Skip to content
Threat Feed

September 2026 (30)

medium advisory

Detection of Kubectl Binary Masquerading and Evasion

Adversaries may attempt to evade detection by renaming the kubectl binary or executing it from non-standard directories while retaining command-line functionality to perform unauthorized Kubernetes operations.

kubectl defense-evasion kubernetes masquerading
1r 2t
low advisory

Detection of Potential HTTP Downgrade Attacks

Attackers may force HTTP protocol downgrades from secure versions like HTTP/2 to legacy versions to exploit header parsing inconsistencies and facilitate request smuggling or cache poisoning.

Apache HTTP Server +3 web-application-attack defense-evasion network-security
1r 1t
medium advisory

Masquerading Malicious Files via Trailing Space

Adversaries utilize trailing space characters in filenames on Linux and macOS to obfuscate malicious file types and deceive users into executing them.

1r 2t
high advisory

Detection of Oversized Base64 Obfuscated Interpreter Commands

Adversaries leverage oversized, base64-encoded command lines in scripting interpreters to evade security telemetry that truncates or ignores excessively large command-line arguments.

defense-evasion execution command-line-obfuscation scripting-interpreter
1r 3t
medium advisory

Detecting Data Exfiltration Preparation via GenAI Processes

Detection of unauthorized GenAI workflows utilizing local compression or encoding utilities followed by outbound network communication, indicating potential staging and exfiltration of sensitive data.

exfiltration defense-evasion genai endpoint-security
1r 3t
medium advisory

Detection of GenAI-Driven Autonomous Malware Compilation

Adversaries are leveraging Generative AI tools and agent frameworks to autonomously generate and compile malicious executables or droppers directly on compromised endpoints.

defense-evasion execution genai malware-development
1r 2t
medium advisory

GenAI Tool Configuration Poisoning via MCP Server Injection

Adversaries are targeting configuration files of popular GenAI tools to inject malicious Model Context Protocol (MCP) servers, enabling persistence, arbitrary command execution, and data exfiltration.

Cursor +9 defense-evasion persistence genai-security supply-chain
1r 2t
medium advisory

Unsafe Permission Bypass in GenAI CLI Agents

The misuse of permission-bypass or auto-approval flags in GenAI CLI agents disables critical human-in-the-loop guardrails, creating significant risks for prompt injection and unauthorized autonomous system modification on developer workstations.

Claude Code +4
1r 1t
medium advisory

Detection of ROT-Encoded Python Script Execution

Adversaries utilize ROT-encoded Python scripts within packages to obfuscate malicious logic and evade security analysis on Windows and macOS systems.

defense-evasion python script-based-execution obfuscation
1r 3t
medium advisory

Tampering of Shell Command-Line History

Adversaries manipulate shell command-line history files and environment variables on Unix-like systems to evade detection and hinder post-compromise forensic analysis.

defense-evasion linux macos shell-history persistence
1r 1t
high advisory

Detection of Elastic Agent ID Spoofing and Data Manipulation

This threat brief details the detection of potential agent spoofing, where an adversary hijacks an Elastic Agent ID to inject illegitimate data or masquerade activity across multiple hosts.

Elastic Agent
1r 2t
high advisory

Cross-Environment Secret Harvesting via Cloud APIs

Adversaries are utilizing compromised credentials and stolen session tokens to perform rapid, automated secret harvesting across AWS, GCP, Azure, and Kubernetes environments from singular source IP addresses.

AWS Secrets Manager +3 credential-access cloud identity-theft
1t
high advisory

Detection of Potential Credential Discovery via Recursive Grep

This threat brief details the identification of recursive grep activity on Linux and macOS used by adversaries or insiders to discover credentials, keys, and tokens within the filesystem.

credential-access discovery linux macos
1r 2t
medium advisory

Potential Unauthorized Secret Scanning via Gitleaks

Threat actors may leverage the legitimate open-source tool 'Gitleaks' to perform unauthorized secret scanning on compromised hosts to identify and exfiltrate sensitive credentials from source code repositories.

credential-access collection gitleaks threat-detection
1r 2t
high advisory

Unauthorized GenAI Tool Access to Sensitive Local System Files

Attackers are increasingly leveraging GenAI agent processes to perform unauthorized discovery, harvesting of sensitive credentials, and establishment of persistence via shell configuration modifications.

credential-access collection persistence genai-security
1r 2t
low advisory

Uncommon DNS Requests via Node.js or Bun Runtimes

Adversaries leverage compromised dependencies in Node.js or Bun development workflows to perform anomalous DNS lookups for command-and-control, staging, or exfiltration activities.

supply-chain command-and-control nodejs bun javascript
1r 1t
medium advisory

Correlation of Palo Alto Networks C2 Alerts with Endpoint Process Activity

This detection capability correlates Palo Alto Networks (PANW) firewall command and control alerts with Elastic Defend endpoint events to identify the specific process responsible for network traffic flagged as malicious.

PAN-OS +1 command-and-control detection-engineering network-security cross-platform
1t
low advisory

Detecting Malicious Kubectl Network Configuration Manipulation

This brief documents techniques used to abuse the Kubernetes kubectl CLI for command and control or data exfiltration by manipulating network configurations through port-forwarding and proxying.

Kubernetes command-and-control kubectl container-security
1r 2t
medium advisory

Abuse of Google Drive Download URLs for Malicious Payload Delivery

Adversaries are exploiting Google Drive by appending parameters to download URLs that instruct the service to bypass antivirus scanning, facilitating the delivery of malicious payloads.

Google Drive
1r 2t
medium advisory

Detection of Suspicious TLD Connections by GenAI and CLI Tools

Detection rule monitors GenAI tools and CLI package managers for network connections to high-risk Top-Level Domains frequently utilized by threat actors for C2 infrastructure.

command-and-control genai network-security
1r 1t
medium advisory

Abuse of Node.js Child Process to Execute External Downloaders

Adversaries leverage Node.js 'child_process' modules to spawn 'curl' or 'wget' for malicious payload delivery, a technique frequently used to facilitate command-and-control by piping remote content directly into local shell interpreters.

nodejs command-and-control process-spawn download-tool-abuse
1r 2t
medium advisory

Detection of Malicious Use of LLM Endpoints for Command and Control

Detection logic identifying unsigned binaries or scripting utilities establishing network connections to various Large Language Model API endpoints for potential command and control.

command-and-control ai-security endpoint-detection c2-traffic
1r 1t
medium threat

Detection of sqlmap Automated Tool Usage via User-Agent

This brief covers the detection of the sqlmap automated penetration testing tool, which is frequently used by adversaries to perform reconnaissance and exploit SQL injection vulnerabilities in web applications.

exploited reconnaissance vulnerability-scanning web-application apm sqlmap
1r 1t
high threat

CISA Adds Two Exploited Linux Kernel Vulnerabilities to KEV Catalog

CISA has added CVE-2025-39964 and CVE-2026-53266, two actively exploited Linux kernel vulnerabilities, to its Known Exploited Vulnerabilities catalog.

exploited Linux Kernel +1 vulnerability-management linux kernel cisa-kev
2c
critical advisory

Remote Code Execution in jsonpath-plus via CVE-2025-1302

CVE-2025-1302 is a critical remote code execution vulnerability in the jsonpath-plus library, exploitable via malicious JSONPath expressions injected through query parameters.

jsonpath-plus remote-code-execution injection web-application library-vulnerability
1r 2t 1c
low advisory

CVE-2026-91149: Denial of Service via Resource Exhaustion in Cockpit

An unauthenticated remote attacker can exploit CVE-2026-91149 in Cockpit by exhausting system resources through numerous simultaneous connections to the cockpit-tls service.

cockpit denial-of-service vulnerability
1t 1c
medium advisory

Unauthenticated Routing Table Poisoning in SGLang

SGLang versions up to 0.5.19 in disaggregation mode expose an unauthenticated PUT /route endpoint allowing remote attackers to poison KV transfer tables and redirect sensitive data.

SGLang routing-poisoning cve-2026-92972 denial-of-service vulnerability
1r 2t 1c updated
high advisory

Stack-based Buffer Overflow in PLANET IGS-5225-8P2T4S Managed Switches

A stack-based buffer overflow vulnerability in the web server of PLANET IGS-5225-8P2T4S industrial managed switches allows authenticated remote attackers to achieve denial of service or remote code execution via CVE-2026-81944.

IGS-5225-8P2T4S vulnerability industrial-control-systems network-security cve-2026-81944
1t 1c
high advisory

Command Injection in PLANET IGS-5225 Industrial Switches

An OS command injection vulnerability in the web interface of PLANET IGS-5225-8P2T4S switches allows authenticated remote attackers to execute arbitrary commands with root privileges.

IGS-5225-8P2T4S
2t 1c
high advisory

IBM MQ Improper Validation Vulnerability (CVE-2026-11381)

IBM MQ contains a vulnerability in the validation of message distribution list structures that allows an authenticated attacker to trigger a denial of service or potentially execute arbitrary code.

MQ vulnerability cve middleware
1c