Loading the current evidence view. Navigation and account controls remain available.
Intelligence reports
Loading the current evidence view. Navigation and account controls remain available.
Ordering reports and their extracted indicators.
Applying the current filters and ordering.
Forensia intelligence desk · 4,100 source documents · 4,068 stories
Live reporting, advisories and research arranged by editorial readiness. Thin sources stay visible, but they are clearly marked instead of being presented as complete analysis.
On this page
40 documents
Briefs ready now
40
Multi-source clusters
0
Publisher text withheld
22
Statistically-Secure Bit Commitment and Coin Flipping Protocols Based on Quantum Hardware Assumptions
Statistically-Secure Bit Commitment and Coin Flipping Protocols Based on Quantum Hardware Assumptions arXiv:2608.11187v1 Announce Type: cross Abstract: Bit commitment is impossible to achieve with unconditional security, even in quantum cryptogra- phy. We show that statistically secure bit commitment, satisfying both hiding and binding, can be constructed from hybrid locked physical unclonable functions (HLPUFs), a hardware primitive that combines classical hardware tokens a…
On the Sensitivity to Errors in Homomorphic Computing: Single Transient Bit-flip Client-side Error Characterization
On the Sensitivity to Errors in Homomorphic Computing: Single Transient Bit-flip Client-side Error Characterization arXiv:2608.11155v1 Announce Type: cross Abstract: Homomorphic Encryption (HE) enables computation on encrypted data without decryption and is a key primitive for privacy-preserving computation in sensitive domains such as healthcare, finance, and government. Its security relies on noise injection, which introduces intrinsic error sensitivity and raises concerns…
When and Where Faults Matter: A Study of Transient Errors in CKKS Multiplication
When and Where Faults Matter: A Study of Transient Errors in CKKS Multiplication arXiv:2608.11147v1 Announce Type: cross Abstract: Homomorphic Encryption (HE) is a privacy-preserving encryption paradigm that enables computation directly on encrypted data without requiring decryption. In this paper, we study errors in fully homomorphic encryption (FHE) computations, with a particular focus on server-side homomorphic multiplication in the unoptimized CKKS (Cheon--Kim--Kim--Son…
Once Poisoned, Arbitrarily Controlled: A Programmable Backdoor in VLMs
Once Poisoned, Arbitrarily Controlled: A Programmable Backdoor in VLMs arXiv:2608.10959v1 Announce Type: cross Abstract: Existing vision-language model (VLM) backdoors are usually treated as static vulnerabilities: one-to-one and N-to-N attacks bind one or more triggers to a finite set of targets before victim training. This assumption substantially underestimates the threat. We show that a single poisoning phase can implant a programmable backdoor into a VLM, allowing an at…
Logit-Boundary Geometric Belief Interfaces and Sparse Sheaf-Enclave Protocols: A Self-Contained Substrate for Secure Network Electronic Health Record (EHR) Interoperability
Logit-Boundary Geometric Belief Interfaces and Sparse Sheaf-Enclave Protocols: A Self-Contained Substrate for Secure Network Electronic Health Record (EHR) Interoperability arXiv:2608.10300v1 Announce Type: cross Abstract: Electronic health-record interoperability is a boundary problem: legacy systems, generative models, terminology services, identity systems, and human reviewers may each expose rich internal states, while operational exchange requires a narrow shared interf…
Generating Attacks for LLMs with GFlowNets
Generating Attacks for LLMs with GFlowNets arXiv:2608.10171v1 Announce Type: cross Abstract: The rapid advancement of Large Language Models (LLMs) has facilitated their ubiquitous integration into various domains, leading to widespread adoption. However, this escalating trend has introduced significant security vulnerabilities, necessitating the identification and mitigation of flaws arising from malicious exploitation. Red teaming assessments, conducted to evaluate model ro…
A New Characteristic-Uniform Model for Elliptic Curves -- Theory, Arithmetic, and Applications
A New Characteristic-Uniform Model for Elliptic Curves -- Theory, Arithmetic, and Applications arXiv:2608.01675v4 Announce Type: cross Abstract: We develop a characteristic-uniform arithmetic theory for \[ \mathcal C_d:\quad (u^2+u)(v^2+v)=d. \] For \(d(1-16d)\ne0\), its smooth \((2,2)\)-completion has four rational boundary points forming \(\mathbb Z/4\mathbb Z\), an intrinsic \(D_8\)-action, the inverse \(-(u,v)=(u,-v-1)\), and the native Kummer map \(\kappa_d(u,v)=(u+1)\)…
Strategies to Avoid Illegal Data Access
Strategies to Avoid Illegal Data Access arXiv:2608.11153v1 Announce Type: new Abstract: For companies of all sizes, data security is a top priority. The chance of unauthorized data access increases as technology develops. To prevent unwanted access to their data, businesses must be proactive. This study examines technology solutions, personnel training, and policy enforcement as methods to prevent unauthorized data access. Data may be protected from illegal access using tech…
A Gateway Architecture for Enterprise MCP Authentication: Unifying Heterogeneous Auth, Identity Delegation, and the User / Non-User Persona Problem
A Gateway Architecture for Enterprise MCP Authentication: Unifying Heterogeneous Auth, Identity Delegation, and the User / Non-User Persona Problem arXiv:2608.10760v1 Announce Type: new Abstract: The Model Context Protocol (MCP) has become the de-facto interface for connecting LLM agents to enterprise tools, and adoption has been explosive: within a year, large organizations went from zero to dozens of internally built MCP servers. That speed created a governance crisis. Eac…
A Lightweight Fault-Detection Scheme for Barrett Modular Multiplication Using Multiple Conditional Reduction Paths
A Lightweight Fault-Detection Scheme for Barrett Modular Multiplication Using Multiple Conditional Reduction Paths arXiv:2608.10736v1 Announce Type: new Abstract: Polynomial multiplication is the most resource-, time-, and energy-critical operation in lattice-based Post-Quantum Cryptography (PQC) and Fully Homomorphic Encryption (FHE) schemes. Lattice-based PQC schemes such as Kyber and Dilithium have already been standardized, while lattice- based FHE schemes such as BGV, B…
Trigger the Straggler: Load Hijack on Mixture-of-Experts LLMs
Trigger the Straggler: Load Hijack on Mixture-of-Experts LLMs arXiv:2608.10614v1 Announce Type: new Abstract: Expert parallelism (EP) is a common strategy for serving large Mixture-of-Experts (MoE) models across multiple GPUs by distributing experts among devices. Router decisions then determine both which experts process each token and which GPUs execute the resulting work. This procedure exposes a supply-chain attack surface in the serving schedule. We introduce Load Hijac…
On Understanding, Identifying, and Mitigating Vulnerabilities in Agentic Large Language Models
On Understanding, Identifying, and Mitigating Vulnerabilities in Agentic Large Language Models arXiv:2608.10530v1 Announce Type: new Abstract: Large Language Models (LLMs) have undergone a shift from stateless conversational interfaces to autonomous agents capable of multi-step planning, tool invocation, code execution, and maintaining persistent memory. When these agents operate with real-world privileges---calling APIs, modifying files, and querying databases---a compromis…
Synthesizing Probabilistic Saturating Counters with Differentially Private Formal Guarantees
Synthesizing Probabilistic Saturating Counters with Differentially Private Formal Guarantees arXiv:2608.10521v1 Announce Type: new Abstract: Branch predictors improve instruction-level parallelism in modern processors and are commonly modeled using saturating counters. However, classical saturating counters are deterministic and thus vulnerable to side-channel attacks: an attacker can manipulate the counter state and infer the branch direction of a victim process. Probabilis…
Beyond Detection Accuracy: Measuring Explanation Cost, Stability, and Utility for Resource-Aware IoT Intrusion Detection
Beyond Detection Accuracy: Measuring Explanation Cost, Stability, and Utility for Resource-Aware IoT Intrusion Detection arXiv:2608.10349v1 Announce Type: new Abstract: Machine-learning intrusion-detection studies commonly emphasize predictive accuracy while treating explanation generation as a computationally free post-processing step. This study jointly evaluates predictive effectiveness, explanation cost, local explanation stability, and selective explanation for binary I…
From Prompt Injection to Web Exploitation: Revisiting Classic Vulnerabilities in LLM-Integrated Applications
From Prompt Injection to Web Exploitation: Revisiting Classic Vulnerabilities in LLM-Integrated Applications arXiv:2608.10281v1 Announce Type: new Abstract: Large Language Models are increasingly integrated into web applications through chatbots, tool-calling pipelines, and agentic workflows. In these systems, user input may influence not only generated text, but also backend actions such as database queries, HTTP requests, file operations, template rendering, or API calls. …
Withholding the Completing Chunk: Deterministic Pair-Completion Guardrails for Streaming LLM Output
Withholding the Completing Chunk: Deterministic Pair-Completion Guardrails for Streaming LLM Output arXiv:2608.10279v1 Announce Type: new Abstract: Streaming language-model output creates a release-timing problem: complete-response moderation acts after streamed text has escaped, whereas repeated semantic classification of partial text can be costly and unstable. We study a narrow deterministic construction in which each committed danger signature is the conjunction of two l…
MarkNull: Model-Agnostic Watermark Removal in AI-Generated Images via On-Manifold Latent Manipulation
MarkNull: Model-Agnostic Watermark Removal in AI-Generated Images via On-Manifold Latent Manipulation arXiv:2608.10166v1 Announce Type: new Abstract: Digital watermarking has emerged as a critical technique for provenance and copyright attribution in AI-generated imagery, yet its robustness against realistic, model-agnostic removal attacks remains poorly explored. Existing attacks either succeed only against specific generative models or achieve removal at the cost of severe…
World-First SEM-based Recovery of Crash EDR Data from the EEPROM of a Severely Damaged SRS Module Using CrashScan
World-First SEM-based Recovery of Crash EDR Data from the EEPROM of a Severely Damaged SRS Module Using CrashScan arXiv:2608.10152v1 Announce Type: new Abstract: This paper introduces fully working and affordable approach to data recovery from automotive SRS (airbag control) module after permanent failure of its data storage memory chip. All essential information was successfully extracted with 100% success rate from a real SRS module after severe accident which resulted in …
DEF CON crowd suspected in fake-hotspot attack on Delta flight
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Microsoft Patch Tuesday for August 2026 — Snort rules and prominent vulnerabilities
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Microsoft Plugs Nearly 400 Security Holes
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Chrome adopts what may be the best protection yet against account takeovers
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Microsoft Patches 398 Flaws Including a Windows Driver Zero-Day Under Active Attack
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
NSA installs DHS lawyer as new general counsel
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Kimwolf v7 Android Botnet Makes HTTP/2 DDoS Traffic Look Like Legitimate Browsing
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Ransomware group hijacks hospital system’s Facebook page amid ongoing cyberattack fallout
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Zoom Annotation Flaws Could Let a Meeting Participant Hijack Another Attendee's Client
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
August 2026 Patch Tuesday: Microsoft Fixes 421 CVEs, One Exploited Zero-Day
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Sandworm-Linked UAC-0145 Uses Fake Job Interviews to Push VPN That Can Run Commands
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Shattering the Dream – When a Job Offer Becomes a Zero-Day Attack
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
How Trail of Bits helps verify the integrity of your Signal chats
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Adobe Urges Immediate Patching of Critical ColdFusion, Campaign Classic Flaws
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Researchers Disclose AI-Assisted SharePoint Exploit Chain Reaching Unauthenticated RCE
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
DeadLock Ransomware Uses Polygon Smart Contracts to Make Extortion Infra Harder to Disrupt
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Zoom Patches Zero-Click Code Execution Vulnerability
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Cyberattack on logistics giant Ceva hits retailers and Steam customers across Europe
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
The AI Governance Gap Is a Leadership Problem: Waiting Won’t Close It
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
[$] KVM planes head for takeoff
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
SAP Patches Critical Code Injection, Memory Corruption Vulnerabilities
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
US Water Systems Get Cyber Boost From New Senate Bill and ‘Water Watch Center’
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
story desk
clustered evidenceWatchGuard Patches Critical Vulnerabilities
developing · new
Microsoft Rolls Out 22 Fresh Security Patches
source only · new
Google Patches 6th Chrome Zero-Day of 2026
developing · new
Cisco Warns of Unpatched Secure Email Flaws, Patches Critical Switch Vulnerabilities
developing · new
Cisco Patches Critical Crosswork, Secure Workload Vulnerabilities
source only · new
filter by source
sharing classification
TLP describes sharing sensitivity, not copyright permission. Reader text is limited to source-provided descriptive material; original reporting stays with its publisher.