Loading the current evidence view. Navigation and account controls remain available.
Intelligence reports
Loading the current evidence view. Navigation and account controls remain available.
Ordering reports and their extracted indicators.
Applying the current filters and ordering.
Forensia intelligence desk · 4,096 source documents · 4,064 stories
Live reporting, advisories and research arranged by editorial readiness. Thin sources stay visible, but they are clearly marked instead of being presented as complete analysis.
On this page
40 documents
Briefs ready now
40
Multi-source clusters
0
Publisher text withheld
26
Not to Break, but to Attest: Adversarial Probes for Privacy-Preserving LLM Verification
arXiv:2608.27954v1 Announce Type: new Abstract: Post-deployment changes to large language models can alter behavior while leaving routine outputs largely unchanged, creating a challenge for AI governance when model weights are proprietary. We present a privacy-preserving zk-SNARK-based audit framework that searches for probes designed in the spirit of adversarial examples to amplify logit drift between an approved model and a modified deployment. Our framework explores comple…
GraftyVul: Synthesising Insecure Programs Through Real-World Vulnerability Grafting
arXiv:2608.27928v1 Announce Type: new Abstract: Vulnerability datasets underpin a wide range of security research, including vulnerability detection, automated remediation, and secure code generation. However, existing datasets sacrifice at least one of three desirable properties: diversity (of language or vulnerability type), reproducibility/executability, or realism. We therefore present GraftyVul, a system that constructs vulnerable programs by grafting real-world vulnerab…
A User-Centric Context-Aware Permission Governance Framework for Privacy Control in Default Mobile Applications
arXiv:2608.27914v1 Announce Type: new Abstract: Mobile operating systems provide runtime permission controls intended to improve user control over sensitive data. However, default or pre-installed applications are deeply integrated into the system, may operate with elevated privileges, and are difficult for users to scrutinize. Existing permission models generally grant persistent or temporary access for an application session without distinguishing among individual features,…
FISGuard: Defending Against Membership Inference via Fixed Input Subspaces
arXiv:2608.27836v1 Announce Type: new Abstract: As large language models are increasingly adopted in federated learning, protecting user privacy while performing parameter-efficient fine-tuning on distributed private data has become an important challenge. Although clients only share gradients instead of directly uploading raw data, the shared gradients may still leak membership information about training samples. ProjRes (S&P, 2026) further increases this risk: with less inf…
ContextLeak: Exfiltrating LLM Agent Context via Malicious Tools
arXiv:2608.27800v1 Announce Type: new Abstract: Exfiltrating an LLM agent's runtime context -- such as the user prompt, execution trajectory, and tool list -- poses severe security and privacy risks to users. Such attacks can be carried out via malicious tools and typically require three conditions: (1) the agent selects the malicious tool for task execution, (2) the agent passes its runtime context as input arguments to the tool, and (3) the tool's implementation transmits t…
Memorization Is Not Extraction: Tight Differential-Privacy Bounds and Audit Blind Spots
arXiv:2608.27782v1 Announce Type: new Abstract: Memorization in large language models is measured through a zoo of definitions whose formal relations are unknown, and differential privacy (DP) is treated as a proxy against all of them at once. We pin down the exact DP constant for the two that carry the practical weight, counterfactual memorization and adaptive extraction, and show that they do not control each other. Under $f$-DP, every adaptive extraction protocol with list…
Revisiting Continuous Noise Sampling for Multi-Party Differential Privacy
arXiv:2608.27766v1 Announce Type: new Abstract: Combining secure multi-party computation (MPC) with differential privacy (DP) enables multiple parties to release aggregate statistics without a trusted curator, and the core primitive is the protocol to sample noise from a continuous distribution under finite-precision arithmetic. In this paper, we revisit the continuous noise sampling protocols and present several improvements in both security and efficiency. We start by ident…
Semantic Watermarking with Order-Robust Detection over Sub-sentence Units
arXiv:2608.27666v1 Announce Type: new Abstract: Semantic watermarks tie the mark to sentence meaning rather than token choices, promising robustness to content-preserving edits. However, the detector only observes attacker-supplied text, which can be reworded, reordered, or resegmented to evade detection without content loss. Rewording, reordering, and resegmentation all cause embedding displacement: detection tests embeddings different from those selected during watermarking…
FlyBlind: Cross-Slice Timeliness Attacks on UAV Situational Awareness over 5G
arXiv:2608.27604v1 Announce Type: new Abstract: Beyond Visual Line of Sight (BVLOS) Uncrewed Aerial Systems (UAS) operating over 5G Standalone (SA) networks use a shared User Plane for both command-and-control (C2) data and video feedback. Operators assess link quality through latency and availability, relying on soft isolation between network slices. However, the risk that an authorized co-tenant could make the Ground Control Station (GCS) state outdated without disrupting t…
Fully Unleashing the Multimodal Attacker: Meta-Adaptive Jailbreaking of Vision-Language Models
arXiv:2608.27531v1 Announce Type: new Abstract: The safety of large vision-language models is increasingly stress-tested by multimodal jailbreaks, yet existing attacks remain largely static at the meta level: template-based attacks freeze the image--text layout, while iterative attacks adapt only the image--text content with fixed attack strategies and frozen attacker parameters. We propose Meta-Adaptive Multimodal Jailbreaking (MAMJ), which instead optimizes the attacker its…
eBPF-Based Cybersecurity Mechanisms: A Systematic Literature Review
arXiv:2608.27511v1 Announce Type: new Abstract: Extended Berkeley Packet Filter (eBPF) has emerged as a kernel-level framework enabling dynamic security enforcement in modern operating systems. While eBPF's cybersecurity potential has attracted significant attention, existing work remains fragmented across domains, evaluation methodologies, and deployment contexts. This systematic literature review applies PRISMA methodology to identify, categorize, and synthesize peer-review…
Circuit Discovery Helps Detect LLM Jailbreaking: A Mechanistic Interpretability Study
arXiv:2608.27504v1 Announce Type: new Abstract: Despite extensive safety alignment, large language models (LLMs) remain vulnerable to jailbreak attacks that bypass safeguards to elicit harmful content. While prior work attributes this vulnerability to safety training limitations, the internal mechanisms by which LLMs process adversarial prompts remain poorly understood. We present a mechanistic analysis of the jailbreaking behavior in a large-scale, safety-aligned LLM, focusi…
ROPE: Routed Origin Policy Enforcement against Indirect Prompt Injection
arXiv:2608.27496v1 Announce Type: new Abstract: Indirect prompt injection (IPI) plants instructions in the content a tool-using LLM agent reads, steering the agent into harmful tool calls. The strongest defenses are system-level, leveraging techniques such as task-conditional tool screening to prevent execution of malicious tools, and information-flow control to avoid tool execution with untrusted parameters. However, as agents grow more capable, users delegate more to automa…
Can Tainted Pixels Expose Deepfake Videos?
arXiv:2608.27492v1 Announce Type: new Abstract: Publicly-acceesible face-manipulation tools have made deepfake creation accessible to non-expert users. Against these, existing defenses are mostly post-hoc, detecting only after forgery has occurred, and operating on still images rather than videos. Research is lacking in i) the proactive protection of published facial videos against black-box manipulation tools, and in (ii) understanding its perceptual effect on human viewers.…
Kernel prepatch 7.3-rc1
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
TerminalFix Uses Fake Cloudflare CAPTCHAs to Deploy Reverse-Tunnel Backdoor
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Five Critical WordPress Plugin and Theme Flaws Enable Site Takeover or RCE
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Debian votes to allow "responsible use of generative AI"
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Hasbro Data Breach Exposed Employee Personal Information
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Ryabitsev: Creepy crawlies
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
TerminalFix campaign deploys a reverse tunnel through multistage intrusion
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Perturbation Probing: A New Diagnostic for the Fragility of LLM Safety
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Berlin Refuses to Pay Hackers Who Stole Data From the City's State Network
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Cosmos EVM Flaw Exploited After Cosmos Labs Knew Every Blockchain Running It Was Vulnerable
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Car: Dolphin 26.08 and KIO performance improvements
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
[$] The "rnull" Rust block driver
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Attackers Chain Two PaperCut Flaws to Execute Code Without Authentication
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
PaperCut warns of hackers using printer management software flaw in attacks
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Android 17 Adds OS-Wide ECH to Hide Website Visits From Network Providers
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
ownCloud Flaw Exploited to Steal Nuclear Records From Philippine Research Body
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
In Other News: Log4j RCE Scare, Minimus Shutdown, Iranian Hacker Sanctions
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
19 Chrome and Edge Extensions Found With Wallet-Stealing and Crypto-Draining Code
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
ATF Confirms Cyber Incident After Ransomware Group Claims Attack
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Eight stable kernels with fix for a single vulnerability
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Security updates for Friday
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
OpenAI Agents Exploited Linux Kernel Flaw on Company’s Own Systems
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Two Unitree G1 EDU Humanoid Robot Flaws Enable Root RCE, One Starts Over Bluetooth
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Key Reasons Why Identity Fabric Matters in 2026
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Three CVSS 10.0 ServiceNow Flaws Could Let Unauthenticated Attackers Execute Code and SQL
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Authorities arrest 2 alleged members of prolific hacking group TeamPCP
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
story desk
clustered evidenceWatchGuard Patches Critical Vulnerabilities
developing · new
Microsoft Rolls Out 22 Fresh Security Patches
source only · new
Google Patches 6th Chrome Zero-Day of 2026
developing · new
Cisco Warns of Unpatched Secure Email Flaws, Patches Critical Switch Vulnerabilities
developing · new
Cisco Patches Critical Crosswork, Secure Workload Vulnerabilities
source only · new
filter by source
sharing classification
TLP describes sharing sensitivity, not copyright permission. Reader text is limited to source-provided descriptive material; original reporting stays with its publisher.