Index live· 1,284 files · 148 editions
ForensicPost

Search the index

24 results
Try
Results for “Research”Newest first
26-0719
File

Research Puts Three Quarters of Insider Incidents Down to Negligence, Not Sabotage

About 75% of insider incidents involve nobody acting maliciously. Programmes built to detect grievance address a quarter of the problem.

InsiderNegligence & credential theftMultipleAnalysis
Sev 3TargetEnterprise organisationsActorInsider
26-0630
File

Adversary Breakout Time Falls to 72 Minutes, Research Finds

Foothold to exfiltration in about 72 minutes. Every response process that assumes a human decides in time is now mistimed.

MultipleVariousMultipleEdge devices
Sev 3TargetEnterprise networks, multipleActorMultiple
26-0609
File

ServiceNow API Flaw Allowed Unauthenticated Table Queries, Researchers Report

A missing authentication check on a table query endpoint. One defect, and a different blast radius inside every tenant.

UnattributedUnauthenticated APICloudAPI
Sev 3TargetServiceNowActorUnattributed
26-0531
File

Research Describes Prompt Injection Developing a Multistep Kill Chain

Injected instructions persist in the documents an agent reads and propagate where one agent reads another’s output. No filesystem required.

ResearchPrompt injection chainCloudResearch
Sev 3TargetMulti-agent deploymentsActorResearch
26-0410
File

Only 97 of 1,596 Vulnerabilities Disclosed to Open-Source Maintainers Were Patched

1,596 disclosed, 97 patched. Discovery is now a capital expenditure; fixing is still one person in their own time.

Research consortiumDisclosure volumeCloudVulnerabilities
Sev 4TargetOpen-source maintainersActorResearch consortium
26-0404
File

Autonomous Vulnerability Research Reported 10,000 Critical Findings in Open Source

Ten thousand critical findings in a month across operating systems, browsers and core libraries. Discovery funded at twenty-five times remediation.

Research consortiumAutonomous discoveryCloudVulnerabilities
Sev 4TargetOpen-source software estateActorResearch consortium
26-0328
File

27-year-old OpenBSD Flaw and 16-year-old FFmpeg Bug Found by Automated Research

“Battle-tested” is used as a security argument. A defect that survived 27 years of review in OpenBSD undercuts it.

Research consortiumAutonomous discoveryCloudVulnerabilities
Sev 4TargetLong-lived open-source codeActorResearch consortium
26-0121
File

Attacks on Automotive and Smart Mobility Organisations More Than Doubled in 2025

Three technology estates in one company. The research attention is on the vehicles; the billion-pound losses are in enterprise IT.

MultipleVariousManufacturingAnalysis
Sev 4TargetAutomotive manufacturersActorMultiple
25-1224
File

Promptware Research Traces a Shift to Multi-Stage Campaigns

Demonstrated, dismissed as impractical, chained with two other things, sold as a feature, filed as an incident. Every technique here took that route.

MultiplePrompt injectionCloudAnalysis
Sev 4TargetAI agent deploymentsActorMultiple
25-1216b
File

47% of Ransomware Attacks Were Halted Before Encryption in 2025, Vendor Research Says

This figure measures the category every disclosure-based count excludes by construction: the attacks that were stopped.

MultipleVariousMultipleAnalysis
Sev 3TargetRansomware defenceActorMultiple
25-1127c
File

Qilin Claims Breach of Contract Research Organisation BioPharma Services

Trial volunteers consented explicitly and specifically. The consent given did not contemplate this.

QilinPharmaPharma
Sev 3TargetBioPharma Services Inc.ActorQilinCanada
25-1118
File

Researchers Documented Indirect Prompt Injection Planted in Web Content

A person reading a hostile page is not compromised by reading it. An agent is deciding what to do next on the basis of what the page says.

UnattributedIndirect prompt injectionCloudExploitation
Sev 4TargetBrowsing AI agentsActorUnattributed
25-1112c
File

The Provider Is How Small Firms Enter the Record

Only five of the seven routes are mechanisms anyone designed. The two reaching small firms are accidents of how research works.

MultipleAnalysis
Sev 3TargetSmall organisationsActorUnattributed
25-1102
File

Dissenting Research Argues the Security Workforce Shortage Is Overstated

Scarcity normally produces rising wages and employers training people up. “Cannot afford” and “cannot find” describe the same failed hire.

MultipleWorkforce
Sev 2TargetSecurity labour marketActorUnattributed
25-0923c
File

Stopping Research Is a Harm With No Victim to Notify

Real, distributed across people who will never know, and deferred by years. No instrument here can see it.

MultipleRansomwarePharmaAnalysis
Sev 3TargetPharmaceutical researchActorMultiple
25-0716
File

Research Identified 444 Telecom Incidents Involving Data Theft

444 counts events. 133 counts things somebody assessed as saleable and put on the market.

MultipleData theftTelecomTelecom
Sev 3TargetTelecommunications sectorActorMultiple
25-0709
File

More Than 90 Gulf Data Dumps Appeared on Forums in Six Months

Where disclosure is not mandatory, criminal forums become the primary public record — and affected people learn from researchers.

MultipleVariousMultipleExposure
Sev 3TargetGulf organisationsActorMultiple
25-0512
File

Scattered Spider Worked UK Retail From April, Then Moved to US Retail

A group that works one industry at a time is reusing research, not expressing a preference. That makes the next target legible.

Scattered SpiderSocial engineeringRetailActors
Sev 4TargetRetail sectorActorScattered Spider
25-0408
File

German Security Office Investigated Breach of East European Studies Association

The email store is worth more than the institution is — and the exposed parties are people who simply wrote to an academic.

UnattributedEducationResearch
Sev 3TargetGerman Association for East European StudiesActorUnattributedGermany
25-0222
File

A Researcher Named Him. This Desk Will Not

Applying the rule to a ransomware leader is the case that tests whether it is a rule or a preference. If it only holds for sympathetic subjects it is not a rule.

Black BastaCriminalMethod
Sev 2TargetNot applicableActorBlack Basta
24-0813
File

Columbus Mayor Said Stolen Data Was Unusable, and Researchers Checked

Presenting "encrypted" and "corrupted" as interchangeable makes an accident of the attacker’s process sound like a defence.

RhysidaPublic sectorAccountability
Sev 4TargetCity of ColumbusActorRhysidaUSA
24-0812
File

Researcher Found Duplicates and Dead People in the National Public Data Set

A file containing people who died twenty years ago is not a file that was being maintained. It is an accumulation, sold as current.

USDoDData brokerVerification
Sev 4TargetNational Public DataActorUSDoD
23-0918
File

A Single Storage Token Exposed 38TB of Microsoft AI Research Data

Nobody attacked anything. A sharing mechanism offered a wider scope than the task needed.

ExposureMisconfigurationTechnologyExposure
Sev 3TargetMicrosoft AI researchActorExposure
23-0407
File

Researchers Found MSI Firmware Signing Keys in Data Leaked After a Ransom Refusal

A signing key burned into shipped hardware cannot be rotated the way a credential can.

Money MessageRansomwareManufacturingSupply chain
Sev 4TargetMicro-Star InternationalActorMoney Message
© 2026 ForensicPost Media · the desk · newsletterGlossaryNo search logging