Loading the current evidence view. Navigation and account controls remain available.
Intelligence reports
Loading the current evidence view. Navigation and account controls remain available.
Ordering reports and their extracted indicators.
Applying the current filters and ordering.
Forensia intelligence desk · 4,094 source documents · 4,063 stories
Live reporting, advisories and research arranged by editorial readiness. Thin sources stay visible, but they are clearly marked instead of being presented as complete analysis.
On this page
40 documents
Briefs ready now
40
Multi-source clusters
0
Publisher text withheld
40
Why "Shady AI" is Security's Next Big Governance Problem
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
CDN Tsunami Attack Abuses HTTP/3 Translation for Up to 350x DoS Amplification
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Manic Android Malware Exfiltrates Data From Offline Phones via Nearby Infected Devices
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
NASA AIT-GUI Flaws Could Let Unauthenticated Attackers Issue Spacecraft Commands
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
ToxicPanda 2.0 and GoldDigger Expand Android Banking Attacks with On-Device Fraud
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
40 Malicious Firefox Extensions Pose as Web3 Products to Steal Wallet Secrets
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Elementor Pro Flaw Could Let Unauthenticated Attackers Upload PHP and Execute Code
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Cloudflare Workers Spectre Attack Leaks JWT From Co-Located Worker at 12 Bits/Second
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
OpenAI Pauses Frontier RL Training as It Tightens Defenses Against Unsafe AI Behavior
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
SilkParasite Espionage Campaign Targets Central Asian Governments with Five New RATs
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Hackers Compromised 14,500+ Dahua Devices Using Credential Attacks, Auth Bypasses, and P2P
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Phishing 3.0: The Fight Moves to Agent Versus Agent
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
StopAndProtect Uses Nearly 2,000 Hacked WordPress Sites to Spread Malware and Steal Data
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Critical macOS, SharePoint, vCenter, and Microsoft IKE Flaws Under Active Exploitation
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Microsoft Links 30+ Rotating Domains to MacSync Stealer Infrastructure
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Clop-Linked Windchill Web Shell Decrypts Credentials and Maps Engineering Data
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Microsoft Copilot Personal Flaws Could Let One Click Exfiltrate Data From Connected Apps
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Attackers Exploit MLflow SSRF Flaw to Steal Cloud Credentials and Secrets
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Ransom Busters Claims It Hacked Ransomware Servers, Asks Victims for Up to $60,000
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
AI "Mind Viruses" Can Spread Between Agents Through Persistent Prompt Files
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
TWINLOOT Abuses SharePoint and Teams to Steal Credentials and Move Across Networks
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
16 Typosquatted RubyGems Packages Steal Browser Credentials and Crypto Wallets
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
One Attacker Has Scraped Both Salesforce and ServiceNow Portals Since 2025
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
SafePal Hardware Wallet Maker Says Flaw Exposed Data of Nearly 40,000 Customers
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
CISA Flags Actively Exploited Ray Flaw That Can Trigger Browser-Based RCE
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Critical GitLab GraphQL Flaw Could Let Unauthenticated Attackers Delete Public Projects
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Snowflake GitHub Actions Flaw Lets Crafted Issues Trigger Command Injection
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Forminator WordPress Flaw Can Enable Unauthenticated RCE via Malicious PHP Uploads
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Cavern C2 Uses DNS and Google Apps Script to Blend Into Legitimate Traffic
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
⚡ Weekly Recap: VMware Exploits, Windows 0-Day, MCP Attacks, Browser Hijacks and More
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
How MCP Servers Can Expose Enterprise Secrets
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Unisoc VoLTE Video Call Exploit Chain Can Give Attackers Full Android Kernel Access
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Evooo1Bot Linux Botnet Exploits Known Flaws to Turn Edge Devices Into SOCKS5 Proxies
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Suspected China-Nexus Actor Exploits VMware vCenter Flaw, Deploys Babuk-Derived Ransomware
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
SAP Commerce Cloud CVE-2026-58231 Targeted in Exploitation Attempts Days After Patch
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Apple macOS Screen Sharing Flaw Exploited on Internet-Exposed Macs to Install Monero Miner
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Hackers Spend Nearly $7 Million on Expired Domains to Redirect Traffic to Scams and Malware
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
IAM Compliance Requirements and Best Practices
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Mustang Panda Adds Signed Windows Rootkit to CoolClient Backdoor for Stealth
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Chrome DevTools Technique Enables Authenticated Session Hijacking in Live Windows Browsers
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
story desk
clustered evidenceWatchGuard Patches Critical Vulnerabilities
developing · new
Microsoft Rolls Out 22 Fresh Security Patches
source only · new
Google Patches 6th Chrome Zero-Day of 2026
developing · new
Cisco Warns of Unpatched Secure Email Flaws, Patches Critical Switch Vulnerabilities
developing · new
Cisco Patches Critical Crosswork, Secure Workload Vulnerabilities
source only · new
filter by source
sharing classification
TLP describes sharing sensitivity, not copyright permission. Reader text is limited to source-provided descriptive material; original reporting stays with its publisher.