REPORTS
Fresh threat intelligence we ingest from public vendor and research feeds — each report linked to its original source. Search, filter by source, and open the reference.
Reports
Newest first. Search, filter by source, open the original.
2138 reports · page 4 of 54

the_hacker_news · tlp:amber · 7/17/2026, 8:46:45 AM
New GoSerpent Malware Targets Southeast Asian Governments and Diplomats for Espionage Cybersecurity researchers have discovered a previously undocumented malware called GoSerpent that has been put to use in cyber attacks targeting entities in Southeast Asia since late 2025 with a focus on long-term access and intelligence gathering. Russian cybersecurity company Kaspersky, which uncovered the activity in February 2026, said it was aimed at government and diplomatic entities …
Read original ↗https://thehackernews.com/2026/07/new-goserpent-malware-targets-southeast.htmlsecurityweek · tlp:amber · 7/17/2026, 8:31:00 AM
Risk Ledger Raises $32 Million in Series B Funding The British firm has built a collaborative platform to help organizations address supply chain security risks. The post Risk Ledger Raises $32 Million in Series B Funding appeared first on SecurityWeek . Risk Ledger Raises $32 Million in Series B Funding - SecurityWeek Virtual Event Today: Cloud & Data Security Summit - Join Event In-Progress SECURITYWEEK NETWORK: Cybersecurity News Webcasts Virtual Events ICS: ICS Cybersec…
securityweek · tlp:amber · 7/17/2026, 7:15:59 AM
Fresh SharePoint Vulnerability Exploited Soon After Disclosure The critical-severity security defect allows remote, authenticated attackers to execute arbitrary code on the server. The post Fresh SharePoint Vulnerability Exploited Soon After Disclosure appeared first on SecurityWeek . Fresh SharePoint Vulnerability Exploited Soon After Disclosure - SecurityWeek Virtual Event Today: Cloud & Data Security Summit - Join Event In-Progress SECURITYWEEK NETWORK: Cybersecurity New…
Read original ↗https://www.securityweek.com/fresh-sharepoint-vulnerability-exploited-soon-after-disclosure
the_hacker_news · tlp:amber · 7/17/2026, 6:42:23 AM
CISA Adds Exploited SharePoint RCE Zero-Day CVE-2026-58644 to KEV The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a newly patched security flaw impacting Microsoft SharePoint Server to its Known Exploited Vulnerabilities (KEV) catalog, requiring Federal Civilian Executive Branch (FCEB) agencies to apply the fixes by July 19, 2026. The vulnerability in question is CVE-2026-58644 (CVSS score: 9.8), a critical deserialization CISA Adds Exploi…
Read original ↗https://thehackernews.com/2026/07/cisa-adds-exploited-sharepoint-rce-zero.htmlsecurityweek · tlp:amber · 7/17/2026, 6:23:08 AM
Coca-Cola Suspends US Fairlife Production Due to Ransomware Attack The company says the incident has not affected product quality and safety, nor Fairlife’s Canada production. The post Coca-Cola Suspends US Fairlife Production Due to Ransomware Attack appeared first on SecurityWeek . Coca-Cola Suspends US Fairlife Production Due to Ransomware Attack - SecurityWeek Virtual Event Today: Cloud & Data Security Summit - Join Event In-Progress SECURITYWEEK NETWORK: Cybersecurity …
Read original ↗https://www.securityweek.com/coca-cola-suspends-us-fairlife-production-due-to-ransomware-attackarxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
Lattice-based extended withdrawability arXiv:2607.14690v1 Announce Type: new Abstract: We extend the extended withdrawable signatures of Liu, Susilo and Baek to lattice-based constructions built on the Fiat-Shamir with aborts paradigm. Departing from an earlier draft that transported a per-signer shift in the clear, which leaks the signer, we realise extended withdrawable signatures as a claimable ring signature: signer ambiguity is provided by a one-out-of-N signature used …
Read original ↗https://arxiv.org/abs/2607.14690arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
Disclosure Divergence: Measuring Privacy Policy and Data Safety Misalignment at Scale arXiv:2607.14442v1 Announce Type: new Abstract: With the rapid growth of mobile applications, user data privacy has become an increasing concern. While privacy policies describe how apps collect and share data, platforms such as Google Play provide Data Safety labels intended to summarize these practices. Because these disclosure channels are declared separately, they may present inconsiste…
Read original ↗https://arxiv.org/abs/2607.14442arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
The Prover Is the Judge: Verified Security Software from AI Coding Agents in Ada/SPARK arXiv:2607.14340v1 Announce Type: cross Abstract: AI coding agents produce code faster than humans can review it. In our approach, the prover is the judge of whether the code is correct. Under a verifier-driven loop, AI agents wrote and verified bare-metal security software in Ada/SPARK spanning classical and post-quantum cryptography, TLS 1.3, IKEv2, X.509, and a Matrix client. GNATprove …
Read original ↗https://arxiv.org/abs/2607.14340arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
MemPoison: Uncovering Persistent Memory Threats and Structural Blind Spots in LLM Agents arXiv:2607.14651v1 Announce Type: new Abstract: Persistent external memory enhances agent continuity but introduces persistent security vulnerabilities: adversarial content can be injected via standard interaction channels, retained across turns, and later distort downstream behavior. To address this challenge, we propose MemPoison, a comprehensive benchmark and analysis framework featur…
Read original ↗https://arxiv.org/abs/2607.14651arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
NFSA: Non-Forward Secure Aggregation with One Server via Two Layer Secret Sharing arXiv:2607.15052v1 Announce Type: new Abstract: Federated Learning (FL) enables collaborative model training while preserving privacy by keeping data local. However, the risk of sensitive data leakage through model updates necessitates the use of secure aggregation protocols. Existing server-based secure aggregation protocols typically require the server to forward sensitive data shared between…
Read original ↗https://arxiv.org/abs/2607.15052arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
Stop Means Stop: Measuring and Repairing the Enforcement Gap in Agent-Framework Control Primitives arXiv:2607.14166v1 Announce Type: cross Abstract: Production LLM-agent frameworks expose control primitives -- human-in-the-loop approval gates, run cancellation, and execution timeouts -- whose names and documentation imply barrier semantics: while a run is paused, cancelled, or timed out, no gated side effect executes. We show this implied contract holds on none of the six wi…
Read original ↗https://arxiv.org/abs/2607.14166arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
Exploring Delay-based PUFs for Energy-Efficient Low-Overhead Security of Wearable Devices arXiv:2607.14395v1 Announce Type: new Abstract: The Internet of Things (IoT) was introduced almost two decades ago. In the past two decades, technology has seen huge advancements. Many devices have become powerful and have less power consumption. Many IoT architectures and environments were introduced to help make life easier, especially in wearable devices. The market for these wearabl…
Read original ↗https://arxiv.org/abs/2607.14395arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
Setup Complete, Now You Are Compromised: Weaponizing Setup Instructions Against AI Coding Agents arXiv:2607.15143v1 Announce Type: new Abstract: AI coding agents set up projects by reading documentation and installing the dependencies it lists, without verifying their names, sources, or known vulnerabilities. By editing only a README, requirements file, or Makefile, an attacker can redirect the agent to an untrusted registry, a known-vulnerable version, or a wrong-but-plausi…
Read original ↗https://arxiv.org/abs/2607.15143arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
Privacy Leakage in Federated Learning in Radiology Reports: A Comparative Evaluation of Tokenizer-Driven Privacy Risks arXiv:2607.14205v1 Announce Type: cross Abstract: Federated learning (FL) enables multi-institutional training on clinical text without sharing raw data, but gradient inversion can reconstruct sensitive information from shared model updates. The extent of this leakage for radiology reports, and the role of tokenizer design, remains unclear. We quantify gradi…
Read original ↗https://arxiv.org/abs/2607.14205arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
Automated Template-free Synthesis of Instruction-Centric Leakage Contracts for Black-Box CPUs arXiv:2607.15118v1 Announce Type: new Abstract: Side-channel attacks pose a significant security threat for modern computing platforms, because they exploit subtle discrepancies in CPU behaviors to leak sensitive information. To model the information leaked by a CPU via microarchitectural side-channels, recent work proposed leakage contracts: an ISA-level security abstraction that p…
Read original ↗https://arxiv.org/abs/2607.15118arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
Context Contamination in LLM Analysis of Network Security Logs: Poison with Passive Prompt Injection and Mitigation Evaluation arXiv:2607.14493v1 Announce Type: new Abstract: Large Language Models are increasingly deployed in Security Operations Centers for log analysis tasks including summarization, alert triage, and threat investigation. These systems ingest logs from external-facing services and process network logs as natural language contexts to generate security insigh…
Read original ↗https://arxiv.org/abs/2607.14493arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
FlowGuard: From Signals to Evidence for MCP Security Detection arXiv:2607.14754v1 Announce Type: new Abstract: The Model Context Protocol (MCP) enables LLM agents to interact with external tools through metadata exchange, tool invocation, and response consumption. Existing MCP security scanners primarily reason about suspicious semantic signals rather than real execution behaviors, which can lead to unreliable risk assessment. For example, credential-like strings may simply …
Read original ↗https://arxiv.org/abs/2607.14754arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
Breaking Refusal in the First Half: A Mechanistic Study of the Prefill Jailbreak arXiv:2607.14147v1 Announce Type: cross Abstract: Aligned language models refuse harmful requests, but a one-line prefill ("Sure, here is") strips the refusal. We ask where and how it fails. The harm representation stays intact: on the prompts the attack flips to compliance, a linear probe reads harm as high as on the refused ones (0.91-0.98), while behavioral refusal drops to chance. This holds…
Read original ↗https://arxiv.org/abs/2607.14147arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
The Distributed Open-Source Vulnerability Ecosystem arXiv:2607.14900v1 Announce Type: new Abstract: Identifying known software vulnerabilities is a central task in software supply chain security management. Although publicly available vulnerability information is based on shared standards, different vulnerability scanners often report divergent results for identical software inventories. These differences do not arise solely from individual data sources or scanner implementa…
Read original ↗https://arxiv.org/abs/2607.14900arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
Beyond Success Rate: Cost-Aware Evaluation of Offensive and Defensive Security Agents arXiv:2607.15263v1 Announce Type: new Abstract: Security-agent evaluations commonly measure peak offensive capability under generous inference budgets, emphasizing vulnerability discovery, exploit development, penetration testing, and CTF completion. Such measurements are useful but incomplete: in operational security, every reasoning step, tool call, telemetry query, and enrichment request…
Read original ↗https://arxiv.org/abs/2607.15263arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
Bad Memory: Evaluating Prompt Injection Risks from Memory in Agentic Systems arXiv:2607.14611v1 Announce Type: new Abstract: A growing class of agentic systems maintain persistent state across sessions through memory files, behavioral preferences, and knowledge bases. While this makes agents more useful and self-improving, it also creates a new attack surface for prompt injections in which malicious instructions can be embedded within persistent files and influence future be…
Read original ↗https://arxiv.org/abs/2607.14611arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
Better Privacy Guarantees for Larger Groups arXiv:2607.14406v1 Announce Type: new Abstract: Pujol and Desfontaines asked whether a private histogram can allow more error on larger counts and use that slack to protect members of larger groups more strongly. We study this question for fixed disjoint groups under add-or-remove-one adjacency. The privacy budget $v(n)$ depends on the affected count, is nonincreasing, and must bound both R\'enyi-divergence directions at every orde…
Read original ↗https://arxiv.org/abs/2607.14406arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
A Queueing-Stability Criterion for Causal IPD-QIM Network Flow Watermarking arXiv:2607.14954v1 Announce Type: new Abstract: On multi-hop encrypted links such as Tor and cascaded VPNs, tunneling flattens packet lengths and protocol fields, leaving inter-packet delay (IPD) as the main carrier for active flow attribution. Causality lets the embedder delay packets but never advance them, so each quantization-index-modulation (QIM) alignment injects nonnegative dwell into a delay…
Read original ↗https://arxiv.org/abs/2607.14954arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
Value Leakage: An LLM's Answers Are Silently Shaped by Its Own Values arXiv:2607.14345v1 Announce Type: cross Abstract: People use language models for practical questions whose answers are difficult to verify. We show that models exhibit covert value leakage: the information they provide is influenced by their own values, without this influence being disclosed to the user. In one of our evaluations, the user is considering investing in an AI company and wants to know how lik…
Read original ↗https://arxiv.org/abs/2607.14345arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
DataShield: Uncovering Risky Fine-Tuning Data Across LLMs Through Consensus Subspace Alignment arXiv:2607.15081v1 Announce Type: new Abstract: Fine-tuning large language models (LLMs) on domain-specific datasets has become a standard paradigm for adapting LLMs to specialized applications. However, recent work has shown that even fine-tuning on benign task-specific data can substantially weaken the safety capabilities of LLMs. While existing efforts have made progress in iden…
Read original ↗https://arxiv.org/abs/2607.15081arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
Fully Automated End-to-End Adversary Emulation from MITRE ATT\&CK Based Cyber Threat Intelligence Using LLMs arXiv:2607.14566v1 Announce Type: new Abstract: This paper presents a fully automated end-to-end framework for adversary emulation from MITRE ATT&CK-aligned CTI reports using LLMs. Unlike prior work, which either executes prewritten playbooks or partially automates playbook generation, our framework unifies playbook generation, execution, and failure recovery in a…
Read original ↗https://arxiv.org/abs/2607.14566arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
Qubes OS Security in the Public Record arXiv:2607.14587v1 Announce Type: new Abstract: Qubes OS is a revealing case for security measurement because its architecture makes component boundaries security-relevant. We present a protocol-driven longitudinal analysis of 109 public Qubes Security Bulletins (QSBs, 2011--2025), the official Qubes-maintained Xen Security Advisory (XSA) tracker, and a secondary vulnerability-event sensitivity series. The study measures the public advi…
Read original ↗https://arxiv.org/abs/2607.14587arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
A Measurement Study of AI-Environment Realism Gaps in Malware-Analysis Sandboxes arXiv:2607.14434v1 Announce Type: new Abstract: Sandboxing remains a core technique for observing suspicious program behavior, yet environment-aware malware increasingly suppresses execution when analysis is suspected. Prior generations of sandbox evasion focused on virtualization artifacts, timing discrepancies, and wear-and-tear realism. In this paper, we present the first systematic measureme…
Read original ↗https://arxiv.org/abs/2607.14434arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
Is External Database Protection Static in Retrieval-Augmented Generation? Rethinking Privacy Preservation under Dynamic Queries arXiv:2607.14811v1 Announce Type: new Abstract: Retrieval-augmented generation (RAG) enhances large language models via external document retrieval, but retrieved contexts may leak sensitive information. Current privacy protection methods typically rely on a document-level static risk assumption, treating all retrieved documents as having the same p…
Read original ↗https://arxiv.org/abs/2607.14811arxiv_cs_cr · tlp:amber · 7/17/2026, 4:00:00 AM
Traceback Translators Against Forgetting in Continual Fake Speech Detection arXiv:2607.12569v1 Announce Type: cross Abstract: Fake speech detectors are increasingly challenged by the development of new and more accurate generative models. To cope with this problem, continual learning techniques are nowadays widely considered feasible strategies for updating models to new datasets, but they also lead to decreased performance on previously seen samples (catastrophic forgetting…
Read original ↗https://arxiv.org/abs/2607.12569microsoft_mstic · tlp:amber · 7/16/2026, 11:12:02 PM
ACR Stealer: Two observed intrusion chains amid increased threat activity From late April 2026 to mid-June 2026, Microsoft Defender Experts observed increased ACR Stealer activity across customer environments. These campaigns are successfully using ClickFix lures to steal browser credentials, authentication tokens, and sensitive documents from enterprise environments. The post ACR Stealer: Two observed intrusion chains amid increased threat activity appeared first on Microso…
Read original ↗https://www.microsoft.com/en-us/security/blog/2026/07/16/acr-stealer-two-observed-intrusion-chains-amid-increased-threat-activity
unit42 · tlp:amber · 7/16/2026, 11:00:59 PM
AI, Automation and Attacks: Unpacking the Unit 42 2026 Global Incident Response Report Explore Unit 42's perspectives on AI's impact on cybersecurity, including key updates since the 2026 Incident Response Report. The post AI, Automation and Attacks: Unpacking the Unit 42 2026 Global Incident Response Report appeared first on Unit 42 . AI, Automation and Attacks: Unpacking the Unit 42 2026 Global Incident Response Report Menu Tools ATOMs Security Consulting About Us Under A…
Read original ↗https://unit42.paloaltonetworks.com/ai-incident-response-report
the_record · tlp:amber · 7/16/2026, 9:00:35 PM
Senator calls on Rubio, Blanche to push back against Canadian surveillance legislation Democratic Sen. Ron Wyden says the Trump administration should pressure Canada not to enact a proposal that would "weaponize American technology infrastructure" for surveillance purposes. Senator calls on Rubio, Blanche to push back against Canadian surveillance legislation | The Record from Recorded Future News Leadership Cybercrime Nation-state Influence Operations Technology Cyber Dail…
Read original ↗https://therecord.media/canada-lawful-access-act-surveillance-wyden-letter
ars_security · tlp:amber · 7/16/2026, 7:28:33 PM
Now, even Russia's most elite hackers are using Clickfix to infect devices The social-engineering technique has primarily been a tool of financially motivated criminals. One of the Russian government’s most elite hacking groups has adopted an attack, known as Clickfix, to compromise devices belonging to sensitive organizations in Ukraine, the latter country’s CERT center is warning. Clickfix has emerged as an effective attack technique that attackers, primarily financially …
Read original ↗https://arstechnica.com/security/2026/07/now-even-russias-most-elite-hackers-are-using-clickfix-to-infect-devices
talos · tlp:amber · 7/16/2026, 6:00:50 PM
Begun, the Patch Wars have Long foretold, the Great Patching has begun and it’s a doozy. Buckle in as Joe takes you through the story. Welcome to this week’s edition of the Threat Source newsletter.  We all knew, to some degree or another, that this summer was going to a hot mess. I don’t mean FIFA drama or record setting heat waves. I mean the slow but steady momentum that AI frontier models were accruing for vulnerability research. If you were like me, …
Read original ↗https://blog.talosintelligence.com/begun-the-patch-wars-have
the_hacker_news · tlp:amber · 7/16/2026, 5:09:25 PM
Two Scattered Spider Hackers Get 5.5 Years Each for £29 Million TfL Hack Owen Flowers, 18, and Thalha Jubair, 20, were each sentenced to five and a half years at Woolwich Crown Court on Thursday, 16 July 2026, for the 2024 hack of Transport for London. The attack left 148 TfL systems inoperable and forced all 27,000 of the transport authority's employees into an office to get their passwords reset in person. Both the NCA and the CPS put TfL's losses and recovery Two Scatter…
Read original ↗https://thehackernews.com/2026/07/two-scattered-spider-hackers-get-55.html
the_record · tlp:amber · 7/16/2026, 4:15:00 PM
UK investigates TikTok for alleged age-verification lapses, exposing kids to online harms “Age checks are a cornerstone of the UK’s online safety laws,” said Ofcom’s Chief Executive, Melanie Dawes. “Too many services have no or inadequate age checks in place, which is not good enough.” UK investigates TikTok for alleged age-verification lapses, exposing kids to online harms | The Record from Recorded Future News Leadership Cybercrime Nation-state Influence Operations Techno…
Read original ↗https://therecord.media/ofcom-investigation-tiktok-age-verificationhuggingface_blog · tlp:amber · 7/16/2026, 4:01:21 PM
NVIDIA Nemotron 3 Embed Ranks #1 Overall on RTEB, Advancing Agentic Retrieval NVIDIA Nemotron 3 Embed Ranks #1 Overall on RTEB, Advancing Agentic Retrieval Hugging Face Models Datasets Spaces Buckets new Docs Enterprise Pricing Website Tasks HuggingChat Collections Languages Organizations Community Blog Posts Daily Papers Hardware Learn Discord Forum GitHub Solutions Team & Enterprise Hugging Face PRO Enterprise Support Inference Providers Inference Endpoints Storage Buc…
Read original ↗https://huggingface.co/blog/nvidia/nemotron-3-embed-wins-rteb
the_record · tlp:amber · 7/16/2026, 4:00:00 PM
Ukrainians rally against dismissal of tech-minded defense minister Fedorov Ukraine President Volodymyr Zelensky dismissed Defense Minister Mykhailo Fedorov, who championed the push to integrate drone technology and digital innovation into the military. Ukrainians rally against dismissal of tech-minded defense minister Fedorov | The Record from Recorded Future News Leadership Cybercrime Nation-state Influence Operations Technology Cyber Daily® Click Here Podcast Go Subscribe…
Read original ↗https://therecord.media/ukraine-fedorov-drones-dismissalmicrosoft_mstic · tlp:amber · 7/16/2026, 4:00:00 PM
Least privilege for AI agents: Identity, access, and tool binding As AI agents become more autonomous, strong identity, access, and auditing controls are critical to keeping them secure. The post Least privilege for AI agents: Identity, access, and tool binding appeared first on Microsoft Security Blog . In this article Real-world scenarios Best Practices: Identity + RBAC + Scope + Safe Tool Binding Looking Ahead AI agents aren’t only smarter API callers. They plan, c…
Read original ↗https://www.microsoft.com/en-us/security/blog/2026/07/16/least-privilege-for-ai-agents-identity-access-and-tool-binding