July 8, 2026
- North Korea's PolinRider supply-chain campaign continues to expand, with new malicious Go modules and fresh JSONKeeper-based C2 URLs dropping and executing loaders via Node, per Nextron and Socket tracking. Nextron · Threat Activity
in Synacktiv Drops a Kerberos Reflection Bypass That Hands Attackers SYSTEM