Official intelligence summary

HAIJA INTEL REPORT

Generated 27/08/2026, 09:44. Pipeline: Europe/Belgrade. Regular sources favor exploit, blog, red-team, and attack-path content. CVE items only stay with exploit signal.
Total items15
Regular sources9
Tweets / X6
Threshold0.62
You can save this report in your browser with the favorite button. If you need a shared favorite list, use the CLI helper.

Tweets / X

6 items
@CrowdStrike avatar
CrowdStrike @CrowdStrike
26 Aug, 19:39 · secondary
0.49
Vulnerability exploitation windows are collapsing. China-nexus adversaries exploited React2Shell within 24 hours of public PoC disclosure. Frontier AI could compress that window even further. See what threat hunters are uncovering: https:// crwdstr.ke/6015B1a4Xx
tweet media
@h4x0r_dz avatar
h4x0r_dz @h4x0r_dz
26 Aug, 10:41 · core
0.42
H4x0r.DZ @h4x0r_dz · 22h [Security] FilteredObjectInputStream allowlist bypass via java.rmi.MarshalledObject with auto-tri... From github.com 3 13 2.8K
tweet mediatweet media
@mrgretzky avatar
mrgretzky @mrgretzky
26 Aug, 05:45 · core
0.42
My @x33fcon talk about Credential Relay Phishing is finally out! Watch me struggle through the live Google phishing demo, a day after the pirate ship party, which deprived me of my last few brain cells. Wrath of demo gods and AI lulz included.
tweet media
@h4x0r_dz avatar
h4x0r_dz @h4x0r_dz
26 Aug, 18:57 · core
0.40
lets goooo Introducing GLM-5.3-Flash - Leading capabilities at a highly competitive price - Natively multimodal with a 1M-token context window - A 320B-A18B model released under the MIT License - Previously previewed as Ox Alpha, running entirely on Chinese AI chips Blog:
tweet media
@Rapid7 avatar
Rapid7 @Rapid7
26 Aug, 16:00 · secondary
0.38
Rapid7 Labs uncovered a crypto scammer's entire working environment - shedding light on phishing panels, voice-dialing scripts, and counterfeit wallets in use by threat actors today. Full explainer on YouTube: https:// r-7.co/3SvoRjC Technical blog: https:// r-7.co/4xban7K
tweet media
@vxunderground avatar
vxunderground @vxunderground
26 Aug, 21:19 · secondary
0.34
Man with user name ‘MrChildPorn’ accused of sharing illicit images of children https:// wsbtv.com/news/trending/ man-with-user-name-mrchildporn-accused-sharing-illicit-images-children/BIMSH5WJCVCUFP5RAXEF2CWFCM/?utm_term=Autofeed&utm_medium=Social&utm_source=Twitter#Echobox=17877
tweet mediatweet media

Regular sources

9 items
1.00exploit · 26 Aug, 19:05seclists.org

graphql-go/graphql <= 0.8.1: quadratic CPU-exhaustion DoS via per-error full-document rescan (GetLocation)

Posted by First name Last name on Aug 26 Hello, This reports an algorithmic-complexity denial-of-service defect in github.com/graphql-go/graphql, affecting all released …

1.00exploit · 26 Aug, 18:46seclists.orgTradecraft

[NotCVE-2026-0010] Barrier 2.4.0 for Windows Unauthenticated IPC Command Execution Allows Local Privilege Escalation to SYSTEM

Posted by advisories on Aug 26 ---------------------------------------------------------------------------- NotCVE Advisory - NotCVE-2026-0010 --------------------------…

1.00exploit · 26 Aug, 17:30seclists.org

WatsonWebserver v7.1.0 HTTP/1 Chunked Request Processing Bypasses MaxRequestBodySize

Posted by Ron E on Aug 26 WatsonWebserver contains an HTTP/1 request body size-limit bypass when processing requests using Transfer-Encoding: chunked. The framework's co…

1.00general · 26 Aug, 16:47bleepingcomputer.comRCEPoC

Hackers target Microsoft SharePoint RCE chain with PoC exploit

Attackers are now targeting a chain of two Microsoft SharePoint vulnerabilities that can allow them to execute arbitrary code on unpatched servers, according to threat i…

1.00general · 26 Aug, 08:27thehackernews.comRCEWild exploit

Critical Gitea RCE Actively Exploited as Reported Attack Drops Miner-Like Payload

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday warned of active exploitation efforts targeting a recently patched critical security flaw imp…

1.00general · 26 Aug, 07:00helpnetsecurity.com

AI vulnerability discovery scores the highest impact of 20 emerging risks

Risk managers, auditors and senior executives at 316 companies spent April and May ranking 20 threats they have not yet felt. AI discovery of cyber vulnerabilities came …

1.00general · 26 Aug, 06:00snyk.ioResearch

Why Your AI Application Is Exposed Snyk

AI applications can pass security scans yet remain exploitable through chained attacks across models, tools, data, and business workflows. Learn how DAST, AI pentesting,…

0.99general · 26 Aug, 15:44thehackernews.comAttack path

NovaCookies Campaigns Abuse Genuine Docusign Notifications to Steal Microsoft 365 Sessions

Cybersecurity researchers have disclosed details of a new adversary-in-the-middle (AitM) phishing toolkit called NovaCookies that's used as a proxy to redirect Microsoft…

0.89exploit · 26 Aug, 17:30seclists.org

Escargot v4.3.0-214-gfaee4437 Unauthenticated Remote Debugger Allows Arbitrary JavaScript Evaluation and Local File Disclosure

Posted by Ron E on Aug 26 An unauthenticated remote debugger vulnerability exists in Escargot v4.3.0-214-gfaee4437 when the application is compiled with ESCARGOT_DEBUGGE…