Loading the current evidence view. Navigation and account controls remain available.
Intelligence reports
Loading the current evidence view. Navigation and account controls remain available.
Ordering reports and their extracted indicators.
Applying the current filters and ordering.
Forensia intelligence desk · 4,092 source documents · 4,061 stories
Live reporting, advisories and research arranged by editorial readiness. Thin sources stay visible, but they are clearly marked instead of being presented as complete analysis.
On this page
40 documents
Briefs ready now
40
Multi-source clusters
0
Publisher text withheld
40
Financially Motivated Threat Actor BREEZE COMET Targets Brazil
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Going with the Flow(s): Distinct Clusters Target Individuals of Interest to Russia
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Staying Ahead of Adversarial AI Through Agentic Source Code Review
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
UNC6671 Rebrands: Multi-Brand Vishing Extortion Targets Financial Services and Enterprise Cloud Environments
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Batten Down Your Packages: Mitigation Guidance for Supply Chain Compromise
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Updated Cyber Threat Actor Naming System
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Demystifying AI Exploits: A Blueprint for AI-Assisted Vulnerability Management
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
The Risk of Exposed Cloud Functions and How to Harden
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
The ‘Ghost’ in the Database: Recovering Active ADFS Signing Keys via Machine DPAPI
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Google’s Continued Disruption of Malicious Residential Proxy Networks
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
The Bear Necessities: A Look at the Drivers, Dynamics, and Applications of the Pro-Russia Influence Ecosystem
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
STOCKSTAY Another Day: The Latest Addition to Turla’s Intelligence Gathering Apparatus
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Zero-Day Exploitation of Vulnerability (CVE-2026-20245) in Cisco Catalyst SD-WAN Manager
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Public and Private Medical Community Targeted by China-Nexus Threat Actor Pursuing Artificial Intelligence, Cyber, Medical, and National Defense Research
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
ShinyHunters Targets Education Sector with Oracle PeopleSoft Exploit
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Seeking Counsel: Ongoing Targeted Campaign Against US Law Firms
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
2 PhaaS 2 Furious: The Evolution of Chinese-Language Phishing Services
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Exploitation of KnowledgeDeliver via ViewState Deserialization Vulnerability
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Welcome to BlackFile: Inside a Vishing Extortion Operation
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
GTIG AI Threat Tracker: Adversaries Leverage AI for Vulnerability Exploitation, Augmented Operations, and Initial Access
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Snow Flurries: How UNC6692 Employed Social Engineering to Deploy a Custom Malware Suite
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Defending Your Enterprise When AI Models Can Find Vulnerabilities Faster Than Ever
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
The German Cyber Criminal Überfall: Shifts in Europe's Data Leak Landscape
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
vSphere and BRICKSTORM Malware: A Defender's Guide
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
North Korea-Nexus Threat Actor Compromises Widely Used Axios NPM Package in Supply Chain Attack
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
M-Trends 2026: Data, Insights, and Strategies From the Frontlines
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
The Proliferation of DarkSword: iOS Exploit Chain Adopted by Multiple Threat Actors
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Ransomware Under Pressure: Tactics, Techniques, and Procedures in a Shifting Threat Landscape
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Proactive Preparation and Hardening Against Destructive Attacks: 2026 Edition
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Look What You Made Us Patch: 2025 Zero-Days in Review
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Coruna: The Mysterious Journey of a Powerful iOS Exploit Kit
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Exposing the Undercurrent: Disrupting the GRIDTIDE Global Cyber Espionage Campaign
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
From BRICKSTORM to GRIMBOLT: UNC6201 Exploiting a Dell RecoverPoint for Virtual Machines Zero-Day
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
GTIG AI Threat Tracker: Distillation, Experimentation, and (Continued) Integration of AI for Adversarial Use
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Beyond the Battlefield: Threats to the Defense Industrial Base
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
UNC1069 Targets Cryptocurrency Sector with New Tooling and AI-Enabled Social Engineering
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Guidance from the Frontlines: Proactive Defense Against ShinyHunters-Branded Data Theft Targeting SaaS
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Vishing for Access: Tracking the Expansion of ShinyHunters-Branded SaaS Data Theft
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
No Place Like Home Network: Disrupting the World's Largest Residential Proxy Network
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
Diverse Threat Actors Exploiting Critical WinRAR Vulnerability CVE-2025-8088
An evidence-built Forensia brief is ready now; publisher prose remains at the original source.
story desk
clustered evidenceWatchGuard Patches Critical Vulnerabilities
developing · new
Microsoft Rolls Out 22 Fresh Security Patches
source only · new
Google Patches 6th Chrome Zero-Day of 2026
developing · new
Cisco Warns of Unpatched Secure Email Flaws, Patches Critical Switch Vulnerabilities
developing · new
Cisco Patches Critical Crosswork, Secure Workload Vulnerabilities
source only · new
filter by source
sharing classification
TLP describes sharing sensitivity, not copyright permission. Reader text is limited to source-provided descriptive material; original reporting stays with its publisher.