Skip to content
Saturday, June 27, 2026
  • Splunk Enterprise RCE Shows SIEM Servers Are Tier-Zero Infrastructure
  • NAIC Breach Shows Why PeopleSoft Internet Exposure Needs Immediate Review
  • Hospitality Photo-ZIP Campaign Shows Front Desk Workflows Are Initial Access Paths
  • CL-STA-1062 Shows Critical Infrastructure Intrusions Still Start With Web Shells
Register / Sign Up
RSS
Bulwark Black LLC

Bulwark Black LLC

Cyber Security | Software Development | Consulting Services

  • Cyber Threat Intelligence
    • Russian Cyber Threat Intelligence
      • Russian Actors and Alias’s 09JAN2024
    • Chinese Cyber Threat Intelligence
      • Chinese Actors and Alias’s
    • North Korean Cyber Threat Intelligence
      • North Korean Actors and Alias’s
    • Iranian Cyber Threat Intelligence
      • Iranian Actors and Alias’s
    • Malware
      • Top 200 Malware of January 2024
    • Global Cyber Threat Intelligence
      • Global Threat Actors
  • Defensive Security
    • Detection
  • Offensive Security
    • Bug Bounty
    • Offensive Devices / Tactics
    • Red Teaming
  • AI (Artificial Intelligence)
    • AI (General)
  • Privacy & Security
    • Becoming Self Sufficient
    • Digital Assets
    • Makes you Think
    • Social Engineering
  • Research Papers
  • Training / Projects
    • Projects
    • Training
  • Blog
    • Cyber Security Blog
  • Contact
  • About
  • Donations
  • Products
    • VA Disability Calc & Track App
  • Services
  • Operational Technology (OT)
  • Splunk Enterprise RCE Shows SIEM Servers Are Tier-Zero Infrastructure
  • NAIC Breach Shows Why PeopleSoft Internet Exposure Needs Immediate Review
  • Hospitality Photo-ZIP Campaign Shows Front Desk Workflows Are Initial Access Paths
  • CL-STA-1062 Shows Critical Infrastructure Intrusions Still Start With Web Shells
Register / Sign Up
RSS
Bulwark Black LLC

Bulwark Black LLC

Cyber Security | Software Development | Consulting Services

  • Cyber Threat Intelligence
    • Russian Cyber Threat Intelligence
      • Russian Actors and Alias’s 09JAN2024
    • Chinese Cyber Threat Intelligence
      • Chinese Actors and Alias’s
    • North Korean Cyber Threat Intelligence
      • North Korean Actors and Alias’s
    • Iranian Cyber Threat Intelligence
      • Iranian Actors and Alias’s
    • Malware
      • Top 200 Malware of January 2024
    • Global Cyber Threat Intelligence
      • Global Threat Actors
  • Defensive Security
    • Detection
  • Offensive Security
    • Bug Bounty
    • Offensive Devices / Tactics
    • Red Teaming
  • AI (Artificial Intelligence)
    • AI (General)
  • Privacy & Security
    • Becoming Self Sufficient
    • Digital Assets
    • Makes you Think
    • Social Engineering
  • Research Papers
  • Training / Projects
    • Projects
    • Training
  • Blog
    • Cyber Security Blog
  • Contact
  • About
  • Donations
  • Products
    • VA Disability Calc & Track App
  • Services
  • Operational Technology (OT)
  • Home
  • General CTI
  • Page 3

General CTI

Editorial cybersecurity illustration of authentication-stack compromise and critical infrastructure defense for Velvet Ant Operation Highland.
  • Chinese Cyber Threat Intelligence
  • Cyber Security Blog
  • General CTI
  • Privacy & Security

Velvet Ant Shows Authentication Infrastructure Is Critical Infrastructure

acint2 weeks ago04 mins

Velvet Ant’s Operation Highland shows why PAM, OpenSSH, jump hosts, and proxy paths deserve the same defensive priority as identity providers and domain controllers.

Read More
Editorial cybersecurity illustration showing poisoned package artifacts moving through a CI/CD pipeline while defenders isolate untrusted code from AI scanners.
  • AI (General)
  • Cyber Security Blog
  • General CTI
  • Malware
  • Privacy & Security

Shai-Hulud Shows AI Package Scanners Need Prompt-Injection Boundaries

acint2 weeks ago04 mins

Zscaler ThreatLabz says the Shai-Hulud campaign has expanded across package ecosystems and introduced prompt-injection tactics aimed at automated AI security triage. The defense lesson is simple: treat package content as hostile input, even when an LLM is doing the review.

Read More
Editorial cybersecurity illustration of a government breach notification portal being checked for fake disclosure submissions.
  • Cyber Security Blog
  • General CTI
  • Privacy & Security
  • Social Engineering

Maine Breach Portal Hoax Shows Disclosure Systems Need Verification Controls

acint2 weeks ago03 mins

Maine took its public breach notification database offline after fake disclosures were published. The lesson for SMBs and government contractors: public trust workflows need verification, moderation, and correction controls.

Read More
Editorial cybersecurity illustration showing Portainer container management risk and host takeover controls.
  • Cyber Security Blog
  • General CTI
  • Privacy & Security

Portainer CVE-2026-33590 Shows Container Admin Tools Need Least Privilege Defaults

acint2 weeks ago03 mins

intWave disclosed CVE-2026-33590 in Portainer, where insecure default Docker security settings could let regular users escalate toward host takeover. Here is what SMBs and government contractors should lock down.

Read More
Editorial cybersecurity illustration showing an AI browser extension side panel exposing authenticated web sessions.
  • AI (General)
  • Cyber Security Blog
  • General CTI
  • Privacy & Security

MaXSS and Spyder Show AI Browser Extensions Are an Endpoint Risk

acint2 weeks ago05 mins

Rebora disclosed MaXSS and Spyder, two critical flaws in AI browser-extension side panels. The lesson for SMBs and government contractors: browser extensions are endpoint software with identity-session reach and need governance.

Read More
Cyber threat intelligence illustration of defenders monitoring ERP and PeopleSoft administrative endpoints under active exploitation.
  • Cyber Security Blog
  • General CTI

ShinyHunters PeopleSoft Exploitation Shows ERP Admin Endpoints Are Breach Surface

acint2 weeks ago03 mins

GTIG and Mandiant report active ShinyHunters exploitation of Oracle PeopleSoft CVE-2026-35273. Here is what defenders should lock down, hunt, and segment now.

Read More
Abstract cybersecurity illustration of AI agent memory, database checkpoints, and remote code execution risk.
  • AI (General)
  • Cyber Security Blog
  • General CTI
  • Privacy & Security

LangGraph Checkpointer Bugs Show AI Agent Memory Is Backend Attack Surface

acint2 weeks ago04 mins

Check Point Research disclosed LangGraph checkpointer flaws that could turn user-controlled state-history filters into SQL injection, unsafe deserialization, and remote code execution. The lesson for SMBs and government contractors: AI agent memory is application infrastructure, not magic middleware.

Read More
Editorial cybersecurity illustration of a legacy financial server breach and ransomware data theft risk.
  • Cyber Security Blog
  • General CTI
  • Malware
  • Privacy & Security

IMA Diligence Breach Shows Legacy Servers Are Still Third-Party Risk

acint2 weeks ago03 mins

A reported IMA Diligence breach affecting more than 525,000 people shows why legacy third-party servers need ownership, monitoring, decommissioning, and data-risk review.

Read More
Editorial cybersecurity illustration of IoT botnet activity spreading through vulnerable routers and embedded devices.
  • Cyber Security Blog
  • General CTI
  • Malware

C0XMO Shows IoT Botnets Are Still an Edge Exposure Problem

acint3 weeks ago04 mins

Fortinet researchers detailed C0XMO, a Gafgyt variant spreading through DD-WRT and other exposed devices. Here is what SMBs and government contractors should lock down before compromised routers become DDoS infrastructure.

Read More
Editorial cybersecurity illustration of a monitored file transfer server under malicious traffic pressure.
  • Cyber Security Blog
  • General CTI
  • Privacy & Security

SolarWinds Serv-U Exploitation Shows File Transfer Availability Is Security

acint3 weeks ago03 mins

CISA added actively exploited SolarWinds Serv-U CVE-2026-28318 to KEV. Here is what SMBs and government contractors should do about file-transfer availability risk.

Read More
  • 1
  • 2
  • 3
  • 4
  • 5
  • …
  • 17

File Search

2
ThumbNameSizeDate
Thumb IOCs_YARA_TTPs_Posted_Articles/ IOCs_YARA_TTPs_Posted_Articles

IOCs_YARA_TTPs_Posted_Articles

Open 99.71 KB 2024-01-12 January 12, 2024 2024-03-22 March 22, 2024
21 Items
99.71 KB
March 22, 2024

0

0bd2c4ab56

2026 Powered By BlazeThemes.