Official intelligence summary

HAIJA INTEL REPORT

Generated 26/06/2026, 09:19. Pipeline: Europe/Belgrade. Regular sources favor exploit, blog, red-team, and attack-path content. CVE items only stay with exploit signal.
Total items15
Regular sources4
Tweets / X11
Threshold0.62
You can save this report in your browser with the favorite button. If you need a shared favorite list, use the CLI helper.

Tweets / X

11 items
@_xpn_ avatar
_xpn_ @_xpn_
25 Jun, 21:44 · core
0.56
Adam demonstrates the future of stage-0 agents and initial access. This is awesome! and also terrifying from a defense perspective lol First blog post in a mini series where I look at "disposable tooling". This post shares what I have found to be useful when 1-shot'ing LLM genera
tweet media
@pdiscoveryio avatar
pdiscoveryio @pdiscoveryio
25 Jun, 20:27 · secondary
0.39
Everyone's building AI security tools in a weekend. The bill arrives in month two. Token burn scales with accuracy. Want validation? More tokens. Dedup? More tokens. Global memory across runs? More tokens. The POC finds bugs. Proving they're real at scale, reliably, without
tweet mediatweet media
@vxunderground avatar
vxunderground @vxunderground
25 Jun, 05:02 · secondary
0.39
0xRoam, I saw your proposed Master Thesis thingie on your GitHub. You're writing malware for your Master Thesis. Very cool. You've got a bunch of problems if your code, big dawg. The very very very first thing you need to fix though is your function import code. You're using
tweet mediatweet media
@_dirkjan avatar
_dirkjan @_dirkjan
25 Jun, 21:30 · core
0.34
Identity round table at @WEareTROOPERS with @kfosaaen @sapirxfed @Thomas_Live @DrAzureAD @ericonidentity @4ndr3w6S @JsQForKnowledge @thomas_elling
tweet mediatweet media
@SpecterOps avatar
SpecterOps @SpecterOps
25 Jun, 00:33 · core
0.34
Windows Scheduled Tasks can be an overlooked source of security risk. In the latest ep. of #KnowYourAdversary, @0xr0BIT breaks down how TaskHound uncovers hidden credential exposure and attack paths inside enterprise environments. Listen now: https:// ghst.ly/4x4qGmU
tweet media
@TalosSecurity avatar
TalosSecurity @TalosSecurity
25 Jun, 15:02 · secondary
0.24
Malware authors often hide their tracks using COM, but our latest guide provides the roadmap you need to decode those cryptic vtable calls and finally see exactly what’s happening under the hood: https:// cs.co/6014BDgbFs
tweet mediatweet media
@intigriti avatar
intigriti @intigriti
25 Jun, 11:08 · secondary
0.24
Exploiting web cache poisoning vulnerabilities!
tweet mediatweet media
@Sysdig avatar
Sysdig @Sysdig
25 Jun, 16:01 · secondary
0.22
AI isn't the future of security. It's happening now. The same tools making security more accessible to engineers are available to attackers too. That's not a future risk. It's the current reality. Runtime protection has never mattered more. Read the blog:
tweet mediatweet media
@Bugcrowd avatar
Bugcrowd @Bugcrowd
25 Jun, 02:28 · secondary
0.22
"We'll fix that in next month's pen test." Said no secure company, ever. If you're shipping daily but testing annually, you're leaving a gaping window of exposure for attackers to find first. Pairing your existing strategy with a continuous bug bounty program isn't an
tweet mediatweet media
@Synack avatar
Synack @Synack
25 Jun, 02:12 · secondary
0.22
Open bug bounty programs are buckling under AI-generated noise. Learn why the Synack platform and private team of security researchers preserve what works about incentivized research while fixing what doesn't: https:// hubs.ly/Q04mzB220
tweet mediatweet media
@SentinelOne avatar
SentinelOne @SentinelOne
25 Jun, 21:07 · secondary
0.20
AI is reshaping both the threat landscape and how security teams respond. SentinelOne co-founder and CEO Tomer Weingarten joins @Bloomberg Intelligence analyst Mandeep Singh on Tech Disruptors to discuss securing AI agents, the role of LLMs in the modern SOC, and how M&A and
tweet mediatweet media

Regular sources

4 items
0.89exploit · 25 Jun, 19:37seclists.org

libexpat 2.8.2 fixes 14 vulnerabilities (integer overflow, out-of-bounds write, ..)

Posted by Sebastian Pipping on Jun 25 Hello oss-security, just a quick note that libexpat 2.8.2 (or "Expat 2.8.2") released today is fixing 13 vulnerabilities of three c…

0.89exploit · 25 Jun, 19:35seclists.org

Several vulnerabilities were found in NLnet Labs NSD

Posted by Willem Toorop on Jun 25 Several vulnerabilities were found in NLnet Labs NSD. We have released version 4.14.3 as a security release today,Thursday 25 June, wit…

0.84general · 25 Jun, 18:23bleepingcomputer.comResearch

New macOS malware embeds fake errors to confuse AI analysis tools

A newly discovered macOS malware dubbed "Gaslight" is designed to confuse AI-assisted malware analysis tools by hiding prompt injection strings and fake debugging data w…

0.84general · 25 Jun, 11:23thehackernews.comResearch

New Gaslight macOS Malware Uses Prompt Injection to Disrupt AI-Assisted Analysis

A previously undocumented Rust-based macOS implant and information stealer has been found to embed a prompt injection payload designed to trick a malware analyst's artif…