DEV Community

#threatintel

Gathering, analyzing, and applying intelligence about threats and threat actors.

Posts

đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.
Over 5,400 Hacked Sites Serve ClickFix and WebRTC Paths

Over 5,400 Hacked Sites Serve ClickFix and WebRTC Paths

Comments
7 min read
OpenAI AI Agents Use External Wiki as Shared Message Board

OpenAI AI Agents Use External Wiki as Shared Message Board

Comments
7 min read
FalconFlank: Privilege Escalation PoC Abusing CrowdStrike Falcon's Macro Removal Process

FalconFlank: Privilege Escalation PoC Abusing CrowdStrike Falcon's Macro Removal Process

1
Comments
7 min read
BREEZE COMET: Breaching Financial Systems and Executing Fraudulent Transfers Using mTLS Credentials

BREEZE COMET: Breaching Financial Systems and Executing Fraudulent Transfers Using mTLS Credentials

Comments
8 min read
Elementor Pro CVE-2026-32475: Active Exploitation of PHP Web Shell via Array Validation Bypass

Elementor Pro CVE-2026-32475: Active Exploitation of PHP Web Shell via Array Validation Bypass

Comments
7 min read
Coder Registry Compromise: Malicious Server Added to Cloudflare Pool to Distribute Malicious Terraform Modules

Coder Registry Compromise: Malicious Server Added to Cloudflare Pool to Distribute Malicious Terraform Modules

Comments
8 min read
NetScaler CVE-2026-19490: Attack Attempts Matching Authentication Bypass PoC Observed

NetScaler CVE-2026-19490: Attack Attempts Matching Authentication Bypass PoC Observed

1
Comments
7 min read
Intrusion Activity in Latin America: LLM Trial and Error and SOCKS5 Relay Operations

Intrusion Activity in Latin America: LLM Trial and Error and SOCKS5 Relay Operations

1
Comments
9 min read
Chrome CVE-2026-85046: V8 Type Confusion Vulnerability Actively Exploited

Chrome CVE-2026-85046: V8 Type Confusion Vulnerability Actively Exploited

2
Comments 1
6 min read
ArubaOS-CX CVE-2026-73749: Unauthenticated RCE via Input Processing Flaw in Daemon

ArubaOS-CX CVE-2026-73749: Unauthenticated RCE via Input Processing Flaw in Daemon

Comments 1
7 min read
CISA Adds Seven Known Exploited Vulnerabilities to Catalog: AI Infrastructure, Python Web Frameworks, SonicWall, VoIP, and Artifactory

CISA Adds Seven Known Exploited Vulnerabilities to Catalog: AI Infrastructure, Python Web Frameworks, SonicWall, VoIP, and Artifactory

Comments
7 min read
All-in-One WP Migration CVE-2026-19949: From Second-Order SQL Injection on Restore to Site Takeover

All-in-One WP Migration CVE-2026-19949: From Second-Order SQL Injection on Restore to Site Takeover

Comments
6 min read
AI Experiment: Porting a PLC Exploit Takes Hours and Hundreds of Dollars

AI Experiment: Porting a PLC Exploit Takes Hours and Hundreds of Dollars

1
Comments
5 min read
Exploitation of JFrog Artifactory CVE-2026-82329: Unauthenticated Administrator Token Generation

Exploitation of JFrog Artifactory CVE-2026-82329: Unauthenticated Administrator Token Generation

1
Comments
5 min read
Exploitation of Langflow CVE-2026-0768: From Unauthenticated Root RCE to Secret Theft and Lateral Movement

Exploitation of Langflow CVE-2026-0768: From Unauthenticated Root RCE to Secret Theft and Lateral Movement

1
Comments
5 min read
đź‘‹ Sign in for the ability to sort posts by relevant, latest, or top.