Posts 2026 07 08 Daily Hunt Feed - 2026-07-08
Post
Cancel

Daily Hunt Feed - 2026-07-08

Threat Hunt Feed (2026-07-08)

Hacker News: Best

BleepingComputer

  • Chinese hackers develop LONGLEASH malware to expand ORB network — Tue, 07 Jul 2026 14:52:19 -0400
    • Matched TTPs: Sharepoint (T1213.002), DNS (T1071.004), Malware (T1588.001), Hardware (T1592.001), Vulnerabilities (T1588.006), Botnet (T1584.005), Web Shell (T1505.003), Server (T1584.004), Proxy (T1090), Tool (T1588.002), Firmware (T1592.003), Software (T1592.002), Exploits (T1588.005), At (T1053.002)
  • Hidden backdoor in Tenda router firmware grants admin access — Tue, 07 Jul 2026 13:27:22 -0400
    • Matched TTPs: Sharepoint (T1213.002), Malware (T1588.001), Hardware (T1592.001), Server (T1584.004), Proxy (T1090), Tool (T1588.002), Firmware (T1592.003), Software (T1592.002), Credentials (T1589.001), At (T1053.002)
  • Webinar tomorrow: Why modern email attacks require a new approach to defense — Tue, 07 Jul 2026 08:12:20 -0400
    • Matched TTPs: Sharepoint (T1213.002), Artificial Intelligence (T1588.007), Malware (T1588.001), Hardware (T1592.001), Proxy (T1090), Tool (T1588.002), Phishing (T1566), Multi-Factor Authentication (T1556.006), Firmware (T1592.003), Software (T1592.002), Credentials (T1589.001), Impersonation (T1656), At (T1053.002)
  • Microsoft to enable Windows settings backup by default for orgs — Tue, 07 Jul 2026 05:41:19 -0400
    • Matched TTPs: Sharepoint (T1213.002), Malware (T1588.001), Hardware (T1592.001), Proxy (T1090), Tool (T1588.002), Firmware (T1592.003), Software (T1592.002), At (T1053.002)
  • BeyondTrust warns of critical flaws in remote access software — Tue, 07 Jul 2026 04:12:10 -0400
    • Matched TTPs: Sharepoint (T1213.002), Malware (T1588.001), Hardware (T1592.001), Vulnerabilities (T1588.006), Proxy (T1090), Tool (T1588.002), Firmware (T1592.003), Software (T1592.002), At (T1053.002)

Darkreading

  • Big Brand Jobs Scam Targets Marketing Pros’ Google Accounts — Tue, 07 Jul 2026 21:02:29 GMT
    • Matched TTPs: Malvertising (T1583.008), Malware (T1588.001), Hardware (T1592.001), Vulnerabilities (T1588.006), Password Managers (T1555.005), Domains (T1584.001), Masquerading (T1036), Email Addresses (T1589.002), Cloud Services (T1021.007), Phishing (T1566), Software (T1592.002), Credentials (T1589.001), At (T1053.002)
  • Dialogflow CX ‘Rogue Agent’ Flaw Enabled AI Chatbot Data Theft — Tue, 07 Jul 2026 20:36:43 GMT
    • Matched TTPs: Vulnerabilities (T1588.006), Cloud Services (T1021.007), Tool (T1588.002), Phishing (T1566), Software (T1592.002), Credentials (T1589.001), Python (T1059.006), At (T1053.002)

The Hacker News

  • RedWing MaaS Packages Android Bank Fraud as a Telegram Rental Service — Tue, 07 Jul 2026 22:40:15 +0530
    • Matched TTPs: Malware (T1588.001), Vulnerabilities (T1588.006), SSH (T1021.004), Botnet (T1584.005), Control Panel (T1218.002), Proxy (T1090), Tool (T1588.002), Phishing (T1566), Compute Hijacking (T1496.001), Software (T1592.002), Social Media (T1593.001), Credentials (T1589.001), At (T1053.002)
  • DEBULL Tooling Abuses Microsoft Device-Code Flow to Target M365 Accounts — Tue, 07 Jul 2026 20:44:14 +0530
    • Matched TTPs: Adversary-in-the-Middle (T1557), Sharepoint (T1213.002), Artificial Intelligence (T1588.007), JavaScript (T1059.007), Malware (T1588.001), Vulnerabilities (T1588.006), SSH (T1021.004), Botnet (T1584.005), Email Account (T1087.003), Proxy (T1090), Tool (T1588.002), Phishing (T1566), Compute Hijacking (T1496.001), Multi-Factor Authentication (T1556.006), Software (T1592.002), Social Media (T1593.001), Credentials (T1589.001), At (T1053.002)
  • Public GitHub Issue Could Trick GitHub Agentic Workflows Into Leaking Private Repo Data — Tue, 07 Jul 2026 19:34:50 +0530
    • Matched TTPs: Malware (T1588.001), Vulnerabilities (T1588.006), SSH (T1021.004), Botnet (T1584.005), Server (T1584.004), Proxy (T1090), Tool (T1588.002), Compute Hijacking (T1496.001), Software (T1592.002), Social Media (T1593.001), Credentials (T1589.001), At (T1053.002)
  • Court Filing Reveals Windows Device ID Helped FBI Trace Alleged Scattered Spider Hacker — Tue, 07 Jul 2026 18:57:20 +0530
    • Matched TTPs: IP Addresses (T1590.005), Malware (T1588.001), Vulnerabilities (T1588.006), SSH (T1021.004), Botnet (T1584.005), Proxy (T1090), Tool (T1588.002), Phishing (T1566), Compute Hijacking (T1496.001), Software (T1592.002), Social Media (T1593.001), Credentials (T1589.001), At (T1053.002)
  • Writer AI Flaw Could Let Agent Previews Leak Session Tokens Across Tenants — Tue, 07 Jul 2026 18:57:09 +0530
    • Matched TTPs: Artificial Intelligence (T1588.007), Malware (T1588.001), Vulnerabilities (T1588.006), SSH (T1021.004), Botnet (T1584.005), Server (T1584.004), Proxy (T1090), Tool (T1588.002), Compute Hijacking (T1496.001), Software (T1592.002), Social Media (T1593.001), Credentials (T1589.001), At (T1053.002)
  • What Changes When Your Software Supply Chain Includes AI Writing Your Code? — Tue, 07 Jul 2026 17:00:00 +0530
    • Matched TTPs: Malware (T1588.001), Vulnerabilities (T1588.006), SSH (T1021.004), Botnet (T1584.005), Proxy (T1090), Tool (T1588.002), Compute Hijacking (T1496.001), Software (T1592.002), Social Media (T1593.001), Credentials (T1589.001), At (T1053.002)
  • Suspected China-Aligned Hackers Exploit Roundcube Flaws Against Universities — Tue, 07 Jul 2026 14:40:51 +0530
    • Matched TTPs: JavaScript (T1059.007), Malware (T1588.001), Vulnerabilities (T1588.006), SSH (T1021.004), Botnet (T1584.005), Domains (T1584.001), Web Shell (T1505.003), Server (T1584.004), Proxy (T1090), Tool (T1588.002), Phishing (T1566), Compute Hijacking (T1496.001), Software (T1592.002), Social Media (T1593.001), Credentials (T1589.001), At (T1053.002)
  • CERT/CC Warns of Hidden Admin Backdoor in Tenda Router Firmware — Tue, 07 Jul 2026 12:10:47 +0530
    • Matched TTPs: Malware (T1588.001), Vulnerabilities (T1588.006), SSH (T1021.004), Botnet (T1584.005), Server (T1584.004), Proxy (T1090), Tool (T1588.002), Compute Hijacking (T1496.001), Firmware (T1592.003), Software (T1592.002), Social Media (T1593.001), Credentials (T1589.001), At (T1053.002)
  • BeyondTrust Patches Critical Auth Bypass Flaws in Remote Support and PRA — Tue, 07 Jul 2026 10:46:51 +0530
    • Matched TTPs: Artificial Intelligence (T1588.007), Malware (T1588.001), Vulnerabilities (T1588.006), SSH (T1021.004), Botnet (T1584.005), Proxy (T1090), Tool (T1588.002), Compute Hijacking (T1496.001), Software (T1592.002), Social Media (T1593.001), Credentials (T1589.001), At (T1053.002)

데일리시큐 - 최근인기기사

This post is licensed under CC BY 4.0 by the author.