Loading the current evidence view. Navigation and account controls remain available.
Intelligence reports
Loading the current evidence view. Navigation and account controls remain available.
Ordering reports and their extracted indicators.
Applying the current filters and ordering.
Forensia intelligence desk · 4,100 source documents · 4,068 stories
Live reporting, advisories and research arranged by editorial readiness. Thin sources stay visible, but they are clearly marked instead of being presented as complete analysis.
On this page
40 documents
Briefs ready now
40
Multi-source clusters
0
Publisher text withheld
33
Private Anytime Selective-Risk Certification for Federated Retrieval-Augmented Generation: Guarantees and Empirical Limits
Private Anytime Selective-Risk Certification for Federated Retrieval-Augmented Generation: Guarantees and Empirical Limits arXiv:2608.07913v1 Announce Type: new Abstract: Selective-risk certificates promise that accepted outputs meet a declared error target. We develop Fed-SRC, a score-agnostic certificate for federated, differentially private, adaptively monitored retrieval-augmented generation. Clients release only Gaussian-perturbed score and loss histograms. Record-index…
Capability-Routed Guard: Defending Large Reasoning Models Against Reasoning-Centric Jailbreaks
Capability-Routed Guard: Defending Large Reasoning Models Against Reasoning-Centric Jailbreaks arXiv:2608.07892v1 Announce Type: new Abstract: Large reasoning models (LRMs) expose a new safety failure mode: adversarial prompts can manipulate reasoning context, task decomposition, or capability interpretation so that harmful objectives are processed as legitimate reasoning steps. Existing safeguards, including safety reminders, external classifiers, and self-checking wrappers…
China RealDID: Verifiable Credentials Anchored in Legal Identity
China RealDID: Verifiable Credentials Anchored in Legal Identity arXiv:2608.07846v1 Announce Type: new Abstract: Verifiable credentials (VCs) and decentralized identifiers (DIDs) enable selective disclosure but lack legal anchoring: without a trusted identity root, verifiers cannot distinguish a genuine holder from a fabricated identity. State identity systems provide biometric-grounded verification but impose three costs: verifiers must collect subjects' full personally ide…
The Anatomy of a Prompt Injection: A Component Model for Structured Analysis
The Anatomy of a Prompt Injection: A Component Model for Structured Analysis arXiv:2608.07808v1 Announce Type: new Abstract: Four years after prompt injection was first identified in 2022, attacks are still predominantly documented as verbatim strings rather than structured exploits, despite advancing agent capabilities and threat actors embedding injections to subvert AI-assisted security analysis. This paper formalizes the structure of prompt-injection artifacts, enabling …
Can AI Write Compliant Code, and to What Extent? Evaluating SOC 2 Compliance of Claude Fable 5, Claude Opus 4.8, and Claude Opus 5 Across Four Use Cases
Can AI Write Compliant Code, and to What Extent? Evaluating SOC 2 Compliance of Claude Fable 5, Claude Opus 4.8, and Claude Opus 5 Across Four Use Cases arXiv:2608.07776v1 Announce Type: new Abstract: Software teams now delegate production code to language models, including code that provisions storage, handles credentials, and stores regulated data, so we asked whether a model applies the controls a SOC~2 program expects (encryption, restricted access, logging, retention) w…
Adversarial Attacks on Deep OCR Systems
Adversarial Attacks on Deep OCR Systems arXiv:2608.07636v1 Announce Type: new Abstract: Deep-OCR (DeepSeek-OCR) advances document recognition by treating the visual modality as an optical compression medium, enabling long-context OCR at low token cost. However, its increased complexity may introduce new security vulnerabilities. In this paper, we present, to the best of our knowledge, the first pure black-box adversarial attack against a generative OCR vision-language model,…
Zero-Trust Federated Learning for Connected Aftermarket Devices
Zero-Trust Federated Learning for Connected Aftermarket Devices arXiv:2608.07591v1 Announce Type: new Abstract: Connected aftermarket devices extend vehicle diagnostics, repair workflows, and over-the-air software maintenance beyond original equipment manufacturer boundaries, yet their heterogeneous ownership and long service life complicate conventional perimeter security. This paper develops Zero Trust Federated Learning for Connected Aftermarket Devices (ZT FL CADE), an e…
ClickFix campaign abuses Deno runtime for infostealer delivery
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
deno-case-studies
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
The Permanent Threat: Analyzing Aeternum’s Blockchain-Based C2 Operations and Communications
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
FBI, South Korea warn of Gunra ransomware gang targeting critical infrastructure
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Understanding the FATF’s DeFi Report: A Functional Approach to Decentralized Finance Regulation
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
China-Linked Hackers Deploy New StormEncryptor Ransomware, Likely via N-central Flaw
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Build Low-Latency Multilingual Voice Agents: Open Weights & Full Deployment Control with NVIDIA Magpie TTS
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Microsoft named a Leader in the 2026 IDC MarketScape for MDR/MXDR for the Enterprise
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Poland uncovers second heat plant cyberattack that went hidden for months
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Senate Democrats introduce bill to distribute $300 million annually to shore up water system cybersecurity
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Russian military hackers pose as recruiters to target Ukrainian IT workers
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
⚡ Weekly Recap: AI Goes Rogue, Metabase 0-Day, MCP Supply-Chain Attacks, and Router Backdoors
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
DeadLock ransomware: Breaking down a Rust-based encryptor with decentralized recovery infrastructure
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
OpenAI’s Upcoming Astra Model Raises Autonomous Cyberattack Concerns
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
A researcher bought noreply.net. Companies started sending him secrets
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Stealthium Targets Security Blind Spots in AI Accelerators and Neo-Clouds
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Cisco Warns of High-Severity ClamAV Vulnerabilities With Public PoC
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
[$] Even more formal verification for BPF
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
10th August – Threat Intelligence Report
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
British ‘Com’ member who abused more than 100 girls worldwide jailed for two years
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Django moves to an annual release cycle
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Kimsuky Builds Offline AI Stack to Boost Phishing and Automate Malware Development
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
China-linked hackers turning popular cybersecurity tool into ransomware launchpad, Microsoft warns
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Security updates for Monday
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
‘Ghostjacking’ Attack Uses Poisoned Logs to Turn AI Agents Bad
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
New Zealand sanctions Russian hackers, propaganda groups over Ukraine war
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
New Passkey Attacks Can Recover Synced Private Keys or Bypass Phishing-Resistant MFA
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Shipping 10–50× More Code? Watch This Webinar on Securing AI-Speed Development
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
New Jersey, Alabama Join States Targeted in Water Cyberattacks
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
TrueConf Server Flaws Exploited to Replace Client Installers with PhantomCore
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Metabase Patches Vulnerability Exploited as Zero-Day
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Making Knowledge Distillation Cheap Enough to Run at Scale
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Novel Private APN Pivot Let Hackers Sabotage Second Polish Energy Facility
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
story desk
clustered evidenceWatchGuard Patches Critical Vulnerabilities
developing · new
Microsoft Rolls Out 22 Fresh Security Patches
source only · new
Google Patches 6th Chrome Zero-Day of 2026
developing · new
Cisco Warns of Unpatched Secure Email Flaws, Patches Critical Switch Vulnerabilities
developing · new
Cisco Patches Critical Crosswork, Secure Workload Vulnerabilities
source only · new
filter by source
sharing classification
TLP describes sharing sensitivity, not copyright permission. Reader text is limited to source-provided descriptive material; original reporting stays with its publisher.