<?xml version="1.0" encoding="UTF-8"?><rss xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom" version="2.0"><channel><title><![CDATA[Topics tagged with ifin]]></title><description><![CDATA[A list of topics that have been tagged with ifin]]></description><link>https://board.circlewithadot.net/tags/ifin</link><generator>RSS for Node</generator><lastBuildDate>Thu, 30 Apr 2026 14:19:31 GMT</lastBuildDate><atom:link href="https://board.circlewithadot.net/tags/ifin.rss" rel="self" type="application/rss+xml"/><pubDate>Invalid Date</pubDate><ttl>60</ttl><item><title><![CDATA[What is going on today??]]></title><description><![CDATA[What is going on today??We're also tracking #CopyFail.https://discourse.ifin.network/t/copy-fail-732-bytes-to-root-on-every-major-linux-distributions/342#ThreatIntel #ThreatIntelligence #IFIN]]></description><link>https://board.circlewithadot.net/topic/b2722769-0ef9-4136-9c8b-166487d27d89/what-is-going-on-today</link><guid isPermaLink="true">https://board.circlewithadot.net/topic/b2722769-0ef9-4136-9c8b-166487d27d89/what-is-going-on-today</guid><dc:creator><![CDATA[ifin@infosec.exchange]]></dc:creator><pubDate>Invalid Date</pubDate></item><item><title><![CDATA[Looks like we have another #supplychain attack underway, this time facing #SAP-related NPM packages.]]></title><description><![CDATA[Looks like we have another #supplychain attack underway, this time facing #SAP-related NPM packages.https://discourse.ifin.network/t/sap-npm-packages-targeted-with-credential-stealing-malware/340#ThreatIntel #ThreatIntelligence #IFIN]]></description><link>https://board.circlewithadot.net/topic/206a9507-ae4f-412a-82ee-e59095d29aea/looks-like-we-have-another-supplychain-attack-underway-this-time-facing-sap-related-npm-packages.</link><guid isPermaLink="true">https://board.circlewithadot.net/topic/206a9507-ae4f-412a-82ee-e59095d29aea/looks-like-we-have-another-supplychain-attack-underway-this-time-facing-sap-related-npm-packages.</guid><dc:creator><![CDATA[ifin@infosec.exchange]]></dc:creator><pubDate>Invalid Date</pubDate></item><item><title><![CDATA[The best time to block api]]></title><description><![CDATA[@julie New-ish. We had a report of some ClickFix activity that used it, and was related to a recent Elastic report.https://discourse.ifin.network/t/phantompulse-rat-macos-using-clickfix/302]]></description><link>https://board.circlewithadot.net/topic/75212f38-b146-4387-82a7-3eb66c2750ca/the-best-time-to-block-api</link><guid isPermaLink="true">https://board.circlewithadot.net/topic/75212f38-b146-4387-82a7-3eb66c2750ca/the-best-time-to-block-api</guid><dc:creator><![CDATA[ifin@infosec.exchange]]></dc:creator><pubDate>Invalid Date</pubDate></item><item><title><![CDATA[Today we&#x27;re talking about another (???) issue in the Cursor AI IDE.]]></title><description><![CDATA[Today we're talking about another (???) issue in the Cursor AI IDE. Well actually it's two issues, one of which is simple command injection; the other is takeover via Dev tunnels. Don't know what dev tunnels are? Come find out—then block them with extreme prejudice.https://discourse.ifin.network/t/cursors-remote-tunnel-capability-is-vulnerable-to-malicious-prompt-injection/295#IFIN #ThreatIntel #ThreatIntelligence]]></description><link>https://board.circlewithadot.net/topic/a36e72ee-7519-4617-a720-ab5889449977/today-we-re-talking-about-another-issue-in-the-cursor-ai-ide.</link><guid isPermaLink="true">https://board.circlewithadot.net/topic/a36e72ee-7519-4617-a720-ab5889449977/today-we-re-talking-about-another-issue-in-the-cursor-ai-ide.</guid><dc:creator><![CDATA[ifin@infosec.exchange]]></dc:creator><pubDate>Invalid Date</pubDate></item><item><title><![CDATA[We&#x27;ve been tracking #Iran cyber activity since the beginning of March, consolidating high-value intelligence into a single thread.]]></title><description><![CDATA[We've been tracking #Iran cyber activity since the beginning of March, consolidating high-value intelligence into a single thread. One of the most comprehensive resources on the topic, if we do say so ourselves. https://discourse.ifin.network/t/iran-conflict-cyber-threat-activity/145/#ThreatIntel #ThreatIntelligence #IFIN]]></description><link>https://board.circlewithadot.net/topic/62bb34e7-2d40-45be-89a4-e2a7b8c817dd/we-ve-been-tracking-iran-cyber-activity-since-the-beginning-of-march-consolidating-high-value-intelligence-into-a-single-thread.</link><guid isPermaLink="true">https://board.circlewithadot.net/topic/62bb34e7-2d40-45be-89a4-e2a7b8c817dd/we-ve-been-tracking-iran-cyber-activity-since-the-beginning-of-march-consolidating-high-value-intelligence-into-a-single-thread.</guid><dc:creator><![CDATA[ifin@infosec.exchange]]></dc:creator><pubDate>Invalid Date</pubDate></item><item><title><![CDATA[After working on it a bit, we have a fix for a recent #ClickFix attack against #macOS that leverages AppleScript.]]></title><description><![CDATA[After working on it a bit, we have a fix for a recent #ClickFix attack against #macOS that leverages AppleScript. Here's the writeup, and a link to the forum thread!https://ifin-intel.org/blog/applescript/#ThreatIntel ThreatIntelligence #IFIN]]></description><link>https://board.circlewithadot.net/topic/96524ee9-ad3a-48a0-8e65-0c9668c5361e/after-working-on-it-a-bit-we-have-a-fix-for-a-recent-clickfix-attack-against-macos-that-leverages-applescript.</link><guid isPermaLink="true">https://board.circlewithadot.net/topic/96524ee9-ad3a-48a0-8e65-0c9668c5361e/after-working-on-it-a-bit-we-have-a-fix-for-a-recent-clickfix-attack-against-macos-that-leverages-applescript.</guid><dc:creator><![CDATA[ifin@infosec.exchange]]></dc:creator><pubDate>Invalid Date</pubDate></item><item><title><![CDATA[Following up on an excellent blog post we discovered (linked in thread), we dug a little deeper on a recent #WordPress plugin compromise.]]></title><description><![CDATA[@mttaggart @ifin can you share the URLs that were involved?]]></description><link>https://board.circlewithadot.net/topic/8dac63aa-8452-4d7d-ae85-06ee4de72d93/following-up-on-an-excellent-blog-post-we-discovered-linked-in-thread-we-dug-a-little-deeper-on-a-recent-wordpress-plugin-compromise.</link><guid isPermaLink="true">https://board.circlewithadot.net/topic/8dac63aa-8452-4d7d-ae85-06ee4de72d93/following-up-on-an-excellent-blog-post-we-discovered-linked-in-thread-we-dug-a-little-deeper-on-a-recent-wordpress-plugin-compromise.</guid><dc:creator><![CDATA[deepthoughts10@infosec.exchange]]></dc:creator><pubDate>Invalid Date</pubDate></item><item><title><![CDATA[We&#x27;ve been tracking this Adobe 0-day in Acrobat Reader.]]></title><description><![CDATA[Update: Adobe has a patch out!https://helpx.adobe.com/security/products/acrobat/apsb26-43.htmlAnd an associated CVE: CVE-2026-34621]]></description><link>https://board.circlewithadot.net/topic/4a91f82d-fc0a-466c-9dc8-bd1aa5f6a579/we-ve-been-tracking-this-adobe-0-day-in-acrobat-reader.</link><guid isPermaLink="true">https://board.circlewithadot.net/topic/4a91f82d-fc0a-466c-9dc8-bd1aa5f6a579/we-ve-been-tracking-this-adobe-0-day-in-acrobat-reader.</guid><dc:creator><![CDATA[ifin@infosec.exchange]]></dc:creator><pubDate>Invalid Date</pubDate></item><item><title><![CDATA[CPUID downloads were temporarily compromised earlier today.]]></title><description><![CDATA[CPUID downloads were temporarily compromised earlier today. We have a thread compiling analysis and IoCs for you to investigate:https://discourse.ifin.network/t/hwmonitor-download-compromised/249#ThreatIntel #IFIN #ThreatIntelligence]]></description><link>https://board.circlewithadot.net/topic/8062462d-89c6-42f0-8da8-cca4aa484163/cpuid-downloads-were-temporarily-compromised-earlier-today.</link><guid isPermaLink="true">https://board.circlewithadot.net/topic/8062462d-89c6-42f0-8da8-cca4aa484163/cpuid-downloads-were-temporarily-compromised-earlier-today.</guid><dc:creator><![CDATA[ifin@infosec.exchange]]></dc:creator><pubDate>Invalid Date</pubDate></item><item><title><![CDATA[#GAYINT #IFIN]]></title><description><![CDATA[#GAYINT #IFIN]]></description><link>https://board.circlewithadot.net/topic/ee207c63-f8b3-424c-a538-8f6e1740b1de/gayint-ifin</link><guid isPermaLink="true">https://board.circlewithadot.net/topic/ee207c63-f8b3-424c-a538-8f6e1740b1de/gayint-ifin</guid><dc:creator><![CDATA[cr0w@infosec.exchange]]></dc:creator><pubDate>Invalid Date</pubDate></item><item><title><![CDATA[#GAYINT #IFIN]]></title><description><![CDATA[@Taco_lad @da_667 @cR0w (not a 90s era swing band but whatevs)]]></description><link>https://board.circlewithadot.net/topic/cbd274c4-afe5-44f4-8b9d-1786a86ca6a4/gayint-ifin</link><guid isPermaLink="true">https://board.circlewithadot.net/topic/cbd274c4-afe5-44f4-8b9d-1786a86ca6a4/gayint-ifin</guid><dc:creator><![CDATA[viss@mastodon.social]]></dc:creator><pubDate>Invalid Date</pubDate></item></channel></rss>