AI Security
Hugging Face says hosted frontier models blocked its forensic prompts during an AI-driven intrusion. A locally hosted GLM 5.2 helped analyse more than 17,000 events without the evidence or credentials leaving its environment.
Phishing-Tracker
TL;DR: We integrated urlquery.net as a second web scanning engine alongside urlscan.io in our MCP-powered phishing infrastructure pipeline. The re-run of
dataleak
Date: July 8, 2026 Subject: Analysis of the Accenture 35GB data breach claim Classification: Open-source intelligence report
Executive Summary
A threat actor using the alias
notes
TL;DR: PhaaS domains churn faster than IOC lists can ship. We built a self-hosted MCP server that runs an OSINT pipeline from a source
Mirage2FA
Inside Mirage2FA — Reverse-Engineering a Two-Year M365 Phishing Operation
Adverse Trace OSINT · 2026-06-29 · TLP:CLEAR
Campaign: AT-IR-2026-MIRAGE2FA · Activity: Jun 2024
Bluekit
Bluekit and the AI Impersonators: A Phishing Kit Hunt That Uncovered a Fraud Empire
26 June 2026 · FindEvil — dAIffed / Adverse Trace · Case Refs: BLUEKIT-PHA-2026-