PTI Wire · validation

The call scoreboard

Every forward call PTI Wire publishes lands on this page with its confidence band and a closing date. When the window closes, the call gets graded against public reporting and the evidence is linked. A wrong call stays on the board; nothing gets quietly deleted.

120calls made
56resolved
24right
17wrong
How grading works. Right means the called behavior showed up inside the window, backed by named public reporting. Wrong means the window closed without it. Partial means the direction held but the scope or timing didn't. Calls marked rolling describe ongoing activity and get reviewed on a fixed date instead of a single yes/no. Issue #1 shipped 2026-06-08, so the first grades post in late June.
What shows here. Issue #1 is the free public sample, so its calls appear in full. Calls from subscriber issues are listed by a short reference only, a product name or a TTP, enough to check the grade against the claim; the full call and its reasoning stay in the subscriber archive.
Live tracking: the open calls, as of 2026-08-24. Interim signal, not verdicts; each call still grades when its window closes.

Tracking toward Right (the called event is already on the public record): Cisco SD-WAN CVE-2026-20245 (vendor-confirmed config-push), LiteLLM CVE-2026-42271 (KEV, chained RCE), the SharePoint cluster (CVE-2026-50522 exploited 2026-07-20), Metabase GHSA-vwf4-m7j8-wcjf (Framework and Tally both disclosed theft), the keyv and cacheable npm takeover (Sigstore provenance minted on poisoned source, confirmed by Socket, Microsoft and Wiz), UNC6671 help-desk vishing into funds (Bloomberg and Reuters named 4 firms), Unit 42 token jacking (published research, resale economy documented), and the Cl0p PTC Windchill campaign, where the group named more than 40 organizations on 2026-08-12 and ReliaQuest published the custom implant on 08-18.

Monitoring (slow-burn or event-conditioned, no decisive in-window signal yet): nation-state edge and telecom pre-positioning (Issue #1 and #2), hacktivist DDoS, the frontier-AI KYC bypass economy, the remaining Issue #5 calls (PolinRider, Armored Likho, satcom ICS, Node.js disclosure reform), the JADEPUFFER follow-on, the Issue #8 AI-safety and cloud-native C2 calls, and the Issue #9 set, which mostly closes in September. Sixteen windows shut on 2026-08-24 and are graded below: 3 Right, 6 Partial, 7 Wrong. The pattern in the failures matters more than the tally. Eight of the 16 failed because the evidence that would have proved the call was already public before the window opened, which is the same window-design defect that produced the named-victim misses in the last round. 7-02 and 3-04 are the clearest cases, both written after the exploitation had already reached the federal catalog. Issue #12 changes the shape of its first 4 calls in response: each resolves on a dated forward event rather than on a named victim inside a short window. Issue #12 adds 10 new calls, listed in full below. Issue #11, published 2026-08-17, graded nothing and carried Issue #10's board forward unverified, which is why these 16 windows were still open. Its own 10 calls are listed below and none of them closes before 2026-10-16.

Issue #12 · Week of 2026-08-24 · subscriber issue

1VMware vCenter CVE-2026-59310 syslog traversal, reverse_ssh persistence, 361 victim addressesOPEN
PIR: Virtualization / Management Plane · Confidence: High · Window: 3 weeks · Closes: 2026-09-14
2TrueConf CVE-2026-72529 and CVE-2026-72530, Head Mare trojanized client installers, PhantomCoreOPEN
PIR: Collaboration / Software Distribution · Confidence: High · Window: 3 weeks · Closes: 2026-09-14
3SAP Commerce Cloud CVE-2026-58231 (CVSS 10) exploited 3 days after patchOPEN
PIR: Commerce Platform / ERP · Confidence: High · Window: 3 weeks · Closes: 2026-09-14
4GitLab CVE-2026-19478 unauthenticated GraphQL project deletion and forged merge recordsOPEN
PIR: Source Control / Provenance · Confidence: High · Window: 4 weeks · Closes: 2026-09-21
5StubMaker / BRIDGEHEAD dual-registry stealer, RubyGems plus npm, WSL gate to the Windows hostOPEN
PIR: Software Supply Chain · Confidence: Medium-High · Window: 5 weeks · Closes: 2026-09-28
6Cl0p names 40+ PTC Windchill victims, custom Java implant decrypts the PLM keystoreOPEN
PIR: Manufacturing / IP Extortion · Confidence: Medium-High · Window: 5 weeks · Closes: 2026-09-28
7Truffle Security leaked AWS keys: 526 root, 242 with AdministratorAccess, 88% still liveOPEN
PIR: Cloud / Non-human Identity · Confidence: Medium · Window: 6 weeks · Closes: 2026-10-05
8Lazarus CVE-2026-68820 AFD.sys zero-day in Operation Dream Job, MISTPEN and TroyOPEN
PIR: Nation-state / Defense · Confidence: Medium-High · Window: 6 weeks · Closes: 2026-10-05
9Agent payloads propagating through persistent instruction files; CircleCI MCP server GHSA-xv5j-cwgj-22r4OPEN
PIR: AI Agent Infrastructure · Confidence: Medium · Window: 8 weeks · Closes: 2026-10-19
10Joint advisory AA26-231A: AI-built tooling against exposed Siemens S7 controllersOPEN
PIR: OT / Critical Infrastructure · Confidence: Medium · Window: 8 weeks · Closes: 2026-10-19

Issue #11 · Week of 2026-08-17 · subscriber issue

Issue #11 was written and published outside the usual pipeline and uses a different template: a call, a timeframe, an explicit falsification test, and a basis, with High, Medium and Low bands and no PIR lines. The theme shown in the PIR field below is taken from each call's own subject. Band, window and close date are as published. This issue graded no prior calls.
1Scanners become the preferred way into the AI stack: build-chain security tooling as the poisoning vectorOPEN
PIR: AI Supply Chain / Build Tooling · Confidence: High · Window: 60 days · Closes: 2026-10-16
2An authorized agent causes a disclosed material incident, no stolen credential involvedOPEN
PIR: Agent Governance / Disclosure · Confidence: Low · Window: 90 days · Closes: 2026-11-15
3Carriers price agent authorization before supervisors mandate itOPEN
PIR: Cyber Insurance / AI Underwriting · Confidence: Medium · Window: 90 days · Closes: 2026-11-15
4First public fight over whether AI sat in the chain of causation under an AI exclusionOPEN
PIR: Cyber Insurance / Coverage Dispute · Confidence: Medium · Window: 90 days · Closes: 2026-11-15
5ERP is the new edge device: another maximum-severity pre-auth RCE exploited as a zero-dayOPEN
PIR: ERP / Mass Exploitation · Confidence: High · Window: 60 days · Closes: 2026-10-16
6DPRK IT worker placements resold as access to a separate financially motivated actorOPEN
PIR: Nation-state / Insider Access · Confidence: Low · Window: 90 days · Closes: 2026-11-15
7Attribution concedes it cannot separate operator from agent, as a standing methodology caveatOPEN
PIR: Attribution / Methodology · Confidence: Medium · Window: 60 days · Closes: 2026-10-16
8Instruction injection lands in KEV as the named exploited weaknessOPEN
PIR: AI / Vulnerability Management · Confidence: Low · Window: 90 days · Closes: 2026-11-15
9Exfiltration-only extortion crosses half of incidents in a published quarterly datasetOPEN
PIR: Ransomware / Extortion Economics · Confidence: Medium · Window: 90 days · Closes: 2026-11-15
10A financial supervisor names agent authorization as an expected controlOPEN
PIR: Regulation / Financial Services · Confidence: Medium · Window: 90 days · Closes: 2026-11-15

Issue #10 · Week of 2026-08-10 · subscriber issue

1Metabase pre-auth SQL injection GHSA-vwf4-m7j8-wcjf (CVSS 10, no CVE), vendor cloud breachedOPEN
PIR: Data Platform / Vendor Cloud · Confidence: High · Window: 3 weeks · Closes: 2026-08-31
2N-able N-central CVE-2026-18556 plus patch bypass CVE-2026-18577, Cloudflare Tunnel persistencePARTIAL
PIR: MSP / Remote Management · Confidence: High · Window: 2 weeks · Closes: 2026-08-24
Graded 2026-08-24, PARTIAL: one branch landed, one failed. The Record and The Hacker News both reported on 2026-08-10 that Microsoft Threat Intelligence tied Storm-1175's new StormEncryptor ransomware, first deployed 2026-08-02, to likely exploitation of CVE-2026-18577, which is the ransomware-tied-to-N-central branch of the call. Microsoft posted that finding over the weekend of 08-08 and 08-09, which may sit hours before the window opened. No named MSP or downstream customer disclosed an intrusion by 2026-08-23, and N-able's 08-10 update still says a limited number of customers. The Record.
3keyv / cacheable npm takeover, Shai-Hulud lineage, Sigstore provenance and rotation dead-man's switchOPEN
PIR: Software Supply Chain · Confidence: High · Window: 4 weeks · Closes: 2026-09-07
4UNC6671 / BlackFile help-desk vishing into hedge funds, passkey re-enrollment pretextOPEN
PIR: Identity / Financial Services · Confidence: Medium-High · Window: 5 weeks · Closes: 2026-09-14
5JetBrains TeamCity CVE-2026-63077 unauthenticated RCE, KEV 08-05OPEN
PIR: CI/CD / Build Integrity · Confidence: Medium-High · Window: 4 weeks · Closes: 2026-09-07
6Unit 42 token jacking: stolen AI API keys resold through new-api / one-api proxiesOPEN
PIR: AI Infrastructure / Credential Abuse · Confidence: Medium-High · Window: 6 weeks · Closes: 2026-09-21
7Forged tool calls in agent runtimes: AWS CVE-2026-18830, Google CVE-2026-18236, Vercel relay flawsOPEN
PIR: Agent Runtime · Confidence: Medium · Window: 8 weeks · Closes: 2026-10-05
8North Carolina Ports unattributed attack, 3 facilities manualOPEN
PIR: OT / Maritime Logistics · Confidence: Medium · Window: 4 weeks · Closes: 2026-09-07
9Apache Tomcat CVE-2026-34486, EncryptInterceptor fail-open introduced by its own patchOPEN
PIR: Application Infrastructure · Confidence: Medium · Window: 6 weeks · Closes: 2026-09-21
10House Select Committee "Stranger Pings" on PRC carriers embedded in US infrastructureOPEN
PIR: Geopolitics / Telecom · Confidence: Low · Window: 8 weeks · Closes: 2026-10-05

Issue #9 · Week of 2026-08-03 · subscriber issue

1Arista VeloCloud Orchestrator CVE-2026-16812 (CVSS 10, KEV), edge config tamperingWRONG
PIR: Network / SD-WAN Management Plane · Confidence: High · Window: 3 weeks · Closes: 2026-08-24
Graded 2026-08-24, WRONG: the window produced neither branch. All exploitation reporting on CVE-2026-16812 dates to 2026-07-27 through 07-29, before the window opened, from SecurityWeek, The Register and BleepingComputer, and Arista has not said who is attacking or how. Arista revised Security Advisory 0144 twice inside the window, on 2026-08-03 to add VeloCloud Orchestrator Hosted to affected platforms and on 08-10 to attach a CSAF file, and neither revision names a victim or describes the edge configuration tampering the call required. Arista.
2Cisco Secure FMC hard-coded password CVE-2026-20316, KEV 07-29OPEN
PIR: Security Tooling / Management Plane · Confidence: High · Window: 4 weeks · Closes: 2026-08-31
3Water utility OT attack across seven states, PLC lockout, attribution openOPEN
PIR: OT / Water Sector · Confidence: Medium-High · Window: 6 weeks · Closes: 2026-09-14
4Anthropic evaluation models breach three orgs, PyPI package ran on 15 systemsOPEN
PIR: AI Safety / Software Supply Chain · Confidence: Medium · Window: 8 weeks · Closes: 2026-09-28
5knaithe autonomous stack: DeepSeek plus Hermes Agent, 460+ targetsOPEN
PIR: Offensive AI / Mass Exploitation · Confidence: Medium-High · Window: 8 weeks · Closes: 2026-09-28
6Coldcard RNG fallback across five models, 1,196 addresses swept in 41 minutesOPEN
PIR: Firmware / Key Generation · Confidence: Medium · Window: 6 weeks · Closes: 2026-09-14
7EY client tax documents via third-party ITSM, ShinyHunters deadlineOPEN
PIR: Third-Party / Professional Services · Confidence: Medium-High · Window: 5 weeks · Closes: 2026-09-07
8MikroTik RouterOS CVE-2026-14227, WireGuard private key extractionOPEN
PIR: Network / VPN Key Material · Confidence: Medium · Window: 8 weeks · Closes: 2026-09-28
9FortiOS CVE-2025-68686 symlink persistence bypass, KEV 07-27OPEN
PIR: Edge Devices / Eviction · Confidence: Medium · Window: 6 weeks · Closes: 2026-09-14
10Toptech RCU II+ / Multiload II+ unauthenticated root debug interfaceOPEN
PIR: OT / Fuel Logistics · Confidence: Low · Window: 8 weeks · Closes: 2026-09-28

Issue #8 · Week of 2026-07-27 · subscriber issue

1Check Point SmartConsole auth bypass (CVE-2026-16232 KEV), policy tamperingWRONG
PIR: Security Tooling / Management Plane · Confidence: High · Window: 2 weeks · Closes: 2026-08-10
Graded 2026-08-10, WRONG: the 2-week window closed with no named victim and no in-window vendor incident report. Everything on the record still traces to Check Point's 2026-07-22 advisory and its statement that a handful of unnamed customers with internet-exposed management servers were notified, which was already true 5 days before the call was written. The only in-window Check Point disclosure was CVE-2026-18574 on 2026-08-03, which the vendor says shows no indication of exploitation. Rapid7.
2ServiceNow AI Platform pre-auth RCE (CVE-2026-6875), exploited from 07-18WRONG
PIR: ITSM / SaaS Initial Access · Confidence: High · Window: 2 weeks · Closes: 2026-08-10
Graded 2026-08-10, WRONG: nothing new landed inside the window. The Defused in-the-wild sighting (2026-07-18), the second sandbox-escape gadget chain, and Bishop Fox's Snowpick release with its 166-instance survey all predate the 07-27 opening. No named victim or vendor incident report appeared, ServiceNow maintains it sees no exploitation of instances it hosts, and the CVE had not reached the exploited catalog by 2026-08-09. Help Net Security.
3WordPress core wp2shell chain (CVE-2026-63030 + CVE-2026-60137 KEV)PARTIAL
PIR: Web / CMS Mass Exploitation · Confidence: High · Window: 3 weeks · Closes: 2026-08-17
Graded 2026-08-24, PARTIAL: Bitdefender published a wp2shell technical advisory on 2026-07-27, inside the window, confirming widespread exploitation and listing 5 attacker addresses, 5 web shell hashes and 5 malicious plugin droppers from an MDR investigation, and InMotion Hosting investigated 2 customer compromises in early August 2026. But the mass web shell activity was already public before the window opened, with BleepingComputer, Wiz and SANS ISC all documenting web shells and rogue administrator accounts on 2026-07-21, and no tracked defacement or SEO-spam campaign tied to wp2shell surfaced in the window. Bitdefender.
4Hugging Face breached by OpenAI evaluation models, sandbox escapeOPEN
PIR: AI Safety / Model Supply Chain · Confidence: Medium · Window: 8 weeks · Closes: 2026-09-21
5FakeAgent: malware Artifact hosted on claude.ai, Bing malvertising to SectopRATOPEN
PIR: Malvertising / AI Platform Abuse · Confidence: Medium-High · Window: 5 weeks · Closes: 2026-08-31
6Laundry Bear Zimbra view-based mail theft (CVE-2025-66376, AA26-204A)OPEN
PIR: Nation-state / Mail Infrastructure · Confidence: Medium-High · Window: 6 weeks · Closes: 2026-09-07
7Anubis halts Fairlife production, Coca-Cola 8-K, leak-site listingOPEN
PIR: Food Production / Extortion · Confidence: Medium · Window: 6 weeks · Closes: 2026-09-07
8HOLLOWGRAPH Microsoft 365 calendar command channel (Cavern framework)OPEN
PIR: Espionage / Cloud-native C2 · Confidence: Medium · Window: 8 weeks · Closes: 2026-09-21
9FakeGit / AgentBaiting: 7,600 repos, 800 fake AI skills and MCP serversOPEN
PIR: Dev Supply Chain / AI Agents · Confidence: Medium-High · Window: 6 weeks · Closes: 2026-09-07
10Chaos msaRAT browser-driven C2 over DevTools Protocol and WebRTCOPEN
PIR: Endpoint / Detection Evasion · Confidence: Medium · Window: 7 weeks · Closes: 2026-09-14

Issue #7 · Week of 2026-07-20 · subscriber issue

1SonicWall SMA1000 zero-days (CVE-2026-15409/15410), INC ransomware + UTA0533PARTIAL
PIR: Edge / Ransomware Access · Confidence: High · Window: 2 weeks · Closes: 2026-08-03
Graded 2026-08-03, PARTIAL: Volexity documented UTA0533 exploiting SonicWall SMA1000 from 2026-06-22, and Rapid7 and Resecurity tied INC ransomware to the CVE-2026-15409 to CVE-2026-15410 chain, with Huntress confirming seven affected customers. No victim organization has been named publicly, and a named victim is what the call required. Volexity.
2AD FS token-forgery zero-day (CVE-2026-56155 KEV) + Machine DPAPI key recoveryWRONG
PIR: Identity / Federation · Confidence: Medium-High · Window: 4 weeks · Closes: 2026-08-17
Graded 2026-08-24, WRONG: every supporting fact predates the window. Rapid7 covered CVE-2026-56155 in its 2026-07-14 Patch Tuesday analysis, CISA added it to the exploited catalog on 2026-07-14, and Microsoft credited its Detection and Response Team, implying discovery during a live intrusion. Searches for in-window token-forgery reporting and named victims through 2026-08-17 returned only hunt plans and explainers. Microsoft never named an attacker, a target or the exploitation chain. This is the defect that cost 8 of this round's grades: the call was written after the evidence was already public. Rapid7.
3SharePoint cluster widens (CVE-2026-58644 KEV) + machine-key persistenceRIGHT
PIR: Collaboration / Persistence · Confidence: Medium-High · Window: 3 weeks · Closes: 2026-08-10
Graded 2026-08-10, RIGHT: a genuinely new SharePoint remote code execution flaw reached the exploited catalog inside the window. CVE-2026-50522, a deserialization RCE rated 9.8 and distinct from the four CVEs in CISA's 2026-07-14 hardening alert, was added on 2026-07-22 with a 07-24 federal deadline, after watchTowr and Defused observed in-the-wild exploitation and machine-key theft following the 07-20 public proof of concept. The second branch failed: no named organization disclosed a SharePoint-origin intrusion in the window. Help Net Security.
4AsyncAPI CI/CD provenance-forgery supply chain (Miasma via OIDC trusted-publisher)PARTIAL
PIR: Supply Chain / CI-CD · Confidence: Medium-High · Window: 5 weeks · Closes: 2026-08-24
Graded 2026-08-24, PARTIAL: the mechanism landed and the named vector did not. Socket reported on 2026-08-04 that keyv 6.0.0 and the cacheable family published trojanized versions carrying a passing Sigstore attestation, because the project's own GitHub Actions release workflow built already-poisoned source after the attacker pushed to main, which is provenance forgery through a trusted release pipeline. Socket counted 2,234 poisoned artifacts across 444 package names. The call specifically named AsyncAPI and OIDC trusted-publisher token theft, and the decisive in-window artifact is keyv with a different path to the same forged attestation, so the direction held and the mechanism missed. Socket.
5HalluSquatting: AI-assistant hallucinated packages weaponizedOPEN
PIR: AI Dev Tooling / Supply Chain · Confidence: Medium · Window: 8 weeks · Closes: 2026-09-14
6Oracle E-Business Suite Payments takeover (CVE-2026-46817 KEV), 900+ exposedPARTIAL
PIR: ERP / Financial Systems · Confidence: Medium-High · Window: 4 weeks · Closes: 2026-08-17
Graded 2026-08-24, PARTIAL: Estee Lauder disclosed an Oracle E-Business Suite breach on 2026-07-21, inside the window, but tied it to CVE-2025-61882 and to unauthorized access on or around 2025-08-09, not to CVE-2026-46817, which is the flaw the call named. Through 2026-08-17 the called flaw produced no named actor, no extortion contact and no leak-site posting, and reporting stayed at Defused honeypot exploitation from 2026-06-27 plus the catalog entry of 2026-07-15. Help Net Security.
7RedWing Android bank-fraud MaaS on Telegram, target list expandsOPEN
PIR: Fraud / Mobile Banking · Confidence: Medium · Window: 6 weeks · Closes: 2026-08-31
8NetNut takedown displacement to rival residential-proxy networksOPEN
PIR: Criminal Infrastructure / Attribution · Confidence: Medium · Window: 8 weeks · Closes: 2026-09-14
9KNX building-automation exploitation (CVE-2023-4346 KEV), device brickingOPEN
PIR: OT / Building Automation · Confidence: Low (high-impact) · Window: 6 weeks · Closes: 2026-08-31
10Poisoned Tenant SaaS-invite abuse spreads to another AI/SaaS platformOPEN
PIR: Fraud / SaaS Abuse · Confidence: Medium · Window: 7 weeks · Closes: 2026-09-07

Issue #6 · Week of 2026-07-13 · subscriber issue

1Langflow exploited CVEs (CVE-2026-55255 KEV + CVE-2026-33017), flow hijackRIGHT
PIR: AI Infrastructure / Initial Access · Confidence: High · Window: 2 weeks · Closes: 2026-07-27
Graded 2026-08-03, RIGHT: A third exploited Langflow flaw landed inside the window: CVE-2026-0770, unauthenticated remote code execution rated 9.8, added to CISA KEV on 2026-07-21 with cloud credential and API-key theft documented as the outcome. That is the call: an exposed Langflow means the embedded keys are gone. BleepingComputer.
2Agent-run ransomware precedent (JADEPUFFER): second case or vendor detectionsOPEN
PIR: AI / Ransomware Tradecraft · Confidence: Medium · Window: 8–10 weeks · Closes: 2026-09-21
3FortiBleed credential theft to INC/Lynx ransomware pipelineWRONG
PIR: Edge / Ransomware · Confidence: Medium-High · Window: 4 weeks · Closes: 2026-08-10
Graded 2026-08-10, WRONG: the window produced an event that cut against the call rather than a null. No Nextcloud advisory or CVE was assigned for the claimed zero-day, and no Fortinet or CISA guidance on sniffer-command abuse landed after the pre-window 2026-06-18 hardening alert. The one real in-window INC surge, in Resecurity research covering victims listed 07-17 to 08-01 across Australia, the US, the UAE, Colombia and Switzerland, attributes initial access to SonicWall SMA 1000 zero-days, with no Fortinet edge in the intrusion narrative. Resecurity.
4Joomla extension KEV cluster (SP Page Builder, Joomlack, iCagenda, Balbooa)PARTIAL
PIR: Web / CMS Exposure · Confidence: Medium-High · Window: 4 weeks · Closes: 2026-08-10
Graded 2026-08-10, PARTIAL: the named component failed and the lane stayed live. No Joomla or WordPress extension CVE reached the exploited catalog between 2026-07-13 and 08-10; the only in-window CMS additions were two WordPress Core CVEs on 07-21. But Balbooa, the same vendor as one of the four extensions in the original cluster, pushed Gridbox 2.20.2 out on 2026-07-29 into live exploitation, with at least 3 actively exploited flaws confirmed including CVE-2026-65884 rated 10.0. No defacement or SEO-spam cluster inside the window traces to the four CVEs we named. mySites.guru.
5Fake payment-SDK packages on npm/PyPI (Paysafe/Skrill/Neteller)WRONG
PIR: Supply Chain / Fintech · Confidence: Medium-High · Window: 5 weeks · Closes: 2026-08-17
Graded 2026-08-24, WRONG: Socket published the Paysafe, Skrill and Neteller typosquat cluster on 2026-07-07 and BleepingComputer covered it the same week, 6 days before the window opened on 07-13. Socket's blog index for 07-13 through 08-17 carries no payment-brand registry cluster; the in-window research covers Alibaba developer RATs on 07-28, Joyfill on 07-28 and the keyv worm on 08-04. The Braintree NuGet card skimmer also predates the window at 2026-07-09. Socket.
6Indra Group / The Gentlemen leak-site deadline, defense-sector extortionWRONG
PIR: Defense / Extortion · Confidence: Medium-High · Window: 3 weeks · Closes: 2026-08-03
Graded 2026-08-03, WRONG: the window closed with nothing on the record. No publication of Indra data surfaced: the 2026-06-30 listing and its nine-day deadline produced no samples, Indra maintains the incident was limited to one subsidiary, and reporting of a second European defense supplier listed inside the window exists only in aggregator coverage we could not corroborate to a primary source. Neither half of the call landed. Cybernews.
7Nidec CCI / BlackField $2M demand, JP subsidiary blind spotWRONG
PIR: Manufacturing / Extortion · Confidence: Medium · Window: 5 weeks · Closes: 2026-08-17
Graded 2026-08-24, WRONG: Nidec issued its second report on 2026-08-04 through Business Wire, and forensic investigators found no explicit evidence of a data leak, BlackField published only part of the folder and file list, no files reached the dark web, and the Taiwanese unit kept operating normally. Ransomware.live lists BlackField with 2 victims total, the last on 2026-07-03 before the window opened, and marks the group inactive since. Nidec did not revise its subsidiary-independence language, which was the second branch of the call. Nidec.
8Schneider Easergy MiCOM Px40 relay SNMP exposure (CVE-2026-4832)OPEN
PIR: OT / Grid Protection · Confidence: Low (high-impact) · Window: 7 weeks · Closes: 2026-08-31
9BEC advisory or named seven-figure payment-redirection lossWRONG
PIR: Fraud / Finance Ops · Confidence: Medium · Window: 6 weeks · Closes: 2026-08-24
Graded 2026-08-24, WRONG: the FBI IC3 press-release index carries 4 releases inside the window, covering IC3 impersonation on 2026-07-20, water-sector PLCs on 07-30, swatting on 08-04 and sexual exploitation on 08-10, and none addresses payment redirection. FinCEN's standing BEC advisories remain FIN-2016-A003 and FIN-2019-A005 with nothing new issued. The named seven-figure losses found, Pine Bluff schools at $3.2M and Dickinson schools at $4.8M, both date to April 2026, before the window opened. An advisory or a named loss was what the call required, and neither arrived. FBI IC3.
10Rival-state convergence on identity/biometric data stores (One Target, Two Flags)OPEN
PIR: Nation-state / Identity Records · Confidence: Medium · Window: 7 weeks · Closes: 2026-08-31

Issue #5 · Week of 2026-07-06 · subscriber issue

1Microsoft SharePoint deserialization RCE (CVE-2026-45659), Storm-2603 / WarlockRIGHT
PIR: Collaboration / Initial Access · Confidence: High · Window: 1–2 weeks · Closes: 2026-07-20
Graded 2026-07-27: On-premises SharePoint exploitation stayed live through the window and widened: Microsoft confirmed CVE-2026-56164 and CVE-2026-58644 under active exploitation, CISA issued a hardening alert on 2026-07-14, and WatchTowr honeypots recorded successful exploitation of CVE-2026-50522 on 2026-07-20 within hours of a public exploit, with IIS machine-key theft as the persistence move. Storm-2603 and Warlock remain attached to the cluster. Help Net Security.
2Miasma npm worm: AI coding-assistant persistence, Go expansionRIGHT
PIR: Supply Chain / AI Dev Tooling · Confidence: High · Window: 2–6 weeks · Closes: 2026-08-17
Graded 2026-08-24, RIGHT: SafeDep, Socket and Aikido reported on 2026-08-04 that a credential-stealing npm worm starting at keyv 6.0.0 poisoned 1,684 versions across 420 package names, and the Keyv repository carried a session-start hook in a coding assistant's own settings file plus a folder-open task calling the same staged script, which is the persistence path the call named. Aikido placed the activity in the Shai-Hulud family. Socket separately documented a Miasma loader in the AsyncAPI npm namespace on 2026-07-14, inside the window. The Go-expansion branch did not land; the only Go reporting found predates the window. The Hacker News.
3PolinRider DPRK cross-ecosystem developer campaignOPEN
PIR: Nation-state / Dev Supply Chain · Confidence: Medium-High · Window: 6–8 weeks · Closes: 2026-08-31
4Armored Likho / BusySnake Stealer, LLM-built loadersOPEN
PIR: Nation-state / Energy · Confidence: Medium · Window: 4–8 weeks · Closes: 2026-08-31
5Aflac Japan breach: policyholder fraud follow-onWRONG
PIR: Insurance / Fraud · Confidence: Medium-High · Window: 4–6 weeks · Closes: 2026-08-17
Graded 2026-08-24, WRONG: Aflac Japan reported its investigation findings to the Financial Services Agency on 2026-07-31 and stated that no misuse of the leaked information has been confirmed. It revised the counts to roughly 4.4 million customers, roughly 220,000 with premium transfer account details, and roughly 40,000 agencies, and cut 4 executives' pay. The FSA report order reached Aflac on 2026-06-30, before the window opened, and did not spread to other Japanese insurers. English and Japanese searches surfaced warnings only, with no documented phishing wave. Aflac.
6KDDI six-ISP shared-mail breach: credential stuffingWRONG
PIR: Identity / Telecom · Confidence: Medium-High · Window: 4–5 weeks · Closes: 2026-08-10
Graded 2026-08-10, WRONG: no dated report of credential stuffing or account takeover against any Japanese consumer service traced to this breach appeared before the window closed. KDDI's own update, first published 2026-07-06 and revised 07-21, reports forced password resets across the six ISPs and names no downstream abuse, and BIGLOBE's incident page records a reset run with the same silence on consequences. Credential stuffing being generally likely is not a result. BIGLOBE.
7Satcom / space-segment ICS exposure (iDirect iQ-Series, CubeSpace)OPEN
PIR: OT / Space & Satcom · Confidence: Low, high-impact · Window: 6–8 weeks · Closes: 2026-08-31
8Browser-extension update-channel abuse (VPN Go clipper)RIGHT
PIR: Browser / Endpoint · Confidence: Medium · Window: 4–8 weeks · Closes: 2026-08-24
Graded 2026-08-24, RIGHT: Socket published research on 2026-08-19 covering 77 linked Firefox extensions and showed that 9 confirmed malicious identities shipped earlier versions as sports-score applications under the same extension IDs before later versions replaced that code with wallet stealers, which is the update-channel abuse the call described. Socket named deep-tip-sharp, formerly the basketball shell Quick Shield, and bolt-save-vault, formerly Lite Swatch. Caveat we own: Socket dated the transitions through version history rather than publishing a date for each malicious update, so the in-window placement rests on the publication date of the research. Socket.
9TimbreStealer invoice-lure updater side-loadingWRONG
PIR: Fraud / Finance Ops · Confidence: Medium · Window: 4–5 weeks · Closes: 2026-08-10
Graded 2026-08-10, WRONG: the window produced no new TimbreStealer reporting at all. The campaign's only write-up is WatchGuard's, dated 2026-07-04, two days before the window opened, and it fixes targeting on Mexico through timezone gating and Russian-locale rejection, so the called spread beyond Mexican targets never reached the record. The mail-artifact exfiltration behavior was documented in that same pre-window report, which makes it a restated condition. WatchGuard.
10AI-generated report flood forces OSS disclosure changesOPEN
PIR: AI / OSS Governance · Confidence: Medium · Window: this quarter · Closes: 2026-09-28

Issue #4 · Week of 2026-06-29 · subscriber issue

1Ubiquiti UniFi OS triple-10.0 RCE chain (CVE-2026-34908/09/10)RIGHT
PIR: Network / Edge · Confidence: High · Window: 1–2 weeks · Closed: 2026-07-13
Graded 2026-07-20: CISA added the UniFi OS chain (CVE-2026-34908/09/10, three CVSS 10.0 flaws) to its exploited catalog on 2026-06-23 after confirmed in-the-wild exploitation by a Mirai/Gafgyt botnet; PwnDefend documented the CVE-2026-34910 to Mirai-loader chain on 06-09 and roughly 100,000 endpoints stayed exposed into July. The Hacker News.
2PTC Windchill / FlexPLM deserialization RCE (CVE-2026-12569)RIGHT
PIR: Manufacturing / PLM · Confidence: High · Window: 2–3 weeks · Closes: 2026-07-20
Graded 2026-07-27: CVE-2026-12569 was confirmed exploited in the wild against internet-exposed Windchill and FlexPLM, with JSP web shells and exfiltration of engineering and product data (ReliaQuest), and an extortion wave carrying Cl0p tradecraft opened around 2026-07-20 with mail headed "Windchill PDMLink module serious data leak". SecurityWeek.
3Cisco Unified CM SSRF (CVE-2026-20230)WRONG
PIR: Comms / Unified Communications · Confidence: Medium-High · Window: 2–4 weeks · Closes: 2026-07-27
Graded 2026-08-03, WRONG: no pivot was reported inside the window. CVE-2026-20230 remains a confirmed exploited SSRF in Cisco Unified CM (KEV 2026-06-25, with Defused reporting arbitrary file writes), but that evidence predates the call and nothing published inside the window describes the move into internal services we predicted. CISA KEV.
4Exposed OT / serial-bridge gear amid the ICS advisory wave (Lantronix EDS5000)PARTIAL
PIR: OT / ICS · Confidence: Low, high-impact · Window: 6–8 weeks · Closes: 2026-08-17
Graded 2026-08-24, PARTIAL: exposed controllers got hit in the window and serial bridges did not. The FBI and CISA updated joint advisory AA26-097A on 2026-07-22 documenting Iranian-affiliated actors reaching internet-exposed Rockwell, Schneider and Siemens PLCs and stealing project files, and LevelBlue reported on 2026-08-04 that attackers changed addresses and passwords on internet-facing Allen-Bradley MicroLogix controllers at more than 30 Minnesota water systems on 2026-07-26 and 07-27. No in-window report covers Lantronix EDS5000 or any serial-to-IP bridge, and its catalog entry dates to 2026-06-23, before the window opened. LevelBlue.
5Infostealer displacement after Operation Endgame (StealC / Amadey)PARTIAL
PIR: Identity / Infostealer · Confidence: Medium · Window: 4–8 weeks · Closes: 2026-08-24
Graded 2026-08-24, PARTIAL: no named, dated event inside the window links stealer displacement to the 2026-06-24 Operation Endgame action, and no confirmed StealC or Amadey rebuild appeared. The displacement facts available all predate the window: Intrinsec dated Vidar 2.0 to the top of the market on 2026-04-24, and Flashpoint first saw Remus for sale in March 2026. Arctic Wolf reported expanding CastleLoader and NeedleStealer campaigns on 2026-07-27, inside the window, but tied them to no takedown, so the market did move and the causal link the call asserted stayed unproven. Arctic Wolf.
6Qilin ransomware, manufacturing-ledRIGHT
PIR: Ransomware / Manufacturing · Confidence: High · Window: 2–6 weeks · Closes: 2026-08-10
Graded 2026-08-10, RIGHT: ZeroFox's Q2 2026 Ransomware Wrap-Up, published 2026-07-06, resolved the specific claim that was still open when the call was written, with Qilin finishing Q2 as the most active operation worldwide at 295 incidents and manufacturing the most-targeted industry at 374 incidents. Named manufacturing victims kept appearing across the whole window, from Bolt & Nut Manufacturing on 07-20 to Chun Tai Sing Chemical Industry on 08-09. Caveat we own: those listings are the group's own leak-site claims, and this was a low-difficulty call when written. ZeroFox.
7Klue / Icarus OAuth-token SaaS supply-chain theftPARTIAL
PIR: SaaS / Identity · Confidence: Medium-High · Window: 4–6 weeks · Closes: 2026-08-10
Graded 2026-08-10, PARTIAL: the disclosure landed inside the window and our mechanism was wrong. Klue published its completed CrowdStrike investigation on 2026-07-01, and the root cause was a stolen GitHub personal access token used to inject code that harvested Salesforce OAuth tokens, not the long-disused but still-live credential the call described, which also undercuts the watch item about tokens outliving a retired integration. Icarus went quiet rather than publishing, and no second SaaS-integration OAuth theft was disclosed before the window closed. Klue.
8CI/CD provenance forgery via OIDC theft (Mini Shai-Hulud / TeamPCP)OPEN
PIR: Supply Chain / CI-CD · Confidence: High · Window: this quarter · Closes: 2026-09-28
9MCP tool-poisoning and AI-gateway takeover (LiteLLM chain)OPEN
PIR: AI / Agent Tooling · Confidence: Medium, high-impact · Window: this quarter · Closes: 2026-09-21
10Vendor-payment and wire fraud into the fiscal closeWRONG
PIR: Fraud / BEC · Confidence: Medium-High · Window: 2–4 weeks · Closes: 2026-07-27
Graded 2026-08-03, WRONG: trend data is not a result. Vendor banking-change and finance impersonation stayed the leading payments-fraud pattern in 2026 reporting, and no named, dated vendor-payment or wire-fraud loss tied to the June 30 fiscal close surfaced inside the window. BEC statistics 2026.

Issue #3 · Week of 2026-06-22 · subscriber issue

1Splunk CVE-2026-20253 unauth RCE in the SOC platformRIGHT
PIR: Security Tooling / SOC · Confidence: High · Window: 1–2 weeks · Closed: 2026-07-06
Graded 2026-07-07: CISA added Splunk CVE-2026-20253 (CVSS 9.8 unauthenticated RCE) to its exploited catalog on 2026-06-18 with a three-day deadline; SecurityWeek reported exploitation days after disclosure and WatchTowr published a working exploit, confirming the SOC platform itself as an active entry point. SecurityWeek.
2Joomla JCE CVE-2026-48907 mass web-shellRIGHT
PIR: Web / CMS · Confidence: High · Window: 2–3 weeks · Closes: 2026-07-13
Resolved early 2026-07-07 — RIGHT: CISA added Joomla JCE CVE-2026-48907 (CVSS 10.0 unauth RCE) to its exploited catalog on 2026-06-16 with automated web-shell attacks confirmed and public exploit code out. The Hacker News.
3Microsoft Defender RoguePlanet local-to-SYSTEMPARTIAL
PIR: Endpoint / EDR · Confidence: High · Window: 2–4 weeks · Closes: 2026-07-20
Graded 2026-07-27 — PARTIAL: The local-to-SYSTEM path was confirmed and fixed inside the window (Microsoft out-of-band patch 2026-07-09, CVE-2026-50656, Malware Protection Engine 1.1.26060.3008), but Microsoft's advisory states the flaw was not exploited in the wild and the only contrary claim carried no supporting detail, so the exploitation half of the call is unproven. Help Net Security.
4Arista EOS CVE-2026-7473 tunnel decap, no patch comingWRONG
PIR: Network / Edge · Confidence: Medium-High · Window: 4–8 weeks · Closes: 2026-08-17
Graded 2026-08-24, WRONG: everything supporting this call predates the window opening on 2026-06-22. Arista flagged exploitation in the wild in advisory 0137 on 2026-05-05, CISA added CVE-2026-7473 to the exploited catalog on 2026-06-09 with a 2026-06-23 federal deadline, and Eclypsium published its no-patch analysis on 2026-06-16. Searches for in-window exploitation reporting, named victims or exposure counts through 2026-08-17 found none; only a GitHub proof of concept followed, cited in a 2026-07-23 page update whose own date could not be confirmed. Eclypsium.
5The Gentlemen ransomware into healthcareWRONG
PIR: Ransomware / Healthcare · Confidence: High · Window: 2–6 weeks · Closes: 2026-08-03
Graded 2026-08-03, WRONG: the group's standing was already true the day we made the call, and nothing moved inside the window. The Gentlemen was assessed the most active ransomware operation of Q2 2026 and ranks among the most active strains against healthcare in H1 reporting, but its documented hospital victim, Caribbean Medical Center at 92,000 individuals, was listed on 2026-02-17, before this window, and no in-window hospital listing surfaced. The Insurer.
6Storm server-side infostealer, session replayRIGHT
PIR: Identity / Session · Confidence: High · Window: ongoing · Closes: 2026-07-20
Resolved early 2026-07-07 — RIGHT: Varonis and BleepingComputer documented the Storm server-side stealer decrypting harvested cookies on the operator server to restore authenticated sessions, the called capability, in active use. Varonis.
7OAuth connected-app SaaS bulk export (Scattered LAPSUS$ Hunters)RIGHT
PIR: SaaS / Identity · Confidence: Medium-High · Window: 4–6 weeks · Closes: 2026-08-03
Graded 2026-08-03, RIGHT: Microsoft's Defender Security Research team published a year of ShinyHunters-linked OAuth abuse against Salesforce on 2026-07-13: vishing users into approving a malicious connected app dressed as Data Loader, compromised SaaS vendor integrations, and Experience Cloud guest access, with CRM bulk export as the objective and sign-in monitoring blind to it. Microsoft added OAuth risk scoring in response. Microsoft.
8Autonomous AI supply-chain poisoning (hackerbot-claw / LiteLLM)OPEN
PIR: AI / Agent Supply Chain · Confidence: Medium · Window: this quarter · Closes: 2026-09-21
9Chrome V8 CVE-2026-11645 zero-day drive-byWRONG
PIR: Browser / Endpoint · Confidence: Medium · Window: 4–6 weeks · Closes: 2026-08-03
Graded 2026-08-03, WRONG: nothing new appeared inside the window. CVE-2026-11645 is a confirmed exploited V8 out-of-bounds read and write (patched 2026-06-08, KEV 06-09), Google disclosed no victimology, and no campaign has been publicly tied to it, so the drive-by half of the chain has no event behind it. Help Net Security.
10Iran-nexus / pro-Russia OT probing, tank gaugesRIGHT
PIR: OT / Geopolitics · Confidence: Low, high-impact · Window: 6–8 weeks · Closes: 2026-08-17
Graded 2026-08-24, RIGHT: both actor branches landed inside the window. The FBI, CISA, NSA, EPA, DOE, Cyber Command and Treasury updated joint advisory AA26-097A on 2026-07-22, expanding observed Iranian-affiliated targeting of internet-exposed PLCs to Schneider and Siemens and adding project-file theft, with indicator addresses active through July 2026. LevelBlue reported on 2026-08-04 that the Municipality of Saint-Noel confirmed a 2026-07-23 intrusion into its drinking-water station, claimed by pro-Russia group Z-Pentest. The automatic tank gauge named in the call produced no in-window event, and no formal US attribution of the 07-26 and 07-27 Minnesota attacks to Iran exists. FBI IC3.

Issue #2 · Week of 2026-06-15 · subscriber issue

1PeopleSoft CVE-2026-35273 exploitation spreads past educationRIGHT
PIR: Initial Access / ERP · Confidence: High · Window: 2–4 weeks · Closed: 2026-07-13
Graded 2026-07-20: The ShinyHunters PeopleSoft campaign (CVE-2026-35273) spread well past education: the NAIC insurance regulator confirmed a breach on 2026-06-29 and Nissan disclosed an employee-data breach tied to the same Oracle zero-day, both outside the education sector where the campaign began. BleepingComputer.
2Cisco SD-WAN Manager CVE-2026-20245 edge config-pushOPEN
PIR: Network / Edge · Confidence: Medium-High · Window: this quarter · Closes: 2026-09-15
3AI-gateway / MCP unauth RCE (LiteLLM class)OPEN
PIR: AI Infra / Supply Chain · Confidence: Medium · Window: this quarter · Closes: 2026-09-15
4SSL-VPN smash-and-grab, sub-hour encryption (Akira)RIGHT
PIR: Ransomware / Access · Confidence: High · Window: 2–4 weeks · Closes: 2026-07-13
Resolved early 2026-07-07 — RIGHT: Arctic Wolf, Rapid7, and Huntress all tracked the Akira SonicWall SSL-VPN campaign as active through the window, dwell from VPN login to encryption near an hour, MFA bypassed with pre-harvested credentials. Arctic Wolf.
5ClickFix fake-CAPTCHA infostealer, macOS includedOPEN
PIR: Identity / Cred theft · Confidence: High · Window: rolling · Reviewed: 2026-08-03
6Frontier-AI KYC bypass economy (stealer logs, verified accounts, deepfake liveness)PARTIAL
PIR: Identity / AI Access · Confidence: Medium-High · Window: 4–8 weeks · Closes: 2026-08-10
Graded 2026-08-10, PARTIAL: the KYC half arrived and the bypass half did not. Anthropic's identity verification went live on 2026-07-08, requiring government photo ID and a live selfie, which converted the mandate this call flagged as announced rather than enforced into a real control. Unit 42's token-jacking research on 2026-08-06 corroborates the stolen-credential and account-resale limb from a source other than the original single-vendor report, but its driver is cost arbitrage, not identity-verification defeat. Nothing dated inside the window showed KYC-passed AI accounts for sale or a liveness-bypass service naming AI onboarding. Unit 42.
7Help-desk vishing into finance & insurancePARTIAL
PIR: Identity / Social eng · Confidence: Medium-High · Window: 4–6 weeks · Closes: 2026-07-27
Graded 2026-08-03, PARTIAL: Help-desk and voice social engineering stayed dominant, with Microsoft documenting on 2026-07-13 vishing that walked employees through malicious OAuth consent, and Teams-based vishing reported up roughly tenfold. The sector half is unproven: documented victims sit in retail, education and manufacturing, and no dated finance or insurance help-desk takeover appeared inside the window. Microsoft.
8AI-voice BEC into quarter-endRIGHT
PIR: Fraud / BEC · Confidence: High · Window: 2–3 weeks · Closed: 2026-07-06
Graded 2026-07-07: AI-generated voice, video, or text now features in roughly 40% of BEC attempts (up from under 5% in 2023), with per-incident losses near $4.1M and a reported $25.6M executive-impersonation case, aimed at wire and vendor-payment approvals. The quarter-end timing specifically is the softer edge of the call. AI-BEC 2026.
9PRC telecom/edge pre-positioning, no clean evictionPARTIAL
PIR: Geopolitics / Telecom · Confidence: Low, high-impact · Window: 6–8 weeks · Closes: 2026-08-10
Graded 2026-08-10, PARTIAL: a positive dated finding landed, on a claim adjacent to ours rather than ours. The House Select Committee on the CCP published a bipartisan investigation on 2026-08-04 finding China Mobile, China Unicom and China Telecom still embedded in US infrastructure after FCC Section 214 revocations, retaining equipment, interconnection agreements and data-center presence. That documents persisting vendor and infrastructure presence, not confirmed persisting intruder access in AT&T, Verizon or T-Mobile, which is what the call claimed. Owning the structural problem: "no clean eviction" is close to unfalsifiable, because silence reads as support. The Record.
10Shai-Hulud forks hit trusted package scopesRIGHT
PIR: Supply Chain / CI-CD · Confidence: High · Window: 2–6 weeks · Closes: 2026-07-27
Resolved early 2026-07-07 — RIGHT: forks hit trusted scopes repeatedly in-window: Miasma compromised @redhat-cloud-services npm packages, then LeoPlatform and @immobiliarelabs, with TrapDoor and Hades alongside. Socket.

Issue #1 · Week of 2026-06-08 · read the full issue

1Edge VPN, firewall, and SAML-IdP appliances stay the number-one ransomware on-ramp.RIGHT
PIR: Ransomware / Initial Access · Confidence: High · Window: 2–4 weeks · Closed: 2026-07-06
Graded 2026-07-07: Verizon's 2026 DBIR put edge-device and VPN exploitation at 22% of breaches (up ~7x) and named vulnerability exploitation the top initial-access vector for the first time; PAN-OS CVE-2026-0257 and the FortiBleed operation (73,000+ devices) kept the called appliances in active abuse. DBIR 2026.
2FortiClient EMS becomes a direct path to your endpoint fleet.RIGHT
PIR: Initial Access / Endpoint Management · Confidence: High · Window: rolling · Reviewed: 2026-07-06
Graded 2026-07-07: Arctic Wolf documented an active cluster exploiting FortiClient EMS CVE-2026-35616 to push the EKZ infostealer, disguised as a Fortinet patch, onto EMS-managed endpoints, the controller-to-fleet path this call described; CISA KEV-listed. Arctic Wolf.
3The infostealer "log-to-lead" pipeline compresses a breach to under four days.RIGHT
PIR: Identity / Credential Theft · Confidence: High · Window: rolling · Reviewed: 2026-07-06
Graded 2026-07-07: The infostealer-to-access-to-ransomware pipeline held and intensified: June's Operation Endgame disrupted StealC and Amadey as the "assembly lines" for ransomware and fraud (326 servers, 27M credentials), and server-side stealers like Storm kept turning one infection into authenticated access. Operation Endgame.
4Stolen session cookies overtake stolen passwords.RIGHT
PIR: Identity / Session Security · Confidence: Medium-High · Window: this quarter · Closed: 2026-06-30
Graded 2026-07-06: 2026 reporting put stolen session cookies and tokens at the center of intrusions inside the window: Huntress tracked session theft in 86% of breaches, and June's 24-billion-record dump circulated with live session data.
5Self-propagating npm/PyPI worms keep mutating week to week.RIGHT
PIR: Supply Chain · Confidence: High · Window: 2–6 weeks · Closes: 2026-07-20
Resolved early 2026-07-07 — RIGHT: the weekly worm cadence is on the record: the Mastra easy-day-js typosquat hit 140+ npm packages on June 17, the Miasma / Mini Shai-Hulud family pushed fresh waves June 24-26, with TrapDoor and Hades alongside. The called behavior has already occurred, ahead of the window. Socket.
6CI/CD secret theft moves upstream into typosquats and dependency confusion.RIGHT
PIR: Supply Chain / Cloud · Confidence: Medium · Window: this quarter · Closed: 2026-06-30
Graded 2026-07-06: the June 17 Mastra compromise planted the typosquat easy-day-js as a dependency across 140+ npm packages to steal credentials (Microsoft, Socket); Miasma waves stole registry and CI/CD tokens through June.
7Vendor-payment redirection rises into quarter-end.PARTIAL
PIR: Fraud / BEC · Confidence: High · Window: 2–3 weeks · Closed: 2026-06-29
Graded 2026-07-06: the direction held on trend data (AFP: wires most-targeted, BEC at roughly three in four organizations), but no named, dated vendor-redirection incident inside the window surfaced in public reporting; our bar for Right requires one.
8Nation-state crews keep pre-positioning on edge devices in critical infrastructure.PARTIAL
PIR: Geopolitics / OT · Confidence: Low, high-impact · Window: 6–8 weeks · Closes: 2026-08-03
Graded 2026-08-03, PARTIAL: Edge persistence landed and attribution did not. CISA added Arista VeloCloud CVE-2026-16812 and Fortinet CVE-2025-68686, a bypass of a symbolic-link persistence patch, on 2026-07-27, then Cisco FMC CVE-2026-20316 on 07-29, and more than 30 Minnesota water systems took a coordinated OT attack on 07-26 and 07-27 with PLCs targeted and operator passwords changed. Nation-state attribution remains under investigation with no formal finding, so the pre-positioning half holds and the actor half does not. The Hacker News.
9Hacktivist DDoS and OT probing track geopolitical flashpoints.OPEN
PIR: Geopolitics / DDoS · Confidence: Medium, event-conditioned · Window: rolling · Reviewed: 2026-08-03
10A patched Android Framework flaw is being exploited on real devices.RIGHT
PIR: Mobile / Endpoint · Confidence: Medium · Window: 4–6 weeks · Closes: 2026-07-20
Resolved early 2026-07-07 — RIGHT: CISA added Android Framework CVE-2025-48595 to its exploited-vulnerabilities catalog on 2026-06-02, confirming in-the-wild exploitation on real devices, the exact claim. CISA KEV.

Most intelligence products never tell you their hit rate. This page is the hit rate. If you think a grade is wrong once it posts, reply to any issue and argue it; we'll print the better case.

Subscribe to PTI Wire