<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>Threat-Intelligence on Tenu Tech Brief</title>
    <link>https://cluster-site.onrender.com/tags/threat-intelligence/</link>
    <description>Recent content in Threat-Intelligence on Tenu Tech Brief</description>
    <generator>Hugo -- 0.146.0</generator>
    <language>en-us</language>
    <lastBuildDate>Tue, 24 Feb 2026 06:03:54 +0000</lastBuildDate>
    <atom:link href="https://cluster-site.onrender.com/tags/threat-intelligence/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Telegram channels expose rapid weaponization of SmarterMail flaws</title>
      <link>https://cluster-site.onrender.com/posts/telegram-channels-expose-rapid-weaponization-of-smartermail-flaws/</link>
      <pubDate>Wed, 18 Feb 2026 16:27:38 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/telegram-channels-expose-rapid-weaponization-of-smartermail-flaws/</guid>
      <description>• SmarterMail CVE-2026-24423 and CVE-2026-23760 enable remote code execution and auth bypass. • Attackers weaponized these flaws within days of disclosure, sharing exploits on Tele</description>
    </item>
    <item>
      <title>Researchers Show Copilot and Grok Can Be Abused as Malware C2 Proxies</title>
      <link>https://cluster-site.onrender.com/posts/researchers-show-copilot-and-grok-can-be-abused-as-malware-c2-proxies/</link>
      <pubDate>Tue, 17 Feb 2026 18:08:00 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/researchers-show-copilot-and-grok-can-be-abused-as-malware-c2-proxies/</guid>
      <description>• AI assistants like Copilot and Grok can be hijacked as stealthy C2 proxies, blending into legitimate traffic. • Check Point researchers demonstrated the technique using anonymous</description>
    </item>
    <item>
      <title>HoneyMyte updates CoolClient and deploys multiple stealers in recent campaigns</title>
      <link>https://cluster-site.onrender.com/posts/honeymyte-updates-coolclient-and-deploys-multiple-stealers-in-recent-campaigns/</link>
      <pubDate>Tue, 27 Jan 2026 08:00:42 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/honeymyte-updates-coolclient-and-deploys-multiple-stealers-in-recent-campaigns/</guid>
      <description>• HoneyMyte upgraded CoolClient backdoor with new features, enhancing persistence and stealth. • The group deployed multiple browser login data stealers across recent campaigns. •</description>
    </item>
    <item>
      <title>VoidLink: Evidence That the Era of Advanced AI-Generated Malware Has Begun</title>
      <link>https://cluster-site.onrender.com/posts/voidlink-evidence-that-the-era-of-advanced-ai-generated-malware-has-begun/</link>
      <pubDate>Tue, 20 Jan 2026 09:27:54 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/voidlink-evidence-that-the-era-of-advanced-ai-generated-malware-has-begun/</guid>
      <description>• VoidLink showcases AI-generated malware capable of crafting polymorphic code. • The malware leverages generative models to evade traditional signature-based detection. • Checkpoi</description>
    </item>
    <item>
      <title>Organisational use of Enterprise Connected Devices</title>
      <link>https://cluster-site.onrender.com/posts/organisational-use-of-enterprise-connected-devices/</link>
      <pubDate>Wed, 12 Mar 2025 11:11:45 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/organisational-use-of-enterprise-connected-devices/</guid>
      <description>• Enterprise connected devices expand attack surface, enabling lateral movement across corporate networks. • Insider threats amplified as employees use personal devices for work, b</description>
    </item>
    <item>
      <title>Joint report on publicly available hacking tools</title>
      <link>https://cluster-site.onrender.com/posts/joint-report-on-publicly-available-hacking-tools/</link>
      <pubDate>Wed, 12 Mar 2025 11:11:20 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/joint-report-on-publicly-available-hacking-tools/</guid>
      <description>• Joint report reveals surge in publicly available hacking toolkits targeting critical infrastructure. • Analysts highlight increased ease of access via dark web marketplaces and o</description>
    </item>
    <item>
      <title>Decrypting diversity: Diversity and inclusion in cyber security report 2021</title>
      <link>https://cluster-site.onrender.com/posts/decrypting-diversity-diversity-and-inclusion-in-cyber-security-report-2021/</link>
      <pubDate>Wed, 12 Mar 2025 11:07:13 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/decrypting-diversity-diversity-and-inclusion-in-cyber-security-report-2021/</guid>
      <description>• Cybersecurity workforce remains 70% male, with women under 20% in technical roles. • Minority representation below 15%, limiting diverse threat perspective. • 2021 report links d</description>
    </item>
    <item>
      <title>What you need to know about Process Ghosting, a new executable image tampering attack</title>
      <link>https://cluster-site.onrender.com/posts/what-you-need-to-know-about-process-ghosting-a-new-executable-image-tampering-attack/</link>
      <pubDate>Tue, 15 Jun 2021 07:00:00 +0000</pubDate>
      <guid>https://cluster-site.onrender.com/posts/what-you-need-to-know-about-process-ghosting-a-new-executable-image-tampering-attack/</guid>
      <description>• Process Ghosting exploits the delay between process creation and thread notification, enabling pre‑scan tampering. • Attack writes malware to disk, deletes it, yet execution cont</description>
    </item>
  </channel>
</rss>
