$ briefings
Briefings
Periodic SITREPs that compress the week's vulnerability and exploit news into a single readable digest, sourced throughout.
40
editions
230
items covered
37
critical flags
Latest edition·September 29, 2026
Sep 29: Citrix KEV Deadline, PeopleSoft Live Campaign
CISA's Citrix patch deadline is September 30. ShinyHunters is running a live Oracle PeopleSoft exploit campaign. Plus: JADEPUFFER on Azure, and a $387M crypto heist closed out.
1h3m
- CISA added CVE-2026-88771 and CVE-2026-88772 to the KEV catalog with a federal patch deadline of September 30. Both allow unauthenticated RCE against NetScaler ADC and Gateway.
- ShinyHunters retooled its CVE-2026-35273 exploit and launched a broader campaign against Oracle PeopleSoft, per a Google Threat Intelligence advisory published September 28.
- JADEPUFFER-linked operators are using compromised Azure service principals with excessive permissions to delete cloud resources across targeted tenants.
- Obot AI platform patched three CVEs including an unauthenticated Docker socket exposure. Bitget resumed withdrawals after a $387.5M DPRK-linked theft.
Read full briefing →
$ archive
September 2026
Sep 22: Cl0p Extorted, CrowdSec Source Code, BigCommerce4 itemsSep 21: REDCap 9.8 RCE, Keycloak IAM, Jade Sleet Backdoors5 itemsWeek in Review: Sep 14-20, 20266 itemsSep 18: Two CVSS 10 Zero-Days Active, Pixel Deadline Tomorrow5 itemsSep 17: Cisco SEG Deadline Today, GitLab Still Exploited5 itemsSep 16: Cisco SEG in KEV, Apple 200 Patches, Japan VPN Breach5 itemsWeek in Review: Sep 7-13, 20266 itemsSep 15: ScreenConnect Worm, Revolut Breach, GrayRabbit4 itemsSep 11: Cisco FMC, Fortinet Hit KEV; Sept. 12 Deadline5 itemsWeek in Review: Sep 1-6, 20265 itemsSep 7: N-central Exploited, MikroTik Hijacked4 itemsSep 3: Elasticsearch ML RCE, Seven KEV Additions, FalconFlank PoC4 itemsSep 2: SonicWall Zero-Days, Langflow Theft, Sality Down5 itemsSep 1: PaperCut KEV, McKesson Deadline, MAG Claim5 items
4m
1c1h3m
1c3h2m
3c1h1m
2c1h2m
2c1h2m
3c3h
1c1h2m
2c1h2m
1c2h2m
2c2m
1c2h1m
1c1h3m
1h4m
August 2026
Aug 31: Elixir CVE Wave, ToolJet 9.9, Ransomware Claims Spike5 itemsWeek in Review: Aug 24-30, 20266 itemsAug 24: StackGres 9.9, GitLab RCE, Zimbra KEV6 itemsAug 17–23: Entra ID CVSS 10 KEV, Citrix, RedC27 itemsAug 17: Clop/GE/Philips, Azure claim, ShieldBreak unpatched5 itemsAug 3–10: Four KEV Additions, Metabase CVSS 107 items
1c4m
1c2h3m
1c1h4m
1c1h5m
5m
2c5m
July 2026
July 29: VMware trio, Cisco FMC KEV, Minnesota water attack7 itemsJuly 28 evening: Check Point MDS scope, vBulletin3 itemsJuly 28: TeamCity RCE, OpenWrt critical, AI sandbox escape6 itemsJuly 27 evening: Certighost PoC, KEV adds, Fairlife5 itemsJuly 27 desk: TELESHIM Telegram C2, supply chain cooldown4 itemsJuly 25 desk: Fastjson CVE-2026-16723, GitLab RCE PoC7 itemsWeek in Review: AI Ops, Certighost, M365 Failure9 itemsJuly 23-24 desk: AI agents weaponized, Clop active12 itemsJuly 21-22 desk: Three KEVs, SharePoint stripped11 itemsWeek in Review: KEV, Certificates, and the Old Debt5 itemsWeekend desk: wp2shell in the open, 27 DigiCert EV certs8 itemsDesk briefing: KEV +3 in 24 hours, Fairlife goes dark8 itemsDesk briefing: KEV grew by four, SonicWall deadline is Friday7 itemsDesk briefing: Gatekeeper cleared it, and that is the story5 itemsDesk briefing: the fire drill this week is on the routers5 itemsWeek in Review: AI Attacks Stopped Being Theoretical5 itemsDesk Briefing: the install-time gate is not the gate you think it is5 itemsWeek in Review: DPRK Broke Supply Chains, an LLM Ran Ransomware5 items
3c2h2m
3m
1c2h3m
2h3m
1c3m
1c6m
2h7m
12m
1c6h4m
2h3m
2h6m
2c1h5m
2c2h3m
5m
2h3m
1h4m
2h3m
1h4m
Archive begins June 29, 2026.