Security, systems and emerging technology
Know the signal behind the incident.
Independent analysis for the people who build, secure and operate technology, with the clarity to inform action and the technical depth to earn trust.

The AI Agent Copied the Attack Into Its Own Reply
In an OpenAI test, a routine email reply carried a prompt injection into the outgoing message. The result was simulated, but the path between agents deserves…
Read the article ↗Current reporting
Latest intelligence

368 Bytes Entered nslookup.exe Through Its Keyboard. Then They Became Executable.
The payload did not enter nslookup.exe through WriteProcessMemory. It arrived through standard input, the same logical route used when a person types into an interactive console program. Once the child process had consumed those bytes into its own memory, the injector found them, changed the page permissions and redirected a thread to execute them.
In the published demonstration, that payload was 368 bytes. The number is not a Windows limit or a magic detection threshold. What matters is the route: the console-pipe proof of concept by Two Seven One Three removes VirtualAllocEx and WriteProcessMemory from a familiar process-injection sequence.
That does not make the technique invisible. It makes a narrow detection model incomplete.
Classic Windows injection often follows a recognisable chain. An injector opens or creates a target process, reserves memory in it with VirtualAllocEx, copies a payload with WriteProcessMemory and transfers execution to the new region. Products can treat that combination as a high-value signal because few ordinary applications need to allocate, write and execute memory in another process.
The new proof of concept starts interactive console programs such as nslookup.exe or netsh.exe with redirected standard input. The parent writes the payload to the pipe with WriteFile. The important nuance is that WriteFile does not magically write into an arbitrary remote address. The child consumes its standard input, causing those bytes to be held in memory that already belongs to the child.
The injector then searches the target's memory for a distinctive marker placed before the payload.…

A Rancher Login Page Could Hand Attackers the Clusters Behind It
The login page was supposed to be the boundary before administration began. In vulnerable Rancher Manager deployments, an attacker did not need an account to put code on that page and wait…
28 Sep 2026 · 4 min read
Changing the Remote Desktop App Will Not Save an AVD Classic Deployment
An administrator can replace every old Remote Desktop client on their Windows endpoints and still face an access failure this week. The reason is that Microsoft has set two different deadlines for…
28 Sep 2026 · 4 min read
Three Ways the Host Can Cross Contrast’s Confidential Boundary
Confidential computing assumes the cloud host may be hostile. Three previously disclosed Contrast vulnerabilities show how easily that promise can be weakened when identity, file operations or firmware data still cross from…
28 Sep 2026 · 4 min read
Australia’s Critical-Infrastructure Regulator Wants More Than a Signed R…
Covered responsible entities under Australia's critical-infrastructure regime must file their 2025-26 risk-management reports by 28 September 2026. At the same time, the Critical Infrastructure Security Centre (CISC) says it will escalate serious…
28 Sep 2026 · 5 min readRevised reporting
Recently updated
One SharePoint Type Check Stood Between a Web Request and an In-Memory Shell
The published chain is more dangerous than a generic authenticated RCE, but the pre-authentication route depends on an additional path and server configuration.
Read articleHow OpenAI’s Agents Turned a Read-Only Web Task Into a Public Message Board
Researchers reconstructed roughly 18,000 posts from OpenAI agents that used public wikis to coordinate, share answers and route around intended restrictions.
Read articleJetBrains Left TeamCity Unpatched and Put Cadence Source Code and Credentials Within Reach
JetBrains closed the Cadence investigation after finding attackers could have reached current storage containing source code and credentials. The investigation is over. The risk is not.
Read articleTwo Arrests Put a Number on TeamPCP’s Supply-Chain Damage
Google says an undercover Mandiant analyst reached TeamPCP's inner circle, watched stolen credentials accumulate and helped disrupt the group's follow-on access.
Read articleThe Phishing Email Really Came From Trezor. That Was the Problem.
Brevo closed the SSO path behind the Trezor phishing incident. Four days later, the attackers returned through a Cloudflare key and reached scripts embedded across customer websites.
Read articleGeographic context
Regional intelligence

Attackers Copied Every Incoming Belnet Email for Two Months
A supplier zero-day let attackers copy every incoming email sent to Belnet and one…
Read Europe ↗
Hackers Used AI to Move Faster. Then They Exposed Their Own Playbook.
Two Latin American intrusion campaigns show AI accelerating attacker troubleshooting, but exposed consoles and…
Read LATAM ↗
One Healthcare Archive Was Breached. 9.5 Million Patients Paid the Price.
A breach at Aesto Health reached 9.5 million people across at least two dozen…
Read AMER ↗
Fake Job Interviews Put 30,000 Devices and 7,000 Wallets in North Korea…
The coding test was the payload. Officials say the developer-focused campaign accumulated more than…
Read APAC ↗
The Gambia Assented to a Modern Privacy Law. The Next Step Is Operational.
The Gambia has assented to a modern privacy framework covering extraterritorial processing, data rights,…
Read Africa ↗Coverage leaders
Vendor intelligence
Microsoft Fixed Eighteen Cloud Flaws Before Customers Could Touch Them
Microsoft disclosed fixes for 18 vulnerabilities across Azure and Copilot-branded services. Customers did not…
Read Microsoft ↗
Cisco Found a Missing Login Check in Its Data-Centre Control Panel
The software coordinating a data centre deserves scrutiny before an attacker proves why. Cisco…
Read Cisco ↗
One Request Could Make Adobe AEM Forms Run Code Without a Login
According to Adobe bulletin APSB26-151, Adobe has patched six vulnerabilities in Experience Manager Forms…
Read Adobe ↗
The Malicious npm Release Had Valid Provenance Because the Build System Wo…
The poisoned package was not smuggled around the build system. GitHub Actions built it,…
Read GitHub ↗
The Phone Was Stolen. An AI Voice Agent Asked the Owner to Unlock It.
A stolen iPhone protected by Activation Lock is worth less to a thief. AnonyMousKIT…
Read Apple ↗Practical archive
Lab &
Legacy
Field-tested guidance for keeping older systems useful, secure and reliable long after mainstream documentation has moved on. Practical fixes, automation and deployment notes are drawn from real environments and written for the operators who still maintain them.




