ctipilot.ch

2026-08-07T0411Z-intel

One pipeline fire, in full · intel run of 2026-08-07 · sub-agent allocation and telemetry, per-iteration verification verdicts and findings, source-list edits, coverage gaps, bridge invocations — and the run's own verification & coverage notes: what was published, what was dropped at the borderline or judged not relevant (and why), single-source carve-outs, and contradictions. Rendered from runs/2026-08-07/2026-08-07T0411Z-intel.md.

Run telemetry

2026-08-07T0411Z-intel intel prompt v3.30 publish ok
45m 51s duration 8 published 0 updates
Claude Opus 5 (claude-opus-5) main agent
S1 Claude Sonnet 5 (claude-sonnet-5)
Items returned
1
Duration
12m 33s
Tool calls
12 WebFetch6 WebSearch28 bridge
Cited sources
2 of 24 in slice
S2 Claude Sonnet 5 (claude-sonnet-5)
Items returned
2
Duration
16m 26s
Tool calls
15 WebFetch15 WebSearch28 bridge
Cited sources
1 of 17 in slice
S3 Claude Sonnet 5 (claude-sonnet-5)
Items returned
4
Duration
12m 02s
Tool calls
26 WebFetch1 WebSearch12 bridge
Cited sources
4 of 36 in slice
S4 Claude Sonnet 5 (claude-sonnet-5)
Items returned
3
Duration
18m 55s
Tool calls
14 WebFetch8 WebSearch24 bridge
Cited sources
4 of 20 in slice

Verification

#? NEEDS_FIXES · Opus 5 · t=6 e=4 a=8 #? NEEDS_FIXES · Sonnet 5 · t=1 e=0 a=0 #? NEEDS_FIXES · Opus 5 · t=3 e=2 a=1 #? NEEDS_FIXES · Sonnet 5 · t=1 e=0 a=0

Deep dive

2026-08-07/unc6671-blackfile-multi-brand-passkey-vishing-aitm

Sources changed (this run)

Edits this run made to sources/sources.json · promotions, demotions, new candidates, and fetch-method / category / reliability / url corrections (the run record's sources_changed[]). Paginated; 10 per page.

1 added as status=candidate (the one new candidate this run) · 1 stale-jina-cache diagnosis recorded; consecutive_quiet_periods incremented; NOT demoted · 1 contribution note (promotion evidence) · 1 last_successful_fetch bumped to 2026-08-07, failure counters reset.

SourceChangeFrom → ToReason
adobe-psirtadded as status=candidate (the one new candidate this run)— → —Closes a measured discovery-latency gap rather than a speculative one. Adobe has shipped three separate waves of critical unauthenticated code-execution-class flaws in the Campaign/ColdFusion line since early July (APSB26-68/69, APSB26-114, APSB26-120) and this pipeline has found every one through an NCSC-NL or CERT-FR relay. APSB26-120 published 2026-08-03 and reached this pipeline on 2026-08-07 via an NCSC-NL advisory dated 08-06. Probed both entry points this run: /security.html returns the four newest bulletins with dates (recency sweep), /security/security-bulletin.html returns the full historical index (814 APSB ids in one fetch). Per-bulletin pages carry an explicit per-CVE CWE/impact/severity/CVSS table, which is why this entry's CVE mapping needed no positional inference.
prodaftstale-jina-cache diagnosis recorded; consecutive_quiet_periods incremented; NOT demoted— → —Third consecutive run without a contribution, now root-caused. The reader returns HTTP 200 with a fully hydrated listing, but that listing is a frozen snapshot: page metadata reads 'Published Time: Wed, 08 Jul 2026', the newest visible report is unchanged from a month ago, and no publication dates appear anywhere, so recency cannot be established. /blogs carries the same frozen stamp. A direct fetch confirms a Next.js SPA serving an empty shell without JS, so the reader is the only route and its cache is what is stuck; resources.prodaft.com does not resolve and no RSS exists. Demotion would be wrong on both counts — the content axis is untouched and the transport is healthy. The note tells the next fire to check whether the cache has moved past 08 Jul before spending a rotation slot.
hunt-iocontribution note (promotion evidence)— → —S3 traced a Zimperium Android-RAT post back to hunt.io as the 2026-07-28 primary and dropped the rehash in favour of it, then re-proposed hunt.io as a new candidate without realising it is already tracked as one. Recorded so the 3-distinct-run promotion bar accrues; no duplicate record was created.
91 recordslast_successful_fetch bumped to 2026-08-07, failure counters reset— → —Every source evidenced with a 2xx in this run's url-liveness ledger or named in a sub-agent's sources_attempted with a successful transport.

Coverage gaps (this run)

Sources this run's brief needed that returned no usable content via any documented recipe. Bridge-recovered or quiet-day sources do NOT appear here. (Distinct from the independent source-accessibility probe at the foot of this section, which probes all active sources regardless of what any run needed.)

Source (uncovered)URL triedMethod chainStatus / classWhat the agent did instead
ssd-disclosurehttps://ssd-disclosure.com/bridge:urlwebfetch200 recipe-drift
Rotation-priority candidate. Both the direct bridge and WebFetch return only the homepage marketing/navigation shell (category links: operating systems, mobile,
None this run — source_health.py classes it bridge-ok (its probe target resolves), so it is not flagged UNSOLVED and no repair order fired. Recorded here so the
searchlight-cyberhttps://slcyber.io/research-center/webfetchbridge:url200 recipe-drift
The research-center listing returns titles with no publication dates in either the WebFetch summary or the raw bridged HTML, so in-window status could not be es
None this run. Candidate fix for a future fire: pivot to per-post URLs, which carry dates, rather than relying on the listing page.

Bridge invocations (this run)

10 bridge calls this run · these are successful bridge fetches (separate from "Coverage gaps" above).

6 ok4 other
  • bridge:url ×3
  • bridge:api ×2
  • bridge:cisa-kev ×1
  • bridge:ncsc-csh ×1
  • bridge:cert-fr ×1
  • bridge:feed ×1
  • bridge:jina ×1

Verification findings · all iterations

Per-iteration finding detail. Each table is one verifier pass · what was flagged, how the main agent remediated it, and the outcome. Walking the tables top-to-bottom shows the verifier's debugging trail across iterations.

Iteration #? NEEDS_FIXES · 18 findings (truth=6, editorial=4, advisory=8) · Claude Opus 5 · 20m 41s

F-codeSectionItem · URL/quoteVerifier summaryRemediation · outcome
F3
claim-not-supported
Hardening advice contradicted by its only cited source: Microsoft says the Terminal-paste flow AVOIDS code-signing and notarization checks, and the words Gatekeeper/unsigned appear nowhere in the postVerified independently (Gatekeeper 0 hits, notarization 1 hit in the opposite sense). Claim removed and inverted to Microsoft's actual finding, quoted.
F3
claim-not-supported
Claim that macOS does not natively gate clipboard-paste-to-Terminal is contradicted by the source, which documents a macOS 26.4+ paste warning — the single most actionable line in Microsoft's guidanceVerified (the 26.4 mitigation sentence is present). Clause corrected, the mitigation added as an evidence quote, and it became the entry's one action item.
F3
claim-not-supported
'CI logs' named as a token-exposure vector in summary, body and an action, but Unit 42 says 'improperly secured file shares or code repositories' and never names CI logsVerified ('CI log' 0 hits). Realigned to the source's own wording in all three places.
F4
hallucinated-fact
The interval between APSB26-114 and APSB26-120 is five days, not eight — and the entry's own action item already said '2026-07-29', so it contradicted itself in the headline, summary and opening senteVerified by fetching APSB26-114 (dated July 29, 2026) against APSB26-120 (August 3, 2026). Corrected to five days in all three places.
F4
hallucinated-fact
Action item asserted that the patch fixes the import path but not an already-imported provider's stored configuration — an inference neither Red Hat nor CERT-FR states, and it was what justified the aAccepted. Reworded to an unasserted verify-the-post-upgrade-state instruction that no longer claims a causal mechanism.
F14
?
'There is no encryption stage at all' is an absolute neither source makes; GTIG simply never discusses encryption (the strings encrypt and ransomware appear 0 times)Verified (0 hits for both). Reworded to what GTIG does say — data-theft extortion throughout, with the absence of an encryption stage attributed to the absence
F8
needs-more-research
The downloader also fetches and installs the genuine Zoom client alongside the payload — triage-load-bearing, and it inverts the entry's own Triage line, since a working Zoom install reads as evidenceVerified in the Jamf text. Added the decoy-install mechanic with two verbatim quotes and rewrote the Triage line to lead with it.
F9
surface-contradiction
The CVE-2026-48331 impact discrepancy is not NVD-only: NCSC-NL, cited as corroborating, also describes the SSRF as enabling privilege escalation where Adobe records arbitrary code executionVerified against the resolved NCSC-NL page ('privilege-escalatie', 2 hits). Sourcing note extended to name both dissenting parties, and a Contradiction line add
F18
?
actions[2] restated the body's own Defender-takeaway detection guidance almost verbatim; standing detection-engineering ideas are body contentAccepted. Dropped, leaving the one genuine do-now task (out-of-band proofing on authenticator enrolment).
F18
?
actions[1] told the reader to search for 'packages in this campaign' while the entry deliberately withholds every package identifier, so the task could not be started without leaving the briefAccepted, and the verifier supplied the fix: Sonatype tracks the campaign as sonatype-2026-005660. The action now points at that record for the package list, an
F11
editorial-advisory
Microsoft names two payload families, MacSync and Atomic Stealer (AMOS); the entry carried AMOS only, narrowing the huntVerified both namings. MacSync added to the summary, body and sourcing note.
F11
editorial-advisory
'mobile' tag on a macOS desktop campaign degrades tag filteringAccepted. Tag removed.
F11
editorial-advisory
T1552.001 and the 'infostealer' tag outrun the source: Sonatype says the second stage is itself a loader for a further payload and describes no credential access, leaving the payload class undetermineAccepted. Both dropped; the credential-rotation guidance stays in the body as defender remediation rather than observed behaviour.
F11
editorial-advisory
T1195.002 has no matching body behaviour — no software supply chain was compromised; it fits the referenced Anthropic entry, not this oneAccepted. Dropped, leaving T1190, which the verifier confirms is well supported. Deliberately did not substitute T1199 — the mapping is now the honest evidence-
F11
editorial-advisory
Recency accounting applied inconsistently: three entries rest on primaries published before window start, one is justified and two are silent, while the ICO drop leads with the window as its groundAccepted. Added a dedicated section stating the basis for all three and correcting the ICO drop's ordering (relevance first, window second).
F11
editorial-advisory
The NCSC-NL advisory URL is a client-side redirect stub that returns no content to machine readers; the resolvable canonical is the /2026/<id>.html formAccepted. Source URL swapped to the resolved canonical, which was fetched and verified.
F11
editorial-advisory
Redact/Pink/Falcon recorded as hard aliases on actor:unc6671 encodes GTIG's hedged assessment as identity, while Helix — same evidence, same sentence — is a separate key with a hedged edgePartially accepted, with reasoning recorded rather than a silent change: aliases retained because they are the store's phrase-matching and dedup surface and GTI
F11
editorial-advisory
access.redhat.com now carries a primary role but has no sources.json record, since adobe-psirt took this run's single candidate slotAccepted as a note. Queued for the next fire's candidate slot in the coverage notes so the accrual is not lost.

Iteration #? NEEDS_FIXES · 1 finding (truth=1, editorial=0, advisory=0) · Claude Sonnet 5 · 10m 05s

F-codeSectionItem · URL/quoteVerifier summaryRemediation · outcome
F4
hallucinated-fact
The body, sourcing note and the tool:overlord-rat registry summary all stated that Jamf documents Overlord as a payload in DPRK-linked 'developer-targeting' activity. Jamf makes two separate observatiVerified against the Jamf text before applying — the source separates the two observations exactly as reported and states it 'has noted the similarities but doe

Iteration #? NEEDS_FIXES · 6 findings (truth=3, editorial=2, advisory=1) · Claude Opus 5 · 17m 34s

F-codeSectionItem · URL/quoteVerifier summaryRemediation · outcome
F1
broken-url
Disclosure date off by one throughout: the cited Red Hat records carry public_date 2026-08-05 (CVE-2026-16443 at 13:39Z, the other six at 02:02Z) and the string 2026-08-06 appears nowhere on them. 202Verified against all seven saved Red Hat JSON records — public_date is 2026-08-05 in every one. Corrected the four Red Hat source dates and inline citations to
F2
generic-url
T1505.003 (Web Shell) names a behaviour no cited source describes and the body never maps — Adobe's seven rows are SSRF, template injection, two SQL injections, incorrect authorization, eval injectionAccepted. Dropped, leaving T1190 + T1059 as the evidence-bound set. This is the second speculative technique id this loop has removed, both on the same principl
F3
claim-not-supported
'Insider variant' in the title, summary and an action item mislabels the threat model: the word insider appears zero times in the Unit 42 post, which describes privileged developer accounts harvested Verified (zero hits for 'insider'). Retitled to the account-takeover variant and corrected the summary, the action label and two body phrasings, with the acquis
F4
hallucinated-fact
The entry's whole hook — five days, build 9398 as the previous fix, a third wave — rests on APSB26-114 facts that appear in neither cited source, leaving the reader no link; and 'since early July' preAccepted. Added APSB26-114 (2026-07-29) as a corroborating source and cited it on the five-days clause and the wave count; corrected 'early July' to 'late June'
F5
missing-citation
The entry withheld Microsoft's count of more than 250 front-end domains and its explicit instruction to hunt the file<word><word> generation pattern rather than maintain a domain list — the one networAccepted, and the reasoning was wrong on my side: a generation pattern is not an indicator, which is why the other two entries carry theirs. Added the count and
F6
strengthen-primary-source
The notes body carried workflow-internal vocabulary the style rule bars from reader-facing text — sub-agent, main agent, phase numbers, spawn, and the S1-S4 labels. The verifier recommended no action Fixed anyway rather than deferred: the rule is explicit about the run record's notes body, and 'other records do it too' is an argument for the weekly audit to

Iteration #? NEEDS_FIXES cap-breach · 1 finding (truth=1, editorial=0, advisory=0) · Claude Sonnet 5 · 15m 54s

F-codeSectionItem · URL/quoteVerifier summaryRemediation · outcome
F3
claim-not-supported
The hedge-fund victim characterisation was attributed to BleepingComputer relaying Bloomberg, in both the body and the sourcing note. The article says 'Reuters and Bloomberg reported' the named victimFetched the article live and verified — it does say Reuters and Bloomberg. Corrected both locations to name both, and added that private-equity firms were among

Verification & coverage notes

The run record's narrative body, verbatim. This is where the run accounts for its own judgement calls — every borderline drop and judged-not-relevant item with its reason, dedup decisions, single-source items and their carve-outs, contradictions, and per-source coverage gaps — so nothing the run considered disappears silently.

Verification & coverage notesrun record body

2026-08-07T0411Z-intel · Claude Opus 5 · window 26 h · 8 entries published

Verification & coverage notes

Eight entries from ten candidates across four research domains, plus one item recovered by the end-of-triage completeness check after each of two domains passed it to the other. The window was a standard 24-hour gap with no scheduler irregularity; the previous fire's record shows publish_status: ok, so nothing was carried forward.

What the completeness sweep changed

  • Recovered and published: the Sonatype "Flooding Dropper" npm campaign. The vulnerability-advisory domain surfaced it, judged it outside its own remit because no CVE is involved, and passed it to the research and incident domains; neither carried it back. Rather than let a hand-off between domains fall through the gap, it was read from the primary and decided directly. Published 2026-08-05, which is outside the 26-hour window but inside the 72-hour developing-story window — Sonatype states the campaign is active and that its naming convention is already evolving, which is what that wider window exists for. The previous fire had it in window and missed it.
  • Two domains returned the same story. The research and incident domains both surfaced the Google Threat Intelligence Group post on UNC6671. Merged into one entry rather than two: one return carried the corroborating second source and the ransom economics, the other the technique mapping. One story, one entry.
  • Confirmed negative results rather than assumed ones. The vulnerability-advisory sweep reported no in-window CISA KEV addition. Because a missed KEV addition is the most expensive false negative this pipeline can produce, the catalog was re-checked directly before composing: catalog version 2026.08.06, newest addition dated 2026-08-05 (the JetBrains TeamCity flaw already published here on 08-06), nothing dated 08-06 or 08-07. The negative result holds. The home-region sweep also searched specifically for a third Swiss or European SharePoint victim and for any European water/OT development, and found neither.

Corrections applied during composition

Four of the returned evidence quotes failed a literal substring check against the fetched pages and were repaired before anything was written, not after:

  • A Microsoft sentence was truncated mid-clause and presented with a closing period, dropping "and automated security systems while maintaining access to intended macOS targets". Restored in full.
  • A second Microsoft "quote" was three separate source sentences spliced into one, and it removed the source's own hedging — "usually remains unchanged" had become "remains unchanged", and "may be converted" had become "cause conversion". Replaced with a single contiguous sentence; the hedged behaviour is now described in the body in plain language instead.
  • A Unit 42 quote differed only by a straight apostrophe where the source uses a curly one. Corrected to the source's character.
  • A Sonatype quote contained a non-breaking space the extraction had not preserved. Replaced with a cleaner contiguous sentence from the same post that carries more operational value.

Two factual corrections also came out of reading the primaries rather than the summaries:

  • Adobe CVE-2026-48331 impact. The research return carried NVD's description, which characterises the impact as privilege escalation. Adobe's own per-CVE table in APSB26-120 records arbitrary code execution at CVSS 10.0. The vendor bulletin is the authority for its own product and is what the entry follows; the discrepancy is noted in the entry's sourcing note.
  • The UNC6671 brand linkage is an assessment, not a confirmation. Both returns framed GTIG as having confirmed the multi-brand continuation. GTIG's own sentence states the overlaps "support our assessment" and explicitly names splintered affiliates and shared phishing-as-a-service infrastructure as plausible alternatives. The entry carries it at the strength GTIG gives it, and the registry summary was written the same way.

One further precision point on the deep dive: GTIG's payment figure is not an average across all cases. Its sentence is that in over 53% of tracked cases final payments averaged $750,000, which is what the entry says.

Recency accounting, stated consistently

Three of the eight entries rest on primaries published just before this window opened at 2026-08-06T02:11Z, and the run should say so in one place rather than justify one and pass over the others. Sonatype's Flooding Dropper post (2026-08-05T20:43Z) is carried under the 72-hour developing-story window and says so in its own sourcing note. Microsoft's ClickFix analysis (2026-08-05T15:48Z, about 10 hours before window start) and Reuters' Meta report (2026-08-05T22:29Z, about 4 hours before) are carried on the same basis — both are actively developing stories, and the Meta one additionally reached this window through in-window relays on 08-06. The UK ICO item was dropped with the window as its leading ground, which reads inconsistently against those three; the honest ordering is that it fails the relevance test first (a records-management process failure rather than tradecraft a SOC detects) and the window boundary is secondary. Recorded so the reasoning matches the dispositions.

Contradiction

  • Contradiction: Adobe CVE-2026-48331 impact — Adobe's own per-CVE table in APSB26-120 records "Arbitrary code execution" at CVSS 10.0, while NVD's description and NCSC-NL's advisory NCSC-2026-0278 both describe the same SSRF as enabling privilege escalation. The entry follows the vendor bulletin as the authority for its own product and names the disagreement in its sourcing note rather than picking a side silently. Two of the three parties disagree with the primary on wording; none disagrees on the score, the affected range or the fix.

Sourcing and classification

  • Single-source entries, all under the original-research pattern rather than a carve-out: the macOS ClickFix gate (Microsoft Threat Intelligence), the Overlord RAT downloader (Jamf Threat Labs), AI token jacking (Unit 42) and Flooding Dropper (Sonatype Research Labs). Each is a lab's own first-hand analysis with no independent second assessor, so each carries credibility 2 rather than 1. A same-day press write-up of one of these posts would not have made any of them multi-source.
  • Keycloak sourcing substitution. Keycloak's upstream GitHub Security Advisories are the natural per-CVE authority but github.com is unreachable from this environment, and OSV had not yet ingested the advisories, which were disclosed on 2026-08-05 (all seven returned HTTP 404). Red Hat's own per-CVE records were used instead — a first-party vendor authority for Keycloak and Red Hat Build of Keycloak — with CERT-FR independently corroborating the affected and fixed version boundaries. Every CVSS score the research return reported was confirmed against Red Hat's records. This also resolved a gap that return had flagged: GitHub had rendered a duplicate description for CVE-2026-16442 from a sibling advisory, so only that CVE's title and score were confirmed there; Red Hat's record describes its mechanics directly, so the entry states them without hedging.
  • Meta incident attribution boundaries. The model name is The Information's reporting relayed by Reuters, not Meta's statement, which names no model — attributed accordingly. The shared-vendor finding does not rest on inference: Reuters names Irregular as Meta's evaluator, and Anthropic's own post names Irregular as the third-party evaluation partner behind its three incidents. Reuters also separates the root causes across the cluster (configuration error for Meta and Anthropic; an agent independently exploiting an unknown vulnerability in OpenAI's case), so the four disclosures are not presented as one mechanism.

Borderline drops

  • borderline-drop: Snowflake mass credential-theft campaign — Canadian defendant pleads guilty (US DOJ, 2026-08-05) — legal closure on a 2024 campaign. Global scale is genuinely met, but the operative lesson (unprotected credentials on a cloud data platform are sufficient for a mass-victim breach) has been public since 2024 and is unchanged, no new technique is disclosed, and no Swiss or European victim is named. Nothing a responder does differently in the next seven days. If a future filing names EU victim organisations, that is a fresh nexus and a new entry.
  • borderline-drop: press narrows the Swiss federal SharePoint breach CVE to two candidates (BleepingComputer, 2026-08-06) — both named CVEs are already in this store's CVE index from the July on-premises SharePoint wave, and the source itself says it remains unclear whether either was used. The entry published on 08-05 already tells exposed-SharePoint operators to run a compromise assessment and rotate machine keys, so the reader's actions do not change. An unconfirmed CVE attribution on a home-region incident is the shape that teaches readers to discount the brief. A confirmation from the federal authority or the victim would be a material delta and an immediate update.
  • out-of-window: UK ICO enforcement notice and reprimand, Metropolitan Police Service — primary source 2026-08-05, window_hours=26 — published before this window opened and not an update, background, or patched-version reference. It would also have been dropped on relevance: unredacted-document disclosure and a bulk-email recipient exposure are records-management process failures rather than tradecraft a SOC detects. Flagged here because the item falls in the gap between two fires' windows and the previous fire did not carry it, which is a boundary effect the operator may want to know about rather than a defect in this run.

Returned-but-dropped items reviewed and upheld without restoring any: WordPress 7.0.3 / CVE-2026-64638 (needs a victim click, no exploitation, forced auto-update release); two Cisco advisory bundles (internally found, authentication required, no exploitation); an Oracle PeopleSoft alert whose page metadata dates to June; the ENISA CVE-programme announcement (administrative, no SOC action); two dcod.ch items that trace back to a July circular and a November 2025 disclosure; a netzwoche Liechtenstein follow-up naming two of four already-reported offline systems; a Zimperium post that rehashes a hunt.io primary; two CrowdStrike AI-agent architecture posts; a Recorded Future neurotechnology piece; Unit 42's and Microsoft's own CHAINDROP write-ups (corroborating an entry already published on 08-06). Three closer calls, also upheld: two Swiss ransomware leak-site claims in window (MITC AG and Pharma Test Apparatebau AG) with no victim statement and no high-reliability journalism behind them — the correct drop even with a home-region nexus, and worth re-checking next fire; and two French healthcare disclosures (Biosynex, Hospices Civils de Lyon) that are thin single-source victim statements with no named vector or actor, repeating a third-party-access pattern already well documented here. The French healthcare pair was the closest of all the drops given the direct sector and region nexus.

Coverage and telemetry

  • Coverage gaps: ssd-disclosure (listing shell, no dated items enumerable — rotation priority, see fetch_failures); searchlight-cyber (listing carries no dates, so recency unanswerable; all visible titles already covered); infoguard-labs, cisa-directives, msrc-blog, google-tag, trellix, paradigm-shift-research (all previously documented recipe gaps, unchanged this run); prodaft (stale reader cache, root-caused above); cert-at, lab52, zataz, ncsc-ch-focus, ncsc-ch-incidents (reachable, genuinely nothing in window — quiet, not missed).
  • Essential-coverage: no misses. All 15 essential-tier sources were attempted — the 11 allocated to the vulnerability-advisory domain and the 4 allocated to the home-region domain.
  • access.redhat.com is now a cited-but-untracked source host: Red Hat Product Security carries the primary role on this run's top-ranked vulnerability entry but has no record in sources/sources.json, because adobe-psirt took this run's single candidate slot. Queued for the next fire's slot so the accrual is not lost.
  • A structural observation for the weekly audit rather than a gap in this run: no research-lab source carries tier: essential, so the highest-yield publishers (Talos, Unit 42, Microsoft, Mandiant and the rest) are reachable only through the staleness rotation — and because they are swept most often they sort last in it, which means a 24-hour window would systematically miss the posts they published that day. This run compensated by giving the research domain an explicit standing-majors block of 23 publishers on top of its rotation slice, and three of its four items came from that block. The compensation worked, but it is a per-run instruction rather than a property of the source list.
  • The url-liveness ledger holds 89 rows across 48 hosts while the returned telemetry reports roughly 140 fetch calls, so the ledger is materially under-populated relative to actual fetching. It is complete enough to have supported the triage spot-checks and the source bookkeeping, but the append discipline is not being followed uniformly and the next audit should treat the ledger as a partial record.
  • source_health.py probed 175/175 sources in 85 s with zero UNSOLVED flags and no needs-bridge or needs-demote classifications, so no standing repair order fired this run.
  • ATT&CK pin is at v19.1 with v19.2 published upstream on 2026-08-05. Left unchanged deliberately: a dataset bump mid-run can revoke ids the run's own entries depend on, and dataset freshness is the weekly routine's duty. Every technique id in this run's eight entries validates against the pinned v19.1.
  • Watchlist: no product or supplier watchlist is configured in the org profile, so both sweeps are documented no-ops (products checked=0, hits=0; suppliers checked=0, hits=0) and no entry carries watchlist_hit.
  • No closed-source intel: intel/ holds no in-window date directory, so no closed-source intake ran.
  • Deep dive: one, on UNC6671, in the identity-infra category. That category was also used on 08-04, which the rotation rule demotes by one rank, and the run record owes an explanation: no other candidate independently earned long-form treatment, the window had published no deep dive yet, and the GTIG report genuinely supports the length — multi-brand infrastructure correlation, ransom economics, a documented targeting progression, and detection and hardening content specific enough to implement. The depth is in the source rather than manufactured to fill a slot.

← Operations dashboard · run-record contract: docs/pipeline.md