Interesting links of the week:
Strategy:
* https://www.ncsc.gov.uk/collection/disruptive-cyber-attacks - NCSC discuss response planning
* https://sheets.works/data-viz/holding-up-the-internet - the people propping up the Internet
* https://vulnerability.circl.lu/assigners/scorecard - how bad are your CNA?
* https://www.rand.org/pubs/research_reports/RRA5082-1.html - lessons learnt from table tops
* https://vavkamil.cz/blog/2026-10-02-security-txt-on-czech-web/ - czech out security.txt
Threats:
* https://intel.threadlinqs.com/threat/TL-2026-2923 - @threadlinqs reports that NetScaler woes continue unabated
* https://cloud.google.com/blog/topics/threat-intelligence/defending-against-active-exploitation-of-citrix-netscaler-adc-and-gateway-appliances - GOOG describe what a NetScaler compromise might look like
* https://community.citrix.com/techzone-blogs/110_security-updates/ - make sure you're reading the latest guidance
* https://blog.talosintelligence.com/one-breach-please-and-make-no-mistakes/ - "for the umpteenth time, pay attention at the back!" screeches Yuri from the @TalosSecurity war room
* https://www.security.com/threat-intelligence/warlock-ransomware-critical-infrastructure - .cn operators try their hands at phones and taps
* https://www.rapid7.com/blog/post/tr-smtp-is-the-key-bpfdoor-averat-hitting-the-network-edge/ - another BPFDoor variant surfaces, abuses SMTP as a golden protocol
* https://www.fortinet.com/blog/threat-research/clingstun-linux-backdoor-abuses-public-stun-infrastructure - malware is also hiding in the tunnels
Bugs:
* https://labs.watchtowr.com/you-wont-hear-about-these-even-in-myths-atlassian-jira-confluence-and-more-pre-auth-arbitrary-file-read-cve-2026-21589/ - for all you .kp devops nerds
* https://syntetisk.tech/blog/posts/privilege-escalation-to-root-in-lima-qemu-guests-via-a-world-writable-agent-socket-cve-2026-53657/ - AF_UNIX ❤️
* https://lava.security/research/cve-2026-47483-nvidia-dcgm-exporter-vulnerability - sharing your GPU
Exploitation:
* https://upsilon.cc/~zack/research/publications/scored-2026-trusting-trust.pdf - can you really trust Linux?
* https://0xsmash0th.github.io/posts/tegra-ivc-teardown/ - poking at NVIDIA's IPC
* https://www.lares.com/blog/rockstar-games-attacks/ - online games were the original ZT, distributed, untrusted clients, untrustable users, obvious motivation to cheat
* https://netcattest.com/catsuite/en - a new kid on the block for testing mobile apps
Hardening:
* https://strandsagents.com/ - who wants guardrails 🤖
Nerd:
* https://defacto2.net/ - learn to be old school