Official intelligence summary

HAIJA INTEL REPORT

Generated 16/06/2026, 09:19. Pipeline: Europe/Belgrade. Regular sources favor exploit, blog, red-team, and attack-path content. CVE items only stay with exploit signal.
Total items15
Regular sources2
Tweets / X13
Threshold0.62
You can save this report in your browser with the favorite button. If you need a shared favorite list, use the CLI helper.

Tweets / X

13 items
@Sysdig avatar
Sysdig @Sysdig
15 Jun, 16:30 · secondary
0.48
New from Sysdig TRT: threat actors are framing exploit requests as CTF challenges to jailbreak their own AI tools into writing attack code. The jailbreak leaks. A CVE ID in a User-Agent is now a standalone threat intel signal. Full research: [LINK] #CloudSecurity
tweet mediatweet media
@harmj0y avatar
harmj0y @harmj0y
15 Jun, 12:00 · core
0.46
Timeline of AD CS attack research & Microsoft patches since the ADCS paradigm shift: Certifried Pre-Owned whitepaper by @harmj0y and @tifkin_
tweet mediatweet media
@Mandiant avatar
Mandiant @Mandiant
15 Jun, 23:00 · secondary
0.42
PRC-nexus actor UNC6508 targeted North American research, exploiting REDCap servers to deploy INFINITERED malware. The actor remained undetected for over a year and abused enterprise admin tools for covert data exfil. Analysis, guidance and IOCs ➔ https:// cloud.google.com/blog/t
tweet mediatweet media
@_RastaMouse avatar
_RastaMouse @_RastaMouse
15 Jun, 16:32 · core
0.42
Had a sit down with MSRC, while I can't say full details we had a constructive discussion on the state of things aimed at the following (and remember I'm just the messenger): MSRC handling vulnerability submissions and researcher communication GitHub removal of cybersecurity
@Unit42_Intel avatar
Unit42_Intel @Unit42_Intel
15 Jun, 17:01 · secondary
0.29
Actors weaponize #AI hype: fake LLM domains, branded C2 infrastructure and payment skimmers. We tracked three active campaigns abusing AI lures and infrastructure. Details at https:// bit.ly/3SHlc1D
tweet mediatweet media
@BishopFox avatar
BishopFox @BishopFox
15 Jun, 21:15 · secondary
0.28
PCI DSS scope isn’t limited to traditional network segments anymore. Now cloud infrastructure, SaaS platforms, IAM, and CI/CD pipelines can all play a role in an attack path to the CDE. Derek Rush breaks down how Bishop Fox approaches modern PCI internal penetration testing.
tweet mediatweet media
@brutelogic avatar
brutelogic @brutelogic
15 Jun, 02:48 · secondary
0.24
No pip. No npm. Just curl. reKover maps URLs passively, brute-forces intelligently, then crawls - one Bash script. Free:
tweet media
@Bugcrowd avatar
Bugcrowd @Bugcrowd
15 Jun, 11:54 · secondary
0.22
Most security teams have plenty of findings. What they need is confidence in what to fix first. That’s where a mature bug bounty program starts to look different. Not as another stream of tickets, but as a way to bring trusted hacker insight into the places your team needs more
tweet mediatweet media
@CrowdStrike avatar
CrowdStrike @CrowdStrike
15 Jun, 19:42 · secondary
0.20
Legacy identity models break down when AI agents operate with superhuman speed and access. To secure the agentic enterprise, CrowdStrike introduces Continuous Identity for AI Agents. Instead of trusting an agent indefinitely after a single login, the CrowdStrike Falcon
tweet media
@Wiz_io avatar
Wiz_io @Wiz_io
15 Jun, 16:33 · secondary
0.20
BREAKING: The Wiz AI Agent was tired of all the AI talk. So it took a day off...Rumor has it there's a secret tournament somewhere. Happy World Cup, everyone! May your attack surface stay small and your goal surface stay huge
tweet media
@_RastaMouse avatar
_RastaMouse @_RastaMouse
15 Jun, 13:37 · core
0.20
Big announcement! We're launching a new platform with new content, refreshed videos, opsec considerations and detection opportunities. New website: https:// sektor7.institute Current users will be migrated from an old platform in the coming weeks. Enjoy! #maldev
tweet mediatweet media
@intigriti avatar
intigriti @intigriti
15 Jun, 12:00 · secondary
0.20
It's CHALLENGE O'CLOCK! Capture the flag before Monday the 22nd of June Win €400 in SWAG prizes We'll release a tip for every 100 likes on this tweet Thanks @GammarKhalil1 (xhalyl) for the challenge https:// challenge-0626.intigriti.io
tweet mediatweet media
@CrowdStrike avatar
CrowdStrike @CrowdStrike
15 Jun, 22:00 · secondary
0.14
AI is showing up across the enterprise faster than most teams can track it. Are you ready? Join us at Fal.Con https:// crwdstr.ke/6011BDGzMt
tweet media

Regular sources

2 items
1.00exploit · 15 Jun, 15:532 mentionsseclists.org

Re: Proposal: Add separate oss-security-vulnerability-reports mailing list (for AI vulnpocalypse)

Posted by David A. Wheeler on Jun 14 Fair point. I'm primarily anticipating the future. That's true. However, since it's *not* instant, it might be better to try to "get… | Posted by Stuart Henderson on Jun 15 btw, mutt users who filter mail into folders (so they already know from the context that the message is from oss-security) might lik…

1.00general · 15 Jun, 15:49thehackernews.comAttack path

⚡ Weekly Recap: Chrome 0-Day, UniFi Exploits, macOS Stealers, VPN Flaw and More

Stuff broke again. Not in a movie way. An old tool was left exposed. An abandoned package was abused. A deprecated feature was still running in prod. This week is the sa…