REPORTS
Fresh threat intelligence we ingest from public vendor and research feeds — each report linked to its original source. Search, filter by source, and open the reference.
Reports
Newest first. Search, filter by source, open the original.
2250 reports · page 38 of 57
microsoft_mstic · tlp:amber · 6/2/2026, 5:15:18 PM
Microsoft Build 2026: Securing code, agents, and models across the development lifecycle Discover how Microsoft enables fast, secure AI development with MDASH and new security capabilities. The post Microsoft Build 2026: Securing code, agents, and models across the development lifecycle appeared first on Microsoft Security Blog . In this article Secure your code Secure your agents Trust agents with your data Secure your models Trust starts with security Today, developers an…
Read original ↗https://www.microsoft.com/en-us/security/blog/2026/06/02/microsoft-build-2026-securing-code-agents-and-models-across-the-development-lifecyclehuggingface_blog · tlp:amber · 6/2/2026, 2:13:23 PM
Holo3.1: Fast & Local Computer Use Agents Holo3.1: Fast & Local Computer Use Agents Hugging Face Models Datasets Spaces Buckets new Docs Enterprise Pricing Website Tasks HuggingChat Collections Languages Organizations Community Blog Posts Daily Papers Learn Discord Forum GitHub Solutions Team & Enterprise Hugging Face PRO Enterprise Support Inference Providers Inference Endpoints Storage Buckets Log In Sign Up Back to Articles Holo3.1: Fast & Local Computer Use A…
lwn_kernel · tlp:amber · 6/2/2026, 1:33:43 PM
[$] Trying to make sense of package-manager metadata Package managers for operating systems and programming languages have been around for decades. Each package manager, and its accompanying packaging format, has been shaped by the needs of its respective ecosystem, but there is a growing need to make use of package metadata for more than software management: for example, in vulnerability scans, software bills of materials (SBOMs), and more. On May 19, Damián Vicino spo…
Read original ↗https://lwn.net/Articles/1074908sentinelone · tlp:amber · 6/2/2026, 1:00:58 PM
LABScon25 Replay | Gamaredon x Turla: Unveiling a 2025 Espionage Alliance Targeting Ukraine ESET researchers show how Gamaredon facilitated Turla access to Ukrainian targets, revealing rare cooperation between FSB-linked espionage groups. In this LABScon 25 presentation, ESET researchers Matthieu Faou and Zoltán Rusnák present the first technical evidence that Gamaredon actively facilitated Turla’s access to high-value Ukrainian targets in Ukraine. Across incidents observed…
Read original ↗https://www.sentinelone.com/labs/labscon25-replay-gamaredon-x-turla-unveiling-a-2025-espionage-alliance-targeting-ukrainecisa_alerts · tlp:amber · 6/2/2026, 12:00:00 PM
CISA and Partners Urge Hardening Automatic Tank Gauge Systems CISA and Partners Urge Hardening Automatic Tank Gauge Systems Overview The Cybersecurity and Infrastructure Security Agency (CISA), the Federal Bureau of Investigation (FBI), the National Security Agency (NSA), the Department of Energy (DOE), the Environmental Protection Agency (EPA), the Transportation Security Administration (TSA), the Department of Transportation (DOT), and the U.S. Department of Agriculture (U…
Read original ↗https://www.cisa.gov/resources-tools/resources/cisa-and-partners-urge-hardening-automatic-tank-gauge-systemscisa_alerts · tlp:amber · 6/2/2026, 12:00:00 PM
CISA Adds Two Known Exploited Vulnerabilities to Catalog CISA has added two new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog , based on evidence of active exploitation. CVE-2022-0492 Linux Kernel Improper Authentication Vulnerability CVE-2025-48595 Android Framework Integer Overflow Vulnerability These types of vulnerabilities are a frequent attack vector for malicious cyber actors and pose significant risks to the federal enterprise. Binding Op…
Read original ↗https://www.cisa.gov/news-events/alerts/2026/06/02/cisa-adds-two-known-exploited-vulnerabilities-catalogunit42 · tlp:amber · 6/2/2026, 10:00:31 AM
Operation FlutterBridge: macOS Malvertising Campaign Spreads New FlutterShell Backdoor Operation FlutterBridge is a malvertising campaign targeting macOS users. It distributed the new backdoor FlutterShell, built using the Flutter framework. The post Operation FlutterBridge: macOS Malvertising Campaign Spreads New FlutterShell Backdoor appeared first on Unit 42 . Operation FlutterBridge: macOS Malvertising Campaign Spreads New FlutterShell Backdoor Menu Tools ATOMs Security…
Read original ↗https://unit42.paloaltonetworks.com/flutterbridge-new-fluttershell-backdoorarxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
DataShield: Safety-degrading Data Filtering for LLM Benign Instruction Fine-Tuning arXiv:2606.00160v1 Announce Type: new Abstract: Large language models (LLMs) suffer from degraded safety capabilities even when fine-tuned with benign datasets. However, existing methods for identifying safety-degrading samples in benign datasets suffer from high computational costs and significant noise issues. In this paper, we propose DataShield to efficiently and effectively identify poten…
Read original ↗https://arxiv.org/abs/2606.00160arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
Bit-Exact AI Inference Verification Without Performance Tradeoffs arXiv:2606.00279v1 Announce Type: new Abstract: Verifying claims about AI workloads is a pre- requisite for credible AI governance of covert adversaries (who comply with monitoring only when detection likelihood is high), yet the ap- parent non-determinism of GPU floating-point arithmetic forces auditors to accept approximate output matches. Covert adversaries can exploit un- verifiable degrees of freedom in m…
Read original ↗https://arxiv.org/abs/2606.00279arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
XAI-SOH-FL: Enhancing SOH-FL with Adaptive Aggregation and Explainable AI for Intrusion Detection in Heterogeneous IoT arXiv:2606.00134v1 Announce Type: new Abstract: Intrusion Detection Systems (IDS) in Internet of Things (IoT) environments face significant challenges due to data heterogeneity, lack of labeled data, and limited model interpretability. Federated Learning (FL) offers a privacy-preserving solution; however, existing approaches such as SOH-FL suffer from two ke…
Read original ↗https://arxiv.org/abs/2606.00134arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
Improving IoT Intrusion Detection Through SMOTE-Based Oversampling and Extended Multi-Model Evaluation on Side-Channel Power Data arXiv:2606.00161v1 Announce Type: new Abstract: The detection of intrusions in IoT-based networks poses challenges that cannot be overcome using traditional machine learning methods. Perhaps the biggest of them is related to the presence of a class imbalance in the side-channel dataset, where the number of samples in the normal class compared to t…
Read original ↗https://arxiv.org/abs/2606.00161arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
The Invitation Trap: Proactive Availability Backdoor in LLMs via Conversational Induction arXiv:2606.00654v1 Announce Type: new Abstract: Current backdoor attacks against LLMs are typically manipulated by the attacker and remain passive. In this paper, we introduce the \textbf{Proactive Availability Backdoor (PAB)}, a novel paradigm that shifts the attack vector from passive waiting to active social engineering. By weaponizing the inherent helpfulness of aligned LLMs, PAB pr…
Read original ↗https://arxiv.org/abs/2606.00654arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
PrivacyPeek: Auditing What LLM-Based Agents Acquire, Not Just What They Say arXiv:2606.00152v1 Announce Type: new Abstract: LLM-based agents are rapidly advancing, autonomously invoking external tools to complete multi-step tasks for users. However, agents often acquire more sensitive information than the task requires. Existing privacy benchmarks audit what the agent's response or outgoing actions disclose, but overlook the acquisition stage where data first enters the agen…
Read original ↗https://arxiv.org/abs/2606.00152arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
Authenticity Debt and the Synthetic Content Threat Landscape: A Layered Framework for Trust, Provenance, and IP Governance in the Generative AI Era arXiv:2606.00621v1 Announce Type: new Abstract: Generative artificial intelligence has fundamentally changed how content is now produced. It has enabled how high-fidelity text, images, audio, and videos are created, modified, and redistributed at near-zero marginal cost. This shift exposes enterprises and ecosystems to a number o…
Read original ↗https://arxiv.org/abs/2606.00621arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
A Survey on Security with Quantum Computing arXiv:2606.00058v1 Announce Type: new Abstract: Quantum computing has emerged as a transformative computing paradigm capable of solving problems that remain computationally infeasible for classical systems; however, its rapid advancement also introduces significant security, privacy, and reliability concerns. In this context, this survey presents a comprehensive review of security challenges and mitigation strategies associated wit…
Read original ↗https://arxiv.org/abs/2606.00058arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
Cross-Generational Transfer of Adversarial Attacks Reveals Non-Monotonic Safety Alignment in LLMs arXiv:2606.00813v1 Announce Type: new Abstract: Safety alignment in LLMs does not improve monotonically across model generations. Studying four generations of Google's Gemma family (7B-31B) with quality-diversity evolution (MAP-Elites) as an automated red-teaming probe, we find that Gemma 3 (12B) exhibits 68.7% +/- 5.7% attack success rate (ASR; mean +/- std, 3 seeds), significa…
Read original ↗https://arxiv.org/abs/2606.00813arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
NICE: A Framework for Declarative and Machine-Checkable Vulnerability Reproduction arXiv:2606.00625v1 Announce Type: new Abstract: Reproducing software vulnerabilities is fundamental to security researchers, open-source maintainers, and educators. Yet, vulnerabilities remain hard to reproduce today, and even when they can be reproduced, recreating a software environment where the vulnerability can be exploited becomes harder and harder over time. We present NICE, the NIx CvE…
Read original ↗https://arxiv.org/abs/2606.00625arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
Beyond Edge Coverage: Per-Task Data-Flow Extraction at Kernel Function Boundaries via LLVM arXiv:2606.00455v1 Announce Type: new Abstract: Coverage-guided kernel fuzzers such as syzkaller rely on edge coverage (trace-pc) as their sole feedback signal. This context-blind approach cannot distinguish execution paths that differ only in argument values. for example, two invocations of copy_from_user() with different size parameters hit identical basic blocks yet have vastly diff…
Read original ↗https://arxiv.org/abs/2606.00455arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
A Protocol-Language Model for Network Intrusion (Without Deep Packet Inspection) arXiv:2606.00155v1 Announce Type: new Abstract: Modern network intrusion detection systems (NIDS) are caught in a structural contradiction: the protocols carrying the highest threat intelligence are precisely those encrypted under TLS 1.3 and QUIC, where payload inspection yields nothing. We ask a simpler question -- what if the attack signature is not in the bytes, but in the rhythm? -- and ans…
Read original ↗https://arxiv.org/abs/2606.00155arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
A Moderatorless Protocol for WEREWOLF arXiv:2606.00190v1 Announce Type: new Abstract: Social deduction games, or hidden-role games, are multiplayer games in which players are assigned private roles and act under asymmetric information about other players' roles and actions. In the canonical example Werewolf, werewolves conceal their roles and mislead the other players, while the seer can obtain role information about a chosen player. Thus, a central functionality of such gam…
Read original ↗https://arxiv.org/abs/2606.00190arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
Stochastic Analysis of Cybersecurity Defense Strategies Under Single Attack Scenario arXiv:2606.00481v1 Announce Type: new Abstract: This research presents a novel stochastic framework for proactive cybersecurity defense timing under a single attack scenario. The approach models the defense process as a continuous observation mechanism in which the defense instant and the subsequent observation slot follow independent exponential distributions. Laplace-Carson transforms comb…
Read original ↗https://arxiv.org/abs/2606.00481arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
GCVE: A Decentralized Model for Vulnerability Identification, Publication, and Operational Enrichment arXiv:2606.00856v1 Announce Type: new Abstract: The Global CVE initiative (GCVE) proposes a decentralized, open, and extensible model for vulnerability identification, publication, and enrichment. It addresses a gap in today's vulnerability ecosystem: centralized systems provide rigorous control and widely recognized identifiers, while many producers publish advisories indep…
Read original ↗https://arxiv.org/abs/2606.00856arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
How to Compare the Security of Code Written by Humans to LLM-generated Code arXiv:2606.00186v1 Announce Type: new Abstract: Large language models (LLMs) are rapidly transforming how software is created and maintained. Comparing LLM-generated code against human-written standards is essential to determine whether these new tools uphold or erode the security baselines established by professional developers. Yet, we lack a standardized method for empirically comparing the securi…
Read original ↗https://arxiv.org/abs/2606.00186arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
Framework for Discovering GPS Spoofing Attacks in Drone Swarms arXiv:2606.00904v1 Announce Type: new Abstract: Swarm robotics, particularly drone swarms, are used in various safety-critical tasks. While a lot of attention has been given to improving swarm control algorithms for improved intelligence, the security implications of various design choices in swarm control algorithms have not been studied. We highlight how an attacker can exploit the vulnerabilities in swarm cont…
Read original ↗https://arxiv.org/abs/2606.00904arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
Persona Attack: Incremental Memory Injection Jailbreak Attack against Large Language Models arXiv:2606.00150v1 Announce Type: new Abstract: As Large Language Models evolve for user convenience, vulnerability to jailbreak attacks continues to be reported despite ongoing efforts in safety training. Traditional jailbreak techniques typically focus on a single prompt injection, neglecting the models' ability to remember the flow of conversation and the user's instructions. In th…
Read original ↗https://arxiv.org/abs/2606.00150arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
A Lightweight Hybrid MLP-Based Framework for Real-Time Phishing URL Detection Using Structural URL Features arXiv:2606.00889v1 Announce Type: new Abstract: Phishing attacks remain a major cybersecurity threat, exploiting deceptive URLs to steal sensitive user information. Traditional blacklist and rule-based detection approaches are reactive and often fail to identify newly emerging phishing URLs. This paper proposes a lightweight hybrid framework for real-time phishing URL …
Read original ↗https://arxiv.org/abs/2606.00889arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
Inferring Routing-Layer Defense Mechanisms from Observable Behavior in OLSR-Based MANETs arXiv:2606.00184v1 Announce Type: new Abstract: Mobile ad hoc networks (MANETs) based on proactive routing protocols such as OLSR remain vulnerable to routing-layer attacks. While prior work has focused primarily on attack detection, the problem of identifying deployed defenses has received comparatively little attention. This work examines whether the presence of a routing-layer defense…
Read original ↗https://arxiv.org/abs/2606.00184arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
NeuroLog: Reasoning You Can Audit -- Neuro-Symbolic Vulnerability Discovery via LLM Facts, Datalog, and SMT arXiv:2606.00669v1 Announce Type: new Abstract: Vulnerability discovery on C/C++ source asks the analyst to choose between heavyweight static analysers, which need a working build before a single query runs, and free-form LLMs, which read source readily but invent details and lose track of cross-function dataflow on real codebases. We present NeuroLog, an end-to-end bu…
Read original ↗https://arxiv.org/abs/2606.00669arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
Quality-Diversity Evolution for Discovering Diverse Vulnerabilities in LLM Safety arXiv:2606.00801v1 Announce Type: new Abstract: Current approaches to LLM adversarial testing suffer from coverage gaps: manual red-teaming does not scale, LLM-as-attacker methods exhibit mode collapse, and gradient-based approaches produce uninterpretable gibberish. We introduce a quality-diversity evolutionary framework that operates at the semantic level, evolving interpretable attack strate…
Read original ↗https://arxiv.org/abs/2606.00801arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
"I Strongly Suspect This Website Is a Scam": Benchmarking PII Leakage and Detection without Defense in Autonomous Web Agents arXiv:2606.00497v1 Announce Type: new Abstract: Deceptive web content, widely instantiated across the internet and commonly known as \textit{social-engineering attacks}, manipulates autonomous web agents into submitting users' personally identifiable information (PII) to attacker-controlled endpoints. In this paper, we show that social-engineering atta…
Read original ↗https://arxiv.org/abs/2606.00497arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
Confused ChatGPT: Cross-App Context Poisoning via First-Party APIs arXiv:2606.00485v1 Announce Type: new Abstract: ChatGPT Apps, launched by OpenAI on Oct. 6, 2025, introduce an app-in-app paradigm in which third-party applications share a single chat context with the user and with every other connected app. The ecosystem grew from 122 apps in Dec. 2025 to 888 by May 2026, yet its security has remained uninvestigated. We identify cross-app context poisoning, a variant of ind…
Read original ↗https://arxiv.org/abs/2606.00485arxiv_cs_cr · tlp:amber · 6/2/2026, 4:00:00 AM
From Frontier to Shadow AI: A Simmering Threat to Assurance and Security in Critical Infrastructure arXiv:2606.00088v1 Announce Type: new Abstract: Frontier AI systems, including large language models and emerging agentic AI tools, offer significant operational benefits but present unique challenges to critical infrastructure (CI) environments due to their non-deterministic and emergent properties. While formal adoption is inherently cautious and tightly controlled due to st…
Read original ↗https://arxiv.org/abs/2606.00088snyk_blog · tlp:amber · 6/2/2026, 12:00:00 AM
Protestware by open source maintainer to hinder agentic coding: The jqwik 1.10.0 Prompt Injection jqwik 1.10.0 added a hidden prompt injection aimed at AI coding agents, using terminal escape codes to conceal destructive instructions from humans while leaving them readable to logs and tools. jqwik 1.10.0 Prompt Injection Explained | Snyk You need to enable JavaScript to run this app. Skip to main content Platform Platform Snyk AI Security Platform Modern security in a singl…
Read original ↗https://snyk.io/blog/protestware-open-source-maintainer-qwik-1-10-0-prompt-injectionlwn_kernel · tlp:amber · 6/1/2026, 8:55:10 PM
Ombredanne: An AI agent ported our codebase from Python to Rust Over on the AboutCode blog, lead maintainer Philippe Ombredanne writes about an agentic LLM system porting the ScanCode Toolkit to Rust. In the process, the LLM (or the people behind it) infringed the ScanCode trademark, stripped copyright and license notices, " and started an outreach campaign, without ever engaging the AboutCode community ". Ironically, the toolkit is used to scan source code and binaries in o…
Read original ↗https://lwn.net/Articles/1075832ars_security · tlp:amber · 6/1/2026, 8:44:37 PM
Hackers duped Meta AI support chatbot to steal celebrity Instagram accounts Pricey Instagram handles were stolen and resold before Meta patched the exploit. Meta’s AI support chatbot proved unusually helpful to hackers looking to steal and resell notable Instagram accounts—the hackers simply asking the bot to change the accounts’ associated email addresses while using VPN to mask their true locations. Videos featuring the “shockingly easy” exploit have been circulating amon…
Read original ↗https://arstechnica.com/ai/2026/06/meta-ai-support-chatbot-gave-hackers-access-to-notable-instagram-accountsars_security · tlp:amber · 6/1/2026, 7:49:09 PM
Dozens of Red Hat packages backdoored through its official NPM channel Anyone who has downloaded affected Red Hat packages should investigate immediately. Official Red Hat NPM accounts have been compromised and used to push a malicious worm that spreads from machine to machine, where it pilfers sensitive credentials in hopes of stealing yet more confidential data, researchers said. The supply-chain attack began Monday and remained active at the time this post went live, acc…
Read original ↗https://arstechnica.com/security/2026/06/dozens-of-red-hat-packages-backdoored-through-its-offical-npm-channellwn_kernel · tlp:amber · 6/1/2026, 6:59:43 PM
[$] Representing the true signatures of kernel functions Optimizing compilers can, under some circumstances, infer when a parameter to a function is not needed, and remove it. This is all well and good until the kernel's tracing or BPF subsystems need information on how to call the function or where its arguments are stored. Alan Maguire and Yonghong Song spoke at the 2026 Linux Storage, Filesystem, Memory-Management, and BPF Summit about their work on recording information …
Read original ↗https://lwn.net/Articles/1073762lwn_kernel · tlp:amber · 6/1/2026, 5:38:56 PM
Seven stable kernels for the first day of June Greg Kroah-Hartman has announced the release of the 7.0.11 , 6.18.34 , 6.12.92 , 6.6.142 , 6.1.175 , 5.15.209 , and 5.10.258 stable kernels. As usual, each contains important fixes throughout the tree, including a fix for the " CIFSwitch " vulnerability ( CVE-2026-46243 ) which could allow a local-privilege-escalation exploit. Users are advised to upgrade. Seven stable kernels for the first day of June [LWN.net] LWN .net News f…
Read original ↗https://lwn.net/Articles/1075806krebs_on_security · tlp:amber · 6/1/2026, 5:32:50 PM
Hackers Used Meta’s AI Support Bot to Seize Instagram Accounts The Instagram accounts for the Obama White House and the Chief Master Sergeant of the U.S. Space Force were briefly defaced with pro-Iranian images and messages over the weekend, after instructions began circulating on Telegram showing how to trick Meta's "AI support assistant" bot into resetting account passwords. The Instagram accounts for the Obama White House and the Chief Master Sergeant of the U.S. Space F…
Read original ↗https://krebsonsecurity.com/2026/06/hackers-used-metas-ai-support-bot-to-seize-instagram-accountshuggingface_blog · tlp:amber · 6/1/2026, 3:45:17 PM
Introducing Mellum2: A 12B Mixture-of-Experts Model by JetBrains Introducing Mellum2: A 12B Mixture-of-Experts Model by JetBrains Hugging Face Models Datasets Spaces Buckets new Docs Enterprise Pricing Website Tasks HuggingChat Collections Languages Organizations Community Blog Posts Daily Papers Learn Discord Forum GitHub Solutions Team & Enterprise Hugging Face PRO Enterprise Support Inference Providers Inference Endpoints Storage Buckets Log In Sign Up Back to Article…
Read original ↗https://huggingface.co/blog/JetBrains/mellum2-launch