Loading the current evidence view. Navigation and account controls remain available.
Intelligence reports
Loading the current evidence view. Navigation and account controls remain available.
Ordering reports and their extracted indicators.
Applying the current filters and ordering.
Forensia intelligence desk · 4,100 source documents · 4,068 stories
Live reporting, advisories and research arranged by editorial readiness. Thin sources stay visible, but they are clearly marked instead of being presented as complete analysis.
On this page
40 documents
Briefs ready now
40
Multi-source clusters
0
Publisher text withheld
27
CHARGE: Leveraging CWE Hierarchies for Hardware Security SystemVerilog Assertion Generation
CHARGE: Leveraging CWE Hierarchies for Hardware Security SystemVerilog Assertion Generation arXiv:2607.27776v1 Announce Type: new Abstract: This paper presents CHARGE, an automated framework for generating security properties for unverified RTL modules using CWEs and large language models (LLMs). The hallmark is a reasoning process that leverages the hierarchical nature of CWE entries to improve accuracy when identifying security-critical assets in unverified RTL modules. As…
Distributed Point Functions and Function Secret Sharing
Distributed Point Functions and Function Secret Sharing arXiv:2607.27696v1 Announce Type: new Abstract: A distributed point function (DPF) is a cryptographic primitive that enables compressed additive sharing of a secret weight-1 vector (equivalently, a point function) across two or more parties. The appealing lightweight structure of DPF constructions has enabled a wide range of applications. These include private information retrieval, anonymous messaging, secure computati…
Strategy Phasing of Cyber Attacks on Digital Substations
Strategy Phasing of Cyber Attacks on Digital Substations arXiv:2607.27661v1 Announce Type: new Abstract: Digital substations that comply with IEC 61850 have improved the operational efficiency of modern power systems. However, adversaries can abuse IEC 61850 communication to manipulate circuit breaker operations in substations, which can result in severe system impacts. These cyber attacks are crafted based on broader multi-phase strategies. The existing intrusion detection …
Revisiting the Adversarial Robustness of Graph-Based Traffic Forecasting
Revisiting the Adversarial Robustness of Graph-Based Traffic Forecasting arXiv:2607.27604v1 Announce Type: new Abstract: Traffic forecasting by graph-based AI is a critical component of intelligent transportation systems, motivating security research on robustness to malicious sensor readings. We argue that prior robustness evaluations are largely shaped by unrealistic threat models and untargeted objectives, so both attacks and defenses must be revisited. We study a practic…
AnchorMark: Robust Diffusion Watermarking via Latent-Space Rotation Synchrony
AnchorMark: Robust Diffusion Watermarking via Latent-Space Rotation Synchrony arXiv:2607.27551v1 Announce Type: new Abstract: Inversion-based watermarking embeds watermark payloads directly into the generative process, avoiding a separate post-hoc image-domain embedding stage while preserving the native visual fidelity of synthesized images. However, existing methods remain vulnerable to compound lossy post-processing, particularly when rotation is involved, as it disrupts t…
ThreatForest: Multi-Agent Attack Tree Generation with Pluggable TTP Framework Mapping
ThreatForest: Multi-Agent Attack Tree Generation with Pluggable TTP Framework Mapping arXiv:2607.27528v1 Announce Type: new Abstract: Threat modeling is essential for secure software development, yet manual analysis of cloud-native architectures is slow and demands scarce security expertise. We present ThreatForest, a multi-agent system that generates structured attack trees from source code repositories, maps attack steps to adversary tactics, techniques, and procedures (TT…
Send and Pretend: Exploiting Transcript Consistency Issues in End-to-End Encrypted Group Chats
Send and Pretend: Exploiting Transcript Consistency Issues in End-to-End Encrypted Group Chats arXiv:2607.27510v1 Announce Type: new Abstract: End-to-end encrypted (E2EE) messaging apps are widely praised for their security and thus also used for sensitive coordination in group chats (e.g., by political decision makers). After Threema and WhatsApp, also Signal and iMessage have recently introduced polls to aid agreement processes in groups. This implicitly sets the expectati…
Flock: Fast Proving for Batch Boolean Computations
Flock: Fast Proving for Batch Boolean Computations arXiv:2607.27491v1 Announce Type: new Abstract: For many applications of SNARKs, a key bottleneck is proving large batches of standard cryptographic hash evaluations, such as SHA-256, Keccak, or BLAKE3. We introduce Flock, a hash-based SNARK for extremely fast proving of such batched Boolean computations. Flock proves batches of the same R1CS circuit (plus input/output relations between them), can prove hash-chains and Merkl…
Granite: A Modular Methodology for Foundational Verification of Hardware-Software Leakage Contracts
Granite: A Modular Methodology for Foundational Verification of Hardware-Software Leakage Contracts arXiv:2607.27480v1 Announce Type: new Abstract: Granite is a methodology for modular verification of both functional correctness and nonleakage of RTL processors against ISA contracts. We prove that the cycle-by-cycle timing of a pipelined RISC design--with speculation, precise interrupts, and I/O--is determined solely by observables specified in an ISA leakage contract. For p…
Low-Latency Bootstrapping for CKKS using Roots of Unity
Low-Latency Bootstrapping for CKKS using Roots of Unity arXiv:2607.27401v1 Announce Type: new Abstract: We introduce Sparse Roots of Unity (SPRU) bootstrapping, a new bootstrapping algorithm for the CKKS homomorphic encryption scheme for approximate arithmetic. The original CKKS bootstrapping method relies on homomorphically evaluating a polynomial that approximates modular reduction modulo q. In contrast, SPRU bootstrapping directly embeds the additive group modulo q into t…
RoguePrompt: Dual-Layer Encoding for Self-Reconstruction to Circumvent LLM Moderation
RoguePrompt: Dual-Layer Encoding for Self-Reconstruction to Circumvent LLM Moderation arXiv:2607.27373v1 Announce Type: new Abstract: Large language models (LLMs) are becoming increasingly integrated into mainstream development platforms and daily technological workflows, typically behind moderation and safety controls. Despite these controls, preventing prompt-based policy evasion remains challenging, and adversaries continue to "jailbreak" LLMs by crafting prompts that cir…
Open Security Benchmark: Towards Autonomous Enterprise Cyber Defense
Open Security Benchmark: Towards Autonomous Enterprise Cyber Defense arXiv:2607.27288v1 Announce Type: new Abstract: Enterprises are moving toward autonomous cyber defense: agentic AI that builds situational awareness of an organization's security state and reasons from it to assessments, decisions, and actions. This rests on a holistic view of the enterprise's security state, the continuous, cross-vendor picture of identities, cloud and infrastructure, data, applications, a…
FAVA: Formal Authorization for Verified Agents with Evidence-Backed Permission Graphs
FAVA: Formal Authorization for Verified Agents with Evidence-Backed Permission Graphs arXiv:2607.27267v1 Announce Type: new Abstract: Large language model (LLM) agents autonomously interleave semantic reasoning with complex system operations. In these dynamic environments, static tool-level permissions are fundamentally insufficient; safe authorization is highly context-dependent and heavily reliant on evolving runtime states and data flows. We present FAVA (Formal Authoriza…
Wrong Attack Surface
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
CISA Urges Water Sector to Protect OT After Coordinated Attacks on PLCs
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Bank of America to Acquire Cybersecurity Firm MDSec
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Kremlin hackers are exploiting Exchange flaw to backdoor unpatched networks
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Okta to Acquire Identity Threat Detection Firm Permiso
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Semiconductor chip titan Analog Devices reports data breach
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
DPRK-Linked macOS Malvertising Uses Fake Updates to Deliver Crypto-Stealing Malware
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
You were onto something with “It’s the Climb,” Miley
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Read This Before You Buy That TV Streaming Stick
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
The 2026 World Cup On-Chain: $20 Billion in Crypto Flows, From Bets to Tickets
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
What’s new in Microsoft Security: July 2026
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Timeless Compliance: Why Better Questions Beat Bigger Frameworks
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
ThreatsDay: AI-Powered Hacking, 370 Chrome Flaws, SonicWall Attacks, DNS Hijacking + 22 More Stories
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
GPU Management: Why Idle GPUs Are the New Grounded Aircraft
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
[$] Reconsidering O_CREAT|O_DIRECTORY
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Batten Down Your Packages: Mitigation Guidance for Supply Chain Compromise
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
North Korea’s Lazarus Group sharing tools with ransomware hackers, South Korean agencies warn
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
DataBahn Raises $40 Million for Agentic Data Pipeline Management
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Another batch of single-fix stable kernels
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Azure Cosmos DB Flaw Exposed Platform-Wide Key That Could Access Any Database
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Security updates for Thursday
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
North Korean hackers behind major open-source supply chain attacks, Amazon says
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Cantina Emerges From Stealth With $8 Million in Funding
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Onyx Security Raises $113 Million to Control AI Agents in the Enterprise
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
‘DangleGeddon’: AI Could Weaponize Forgotten DNS Records at Global Scale
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Cyber extortionists steal data from UK Department for Education
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Microsoft Copilot for Word Can Copy Hidden Prompts Into New Documents
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
story desk
clustered evidenceWatchGuard Patches Critical Vulnerabilities
developing · new
Microsoft Rolls Out 22 Fresh Security Patches
source only · new
Google Patches 6th Chrome Zero-Day of 2026
developing · new
Cisco Warns of Unpatched Secure Email Flaws, Patches Critical Switch Vulnerabilities
developing · new
Cisco Patches Critical Crosswork, Secure Workload Vulnerabilities
source only · new
filter by source
sharing classification
TLP describes sharing sensitivity, not copyright permission. Reader text is limited to source-provided descriptive material; original reporting stays with its publisher.