Skip to content
tag — threat-intel

grep -rl "threat-intel" ./articles

#threat-intel

6 articles

The AI picked 170,000 targets — every break-in used a bug from years ago

2026-08-24Security

Cisco Talos found an exposed directory belonging to UAT-10147 and pulled out target lists of roughly 170,000 URLs, AI tooling across the whole attack lifecycle, and a cross-platform implant called SPECTRE that unlinks EDR callbacks in the kernel using two vulnerable drivers from 2019 and 2021.

The malware reads its orders out of an FTP welcome message, before it even logs in

2026-08-23Security

MalwareHunterTeam spotted the technique in July and SOCRadar says it is still running. A phishing ZIP drops a shortcut file, the shortcut connects to an FTP server and takes commands from the greeting banner, and either E4del or PINHOLE lands. Novel — and SOCRadar notes that being novel is also what makes it visible.