Threat Hunt Feed (2026-06-27)
Hacker News: Best
- OS9Map — Thu, 25 Jun 2026 15:01:06 +0000
- Matched TTPs: Software (T1592.002)
BleepingComputer
- FBI: Russian hackers now target Signal backup recovery keys — Fri, 26 Jun 2026 18:06:17 -0400
- Matched TTPs: Malware (T1588.001), Hardware (T1592.001), Email Addresses (T1589.002), Tool (T1588.002), Phishing (T1566), Software (T1592.002), At (T1053.002), Messaging Applications (T1213.005)
- CISA sets urgent deadline to fix Cisco flaw exploited in attacks — Fri, 26 Jun 2026 15:43:06 -0400
- Matched TTPs: Malware (T1588.001), Hardware (T1592.001), Vulnerabilities (T1588.006), Server (T1584.004), Tool (T1588.002), Software (T1592.002), At (T1053.002)
- Polymarket customers lose $3 million in supply-chain attack — Fri, 26 Jun 2026 14:04:12 -0400
- Matched TTPs: JavaScript (T1059.007), Malware (T1588.001), Hardware (T1592.001), Tool (T1588.002), Phishing (T1566), Software (T1592.002), At (T1053.002)
Darkreading
- New Initiative Tackles Security for End-of-Life Open Source Software — Fri, 26 Jun 2026 16:32:30 GMT
- Matched TTPs: Artificial Intelligence (T1588.007), Hardware (T1592.001), Browser Extensions (T1176.001), Vulnerabilities (T1588.006), Software (T1592.002), At (T1053.002)
The Hacker News
- FBI Warns Russian Intelligence Hackers Target Signal Backup Recovery Keys — Sat, 27 Jun 2026 01:08:29 +0530
- Matched TTPs: Malware (T1588.001), Vulnerabilities (T1588.006), Botnet (T1584.005), Proxy (T1090), Tool (T1588.002), Phishing (T1566), Software (T1592.002), Social Media (T1593.001), Credentials (T1589.001), At (T1053.002)
- New SharkLoader Malware Deploys Cobalt Strike in StrikeShark Cyberattacks — Fri, 26 Jun 2026 23:47:46 +0530
- Matched TTPs: Sharepoint (T1213.002), Malware (T1588.001), Malicious File (T1204.002), Vulnerabilities (T1588.006), DLL (T1574.001), Botnet (T1584.005), Masquerading (T1036), Server (T1584.004), Proxy (T1090), Tool (T1588.002), Software (T1592.002), Exploits (T1588.005), Social Media (T1593.001), Credentials (T1589.001), NTDS (T1003.003), At (T1053.002)
- Chinese-Speaking APT Deploys New TinyRCT Backdoor in Southeast Asia Campaign — Fri, 26 Jun 2026 21:51:25 +0530
- Matched TTPs: Malware (T1588.001), Vulnerabilities (T1588.006), DLL (T1574.001), Botnet (T1584.005), AppDomainManager (T1574.014), Web Shell (T1505.003), Server (T1584.004), Proxy (T1090), Tool (T1588.002), Software (T1592.002), Social Media (T1593.001), Credentials (T1589.001), At (T1053.002)
- Amazon Q Developer Flaw Could Let Malicious Repos Run Code via MCP Configs — Fri, 26 Jun 2026 19:23:00 +0530
- Matched TTPs: Malware (T1588.001), Databases (T1213.006), Vulnerabilities (T1588.006), SSH (T1021.004), Botnet (T1584.005), Server (T1584.004), Proxy (T1090), Tool (T1588.002), Software (T1592.002), Social Media (T1593.001), Credentials (T1589.001), At (T1053.002)
- CISA Adds Exploited PTC Windchill RCE Flaw to KEV as Web Shell Attacks Continue — Fri, 26 Jun 2026 18:01:56 +0530
- Matched TTPs: Malware (T1588.001), Vulnerabilities (T1588.006), Botnet (T1584.005), Web Shell (T1505.003), Proxy (T1090), Tool (T1588.002), Software (T1592.002), Social Media (T1593.001), Credentials (T1589.001), At (T1053.002)
- Guardian Agents: The Next Layer of Identity Governance — Fri, 26 Jun 2026 17:00:00 +0530
- Matched TTPs: Malware (T1588.001), Vulnerabilities (T1588.006), Botnet (T1584.005), Proxy (T1090), Tool (T1588.002), Software (T1592.002), Social Media (T1593.001), Credentials (T1589.001), At (T1053.002)
- Miasma Malware Targets npm Packages and GitHub Actions in Supply Chain Attack — Fri, 26 Jun 2026 16:35:45 +0530
- Matched TTPs: Serverless (T1584.007), JavaScript (T1059.007), Malware (T1588.001), Cron (T1053.003), Vulnerabilities (T1588.006), Botnet (T1584.005), Proxy (T1090), Tool (T1588.002), Software (T1592.002), Social Media (T1593.001), Credentials (T1589.001), At (T1053.002), Dead Drop Resolver (T1102.001)
- Microsoft Warns of Photo ZIP Phishing Campaign Targeting Hotels with Node.js Implant — Fri, 26 Jun 2026 14:57:12 +0530
- Matched TTPs: JavaScript (T1059.007), Malware (T1588.001), Vulnerabilities (T1588.006), Botnet (T1584.005), Domains (T1584.001), Proxy (T1090), PowerShell (T1059.001), Tool (T1588.002), Phishing (T1566), Software (T1592.002), Social Media (T1593.001), Credentials (T1589.001), At (T1053.002)
보안뉴스 > SECURITY
- 1000만 명 설치한 크롬 유튜브 광고 제거기, ‘잠복 상태’ 스크립트 삽입 기능 발견 — Fri, 26 Jun 2026 16:14:00 +0900
- Matched TTPs: JavaScript (T1059.007)