This day 02:08 06:08 10:09 14:09 18:05 22:05
Info  2026-08-12 18:05Z · last 4h · 24 findings · glm-5.2:cloud

Threat Brief — 2026-08-12 — New intel on fake hires and threat actors

Executive summary. Today's fresh feed brings limited genuinely new material — most findings are duplicates of stories already captured earlier today. What is new: a profile of the REvil-linked actor "Quake3," a technique paper on fake remote-worker infiltration of organisations, Google's own researchers demonstrating their AI hiring filter can be bypassed, and an FBI alert on account-takeover campaigns aimed at stealing explicit photos. The dozen MSRC entries are all informational acknowledgement updates with no new patch or exploit details.


Top items


Themes

Hiring-process attack surface is expanding. Two of today's items — fake remote workers and the DeepMind hiring-filter bypass — converge on the same risk: adversaries are targeting the hiring lifecycle itself, whether through social-engineered fake identities or by defeating automated screening tools. Combined with the earlier "fake crypto startup catches North Korean IT workers" story from this morning, the hiring pipeline is clearly an active battlefield.

===

THREAT-TOPICS===

[{"slug":"quake3-revil-identity-profile","headline":"Quake3 identified as REvil coder and XSS forum moderator","findingIds":[7440],"status":"new","development":""},{"slug":"fake-remote-workers-hiring-infiltration","headline":"Fake remote workers exploit gaps in hiring and onboarding checks","findingIds":[7422],"status":"new","development":""},{"slug":"google-ai-hiring-filter-bypass","headline":"DeepMind researchers show Google AI hiring filter can be bypassed","findingIds":[7449],"status":"new","development":""},{"slug":"fbi-nude-photo-account-takeover-warning","headline":"FBI warns hackers target online accounts to steal explicit photos","findingIds":[7421],"status":"new","development":""}]

Public exploits · latest from the exploit feed

[remote] Ecava_ntegraXor IGX_16.0.701.10 - RCE 2026-10-01 15:15Z · RSS:exploit-db [webapps] Food-Ordering 1.0 - LFI 2026-10-01 15:15Z · RSS:exploit-db [webapps] WordPress 7.0.2 - Path Travesal 2026-10-01 15:15Z · RSS:exploit-db [webapps] TigerGraph_Community_Edition 4.2.4 - arbitrary file write 2026-10-01 15:15Z · RSS:exploit-db [remote] Teltonika_RutOS 00.07.06.21 - command injection 2026-10-01 15:15Z · RSS:exploit-db [webapps] POMS oretnom23v1.0 - SQLi vulnerabilities 2026-10-01 14:15Z · RSS:exploit-db [webapps] InvoicePlane 1.7.1 - RCE 2026-10-01 14:15Z · RSS:exploit-db [webapps] SuiteCRM 8.10.1 - Authenticated SSRF 2026-10-01 14:15Z · RSS:exploit-db [webapps] Krayin CRM 2.2.4 - IDOR 2026-10-01 14:15Z · RSS:exploit-db [remote] MikroTrick, 7.24, 7.24.2, 7.0.0, 7.23.4, 6.0.0, 6.49.21 - RCE 2026-09-30 15:11Z · RSS:exploit-db