Official intelligence summary

HAIJA INTEL REPORT

Generated 01/09/2026, 09:47. Pipeline: Europe/Belgrade. Regular sources favor exploit, blog, red-team, and attack-path content. CVE items only stay with exploit signal.
Total items15
Regular sources5
Tweets / X10
Threshold0.62
You can save this report in your browser with the favorite button. If you need a shared favorite list, use the CLI helper.

Tweets / X

10 items
@TheDFIRReport avatar
TheDFIRReport @TheDFIRReport
31 Aug, 19:45 · core
0.46
Students: investigate a real intrusion, on us. We're giving away a limited number of free seats to the next DFIR Labs Digital Forensics Challenge for students anywhere in the world. Real logs, real tradecraft, 4 hours, 20+ questions, with live support in our Discord
tweet mediatweet media
@pdiscoveryio avatar
pdiscoveryio @pdiscoveryio
31 Aug, 20:02 · secondary
0.34
Benchmark scores are a false flag. @KoyalwarTarun , AI Security Researcher at PD, ran open and closed models against 54 black-box web targets. He gave them no source code, hints, or methodology. Then he read every run by hand instead of scoring it. He's covering what he found
tweet mediatweet media
@Synack avatar
Synack @Synack
31 Aug, 19:27 · secondary
0.34
AI can dramatically increase the scale of pentesting. But where should you not trust AI alone? Complex attack chains and business logic still require the nuanced judgment of elite human red teamers. Learn how to safely balance AI scale with human expertise in our latest guide:
tweet media
@vxunderground avatar
vxunderground @vxunderground
31 Aug, 21:52 · secondary
0.24
I've been reverse engineering this NodeJS + Java malware payload for over 12 hours now. This malware is obfuscated using a commercial obfuscator, and I am inexperienced with Java reverse engineering, so this has been very painful. I may motivated by my disdain for this goop
tweet mediatweet media
@vxunderground avatar
vxunderground @vxunderground
31 Aug, 04:14 · secondary
0.24
You can actually learn a lot about malware and reverse engineering if you use AI to expand your knowledge base, ask questions as you go, and test and verify what happens yourself But some dorks don't do that, they just slap the slop button and drool
tweet media
@vxunderground avatar
vxunderground @vxunderground
31 Aug, 04:12 · secondary
0.24
Opening social media to see some dork reverse engineering using Claude and Claude missing a bunch of important goop because the person using Claude doesn't actually know anything about malware or reverse engineering and their post is all slop
tweet mediatweet media
@vxunderground avatar
vxunderground @vxunderground
31 Aug, 02:32 · secondary
0.24
> be me > get dm > "smelly i found goop" > wtf i love goop (malware) > fake cloudflare download page > tries to convince roblox nerds its robux > haha_classic.gif > look inside > downloads powershell script > curl file > redirects, fails a bunch > curl file again, but ask to not
tweet mediatweet media
@pdiscoveryio avatar
pdiscoveryio @pdiscoveryio
31 Aug, 18:54 · secondary
0.20
Can Neo replace DAST and SAST? Patrick explains how Neo automates security testing. Plugged In With Neo, Episode 1 is now live! See how Neo handles security testing with Fast and Thorough modes, target setup, custom agents, dynamic tools, Autopilot, and more. CHAPTERS: 00:00 Welc
tweet mediatweet media
@nahamsec avatar
nahamsec @nahamsec
31 Aug, 13:24 · core
0.20
New course on @hackinghub_io with @amrelsagaei , and we teamed up with @CaidoIO to make it even better First 100 people who sign up through the link get a free month of Caido. https:// hhub.io/caidoforhackers I'll also giveaway one free seat to whoever comments under this tweet.
tweet mediatweet media
@mrgretzky avatar
mrgretzky @mrgretzky
31 Aug, 05:09 · core
0.20
This is amazing! Well done! BREAKING: A self-propagating worm has swarmed social media. Over ONE MILLION accounts affected. The FBI has RAIDED the perpetrator. And this is just the BEGINNING. Cross-site scripting attacks are UNSTOPPABLE. Every website will be hacked. We must BAN
tweet media

Regular sources

5 items
1.00general · 31 Aug, 08:00helpnetsecurity.comWild exploit

What vulnerability prioritization looks like when KEV, EPSS, and CVSS disagree

In this Help Net Security interview, Dr. Joye Purser, Global Field CISO at Cohesity, explains how to rank vulnerabilities when KEV, EPSS, and CVSS point in different dir…

0.92general · 31 Aug, 12:00unit42.paloaltonetworks.comAttack path

Spring Ring: An Inside Look at Voice Phishing Campaigns in Microsoft Teams

Learn how the Spring Ring campaign abuses Microsoft Teams and voice phishing to deploy malware and target enterprise domain controllers. The post Spring Ring: An Inside …

0.89exploit · 31 Aug, 17:252 mentionsseclists.org

Re: Fwd: [Announce] Libgcrypt 1.12.3 released

Posted by Werner Koch on Aug 31 Hi Sam! On Mon, 31 Aug 2026 14:09, Sam James said: Fixed bugs are always public. In case we accidently missed to list the restriction, pl… | Posted by Sam James on Aug 31 I can't reach GnuPG's bug tracker at the moment so I can't check the mentioned bugs (if they're even public, I don't know) to see if they h…

0.89exploit · 31 Aug, 17:22seclists.org

libksba-1.8.1 fixes a possible CMS parser infinite loop

Posted by Sam James on Aug 31 From libksba-1.8.0 vs libksba-1.8.1: https://dev.gnupg.org/T8253 The fix is: commit 06720f9b16a172404f49089cbb6eb95e4344f562 Author: NIIBE …

0.84general · 31 Aug, 07:00helpnetsecurity.com

AI AppSec tools agree on just 5% of security findings

Software vulnerabilities are turning into exploits within hours, and application security teams carry patch backlogs that go back years. Top types of viable application …