Triaging the Week 105

Supply chain attacks, AI-centric vulnerabilities, abused kernel drivers, and AI assistant marketplaces hit hard in triaging the week 105.

Supply chain attacks, AI-centric vulnerabilities, abused kernel drivers, and AI assistant marketplaces hit hard in triaging the week 105.

Destructive nation-state attacks, new AI-weaponized malware, critical zero-day vulnerabilities, supply-chain attacks affecting NPM and PyPI, and 175K exposed Ollama AI servers in triaging the week 104.

AI-coded malware, weaponized extensions, social engineering the help desk, and exploiting zero-days across critical infrastructure. All in this week's edition of triaging the week.

Learn how data engineering for CTI can transform your threat intelligence team from reactive to proactive. A complete guide with actions.

Quishing and Browser-in-the-Browser attacks steal credentials, exploitation of LLM services and automation platforms, a massive leak of BreachForums accounts, and urgent patches for Cisco and Fortinet in triaging the week 102.

State-sponsored espionage, active exploitation of critical vulnerabilities in legacy hardware and popular software, and new malware campaigns targeting cloud services and user credentials in triaging the week 101.

State-sponsored espionage using Windows Group Policy, new malware (SantaStealer, PyStoreRAT, DocSwap) distributed through phishing, fake GitHub repos, and compromised app stores in triaging the week 100.