Official intelligence summary

HAIJA INTEL REPORT

Generated 07/08/2026, 09:40. Pipeline: Europe/Belgrade. Regular sources favor exploit, blog, red-team, and attack-path content. CVE items only stay with exploit signal.
Total items15
Regular sources9
Tweets / X6
Threshold0.62
You can save this report in your browser with the favorite button. If you need a shared favorite list, use the CLI helper.

Tweets / X

6 items
@SpecterOps avatar
SpecterOps @SpecterOps
06 Aug, 21:41 · core
0.48
Over on Arsenal Station 4 @ne0nd0g is showing off Sage, an open-source, AI-powered virtual agent for the Mythic C2 framework that uses a multi-agent system to autonomously operate Mythic and its agents running on compromised hosts. Stop over to learn more!
tweet mediatweet media
@mrgretzky avatar
mrgretzky @mrgretzky
06 Aug, 21:58 · core
0.34
If you're at BH, make sure to check out @SkelSec 's booth and ask him for a demo. First time having a booth at @BlackHatEvents and the experience so far is eyeopening. Anyhow, if you are interested in internal network pentest tooling check us out at booth 6312, ppl who understand
@mrgretzky avatar
mrgretzky @mrgretzky
06 Aug, 20:28 · core
0.34
If you're at Black Hat, check out this booth. Probably the only one where they deliver what they say too . First time having a booth at @BlackHatEvents and the experience so far is eyeopening. Anyhow, if you are interested in internal network pentest tooling check us out at booth
@mrgretzky avatar
mrgretzky @mrgretzky
06 Aug, 03:35 · core
0.34
Slides from my today's talk at #BlackHatUSA2026 : "Breaking the Seal: Static Deobfuscation of Compiled #V8 JavaScript Bytecode #Malware" : https:// speakerdeck.com/hshrzd/breakin g-the-seal-static-deobfuscation-of-compiled-v8-javascript-bytecode-malware … // #BHUSA #BlackHat2026
tweet mediatweet media
@hdmoore avatar
hdmoore @hdmoore
06 Aug, 23:51 · secondary
0.32
The best part of BSidesLV/BlackHat/DEFCON is getting to meet the people you admire. I got a chance to nerd out with Thai Duong of http:// calif.io today (photo proof!). Thai and team just posted their latest work - 3 remote exploits in FreeBSD: https:// blog.calif.io/p/the-taking
tweet mediatweet media
@SpecterOps avatar
SpecterOps @SpecterOps
06 Aug, 00:38 · core
0.32
Now underway: @MGrafnetter is presenting his latest passkey research at #BHUSA, examining where real-world implementations can fall short and demonstrate several newly discovered attacks.
tweet mediatweet media

Regular sources

9 items
1.00exploit · 06 Aug, 21:40seclists.org

CL.0 desync in www.microsoft.com

Posted by shed riot on Aug 06 # Summary I reported the issue to the Microsoft Security Response Center twice: * VULN-165381, MSRC case 102964 * VULN-165876, MSRC case 10…

1.00exploit · 06 Aug, 21:36seclists.orgPoC

CVE-2026-15013 - miniOrange SAML SSO <= 5.4.3 Unauthenticated Authentication Bypass (PoC)

Posted by Öner Efe Güngör on Aug 06 Hello Full Disclosure, I'd like to share an independent lab Proof-of-Concept for CVE-2026-15013. ### CVE-2026-15013 - miniOrange SAML…

1.00exploit · 06 Aug, 21:34seclists.orgTradecraft

[KIS-2026-16] Telenia Software TVox <= 26.5.3 (nice) Local Privilege Escalation Vulnerability

Posted by Egidio Romano on Aug 06 ------------------------------------------------------------------------------- https://www.teleniasoftware.com [-] Affected Versions: …

1.00exploit · 06 Aug, 21:34seclists.orgRCE

[KIS-2026-13] vBulletin <= 6.2.1 (runMaths) Remote Code Execution Vulnerability

Posted by Egidio Romano on Aug 06 ----------------------------------------------------------------- https://www.vbulletin.com [-] Affected Versions: Version 5.7.5 and pr…

1.00exploit · 06 Aug, 21:314 mentionsseclists.org

[SYSS-2026-050]: DICOM Toolkit (DCMTK) - Integer Overflow or Wraparound (CWE-190)

Posted by Matthias Deeg via Fulldisclosure on Aug 06 Advisory ID: SYSS-2026-050 Product: DCMTK (DICOM ToolKit) Manufacturer: OFFIS e.V. / DCMTK Community Affected Versio… | Posted by Matthias Deeg via Fulldisclosure on Aug 06 Advisory ID: SYSS-2026-049 Product: DCMTK (DICOM ToolKit) Manufacturer: OFFIS e.V. / DCMTK Community Affected Versio… | Posted by Matthias Deeg via Fulldisclosure on Aug 06 Advisory ID: SYSS-2026-048 Product: DCMTK (DICOM ToolKit) Manufacturer: OFFIS e.V. / DCMTK Community Affected Versio…

1.00exploit · 06 Aug, 21:31seclists.org

[SYSS-2026-047]: DICOM Toolkit (DCMTK) - Path traversal (CWE-22)

Posted by Matthias Deeg via Fulldisclosure on Aug 06 Advisory ID: SYSS-2026-047 Product: DCMTK (DICOM ToolKit) Manufacturer: OFFIS e.V. / DCMTK Community Affected Versio…

1.00general · 06 Aug, 13:30thehackernews.com

AI Recommendation Poisoning: How "Ask AI" Buttons Silently Alter LLM Memory

A new class of prompt injection is spreading across commercial websites. It requires no malware, no stolen credentials, and no zero-day exploit. It abuses a standard fea…

1.00general · 06 Aug, 11:19thehackernews.comTradecraft

Attackers Compile khunt Inside Oracle to Turn SQL Injection Into Windows SYSTEM Access

Attackers broke into an organization's Oracle database through a SQL injection flaw in a public-facing web application, then installed a post-exploitation toolkit withou…

1.00general · 06 Aug, 08:51thehackernews.comRCEWild exploit

CISA Flags TeamCity CVE-2026-63077 RCE Flaw Under Active Exploitation in the Wild

A newly patched security flaw impacting on-premise versions of JetBrains TeamCity has come under active exploitation in the wild, according to the U.S. Cybersecurity and…