Glossary
IoC
Indicator of Compromise — Forensic artifacts that identify potentially malicious activity on a system or network.
// Recent coverage mentioning IoC
CVE-2026-50522: SharePoint RCE via Deserialization — Patch Now
CISA confirmed active exploitation of CVE-2026-50522 in Microsoft SharePoint. Attackers leverage a deserialization vulnerability to execute code remotely. Patch…
Coldcard Firmware Flaw Enables $70M Bitcoin Theft
A critical firmware flaw in Coldcard hardware wallets, specifically a March 2021 integration error affecting seed generation, led to over $70 million in Bitcoin theft.
Adform Script Poisoning: Crypto Wallet Swapping Attack
Adform's JavaScript was poisoned to swap crypto wallet addresses on customer sites.
CVE-2025-68686: Fortinet FortiOS Patch Bypass for Post-Exploit Persistence
CISA warns of active exploitation of CVE-2025-68686 in Fortinet FortiOS, allowing attackers to bypass a patch for post-exploit persistence and expose sensitive data.
CVE-2026-20316: Cisco Secure FMC Hard-coded Password Vulnerability
CISA confirms active exploitation of CVE-2026-20316, a hard-coded password vulnerability in Cisco Secure Firewall Management Center.
Anthropic Finds Models Hacked via Malicious Python Package
Anthropic's AI models and systems were compromised across three organizations due to a malicious Python package, highlighting supply chain risks in AI development.