Advertisement · 728 × 90

Posts by Jack

Preview
Context.ai OAuth Token Compromise | Wiz Blog Compromised Context.ai OAuth tokens enabled attackers to perform a supply chain attack via trusted SaaS integrations. Learn how to assess the risk in your environment and how to prevent the next attac...

A solid article from #Wiz regarding the Vercel incident: www.wiz.io/blog/context...

5 hours ago 0 0 0 0

Our team received a report of intermittent app outages at about 11:40pm PDT on April 15, 2026. They worked through the night to mitigate a sophisticated Distributed Denial-of-Service (DDoS) attack, which intensified throughout the day.

4 days ago 20655 5019 1249 1421
CTI Daily Brief: 2026-04-15 - In-the-wild exploitation of Marimo (CVE-2026-39987) and Nginx UI (CVE-2026-33032); ShinyHunters leaks 13.5M McGraw Hill records 48 reports processed across two correlation batches. Three critical vulnerabilities under active exploitation or requiring urgent customer action (Marimo, Nginx UI, Cisco Webex). ShinyHunters publishe...

Marimo RCE weaponised w/ NKAbuse blockchain botnet via Hugging Face. Nginx UI auth-bypass CVE-2026-33032 actively exploited. ShinyHunters leak 13.5M McGraw Hill records from Salesforce misconfig. UAC-0247 hits Ukraine hospitals
Full brief: intel.overresearched.net/2026/04/16/c...
#Daily #ThreatIntel

4 days ago 1 1 0 0
CTI Monthly Report: March 2026 - TeamPCP Supply Chain Siege, CanisterWorm Iran Wiper, Handala Stryker Intrusion, DarkSword iOS KEV, Ransomware Surge March 2026 saw a historic supply chain campaign by TeamPCP across Trivy, LiteLLM, Checkmarx KICS, Telnyx, Axios, and OpenVSX; the CanisterWorm Kubernetes wiper targeting Iranian infrastructure; Handal...

First CTI Monthly: March 2026, 1,320 reports / 39 batches.

TeamPCP supply-chain siege
CanisterWorm K8s wiper, Iran
Handala wipes 80k Stryker via Intune
DarkSword iOS → KEV
Chrome 0-days, SharePoint RCE

Full brief: intel.overresearched.net/2026/04/16/c...
#Monthly #ThreatIntel #InfoSec

4 days ago 3 1 1 0
CTI Daily Brief: 2026-04-12 - Adobe Acrobat zero-day CVE-2026-34621 added to CISA KEV; DPRK npm package targets Polymarket; FBI/Indonesia dismantle W3LL PhaaS 66 reports processed. Adobe Acrobat/Reader zero-day (CVE-2026-34621) under active exploitation joined CISA KEV alongside six other CVEs. DPRK Lazarus pushes malicious npm package targeting Polymarket ...

Adobe Acrobat zero-day (CVE-2026-34621) added to CISA KEV. DPRK Lazarus npm package targets Polymarket traders. FBI & Indonesia take down W3LL PhaaS.

Full brief: intel.overresearched.net/2026/04/13/c...

#Daily #ThreatIntel #CTI #Lazarus #Ransomware

1 week ago 2 2 0 0
CTI Daily Brief: 2026-04-13 - Microsoft April Patch Tuesday (167 flaws, 2 zero-days incl. actively-exploited SharePoint); Interlock ransomware exploits Cisco FMC zero-day Microsoft April 2026 Patch Tuesday addresses 167 vulnerabilities including an actively-exploited SharePoint spoofing zero-day (CVE-2026-32201) and a publicly-disclosed Defender EoP (CVE-2026-33825). I...

MS April Patch Tuesday: 167 flaws, 2 zero-days SharePoint CVE-2026-32201 actively exploited; Defender CVE-2026-33825 disclosed. Interlock ransomware hits Cisco FMC zero-day
Full brief: intel.overresearched.net/2026/04/14/c...
#Daily #ThreatIntel #CVE #Ransomware #InfoSec #CyberSecurity #PatchTuesday

6 days ago 2 3 0 0
CTI Daily Brief: 2026-04-14 — 15 Critical CVEs in OSS Crypto/Runtime Libraries; Signed Adware Killing AV; Trust Wallet Drainer Campaign 15 critical CVEs disclosed across wolfSSL, XZ Utils, Go runtime, libinput and Handlebars.js; Huntress exposes signed ‘Dragon Boss Solutions’ adware disabling AV on 23,500 hosts; AlienVault flags NWHSt...

15 critical OSS CVEs - wolfSSL (X.509 bypass, TLS 1.3 UAF), XZ Utils, Go, libinput. Huntress: signed "Dragon Boss" adware killed AV on 23,500+ hosts. Trust Wallet USDT drainer + NWHStealer active.
Full brief: intel.overresearched.net/2026/04/15/c...
#Daily #ThreatIntel #CVE #InfoSec

5 days ago 2 1 0 0

We publish hyper-detailed APT reports so defenders can stay ahead and we absolutely should keep doing that.

But also just handing script kiddies a prompt: “move like Fancy Bear”

It seems like the ceiling and the floor are growing ever closer as time goes on with AI.

1 week ago 0 0 0 0

Any particular examples?

2 weeks ago 0 0 0 0

Urgh…

2 weeks ago 0 0 0 0
Advertisement

Even after the editing phase you suddenly then had a brain wave that changes how you could approach the topic and then have to spend an hour weighing up either going back to developing or write it up as a blog post afterwards and make a quick comment at the end stating it as future work

2 weeks ago 0 0 0 0

Create two threat intelligence accounts, one on bsky and the other on X, so that I can provide new threat reports as a feed, check it out at:

BSky - bsky.app/profile/inte...
X - x.com/ORIntelligence

#ThreatIntel #InfoSec

2 weeks ago 1 0 0 0
CTI Daily Brief: 2026-03-30 - Axios npm Supply Chain Compromise Delivers Cross-Platform RAT; CISA Orders Citrix NetScaler Patch; TeamPCP Post-Compromise Activity Escalates High-volume day with 133 reports across 15 sources dominated by the Axios npm supply chain compromise delivering cross-platform RATs, CISA emergency directive for CVE-2026-3055 in Citrix NetScaler, Te...

#threatintel report released highlighting IoC and SOC actions for a number of threats especially, axios. Check it out at: intel.overresearched.net/2026/03/31/c...

2 weeks ago 0 0 0 0

Seeing an obvious improvement to language model processing on the GPU through my threat pipeline, however, there is definitely some elements for future tuning.

1 month ago 1 0 0 0
Preview
Cognitive CTI - Building a Scalable, Self-Hosted Threat Intelligence Pipeline with AI Introduction Threat Intelligence is a fairly superfluous component to security for most individuals or organisations that are growi...

Finished writing my next blog post. It focuses on engineering a scalable platform that leverages local language models to summarise and correlate threat feeds.

Check it out at: blog.overresearched.net/2026/03/cogn...

#Infosec #ThreatIntel #OpenSource #LocalLLM #N8N #OpenCTI #CyberSecurity

1 month ago 2 0 0 0

With the range of frameworks out there these days what do I even go for as a solo dev with an ambitious project?

- RoR?
- Django?
- NextJS?
- Laravel?

Decisions...

1 month ago 1 0 0 0
Preview
WannaCry — Campaign Intelligence, Reverse Engineering, and Detection During 2017, WannaCry became a national headline for the United Kingdom and many other nations targeting companies, such as FedEx, Honda, Ni...

Finished writing my first post for my new blog, it focuses on WannaCry but across multiple different areas of the campaign. This was to brush the rust off my writing and malware analysis skills.

#WannaCry #MalwareAnalysis #ReverseEngineering

blog.overresearched.net/2026/02/wann...

1 month ago 1 0 0 0
Advertisement

The mental change from running a #proxmox homelab to a #k3s has been something. I finally broke through and got PiHole installed and running.

11 months ago 3 0 0 0
Preview
Look Back At Every Default Ubuntu Wallpaper, Ever This is every Ubuntu default wallpaper, presented in one scrollable post. Come look back over 19 years of iconic backgrounds, all unique to Ubuntu.

Running through the old #Ubuntu wallpapers and seeing breezy Badger sent me back to the first installation of a Linux distro: www.omgubuntu.co.uk/every-ubuntu...

11 months ago 3 0 0 0
Preview
Learn JavaScript, React, and TypeScript to Node.js, Fullstack, and Backend Advance your web development and software engineering skills from front-end to full-stack!

An area that could have applications would be towards data visualisation. I found the intersection between d3.js and react quite a deep area and to get it right is a journey.

Frontendmasters.com has two or three courses by Shirley Wu who covers basics of d3 and then the integration with React.

11 months ago 2 0 0 0

Any particular domain you are interested about, security, performance, or wanting to go broad?

11 months ago 1 0 1 0
Preview
React Compiler RC – React The library for web and native user interfaces

React Compiler RC is now available! We've added support for swc and are working towards a stable release react.dev/blog/2025/04...

11 months ago 108 26 0 3

Discord does not let me send a message over a particular word count, which is fairly annoying when trying to send snippets of code to a friend. Having to resort to images as a work around is fairly annoying.

To paraphrase, a screenshot is worth 1000+ chars after all.

or I could use nitro...

11 months ago 0 0 0 0
Preview
Bluesky Starter Packs: Find the Best Bluesky Accounts Find the best Bluesky accounts to follow with curated starter packs. Browse 35,000+ packs across tech, art, music & more.

Damn, the blueskystarter packs are a godly: blueskystarterpack.com

11 months ago 1 0 0 0

An interesting concept, I would love for forums to come back into the mainstream.

11 months ago 3 1 0 0
Preview
rendezvous with cassidoo A weekly newsletter with web development content for everyone, from beginners to pros.

Got a fresh off the presses newsletter issue coming your way! 🗞️

This is my last issue before I give birth later this week (!) so come one, come all!

Check out the archive and subscribe here:
cassidoo.co/newsletter/

11 months ago 72 5 20 0
Advertisement

An interesting concept, I would love for forums to come back into the mainstream.

11 months ago 3 1 0 0

That cathartic feeling of cleaning out the dust from your desktop case, slapping the side panel back as if you were larping as Phil swift with flex tape.

11 months ago 0 0 0 0

Finally having some time to catch-up on some study, man React 18 ~> React 19 has made some leaps forward in the ecosystem.

#react #webdev

1 year ago 0 0 0 0

#Astro is incredibly enjoyable to start from scratch and get something out of the door.

1 year ago 0 0 0 0