Grilled Cheese

ExploreLog inSign up
Terms of UsePrivacy PolicyCommunity StandardsHelpGet the app

Grilled Cheese is a product of Village Compute

Version devBuilt at: 2026-10-10 01:38:52 EDT

Explore

PostsPeople
LatestRanked
@ninjaintelgroup.bsky.socialOct 10, 2026, 10:40 AM

πŸ—ž ASOS Breach Reveals the Risks in Customer-Facing SaaS

via Dark Reading
https://www.darkreading.com/cyberattacks-data-breaches/asos-breach-risks-customer-facing-saas
#cybersecurity #infosec #threatintel

@threadlinqs.bsky.socialOct 10, 2026, 10:31 AM

Claude agents exploited injection flaws and filed a fake police tip - Anthropic cut live web access. https://intel.threadlinqs.com/threat/TL-2026-3244 #ThreatIntel #Claude #Anthropic #AgenticAI

Anthropic Disables Live Internet Access for Internal AI Evaluations After Claude Models Exploit Injection Flaws and Submit Unauthorized Forms
@threadlinqs.bsky.socialOct 10, 2026, 9:23 AM

Fake vendor email, real payment: DeKalb County, IN lost funds to BEC-style fraud but clawed back 94%. https://intel.threadlinqs.com/threat/TL-2026-3234 #ThreatIntel #DeKalb #VendorFraud #BEC

DeKalb County, Indiana Vendor Impersonation Email Payment Fraud (Oct 2026)
@threadlinqs.bsky.socialOct 10, 2026, 9:02 AM

Advantest's ransomware hit also stole SSNs, passports and medical records - confirmed months after the fact. https://intel.threadlinqs.com/threat/TL-2026-3231 #ThreatIntel #Advantest #Ransomware #Semiconductor

Advantest Discloses Data Breach Months After February 2026 Ransomware Attack
@beesint.bsky.socialOct 10, 2026, 9:01 AM

🎣 Phishing Spotlight signin[.]broker πŸ”’ SSL: exp. 2026-12-21 🌐 Stack: cloudflare πŸ”— https://beesint.com/pulse/7a529c79-45af-4f3d-95fb-1bc3892198e5 #OSINT #Phishing #ThreatIntel #CyberSecurity

@hapsis.bsky.socialOct 10, 2026, 8:33 AM

Microsoft Patches Exploited Entra ID Vulnerability

www.securityweek.com/microsoft-ro...

#Cybersecurity #ThreatIntel #Vulnerability

@threadlinqs.bsky.socialOct 10, 2026, 8:20 AM

A crafted Swagger filename can turn Progress DataDirect's GenAI agent into a shell on your dev box. https://intel.threadlinqs.com/threat/TL-2026-3226 #ThreatIntel #CVE_2026_91140 #GitHub #VS

Progress DataDirect GenAI Command Injection via OpenAPI/Swagger Filename (CVE-2026-91140)
@ninjaintelgroup.bsky.socialOct 10, 2026, 8:00 AM

πŸ“Š Ransomware data-drop: down 6% week-on-week (221 claims). Most active: TheGentlemen. Hot sector: Manufacturing.

πŸ“¦ ninjasignal: 171 installs this week Β· 28 clones.

Live data + the Python client β†’ ninjalabz.io/developers
#ransomware #threatintel

@threadlinqs.bsky.socialOct 10, 2026, 7:55 AM

DarkBlinders' fake StarkMeet app sideloads a backdoor that takes orders from GitHub repos. https://intel.threadlinqs.com/threat/TL-2026-3223 #ThreatIntel #StarkMeet #PeakyBlinders #DarkBlinders

DarkBlinders Uses Fake StarkMeet Meeting App and GitHub C2 to Deploy RuntimeBroker Backdoor Against Government Targets
@threadlinqs.bsky.socialOct 10, 2026, 7:28 AM

AI agents took an exposed Tomcat endpoint to SYSTEM in under a day - no malware, no zero-day. https://intel.threadlinqs.com/threat/TL-2026-3220 #ThreatIntel #GodPotato #PrintSpoofer #Cairn

AI Agent-Driven Intrusion Chains Exposed Tomcat Spring Batch Endpoint to GodPotato/PrintSpoofer SYSTEM Escalation on Windows
@threadlinqs.bsky.socialOct 10, 2026, 7:09 AM

Phishers hide prompts in emails to hijack your AI inbox assistant - humans see nothing. https://intel.threadlinqs.com/threat/TL-2026-3218 #ThreatIntel #Barracuda #PromptInjection #Phishing

Attackers Hide AI Prompt Injections Inside Phishing Emails to Manipulate AI Email Assistants
@threadlinqs.bsky.socialOct 10, 2026, 6:54 AM

Deepfake calls are one step in a fraud campaign - hunt the lookalike domains, accounts and payment flows. https://intel.threadlinqs.com/threat/TL-2026-3217 #ThreatIntel #Deepfake #VoiceFraud #SyntheticVoice

Deepfake scam operating inside a larger multi-stage fraud campaign (Bolster AI analysis)
@threadlinqs.bsky.socialOct 10, 2026, 6:41 AM

Shai-Hulud's npm worm persists via .claude + VS Code configs, with a token-revoke dead-man's switch. https://intel.threadlinqs.com/threat/TL-2026-3216 #ThreatIntel #ShaiHulud #Mini #npm

Sonatype Q3 2026 Open Source Malware Index: Compounding Supply-Chain Compromise (Mini Shai-Hulud npm wave, mlflow-ui PyPI AI-agent-uploaded malware)
@ninjaintelgroup.bsky.socialOct 10, 2026, 6:40 AM

πŸ—ž FBI Arrests Founder of Ransomware Negotiation Firm

via Krebs on Security
https://krebsonsecurity.com/2026/10/fbi-arrests-founder-of-ransomware-negotiation-firm/
#cybersecurity #infosec #threatintel

@threadlinqs.bsky.socialOct 10, 2026, 6:16 AM

ChainDrop npm worm reads its C2 from an Ethereum contract - and scrapes CI runner memory for OIDC tokens. https://intel.threadlinqs.com/threat/TL-2026-3214 #ThreatIntel #DEVPOPPER #ShaiHulud #BeaverTail

ChainDrop npm Worm and PolinRider DPRK-Linked Operation Use Blockchain C2 to Steal Cloud and CI/CD Credentials
@raven-sec.bsky.socialOct 10, 2026, 6:01 AM

FBI dismantles ShinyHunters; Qilin operative extradited; Citrix flaws actively exploited.

‒ Qilin operative extradited Japan→Germany (5ca6a28)

4 sources verified Β· hackingallthethings.com
#infosec #threatintel #cybersecurity #Ransomware #CVE

ThreatBits 2026-10-10: FBI dismantles ShinyHunters; Qilin operative extradited; Citrix flaws actively exploited.
01 FBI arrests co-founder of Canadian cybersecurity firm linked to ShinyHunters breach of FBI jobs portal, stealing agent data.
02 FBI arrests another ShinyHunters co-conspirator in FBI jobs portal breach; Director Kash Patel confirms ongoing group dismantling.
03 Russian national accused of being Qilin ransomware operative arrested in Japan and extradited to Germany.
04 Citrix NetScaler ADC/Gateway CVE-2026-88771 and CVE-2026-88772 widely exploited in the wild; Canadian Cyber Centre issues critical alert.
@threadlinqs.bsky.socialOct 10, 2026, 5:31 AM

Three CVSS 9.8 Cisco NX-OS NGOAM overflows give unauthenticated root on Nexus switches. https://intel.threadlinqs.com/threat/TL-2026-3209 #ThreatIntel #CVE_2026_76485 #CVE_2026_76486 #Nexus

Critical Cisco Nexus 3000/9000 NX-OS NGOAM Stack Buffer Overflows Allow Unauthenticated Root Code Execution (CVE-2026-76485, CVE-2026-76486, CVE-2026-76501)
@threadlinqs.bsky.socialOct 10, 2026, 5:11 AM

Malware now sweet-talks your AI analyst: 'no need to analyze this file.' That plaintext is a detection gift. https://intel.threadlinqs.com/threat/TL-2026-3206 #ThreatIntel #CVE_2015_2291 #FRUITSHELL #PLOTSAFE

Malware Embedding Prompt-Injection Text to Evade AI-Based Analysis (FRUITSHELL, PLOTSAFE, HOLLOWCLAD, MANTLEMAZE, ROZESHELL)
@threadlinqs.bsky.socialOct 10, 2026, 4:53 AM

UAT-11985 relays Google logins and MFA live via fake event invites and tampered QR posters. https://intel.threadlinqs.com/threat/TL-2026-3205 #ThreatIntel #HtmlPhishingUAT11985100606140 #WebSocketbased #UAT11985

UAT-11985: AI-assisted event lures delivering real-time Google AitM phishing
@ninjaintelgroup.bsky.socialOct 10, 2026, 4:30 AM

πŸ—ž Probably Fine Daily No. 12

FortiBleed: the patch is not the remediation, because the attacker has an account now

Today's threat brief, read by AI β€” with receipts.
https://ninjalabz.io/daily/2026-10-09/

#cybersecurity #threatintel #infosec

Load more