REPORTS
Fresh threat intelligence we ingest from public vendor and research feeds — each report linked to its original source. Search, filter by source, and open the reference.
Reports
Newest first. Search, filter by source, open the original.
825 reports · page 6 of 21
arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
REAN: Reconstruction-aware ECG Anonymization Based on Privacy--Utility Orthogonality arXiv:2607.06037v1 Announce Type: new Abstract: A shared electrocardiogram (ECG) is itself a biometric fingerprint that can re-identify a patient and reveal personal information. Recent ECG anonymizers transform the signal before sharing to reduce privacy leakage. However, existing methods still face a privacy--utility trade-off, in which preserving privacy often compromises utility while pr…
Read original ↗https://arxiv.org/abs/2607.06037arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Proof of Execution: Runtime Verification for Governed AI Agent Actions arXiv:2607.05397v1 Announce Type: new Abstract: Agent systems increasingly execute rather than advise. When an AI agent queries regulated data, invokes effectful tools, and mutates persistent state, correctness is not captured by whether a terminal output looks plausible. The operative questions are whether each step was authorized under a contract, whether the recorded history is tamper-evident, and whet…
arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Bit2Watt: A Cyber-Physical Vulnerability Exploiting GPU Workloads Across Power and Computing Infrastructures arXiv:2607.05993v1 Announce Type: new Abstract: Modern data centers increasingly rely on large-scale GPU clusters and on-site renewable energy resources, resulting in a tightly coupled cyber-physical system between computing workloads and power-electronic-dominated grids. In this paper, we reveal Bit2Watt, a previously unexplored vulnerability in which an adversary ma…
Read original ↗https://arxiv.org/abs/2607.05993arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
ProvICS: A Provenance-based Intrusion Detection for Industrial Control Systems arXiv:2607.05989v1 Announce Type: new Abstract: The convergence of Information Technology and Operational Technology has exposed Industrial Control Systems (ICS) to multi-stage cyberattacks that traverse software, network, and physical process layers simultaneously. Although Provenance-based Intrusion Detection Systems (PIDS) are effective in Information Technology (IT) environments, their applica…
Read original ↗https://arxiv.org/abs/2607.05989arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
LibFHE: A Numba-Based CUDA-Python Library for Non-RNS CKKS-BGV Fully Homomorphic Encryption on GPUs arXiv:2607.05920v1 Announce Type: new Abstract: It has been a decade since the fourth-generation FHE framework, CKKS, was proposed; yet, there is still no indicator pointing toward a fifth-generation successor; and in recent years, numerous studies have explored GPU acceleration to improve the efficiency of homomorphic computations. In this paper, we propose LibFHE, a high-per…
Read original ↗https://arxiv.org/abs/2607.05920arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
From Regression to Prior-Aware Inference: Solving the ILWE Family in Randomness Leakage Attacks against ML-DSA arXiv:2607.05921v1 Announce Type: new Abstract: ML-DSA is a representative lattice-based signature scheme standardized by NIST. It relies on signing randomness and rejection sampling to ensure that released signatures are statistically independent of the secret key. Practical implementations, however, may leak partial information about this randomness, and such leak…
Read original ↗https://arxiv.org/abs/2607.05921arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Multi-Channel Spread-Spectrum Code Watermarking arXiv:2607.06009v1 Announce Type: new Abstract: Attributing code to the large language model that produced it is essential for provenance, licensing, and misuse accountability, yet no deployed watermark meets this need. Generation-time schemes require access to the producing model and cannot be applied to third-party code, while post-hoc schemes work on any code but carry at most 4 bits of payload, far too few to distinguish th…
Read original ↗https://arxiv.org/abs/2607.06009arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Code-Level Cost Function Generation for Spatial Image Steganography Using RAG-Enhanced Large Language Models arXiv:2607.05868v1 Announce Type: new Abstract: Designing cost functions of adaptive steganography traditionally requires extensive manual tuning, while deep learning methods lack interpretability. Although large language models (LLMs) offer an automated alternative via evolutionary generation, they often violate domain specific mathematical constraints due to a lack …
Read original ↗https://arxiv.org/abs/2607.05868arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Withdrawability in Fiat-Shamir with aborts constructions arXiv:2607.05831v1 Announce Type: new Abstract: This article presents an extension of the work performed by Liu, Baek and Susilo on withdrawable signatures to the Fiat-Shamir with aborts paradigm. We introduce an abstract construction, and provide security proofs for this proposal. As an instantiation, we provide a concrete withdrawable signature scheme based on a no-hint, full-t Dilithium-style Fiat-Shamir with aborts…
Read original ↗https://arxiv.org/abs/2607.05831arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
i-EXAM: Instructable and Explainable Attack Connectivity Graph Modeler arXiv:2607.05888v1 Announce Type: new Abstract: i-EXAM is a planning-powered tool that helps system administrators to create security profiles of complex networks and perform what-if analyses to identify network hardening strategies. It leverages planning compilation that provides soundness and completeness guarantees to identify attack paths, evaluate security metrics, generate diverse hardening strategi…
Read original ↗https://arxiv.org/abs/2607.05888arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
MSCENet: A Multi-Scale Correlation Enhanced Network for Anomaly Detection arXiv:2607.05864v1 Announce Type: new Abstract: In the field of multivariate time series anomaly detection, against the backdrop of increasing data complexity and complex dependencies across multiple temporal scales, traditional methods often struggle to simultaneously capture temporal dynamic features and intricate inter-series correlations. To address this, we propose an innovative framework, MSCENet…
Read original ↗https://arxiv.org/abs/2607.05864arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Unicode TAG-Block Concealment of Tool-Metadata Payloads in the Model Context Protocol: An Approval-View Fidelity Gap Across Three Independent Server Implementations arXiv:2607.05744v1 Announce Type: new Abstract: The Model Context Protocol (MCP) is the dominant way coding agents discover and invoke external tools. A server advertises each tool through a tools/list handshake that returns a name, a natural-language description, and a JSON input schema. The client renders this …
Read original ↗https://arxiv.org/abs/2607.05744arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Reproducible Validation of Voucher-Based L2 Interoperability: Diagnosing an ERC-4337 Compatibility Issue in an EIL SDK Implementation arXiv:2607.05914v1 Announce Type: new Abstract: Ethereum Layer-2 (L2) ecosystems improve scalability but also fragment users, liquidity, gas funding, and execution across rollups. Consequently, cross-rollup interoperability is not only a bridging problem but also a wallet, execution, and validation problem. Ethereum Interop Layer (EIL) propose…
Read original ↗https://arxiv.org/abs/2607.05914arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Context-to-Execution Integrity for LLM Agents arXiv:2607.06000v1 Announce Type: new Abstract: Language-model agents read attacker-writable context to solve tasks. Tool execution needs a separate authority check for protected sink fields, sink-interpreted payloads, and the invocation event. Context-to-Execution Integrity (CXI) is an execution-boundary system for this setting. Policies mark protected sink fields, typed releases carry narrow validated values from writable conte…
Read original ↗https://arxiv.org/abs/2607.06000arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
How Stable Is a PNT Resilience Score? Decision-Instability of Single-Number Resilience Ratings under Framework-Aligned Weighting arXiv:2607.05415v1 Announce Type: new Abstract: Authoritative positioning, navigation, and timing (PNT) resilience frameworks (the DHS Resilient PNT Conformance Framework, RPCF, and peers) define what resilience means but supply only self-attestation: a checklist or a maturity Level, with no engine and no measurement. We build the missing measureme…
Read original ↗https://arxiv.org/abs/2607.05415arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
The Balkanization of Execution-Security Research for AI Coding Agents: Isolation, Access Control, and Time-of-Check-to-Time-of-Use Vulnerabilities arXiv:2607.05743v1 Announce Type: new Abstract: AI coding agents now read repositories, call tools, and execute shell commands with limited human oversight, and a fast-growing body of work studies whether the execution layer around them is actually safe. That literature is scattered. Papers on sandbox isolation, capability and acc…
Read original ↗https://arxiv.org/abs/2607.05743arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Beyond the Syntax: Do Security Experts Trust LLMs for NIDS Rule Engineering? arXiv:2607.05916v1 Announce Type: new Abstract: As network threats evolve, manual NIDS rule engineering has become a critical operational bottleneck. While Large Language Models (LLMs) show promise for automating this process, their ability to produce production-ready rules remains unvalidated. This paper presents a human-centered investigation into LLM-based NIDS rule engineering, formalizing a gro…
Read original ↗https://arxiv.org/abs/2607.05916arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Poster: Mind the Gap -- Characterizing the Temporal Blind Spot Between GSB and DNS Resolution arXiv:2607.06134v1 Announce Type: new Abstract: Google Safe Browsing (GSB) and DNS resolution operate concurrently during browser navigation, yet their packet-level synchronization remains understudied. This work characterizes the timing gap (\(\Delta_{time}\)) between GSB-related query close events and parallel DNS resolution responses, identifying a consistent temporal offset with…
Read original ↗https://arxiv.org/abs/2607.06134arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
ShadowProbe: Language-Extensible Detection of Hidden Algorithmic Complexity Vulnerabilities arXiv:2607.05474v1 Announce Type: new Abstract: Algorithmic Complexity Vulnerabilities (ACVs) arise when adversarial inputs trigger worst-case execution behavior, causing severe performance degradation or Denial-of-Service conditions. A key but underexplored source is shadow complexity: non-trivial computational costs hidden inside seemingly benign standard library APIs. Because these…
Read original ↗https://arxiv.org/abs/2607.05474arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Privilege and confidentiality in generative AI workflows arXiv:2607.05479v1 Announce Type: new Abstract: Generative AI (GenAI) systems store and process client data in three distinct ways: in the model's parameters through training and memorisation, in the context window during a live session, and in knowledge databases for retrieval-augmented generation (RAG). Each mode creates different and often counter-intuitive risks to confidentiality and legal professional privilege, …
Read original ↗https://arxiv.org/abs/2607.05479arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Full-range Binary Classifier Calibration for Stable Model Updates in Production arXiv:2607.05481v1 Announce Type: new Abstract: Detection models running in adversarial environments face a malicious distribution that drifts rapidly while the benign distribution stays comparatively stable, so teams retrain and redeploy constantly to stay ahead of new threats. Retraining tends to change the output prediction scores, which breaks downstream users of the model. For these security…
Read original ↗https://arxiv.org/abs/2607.05481arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
The Masks We (Think We) Wear: Privacy Threats of Browser-Extension Wallets in the Web3 Ecosystem arXiv:2607.06141v1 Announce Type: new Abstract: Cryptocurrency wallets are the primary interface for managing pseudonymous blockchain addresses, viewing balances, and interacting with Web3 applications. Although users typically assume that their addresses remain independent of each other unless intentionally revealed, modern wallets routinely communicate with both blockchain infr…
Read original ↗https://arxiv.org/abs/2607.06141arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Abductive Corroboration of Probabilistic AI Models for Forensic Synthetic Media Detection arXiv:2607.05434v1 Announce Type: new Abstract: Artificial Intelligence (AI) models, at their core, apply general learnings from broad datasets to individual circumstances using probabilistic behaviour. This inductive approach stands in contrast to deductive reasoning approaches which seek to prove conclusions from their premises. However, research has shown that deductive reasoning wit…
Read original ↗https://arxiv.org/abs/2607.05434arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
Evaluating calibrated refusal and safe usefulness in dual-use biology settings arXiv:2607.05462v1 Announce Type: new Abstract: As AI agents are incorporated into life science workflows, the capabilities that speed discovery might also enable misuse. We present BioSecBench-Refusal, a benchmark for risk identification and refusal behavior for biological research tasks. The benchmark pairs 61 Routine tasks, legitimate analyses adapted from the published literature, with 46 Red-…
Read original ↗https://arxiv.org/abs/2607.05462arxiv_cs_cr · tlp:amber · 7/8/2026, 4:00:00 AM
aiAuthZ: Off-Host, Identity-Bound Authorization for AI Agents arXiv:2607.05518v1 Announce Type: new Abstract: AI agents issue tool calls on the basis of text they cannot verify, so any party who controls part of the context can forge the appearance of authority. I evaluate 15 contemporary language models against eight attack scenarios derived from a published corpus of real agent incidents and find that refusal varies from 100% down to 38% across fully evaluated models; the …
Read original ↗https://arxiv.org/abs/2607.05518arxiv_cs_cr · tlp:amber · 7/7/2026, 4:00:00 AM
LeanDY: Type-Based and Trace-Based Symbolic Protocol Verification in Lean arXiv:2607.03406v1 Announce Type: new Abstract: Computer-aided formal verification is a widely used approach for the symbolic analysis of cryptographic protocols. However, many modern protocols rely on features that remain challenging for existing techniques. In particular, reasoning about state, time-dependent behavior, inductively defined data structures, unbounded executions, and conditional secrecy…
Read original ↗https://arxiv.org/abs/2607.03406arxiv_cs_cr · tlp:amber · 7/7/2026, 4:00:00 AM
Execution Divergence Graphs:Effective Discovery of Control-Flows from Execution Traces as Fuzzing Feedback arXiv:2607.03396v1 Announce Type: new Abstract: Fuzz testing is a popular approach to the security testing of proprietary software. Efficient testing strategies rely on execution feedback to guide the input generation process, particularly when the basic blocks in the binary can be directly observed and instrumented. Unfortunately, collecting such feedback is impossible…
Read original ↗https://arxiv.org/abs/2607.03396arxiv_cs_cr · tlp:amber · 7/7/2026, 4:00:00 AM
RES-DARE: Failure-Aware Expert Adaptation and Rollback-Safe Self-Repair for Intrusion Detection arXiv:2607.02687v1 Announce Type: new Abstract: Intrusion detection systems are often trained under static benchmark conditions, although deployed network environments are affected by traffic drift, sensor noise, changing workloads, and evolving attack behaviour. Under such distribution shifts, static detectors may produce confident but incorrect predictions, leading to silent and…
Read original ↗https://arxiv.org/abs/2607.02687arxiv_cs_cr · tlp:amber · 7/7/2026, 4:00:00 AM
Not All Refusals Are Equal: How Safety Alignment Fails Cybersecurity at Scale arXiv:2607.02714v1 Announce Type: new Abstract: There is no doubt that safety alignment is an essential step in LLM training. However, conceptually it does not distinguish between various domains and the level of potential harm of a query, which creates significant complications in the fields like cyber security, where a model should not be constrained by its safety circuits to accomplish the goals…
Read original ↗https://arxiv.org/abs/2607.02714arxiv_cs_cr · tlp:amber · 7/7/2026, 4:00:00 AM
Vision Token Manipulation Attacks on Cloud-Edge Inference of Large Vision-Language Models arXiv:2607.02819v1 Announce Type: new Abstract: Cloud-edge Large Vision-Language Model (LVLM) inference enables efficient deployment by splitting computation between edge devices and cloud servers. In this process, intermediate vision tokens are transmitted from the edge to the cloud over a communication link, thereby exposing a new attack surface. We study vision token manipulation att…
Read original ↗https://arxiv.org/abs/2607.02819arxiv_cs_cr · tlp:amber · 7/7/2026, 4:00:00 AM
The agent creates, we validate: A Lightweight Framework for Agentic Artifact Generation arXiv:2607.02615v1 Announce Type: new Abstract: Generating structured artifacts with Large Language Models - e.g. database queries, threat framework mappings, entity schemas - is relatively straightforward; however, making them reliable enough for production deployments presents challenges. We present a lightweight framework based on a core principle: LLMs generate, we validate. This refr…
Read original ↗https://arxiv.org/abs/2607.02615arxiv_cs_cr · tlp:amber · 7/7/2026, 4:00:00 AM
JavaVulBench: A Java Vulnerability Benchmark with Realistic Splits, a Unified Multi-Backend Harness, and a Leakage-Aware Evaluation Mode arXiv:2607.02825v1 Announce Type: new Abstract: We release \textsc{JavaVulBench}, a benchmark dataset and evaluation harness for Java vulnerability detection. The dataset contains $\sim$30{,}600 Java methods spanning 1{,}740 CVEs and 700+ projects, labelled at both method and line granularity, with per-CVE publication dates and five realist…
Read original ↗https://arxiv.org/abs/2607.02825arxiv_cs_cr · tlp:amber · 7/7/2026, 4:00:00 AM
Git Hash Chain Malleability arXiv:2607.02820v1 Announce Type: new Abstract: Git commit signing is widely entrusted to serve as evidence that a commit hash uniquely and immutably identifies a specific piece of signed content. We show this invariant does not hold. Given any signed commit, an attacker without access to the signing key, and without breaking SHA2 can produce a second, distinct commit with an identical tree, identical metadata, a valid signature, and a ``Verified'…
Read original ↗https://arxiv.org/abs/2607.02820arxiv_cs_cr · tlp:amber · 7/7/2026, 4:00:00 AM
LLM-Enhanced Hierarchical Heterogeneous Graph Representation Learning for Malicious Python Package Detection arXiv:2607.03350v1 Announce Type: new Abstract: Malicious Python packages have become a major threat to software supply chain ecosystems due to the widespread adoption of open-source repositories such as PyPI. Existing learning-based detection methods struggle to capture the hierarchical organization and heterogeneous interactions among different program entities. Alt…
Read original ↗https://arxiv.org/abs/2607.03350arxiv_cs_cr · tlp:amber · 7/7/2026, 4:00:00 AM
ShannonProver: Towards Automating Formal Cryptographic Proofs arXiv:2607.02847v1 Announce Type: new Abstract: Cryptographic proofs are produced at a scale that increasingly exceeds the community's ability to verify them manually. Machine-checked proofs offer a path toward scalable proof verification, but writing proof scripts for expressive proof assistants such as EasyCrypt remains a major bottleneck: even when the high-level proof plan is known, converting it into proof ta…
Read original ↗https://arxiv.org/abs/2607.02847arxiv_cs_cr · tlp:amber · 7/7/2026, 4:00:00 AM
Securing Multi-Tool AI Agent Chains With Dynamic, Real-Time Compositional Policies arXiv:2607.03423v1 Announce Type: new Abstract: Modern AI agent implementations such as frontier coding agents chain multiple tools at runtime that create a security surface that per-tool guardrails are unable to address, as individually permitted tools can violate organizational policies when composed. We propose the Dynamic Security Control Compositor (DSCC), a two-phase approach to composit…
Read original ↗https://arxiv.org/abs/2607.03423arxiv_cs_cr · tlp:amber · 7/7/2026, 4:00:00 AM
Scalable Differentially Private Data Compression via Diffusion and Stochastic Codes arXiv:2607.03392v1 Announce Type: new Abstract: The ever-increasing collection of personal data has created mounting pressure to develop technologies that protect sensitive aspects of individual identity. Differential privacy (DP) provides a principled framework with strong formal guarantees and has already achieved practical success. However, releasing high-dimensional data, such as images, …
Read original ↗https://arxiv.org/abs/2607.03392arxiv_cs_cr · tlp:amber · 7/7/2026, 4:00:00 AM
Security Analysis for SCONE Logic Locking arXiv:2607.03288v1 Announce Type: new Abstract: SCONE [DAC'25] expands a logic locking interface with additional encoded inputs derived from the original primary inputs, and admits two realizations: a \textit{with-ES} variant, where the critical encoding stage is implemented in hardware, and a \textit{without-ES} variant, where the locked design directly exposes an encoded interface of width $n+m$. We show that both realizations are …
Read original ↗https://arxiv.org/abs/2607.03288arxiv_cs_cr · tlp:amber · 7/7/2026, 4:00:00 AM
Agentic and Generative AI for Open-Source Intelligence and Cyber Investigations: Taxonomy, Evaluation, Challenges, and Future Directions arXiv:2607.03233v1 Announce Type: new Abstract: The rapid growth of publicly available digital information has rendered manual open-source intelligence (OSINT) analysis insufficient for modern intelligence, cybersecurity, and cyber investigation. Large language models (LLMs) and agentic AI systems, capable of tool use, multi-step reasoning,…
Read original ↗https://arxiv.org/abs/2607.03233arxiv_cs_cr · tlp:amber · 7/7/2026, 4:00:00 AM
Enhanced Feature Extraction for IoT Network Intrusion Detection Using GNNs and KAN arXiv:2607.02981v1 Announce Type: new Abstract: Recent advancements in the Internet of Things (IoT) emphasize the urgent need for advanced network security, as IoT networks feature dynamic topologies, imbalanced traffic, and complex attack patterns. Unlike general IT networks, IoT environments exhibit extreme heterogeneity and sparse topologies. Traditional GNN-based intrusion detection method…
Read original ↗https://arxiv.org/abs/2607.02981