Loading the current evidence view. Navigation and account controls remain available.
Intelligence reports
Loading the current evidence view. Navigation and account controls remain available.
Ordering reports and their extracted indicators.
Applying the current filters and ordering.
Forensia intelligence desk · 4,094 source documents · 4,063 stories
Live reporting, advisories and research arranged by editorial readiness. Thin sources stay visible, but they are clearly marked instead of being presented as complete analysis.
On this page
40 documents
Briefs ready now
40
Multi-source clusters
1
Publisher text withheld
40
CTM360 Uncovers Over 3,000 Recruitment Phishing URLs Using Browser-in-the-Browser (BitB) Credential Traps
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Apple Warns Users in 110 Countries They May Be Targets of Mercenary Spyware
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Trump Memo Paves Way for U.S. Firms to Hack and Disrupt Foreign Crime Groups
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
China-Linked Jewelbug Uses XG-Web for Government Espionage and Crypto Fraud
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
GeoServer Zero-Day Targeted in Active Exploitation Attempts, Can Lead to RCE
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
ThreatsDay: GhostJacking AI Attacks, EtherHiding ClickFix, Cursor CLI Flaw + 17 More Stories
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
New PATCHCORD Backdoor Targets Afghan Telecom and Indian Critical Infrastructure
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
AmnesiaStealer Hijacks Chromium Sessions to Give Attackers Live Browser Control on macOS
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
WindRelay Android Malware Turns Victims' Phones Into NFC Relays for Payment Fraud
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
North Korean Remote Workers Are Infiltrating Government and Businesses: How to Expose Them Before Hiring
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Attackers Exploit VMware vCenter Vulnerability to Gain Persistent Remote Access
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Malicious LiteLLM Releases Tied to Trivy Hack May Have Exposed 2,100+ Organizations
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
SAP Commerce Cloud Flaw Could Let Unauthenticated Attackers Execute Arbitrary Code
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
ShieldBreak Zero-Day PoC Claims Microsoft Defender Patch Bypass With SYSTEM Access
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Cisco ASA and FTD Flaw Exploited in the Wild Can Trigger Remote DoS
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Microsoft Patches 398 Flaws Including a Windows Driver Zero-Day Under Active Attack
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Kimwolf v7 Android Botnet Makes HTTP/2 DDoS Traffic Look Like Legitimate Browsing
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Zoom Annotation Flaws Could Let a Meeting Participant Hijack Another Attendee's Client
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Sandworm-Linked UAC-0145 Uses Fake Job Interviews to Push VPN That Can Run Commands
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Researchers Disclose AI-Assisted SharePoint Exploit Chain Reaching Unauthenticated RCE
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
DeadLock Ransomware Uses Polygon Smart Contracts to Make Extortion Infra Harder to Disrupt
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
OpenAI Launches GPT-5.6-Cyber with Reduced Safeguards for Exploit Development
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
A Malicious SIM Card Can Run Attacker Code Inside the Modems Behind Cellular IoT Devices
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Mozilla Revokes Firefox and Thunderbird Linux Signing Key After Key Lands in Private Repo
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Researchers Built a Fake Crypto Startup and Hired Three Suspected North Korean IT Workers
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Researchers Turn USB Auto-Install Into a Full SYSTEM Takeover on Windows 11
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Malicious MCP Servers Can Split Instructions to Make AI Coding Agents Exfiltrate Secrets
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Gunra Ransomware Exploits Fortinet and Schneider Electric Flaws to Breach Networks
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Hackers Breach Polish Power Plant Controls via Private Cellular Network and Shut Turbine
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
BdThemes Supply Chain Attack Poisons JSON to Create Rogue WordPress Admins
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
China-Linked Hackers Deploy New StormEncryptor Ransomware, Likely via N-central Flaw
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
⚡ Weekly Recap: AI Goes Rogue, Metabase 0-Day, MCP Supply-Chain Attacks, and Router Backdoors
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Kimsuky Builds Offline AI Stack to Boost Phishing and Automate Malware Development
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
New Passkey Attacks Can Recover Synced Private Keys or Bypass Phishing-Resistant MFA
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Shipping 10–50× More Code? Watch This Webinar on Securing AI-Speed Development
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
TrueConf Server Flaws Exploited to Replace Client Installers with PhantomCore
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Solidity Pro VS Code Extensions Steal Crypto Wallets, API Keys, and Credentials
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
OpenAI's Next AI Model Astra Shows Cyber Performance Strong Enough to Trigger Pause
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Atlassian Rovo Can Be Tricked Into Sending Jira and Confluence Data to Attackers
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
New CSS Attacks Can Break Webmail Defenses to Steal Passwords and Tokens
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
story desk
clustered evidenceWatchGuard Patches Critical Vulnerabilities
developing · new
Microsoft Rolls Out 22 Fresh Security Patches
source only · new
Google Patches 6th Chrome Zero-Day of 2026
developing · new
Cisco Warns of Unpatched Secure Email Flaws, Patches Critical Switch Vulnerabilities
developing · new
Cisco Patches Critical Crosswork, Secure Workload Vulnerabilities
source only · new
filter by source
sharing classification
TLP describes sharing sensitivity, not copyright permission. Reader text is limited to source-provided descriptive material; original reporting stays with its publisher.