effective anti-censorship mechanism, network covert channels can provide data privacy protection and ensure communication security. However, the covertness of existing network covert channels primarily depends on the secrecy of their covert algorithms. With the increasing depth of research in this field, the difficult…
Read original ↗https://arxiv.org/abs/2606.11532arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
Dummy Backdoor as a Defense: Removing Unknown Backdoors via Shared Internal Mechanisms for Generative LLMs arXiv:2606.11648v1 Announce Type: new Abstract: Backdoor attacks pose a serious threat to the safety and reliability of Large Language Models (LLMs), as they cause models to behave normally on clean inputs while producing attacker-specified responses when hidden triggers are present. Removing such unknown backdoors is particularly challenging when the defender does not …
Read original ↗https://arxiv.org/abs/2606.11648arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
T2S: A Rehearsal-Based Approach for Extraction-Resistant Model Watermarking arXiv:2606.11698v1 Announce Type: new Abstract: Model watermarking safeguards AI model intellectual property by embedding distinctive knowledge that induces unique behavioral signatures. The primary technical challenge lies in ensuring watermark robustness against various post-processing attacks on the watermarked model. Model extraction attacks emerge as the most severe threat, where adversaries exp…
Read original ↗https://arxiv.org/abs/2606.11698arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
JailbreakOPT: Tool-Assisted Iterative Jailbreak Prompt Optimization arXiv:2606.11425v1 Announce Type: new Abstract: Jailbreak attacks expose persistent safety weaknesses in large language models (LLMs), but existing stateless single-turn methods face a trade-off: hand-crafted prompts are expressive but static, while iterative prompt optimization can adapt but often relies on low-level mutations that require many target queries. We propose JailbreakOPT, a tool-assisted framew…
Read original ↗https://arxiv.org/abs/2606.11425arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
MHOT: Height-Optimized Authenticated Data Structure for Blockchain State Commitment arXiv:2606.11736v1 Announce Type: new Abstract: State root computation dominates (78%) blockchain block processing time. Ethereum's canonical authenticated data structure, i.e., Merkle Patricia Trie (MPT), suffers from severe tree-height growth and is vulnerable to \textit{Nurgle attacks} (SP'24), where adversaries inflate path depth via hash collisions and degrade system performance at negli…
Read original ↗https://arxiv.org/abs/2606.11736arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
MPC-Patch-Bench: Security-Aware LLM Code Patch for Multi-Party Computation arXiv:2606.11416v1 Announce Type: new Abstract: Repository-level benchmarks for evaluating Large Language Model (LLM) code repair on Secure Multi-Party Computation (MPC) software do not yet exist, and directly transplanting general-purpose benchmarks such as SWE-bench fails on three structural fronts: (i) MPC repositories are dominated by generic Python infrastructure rather than cryptographic logic; …
Read original ↗https://arxiv.org/abs/2606.11416arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
Gerrymandering the Warp: Non-Control-Data Attacks on CUDA Collective Decision arXiv:2606.11878v1 Announce Type: new Abstract: CUDA collective operations often sit on security decision paths: votes accept batches, reductions aggregate evidence, shuffles select representatives, and barriers order checked state before use. Such decisions depend not only on computed values, but also on which lanes are represented, what evidence they contribute, which lane speaks for the group, a…
Read original ↗https://arxiv.org/abs/2606.11878arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
A VPN-as-a-Service Tailored Enabler for Computing-constrained Environments arXiv:2606.11729v1 Announce Type: new Abstract: Industry has embraced Zero Trust (ZT) architectural tenets and implementations for cloud-native environments, following stricter security requirements to both internal and external tenants. Among others, these approaches combine fine-grained identity management and monitoring for both inventorying and better analysing the devices' security posture for ov…
Read original ↗https://arxiv.org/abs/2606.11729arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
WarpGuard: Protected-Site Control-Flow Integrity for CUDA SASS Binaries arXiv:2606.11871v1 Announce Type: new Abstract: Recent CUDA exploitation work shows that GPU memory bugs can escalate into device-side control-flow corruption, as kernels later consume corrupted return continuations, function pointers, dispatch-table entries, or branch targets. For deployed CUDA binaries, the relevant security boundary is executed NVIDIA SASS, after PTX lowering, inlining, ABI decisions,…
Read original ↗https://arxiv.org/abs/2606.11871arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
Systematic Cybersecurity Risk Analysis of European Rail Traffic Management System arXiv:2606.11839v1 Announce Type: new Abstract: European Rail Traffic Management System (ERTMS) is a widely adopted standard unifying train management in the EU. While the standard allows for use cases like fully autonomous driving, cybersecurity has been an afterthought. Risk analysis enables the systematic assessment and prioritization of threats and mitigations. To date, it remains unclear w…
Read original ↗https://arxiv.org/abs/2606.11839arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
Evaluating and Combating the Impact of Concept Drift on the Performance of Machine Learning-Based Phishing Detection Systems arXiv:2606.11471v1 Announce Type: new Abstract: The expansion of the digital domain has resulted in a substantial increase in digital communication, with email emerging as one of the most prominent channels. The proliferation of email communication is apparent in both professional and personal contexts, thereby creating numerous vulnerabilities for mal…
Read original ↗https://arxiv.org/abs/2606.11471arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
Sovereign Assurance Boundary: Certificate-Bound Admission for Agentic Infrastructure arXiv:2606.11632v1 Announce Type: new Abstract: Agentic infrastructure introduces a critical control-plane authorization problem: non-deterministic reasoning systems can propose high-stakes mutations to production resources, yet existing security mechanisms -- such as identity and access management (IAM), policy engines, consensus protocols, and audit logs -- either enforce static, context-u…
Read original ↗https://arxiv.org/abs/2606.11632arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
Defense Against Prompt Inversion Attacks: An Information-Theoretic Approach for LLM Collaborative Inference arXiv:2606.11592v1 Announce Type: new Abstract: Collaborative edge-cloud inference enables resource-constrained devices to leverage large language models (LLMs) by offloading partial computation to cloud servers. However, transmitting intermediate activations exposes sensitive user prompts to prompt inversion attacks, where an adversary reconstructs the original input …
Read original ↗https://arxiv.org/abs/2606.11592arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
A Robust Framework for Sybil Attack Detection in Vehicular Ad Hoc Networks arXiv:2606.11667v1 Announce Type: new Abstract: Sybil attacks create an illusion of traffic congestion by utilizing fake identities, which undermines the reliable and safe operation of vehicular ad hoc networks (VANETs). Existing detection mechanisms struggle to effectively handle Sybil attacks as they are (i) susceptible to high false positive rates (FPR) due to the overlapping trajectories of both S…
Read original ↗https://arxiv.org/abs/2606.11667arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
A Deterministic Forensic Preprocessing Framework for Heterogeneous Network Datasets: Formal Foundations, Implementation, and Empirical Validation arXiv:2606.11565v1 Announce Type: new Abstract: Digital forensic investigations increasingly depend on preprocessing heterogeneous network evidence from intrusion detection systems, IoT devices, and enterprise traffic logs. Incompatible schemas and timestamp formats hinder evidence correlation and timeline reconstruction, while cur…
Read original ↗https://arxiv.org/abs/2606.11565arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
Privacy-Preserving Federated Autoencoder for ECG Anomaly Detection on Edge Devices arXiv:2606.11556v1 Announce Type: new Abstract: Continuous electrocardiography (ECG) monitoring could surface rhythm abnormalities before they escalate into cardiovascular events. However, a deployable system must satisfy three requirements simultaneously: legal-grade privacy (GDPR, HIPAA), real-time inference on constrained edge hardware, and detection quality under non-IID cross-hospital dat…
Read original ↗https://arxiv.org/abs/2606.11556arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
Runtime Skill Audit: Targeted Runtime Probing for Agent Skill Security arXiv:2606.11671v1 Announce Type: new Abstract: Agent skills let LLM agents reuse instructions, resources, tools, and workflows, but they also create a new place for malicious behavior to hide. A skill may look benign in its documentation or code while becoming harmful only when it is invoked with particular user requests, local assets, persistent state, or multi-step tool interactions. This makes purely …
Read original ↗https://arxiv.org/abs/2606.11671arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
WHET: Welding Homomorphic Encryption to Accelerator Architectures arXiv:2606.11541v1 Announce Type: new Abstract: Fully homomorphic encryption (FHE) enables computations on encrypted data without decryption, offering strong data privacy at the expense of substantial computational and memory overheads. Prior efforts have steadily improved FHE performance through cryptographic and algorithmic enhancements or hardware acceleration, yet these two directions have progressed large…
Read original ↗https://arxiv.org/abs/2606.11541arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
PriME-Deal: Privacy-Preserving Bilateral Data Trading with Efficient Matchmaking and Auditable Fair Exchange on Blockchain arXiv:2606.11539v1 Announce Type: new Abstract: Bilateral attribute-based access control for data trading must hide policies, provide cryptographic fairness, and avoid trusted third parties. Existing solutions either leak policy information, incur super-linear costs, or rely on trusted dispute resolution. We present PriME-Deal, a non-interactive protocol…
Read original ↗https://arxiv.org/abs/2606.11539arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
Jaguar: Fast Private CNN Inference with Power-of-Two Homomorphic Arithmetic arXiv:2606.11827v1 Announce Type: new Abstract: Hybrid HE/2PC private CNN inference remains bottlenecked by prime-modulus homomorphic arithmetic in convolution and by a precision flow that runs ReLU at doubled bitwidth before invoking a separate truncation protocol. We present Jaguar, a system built on a single design choice--a power-of-two ciphertext ring--that addresses both. The choice enables SPA…
Read original ↗https://arxiv.org/abs/2606.11827arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
Grammar-Constrained Decoding Can Jailbreak LLMs into Generating Malicious Code arXiv:2606.11817v1 Announce Type: new Abstract: Large Language Models (LLMs) are increasingly used for code generation, raising concerns that they may be misused to produce malicious code. Meanwhile, Grammar-Constrained Decoding (GCD) has been widely adopted to improve the reliability of LLM-generated code by enforcing syntactic validity. In this paper, we reveal a counterintuitive risk: this reli…
Read original ↗https://arxiv.org/abs/2606.11817arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
SwarmSense-DNN: A Trustworthy and Decentralized Neural Framework for Proactive Anomaly Defense in Consumer IoT arXiv:2606.11803v1 Announce Type: new Abstract: The rapid growth of consumer IoT devices has introduced unprecedented challenges in trustworthy anomaly detection against AI-enabled cyber threats, requiring real-time, privacy-preserving, and scalable defense mechanisms. Traditional centralized strategies face critical limitations, including communication bottlenecks,…
Read original ↗https://arxiv.org/abs/2606.11803arxiv_cs_cr · tlp:amber · 6/11/2026, 4:00:00 AM
When Poison Fails After Retrieval: Revisiting Corpus Poisoning under Chunking and Reranking Pipelines arXiv:2606.11265v1 Announce Type: new Abstract: Retrieval-Augmented Generation (RAG) systems are vulnerable to corpus poisoning attacks that manipulate downstream model outputs through malicious knowledge injection. Existing studies mainly evaluate poisoning under simplified retrieval settings, overlooking practical RAG pipelines involving document chunking, dense retrieval,…
Read original ↗https://arxiv.org/abs/2606.11265lwn_kernel · tlp:amber · 6/11/2026, 12:02:58 AM
[$] LWN.net Weekly Edition for June 11, 2026 Inside this week's LWN.net Weekly Edition: Front : Suspicious AI activity in Fedora; fork() + exec(); splice() + vmsplice(); BPF loop verification; fanotify; trusted publishing. Briefs : CA age bill; Bundler cooldowns; insecure code completion; Asahi and macOS 27 beta; Buildroot 2026.05; Ubuntu MATE; rsync 3.4.4; Quotes; ... Announcements : Newsletters, conferences, security updates, patches, and more.
Read original ↗https://lwn.net/Articles/1076254huggingface_blog · tlp:amber · 6/11/2026, 12:00:00 AM
Profiling in PyTorch (Part 2): From nn.Linear to a Fused MLP Profiling in PyTorch (Part 2): From nn.Linear to a Fused MLP Hugging Face Models Datasets Spaces Buckets new Docs Enterprise Pricing Website Tasks HuggingChat Collections Languages Organizations Community Blog Posts Daily Papers Learn Discord Forum GitHub Solutions Team & Enterprise Hugging Face PRO Enterprise Support Inference Providers Inference Endpoints Storage Buckets Log In Sign Up Back to Articles Profil…
Read original ↗https://huggingface.co/blog/torch-mlp-fusionlwn_kernel · tlp:amber · 6/10/2026, 4:43:14 PM
Larson: Are insecure code completions a vulnerability? Seth Larson, the Python Software Foundation's security developer-in-residence , has written about the difficulty in classifying insecure code completion in the PyCharm IDE using its Full Line code completion plugin. Larson discovered that the plugin, which uses a local "deep learning module" to offer code completions, suggests code that would lead to severe vulnerabilities. He was unsure whether it warranted a CVE or not…
Read original ↗https://lwn.net/Articles/1077413microsoft_mstic · tlp:amber · 6/10/2026, 4:00:00 PM
Turn specs into evals for any agent with ASSERT Adaptive Spec-driven Scoring for Evaluation and Regression Testing (ASSERT) is an open-source framework for converting natural language behavior requirements into executable evaluations of AI models and agents. The post Turn specs into evals for any agent with ASSERT appeared first on Microsoft Security Blog . Today, we’re releasing Adaptive Spec-driven Scoring for Evaluation and Regression Testing (ASSERT) , an open-source fr…
Read original ↗https://commandline.microsoft.com/assert-written-intent-executable-evalslwn_kernel · tlp:amber · 6/10/2026, 2:35:25 PM
[$] AI agent runs amok in Fedora and elsewhere Agentic AI systems can be used to do a variety of things autonomously on behalf of a human user: open or manage bugs, generate code, submit pull-requests, and (apparently) even complain about rejection . In May, a Fedora developer discovered that an allegedly rogue agent had been pestering the project in a number of ways: reassigning bugs, fabricating unhelpful replies to bugs, and even persuading maintainers to merge questionab…
Read original ↗https://lwn.net/Articles/1077035krebs_on_security · tlp:amber · 6/10/2026, 2:03:44 PM
Who Runs the Ransomware Group ‘The Gentlemen?’ A cybercrime group known as The Gentlemen has emerged as the second most active ransomware gang by victim count, rapidly attracting a talented pool of hackers through an aggressive recruitment strategy that promises affiliates 90 percent of any ransom paid by victims. This post examines clues pointing to a real life identity for the administrator of The Gentlemen ransomware group. A cybercrime group known as The Gentlemen has e…
Read original ↗https://krebsonsecurity.com/2026/06/who-runs-the-ransomware-group-the-gentlemenlwn_kernel · tlp:amber · 6/10/2026, 2:03:16 PM
Buildroot 2026.05 released Version 2026.05 of the Buildroot tool has been released. Buildroot simplifies and automates the process of building embedded Linux systems using cross-compilation. Notable changes in this release include support for Arm Neoverse cores, addition of XFS rootfs generation, as well as many package updates and bug fixes. See the CHANGES file for the full list. Buildroot 2026.05 released [LWN.net] LWN .net News from the source Content Weekly Edition Arc…
Read original ↗https://lwn.net/Articles/1077379lwn_kernel · tlp:amber · 6/10/2026, 1:09:28 PM
Security updates for Wednesday Security updates have been issued by AlmaLinux (poppler), Debian (dnsmasq, mistral, okular, openssl, poppler, and strongswan), Fedora (exim, firefox, pcs, putty, and xorg-x11-server), Mageia (freeciv, golang-x-net, jq, libssh, libxmp, libxpm, minetest, ruby-net-ssh, tor, and wireshark), SUSE (389-ds, ack, agama-web-ui, amazon-ssm-agent, avahi, dpkg, elemental-register, elemental-system-agent, elemental-toolkit, ggml-devel-9500, go1.25, go1.26, …
Read original ↗https://lwn.net/Articles/1077362eset · tlp:amber · 6/10/2026, 9:00:00 AM
SMB cyber-readiness: What makes or breaks it A company that's expecting a cyberattack but hasn’t actively prepared for it risks making the hardest decisions at the worst possible moment SMB cyber-readiness: What makes or breaks it Award-winning news, views, and insight from the ESET security community English Español Deutsch Português Français TIPS & ADVICE BUSINESS SECURITY ESET RESEARCH About ESET Research Blogposts Podcasts White papers Threat reports WeLiveScience F…
Read original ↗https://www.welivesecurity.com/en/business-security/smb-cyber-readiness-what-makes-breaks-it