<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>Infosec on Tenu Tech Brief</title>
    <link>https://cluster-site.onrender.com/tags/infosec/</link>
    <description>Recent content in Infosec on Tenu Tech Brief</description>
    <generator>Hugo -- 0.146.0</generator>
    <language>en-us</language>
    <lastBuildDate>Tue, 24 Feb 2026 06:03:41 +0000</lastBuildDate>
    <atom:link href="https://cluster-site.onrender.com/tags/infosec/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>RMM Abuse Explodes as Hackers Ditch Malware</title>
      <link>https://cluster-site.onrender.com/posts/rmm-abuse-explodes-as-hackers-ditch-malware/</link>
      <pubDate>Tue, 17 Feb 2026 21:01:26 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/rmm-abuse-explodes-as-hackers-ditch-malware/</guid>
      <description>• RMM tools are increasingly used as primary attack vectors, replacing traditional malware. • Attackers leverage RMM&amp;rsquo;s remote access to maintain stealth and persistence. • RMM&amp;rsquo;s bu</description>
    </item>
    <item>
      <title>Researchers Show Copilot and Grok Can Be Abused as Malware C2 Proxies</title>
      <link>https://cluster-site.onrender.com/posts/researchers-show-copilot-and-grok-can-be-abused-as-malware-c2-proxies/</link>
      <pubDate>Tue, 17 Feb 2026 18:08:00 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/researchers-show-copilot-and-grok-can-be-abused-as-malware-c2-proxies/</guid>
      <description>• AI assistants like Copilot and Grok can be hijacked as stealthy C2 proxies, blending into legitimate traffic. • Check Point researchers demonstrated the technique using anonymous</description>
    </item>
    <item>
      <title>Password Managers Vulnerable to Vault Compromise Under Malicious Server</title>
      <link>https://cluster-site.onrender.com/posts/password-managers-vulnerable-to-vault-compromise-under-malicious-server/</link>
      <pubDate>Tue, 17 Feb 2026 09:30:46 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/password-managers-vulnerable-to-vault-compromise-under-malicious-server/</guid>
      <description>• ETH Zurich researchers tested zero‑knowledge password managers against fully malicious servers. • Bitwarden, Dashlane, LastPass, and 1Password were evaluated. • Attacks targeted</description>
    </item>
    <item>
      <title>Please Don&#39;t Feed the Scattered Lapsus ShinyHunters</title>
      <link>https://cluster-site.onrender.com/posts/please-dont-feed-the-scattered-lapsus-shinyhunters/</link>
      <pubDate>Mon, 02 Feb 2026 16:15:16 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/please-dont-feed-the-scattered-lapsus-shinyhunters/</guid>
      <description>• Scattered Lapsus ShinyHunters (SLSH) uses harassment, threats, even swatting to extort firms. • They notify journalists and regulators, amplifying pressure beyond typical ransomw</description>
    </item>
    <item>
      <title>Diverse Threat Actors Exploiting Critical WinRAR Vulnerability CVE-2025-8088</title>
      <link>https://cluster-site.onrender.com/posts/diverse-threat-actors-exploiting-critical-winrar-vulnerability-cve-2025-8088/</link>
      <pubDate>Tue, 27 Jan 2026 14:00:00 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/diverse-threat-actors-exploiting-critical-winrar-vulnerability-cve-2025-8088/</guid>
      <description>• CVE-2025-8088: critical path traversal flaw in WinRAR allows arbitrary file writes via ADS. • Exploited by state-backed actors from Russia, China and financially motivated groups</description>
    </item>
  </channel>
</rss>
