// LIVE
HOLEConditional Impls
RADARA new 'work from home' age? Governments across Asia order employees to stay home
OPSSupply-chain attack using invisible code hits GitHub and other repositories
RADARTitle: Meta’s massive undersea cable project has been put on hold by regional ho
RADAR'Are you freaking crazy?' Bot harasses woman, gets led away by cops
OPSCredential-stealing crew spoofs VPN clients from Cisco, Fortinet, and others
HOLEOpenClaw and the Dream of Free Labour
INTELMeta Platforms: Lobbying, Dark Money, and the App Store Accountability Act
OPSMajor SocksEscort proxy network powered by Linux malware taken down by FBI and o
HOLEThe Plumbing of Everyday Magic
INTELShow HN: Algorithms and Data Structures in TypeScript – Free Book (~400 Pages)
INTELThe Download: how AI is used for military targeting, and the Pentagon’s war on C
CVEnpm cli Local Privilege Escalation Vulnerability (CVE-2026-0775)
CVEZDI-26-044: Windows Desktop Window Manager Use-After-Free Privilege Escalation V
CVEJanuary 2026 Patch Tuesday - Critical Vulnerabilities Addressed
HOLEConditional Impls
RADARA new 'work from home' age? Governments across Asia order employees to stay home
OPSSupply-chain attack using invisible code hits GitHub and other repositories
RADARTitle: Meta’s massive undersea cable project has been put on hold by regional ho
RADAR'Are you freaking crazy?' Bot harasses woman, gets led away by cops
OPSCredential-stealing crew spoofs VPN clients from Cisco, Fortinet, and others
HOLEOpenClaw and the Dream of Free Labour
INTELMeta Platforms: Lobbying, Dark Money, and the App Store Accountability Act
OPSMajor SocksEscort proxy network powered by Linux malware taken down by FBI and o
HOLEThe Plumbing of Everyday Magic
INTELShow HN: Algorithms and Data Structures in TypeScript – Free Book (~400 Pages)
INTELThe Download: how AI is used for military targeting, and the Pentagon’s war on C
CVEnpm cli Local Privilege Escalation Vulnerability (CVE-2026-0775)
CVEZDI-26-044: Windows Desktop Window Manager Use-After-Free Privilege Escalation V
CVEJanuary 2026 Patch Tuesday - Critical Vulnerabilities Addressed
nsysops@ops-intel:~$ ls -lt --range live
OPS INTEL
209 items · ARIA-monitored · page 34 of 42
209
TOTAL
CRITICAL
HIGH
ACTIONABLE
WALLBOARD ↗
AUTO-APPROVED TODAY
LLM STATUS
CRITICAL (page) 0
HIGH (page) 5
MEDIUM (page) 0
LOW (page) 0
HIGH 95% confidence cve

ZDI-26-109: Bosch OPC.TestClient XML Parsing RCE Vulnerability

A critical remote code execution flaw in Bosch Rexroth IndraWorks allows attackers to execute arbitrary code by parsing untrusted XML files. Includes severity,

['Remote attackers can execute arbitrary commands by exploiting untrusted XML files', 'User interaction required for exploitation']

ManufacturingIndustrial Automation SystemsIT Operations
action items (2)
  • Review system configurations for affected components
  • Apply patches as soon as they become available

Zero Day Initiative · 2026-02-22T02:31

HIGH 85% confidence cve

ZDI-26-108: XML File Parsing Vulnerability in Bosch Rexroth IndraWorks

Remote code execution vulnerability in Bosch Rexroth IndraWorks due to improper handling of XML files. CVSS rating: 7.8. Includes severity, confidence, and acti

['User interaction is required', 'Attacker can execute arbitrary code remotely']

Bosch Rexroth customers
action items (2)
  • Update IndraWorks UA.TestClient to latest version
  • Implement network segmentation

Zero Day Initiative · 2026-02-22T00:01

HIGH 90% confidence advisory

From Exposure to Exploitation: How AI Collapses Your Response Window

AI accelerates the transition from security exposure to exploitation. Developers must tighten cloud permissions and manage API keys carefully. Includes severity

['AI-driven exploitation', 'Fast pace of modern development']

cloud_operatorssecurity_engineers
action items (2)
  • Review cloud permissions regularly
  • Enable monitoring for suspicious activity

The Hacker News · 2026-02-21T23:21

HIGH 95% confidence cve

Microsoft Patches CVE-2026-26119 Privilege Escalation in Windows Admin Center

['Critical flaw patched by Microsoft affecting Windows Admin Center, enabling privilege escalation for attackers. Immediate action required for security. Read f

['The vulnerability exposes a significant security risk that allows attackers to gain unauthorized access and control over systems managed through Windows Admin Center, posing an immediate threat to data integrity and sy

Windows Admin Center users
action items (2)
  • Install the latest patch from Microsoft
  • Review system logs for signs of compromise

The Hacker News · 2026-02-21T22:51

HIGH 90% confidence outage

ICO Wins Data Breach Legal Battle Against Retail Giant

["The UK's Information Commissioner's Office (ICO) prevails in its legal battle against a breached retail giant, securing potential fines for data protection.

['Need to understand regulatory implications of data breaches', 'Assess risk management strategies in light of legal penalties']

RetailFinanceLegal Compliance
action items (2)
  • Review and update incident response plans for breaches
  • Engage legal counsel to assess risk of penalties

The Register · 2026-02-21T21:13