Official intelligence summary

HAIJA INTEL REPORT

Generated 28/07/2026, 09:55. Pipeline: Europe/Belgrade. Regular sources favor exploit, blog, red-team, and attack-path content. CVE items only stay with exploit signal.
Total items15
Regular sources3
Tweets / X12
Threshold0.62
You can save this report in your browser with the favorite button. If you need a shared favorite list, use the CLI helper.

Tweets / X

12 items
@PortSwiggerRes avatar
PortSwiggerRes @PortSwiggerRes
27 Jul, 02:12 · core
0.46
What sparks the next breakthrough in cybersecurity? In the latest episode of Black Hat Intercepted, James Kettle, Director of Research at PortSwigger, reflects on the value of curiosity, community, and why sharing research can have a far greater impact than you might expect.
tweet media
@h4x0r_dz avatar
h4x0r_dz @h4x0r_dz
27 Jul, 13:21 · core
0.44
The whole fastjson is now vulnerable to RCE, even the latest 2.x. Upgrade to nonautotype versions or turn on safemode.
@_xpn_ avatar
_xpn_ @_xpn_
27 Jul, 17:51 · core
0.42
Good to see that people are trying to CV pad on HuggingFace like they do on GitHub.. "Yeah I'm one of the members of the Kimi K3 team..."
tweet mediatweet media
@mrgretzky avatar
mrgretzky @mrgretzky
27 Jul, 14:00 · core
0.42
Took a break with family last week to relax in the Polish countryside. Views like these remind you how little cybersecurity, phishing, or AI really matters in life. Too often, for too long, I forget to wind down and touch grass to remember what's really important.
tweet mediatweet media
@mrgretzky avatar
mrgretzky @mrgretzky
27 Jul, 13:01 · core
0.42
Threat actors are already building phishing kits capable of Credential Relay Phishing. The method uses a legitimate background browser to sign in on behalf of phished users, evading the common reverse-proxy phishing detections. 1/ A recently advertised phishing framework "AutoLog
tweet mediatweet media
@pdiscoveryio avatar
pdiscoveryio @pdiscoveryio
27 Jul, 23:33 · secondary
0.32
ProjectDiscovery @pdiscoveryio · 9h neo.projectdiscovery.io Neo - AI Security Engineer AI security engineer that fits into your day-to-day security workflows, from vulnerability analysis and code reviews to threat modeling and security reporting. 372
tweet media
@_xpn_ avatar
_xpn_ @_xpn_
27 Jul, 16:08 · core
0.32
Very quick blog post to start the week: "enhanced session" shares your host clipboard with virtual machines, even if you didn't copy/paste anything from the VM itself. Might be common knowledge but it surprised me so I'm sharing it here https:// windows-internals.com/random-windo
tweet mediatweet media
@SentinelOne avatar
SentinelOne @SentinelOne
27 Jul, 14:20 · secondary
0.32
Days after an OpenAI model reportedly broke out of a sandboxed test environment and reached another company's servers, lawmakers introduced a bill giving DHS a "kill switch" for AI. Our VP of Intelligence & Security Research, @juanandres_gs , joined CNN's The Source to unpack it.
tweet media
@vxunderground avatar
vxunderground @vxunderground
27 Jul, 03:18 · secondary
0.29
Dawg, I don't want to sound like a hater, but you need to CHILL OUT. Your goopies just got attention because it was video game goop. This isn't like, CL0P ransomware group extorting the United States government for $50,000,000 because of a 0day exploit they had. You're NOT FBI
tweet mediatweet media
@_xpn_ avatar
_xpn_ @_xpn_
27 Jul, 17:49 · core
0.28
Kimi 3 is now on HuggingFace \o/ (no idea why I'm excited, not like I can run it on my laptop)
tweet media
@BishopFox avatar
BishopFox @BishopFox
27 Jul, 22:48 · secondary
0.24
If Gold Eagle succeeds, researchers spend less time fighting forms. Defenders spend less time reacting to surprise zero-days. Kendrick Urbaniak, Shad Malloy, and Thomas Wilson share what success might look like. Full episode: https:// bfx.social/44SKahy
tweet media
@vxunderground avatar
vxunderground @vxunderground
27 Jul, 03:04 · secondary
0.24
Apparently Meccha Chameleon people follow me on Telegram. Hello MecchaChameleon malware people living inside my computer, I think overall your strategy of using a malicious custom map thingie was cool and probably yielded moderate success. I don't think your intention was being @
tweet mediatweet media

Regular sources

3 items
1.00general · 27 Jul, 23:00bleepingcomputer.comPoC

New Certighost PoC exploit lets attackers hijack Windows domains

A proof-of-concept exploit for "Certighost," a Windows Active Directory Certificate Services vulnerability, has been released that can allow authenticated attackers to p…

1.00general · 27 Jul, 18:25microsoft.comTradecraftResearch

Enhancing AI security through global AI red teaming

Microsoft's External Red Team Alliance (EXTRA) is a global AI security initiative designed to advance AI safety research and red teaming. By partnering with universities…

0.89exploit · 27 Jul, 18:583 mentionsseclists.org

Re: Linux kernel: KVM: Merge branch 'kvm-chainsaw' into HEAD

Posted by Reid Sutherland on Jul 27 Core changes to virtualization should receive examination. Changing data structures around because they're too big.. it's concerning,… | Posted by Solar Designer on Jul 27 Thanks, but can you please explain why exactly you think this is https://www.phoronix.com/news/KVM-Chainsaw-Linux-7.3 and the patch se… | Posted by Reid Sutherland on Jul 27 For your information. https://git.kernel.org/pub/scm/virt/kvm/kvm.git/commit/?id=a204badd8432f93b7e862e7dac6db0fe3d65f370