Install
SOC Prime builds collective cyber defense by fusing Detection as Code, Sigma, and MITRE ATT&CK® to help teams proactively defend against emerging threats.
- 25articles · 30d
- 2+ day agolatest article
- Aug 19, 2026earliest in window
- 88%with images
- 253avg words
- Science & Technology 21
- Software 18
- Computers & Electronics 16
- Business & Industrial 5
- Conflict, War & Peace 4
- Crime & Law 4
- Internet & Telecom 4
- Software Dev. 2
Please confirm you are human
This browser or connection looks automated. Press and continuously hold the control for 3 seconds to enable Google-hosted web results and, when separately allowed, AI-assisted answers.
A successful check enables 100 search requests. Interactive access does not authorize scraping, systematic collection, or reuse of search output.
News
Kimsuky LNK Malware Uses Multi-Channel C2
2+ day, 15+ hour ago (121+ words) SOC Prime Bias: Critical We are still updating this part. Rationale: This section details the precise execution of the adversary technique (TTP) designed to trigger the detection rule. The commands and narrative MUST directly reflect the TTPs identified and aim…...
CVE-2026-85880 & CVE-2026-81963 Windows Zero-Days
3+ day, 9+ hour ago (559+ words) Microsoft’s September 2026 Patch Tuesday addresses two Windows privilege escalation vulnerabilities already exploited in the wild. Tracked as CVE-2026-85880 and CVE-2026-81963, both flaws carry a CVSS score of 7.8 and can enable attackers with initial local access to escalate privileges to SYSTEM,…...
CVE-2026-75650: Critical Magento Zero-Day RCE
4+ day, 10+ hour ago (1042+ words) Adobe has released an emergency security update addressing a maximum-severity vulnerability in Adobe Commerce and Magento Open Source that attackers are already exploiting in the wild. Tracked as CVE-2026-75650 and rated 10.0 on the CVSS scale, the flaw enables unauthenticated remote…...
Post-DEF CON Phishing Abuses Google Apps Script
3+ week, 1+ day ago (169+ words) SOC Prime Bias: High Users should treat unexpected requests to execute terminal commands, bypass Gatekeeper, or install manual updates from document sidebars as suspicious. Organizations should monitor for unusual Google Apps Script activity and unauthorized use of code-signing certificates. Strong…...
SoftEther VPN Malware Targets Korean Web Servers
3+ week, 2+ day ago (274+ words) SOC Prime Bias: High The Larva-26010 threat actor is targeting web and MS-SQL servers in South Korea to deploy SoftEther VPN. Compromised systems are repurposed as VPN servers, potentially using cascade connections to conceal the attackers’ true C&C infrastructure....