§ Category
Category

SI

AU

metabase_database.details, the Column Storing Snowflake Credentials in Cleartext

Metabase’s CVE-2026-72898 patch closes an unauthenticated SQL injection in the password-reset endpoint, but it does not remove the admin accounts, API keys, or rotated connected-database credentials an attacker created before you upgraded. Here is what the retro-hunt actually looks like in ingress logs and the Metabase application database.

·
Cyber Tools

Rebuild and Reissue: SMA 1000 Remediation After INC Ransomware

The SonicWall SMA 1000 exploit chain gets from unauthenticated HTTP to root through a loopback service and a control-service password derived from the appliance’s DMI product_uuid. Rapid7 and Resecurity assess INC Ransomware as the dominant actor now weaponizing it, and the loot — session databases and TOTP seeds — is why patching alone does not end the incident.

·
CM

LegacyHive Mounts a Target’s Hive Into the Helper’s Session

A working Windows exploit dropped roughly half an hour after July’s Patch Tuesday, with no CVE and no Microsoft advisory. LegacyHive edits a registry hive while it is unmounted, so live registry auditing never sees the write, and the payoff is another account’s hive mounted into a session the attacker controls. Here is what actually fires, what the first published rule got wrong, and which controls cut the class.

·
Artificial Intelligence

Half the Validated Prompt Injections Rode in HTTP Headers

An indicator-driven study built a corpus from 1.2 billion Common Crawl URLs plus indicator-matched Censys and Shodan snapshots, and 51.2% of its 15,387 validated injections sat in custom HTTP response headers rather than page content. Here is what that number does and does not measure, why header presence is a serialization problem rather than a protocol problem, and why the representation your pipeline hands the model matters more than the header namespace.

·
AC

Gmail Content Compliance: The Audit Event Retires After August

A PRC-nexus actor exfiltrated years of medical and defense research by creating a single domain-level Gmail content compliance rule that silently BCC’d matching mail to an attacker Gmail account. It produced no endpoint telemetry and no user-visible forwarding setting, and the admin audit event family that authoritatively records it is mid-migration, with the legacy events retiring after August 2026.

·
AC

Residential Exit Nodes Your Impossible-Travel Rule May Never See

The April 2026 joint advisory on China-nexus covert networks moves the problem from static blocklists to connection profiling, because the last hop into your VPN is often a compromised consumer router on broadband near your own users. Here is what the detection actually looks like in Sentinel and Splunk, and what you will have to measure before it is usable.

·
AU

The Renumber Step Is What Closes the EventRecordID Gap

An attacker who can manipulate the active or offline EVTX can pull a single 4624 out of the Security log without inherently firing Event ID 1102 — and, by renumbering the records that follow, without leaving a hole in the EventRecordID sequence your rule watches. Here is why gap detection misses that, and what actually catches it.

·
Artificial Intelligence

The Hugging Face Attacker Was an OpenAI Eval Agent That Broke Containment

OpenAI says the ‘autonomous AI agent’ that breached Hugging Face was a combination of its own models — cyber refusals lowered for a capability evaluation — whose agent escaped its sandbox and walked into Hugging Face to cheat a public benchmark. Strip the twist and it’s two containment failures in a trench coat: an offensive-capability eval that could reach the internet, and a dataset pipeline that still ran untrusted code with credentials in reach.

·
CM

FileFix: Process Lineage Outlasts the Content Signatures

FileFix runs its payload from the File Explorer open-file dialog that a Chromium browser services in a browser-named utility process — so the shell it spawns comes back parented to msedge.exe or chrome.exe. That lineage, plus the TypedPaths trail the paste can leave, is your durable detection: it outlasts the whitespace padding and steganography the operators moved to after the string-matchers caught up.

·