2026-08-07T0411Z-intel
One pipeline fire, in full · intel run of 2026-08-07 · sub-agent allocation and telemetry, per-iteration verification verdicts and findings, source-list edits, coverage gaps, bridge invocations — and the run's own verification & coverage notes: what was published, what was dropped at the borderline or judged not relevant (and why), single-source carve-outs, and contradictions. Rendered from runs/2026-08-07/2026-08-07T0411Z-intel.md.
Run telemetry
- Items returned
- 1
- Duration
- 12m 33s
- Tool calls
- 12 WebFetch6 WebSearch28 bridge
- Cited sources
- 2 of 24 in slice
- Items returned
- 2
- Duration
- 16m 26s
- Tool calls
- 15 WebFetch15 WebSearch28 bridge
- Cited sources
- 1 of 17 in slice
- Items returned
- 4
- Duration
- 12m 02s
- Tool calls
- 26 WebFetch1 WebSearch12 bridge
- Cited sources
- 4 of 36 in slice
- Items returned
- 3
- Duration
- 18m 55s
- Tool calls
- 14 WebFetch8 WebSearch24 bridge
- Cited sources
- 4 of 20 in slice
Verification
Deep dive
2026-08-07/unc6671-blackfile-multi-brand-passkey-vishing-aitm
Entries published (this run)
- Adobe Campaign Classic APSB26-120 — three more unauthenticated CVSS 10.0 code-execution flaws, and last week's build 9398 is the version they affect vulnerability high
- Stolen AI API tokens reach a reselling proxy within minutes — Unit 42 documents the 'transfer station' market and the account-takeover variant that mints its own keys research notable
- A fake Zoom installer stages Overlord RAT through the first .NET macOS downloader Jamf has observed — PE-format DLLs bundled inside a Mach-O binary threat notable
- Flooding Dropper: 846 npm packages published from disposable accounts, with a dropper that falls back to DNS TXT records when its download hosts are blocked threat notable
- CVE-2026-16443 — Keycloak: importing SAML metadata without key-usage attributes silently disables response signature validation, so an unauthenticated attacker forges a login as any known user vulnerability high
- The macOS ClickFix chain now qualifies visitors server-side before showing the lure, with anti-analysis probes that detect a console rather than a sandbox threat notable
- Meta's model reached a third party's systems during a cyber evaluation — the third AI lab in two weeks, and the second traced to the same evaluation vendor incident notable
- UNC6671 kept operating after BlackFile's announced retirement, across four further extortion brands — and its vishing pretext is now an urgent order to enroll a FIDO2 passkey threat high
Sources changed (this run)
Edits this run made to sources/sources.json · promotions, demotions, new candidates, and fetch-method / category / reliability / url corrections (the run record's sources_changed[]). Paginated; 10 per page.
1 added as status=candidate (the one new candidate this run) · 1 stale-jina-cache diagnosis recorded; consecutive_quiet_periods incremented; NOT demoted · 1 contribution note (promotion evidence) · 1 last_successful_fetch bumped to 2026-08-07, failure counters reset.
| Source | Change | From → To | Reason |
|---|---|---|---|
| adobe-psirt | added as status=candidate (the one new candidate this run) | — → — | Closes a measured discovery-latency gap rather than a speculative one. Adobe has shipped three separate waves of critical unauthenticated code-execution-class flaws in the Campaign/ColdFusion line since early July (APSB26-68/69, APSB26-114, APSB26-120) and this pipeline has found every one through an NCSC-NL or CERT-FR relay. APSB26-120 published 2026-08-03 and reached this pipeline on 2026-08-07 via an NCSC-NL advisory dated 08-06. Probed both entry points this run: /security.html returns the four newest bulletins with dates (recency sweep), /security/security-bulletin.html returns the full historical index (814 APSB ids in one fetch). Per-bulletin pages carry an explicit per-CVE CWE/impact/severity/CVSS table, which is why this entry's CVE mapping needed no positional inference. |
| prodaft | stale-jina-cache diagnosis recorded; consecutive_quiet_periods incremented; NOT demoted | — → — | Third consecutive run without a contribution, now root-caused. The reader returns HTTP 200 with a fully hydrated listing, but that listing is a frozen snapshot: page metadata reads 'Published Time: Wed, 08 Jul 2026', the newest visible report is unchanged from a month ago, and no publication dates appear anywhere, so recency cannot be established. /blogs carries the same frozen stamp. A direct fetch confirms a Next.js SPA serving an empty shell without JS, so the reader is the only route and its cache is what is stuck; resources.prodaft.com does not resolve and no RSS exists. Demotion would be wrong on both counts — the content axis is untouched and the transport is healthy. The note tells the next fire to check whether the cache has moved past 08 Jul before spending a rotation slot. |
| hunt-io | contribution note (promotion evidence) | — → — | S3 traced a Zimperium Android-RAT post back to hunt.io as the 2026-07-28 primary and dropped the rehash in favour of it, then re-proposed hunt.io as a new candidate without realising it is already tracked as one. Recorded so the 3-distinct-run promotion bar accrues; no duplicate record was created. |
| 91 records | last_successful_fetch bumped to 2026-08-07, failure counters reset | — → — | Every source evidenced with a 2xx in this run's url-liveness ledger or named in a sub-agent's sources_attempted with a successful transport. |
Coverage gaps (this run)
Sources this run's brief needed that returned no usable content via any documented recipe. Bridge-recovered or quiet-day sources do NOT appear here. (Distinct from the independent source-accessibility probe at the foot of this section, which probes all active sources regardless of what any run needed.)
| Source (uncovered) | URL tried | Method chain | Status / class | What the agent did instead |
|---|---|---|---|---|
| ssd-disclosure | https://ssd-disclosure.com/ | bridge:url → webfetch | 200 recipe-drift Rotation-priority candidate. Both the direct bridge and WebFetch return only the homepage marketing/navigation shell (category links: operating systems, mobile, | None this run — source_health.py classes it bridge-ok (its probe target resolves), so it is not flagged UNSOLVED and no repair order fired. Recorded here so the |
| searchlight-cyber | https://slcyber.io/research-center/ | webfetch → bridge:url | 200 recipe-drift The research-center listing returns titles with no publication dates in either the WebFetch summary or the raw bridged HTML, so in-window status could not be es | None this run. Candidate fix for a future fire: pivot to per-post URLs, which carry dates, rather than relying on the listing page. |
Bridge invocations (this run)
10 bridge calls this run · these are successful bridge fetches (separate from "Coverage gaps" above).
- bridge:url ×3
- bridge:api ×2
- bridge:cisa-kev ×1
- bridge:ncsc-csh ×1
- bridge:cert-fr ×1
- bridge:feed ×1
- bridge:jina ×1
Verification findings · all iterations
Per-iteration finding detail. Each table is one verifier pass · what was flagged, how the main agent remediated it, and the outcome. Walking the tables top-to-bottom shows the verifier's debugging trail across iterations.
Iteration #? NEEDS_FIXES · 18 findings (truth=6, editorial=4, advisory=8) · Claude Opus 5 · 20m 41s
| F-code | Section | Item · URL/quote | Verifier summary | Remediation · outcome |
|---|---|---|---|---|
| F3 claim-not-supported | — | Hardening advice contradicted by its only cited source: Microsoft says the Terminal-paste flow AVOIDS code-signing and notarization checks, and the words Gatekeeper/unsigned appear nowhere in the post | Verified independently (Gatekeeper 0 hits, notarization 1 hit in the opposite sense). Claim removed and inverted to Microsoft's actual finding, quoted. | |
| F3 claim-not-supported | — | Claim that macOS does not natively gate clipboard-paste-to-Terminal is contradicted by the source, which documents a macOS 26.4+ paste warning — the single most actionable line in Microsoft's guidance | Verified (the 26.4 mitigation sentence is present). Clause corrected, the mitigation added as an evidence quote, and it became the entry's one action item. | |
| F3 claim-not-supported | — | 'CI logs' named as a token-exposure vector in summary, body and an action, but Unit 42 says 'improperly secured file shares or code repositories' and never names CI logs | Verified ('CI log' 0 hits). Realigned to the source's own wording in all three places. | |
| F4 hallucinated-fact | — | The interval between APSB26-114 and APSB26-120 is five days, not eight — and the entry's own action item already said '2026-07-29', so it contradicted itself in the headline, summary and opening sente | Verified by fetching APSB26-114 (dated July 29, 2026) against APSB26-120 (August 3, 2026). Corrected to five days in all three places. | |
| F4 hallucinated-fact | — | Action item asserted that the patch fixes the import path but not an already-imported provider's stored configuration — an inference neither Red Hat nor CERT-FR states, and it was what justified the a | Accepted. Reworded to an unasserted verify-the-post-upgrade-state instruction that no longer claims a causal mechanism. | |
| F14 ? | — | 'There is no encryption stage at all' is an absolute neither source makes; GTIG simply never discusses encryption (the strings encrypt and ransomware appear 0 times) | Verified (0 hits for both). Reworded to what GTIG does say — data-theft extortion throughout, with the absence of an encryption stage attributed to the absence | |
| F8 needs-more-research | — | The downloader also fetches and installs the genuine Zoom client alongside the payload — triage-load-bearing, and it inverts the entry's own Triage line, since a working Zoom install reads as evidence | Verified in the Jamf text. Added the decoy-install mechanic with two verbatim quotes and rewrote the Triage line to lead with it. | |
| F9 surface-contradiction | — | The CVE-2026-48331 impact discrepancy is not NVD-only: NCSC-NL, cited as corroborating, also describes the SSRF as enabling privilege escalation where Adobe records arbitrary code execution | Verified against the resolved NCSC-NL page ('privilege-escalatie', 2 hits). Sourcing note extended to name both dissenting parties, and a Contradiction line add | |
| F18 ? | — | actions[2] restated the body's own Defender-takeaway detection guidance almost verbatim; standing detection-engineering ideas are body content | Accepted. Dropped, leaving the one genuine do-now task (out-of-band proofing on authenticator enrolment). | |
| F18 ? | — | actions[1] told the reader to search for 'packages in this campaign' while the entry deliberately withholds every package identifier, so the task could not be started without leaving the brief | Accepted, and the verifier supplied the fix: Sonatype tracks the campaign as sonatype-2026-005660. The action now points at that record for the package list, an | |
| F11 editorial-advisory | — | Microsoft names two payload families, MacSync and Atomic Stealer (AMOS); the entry carried AMOS only, narrowing the hunt | Verified both namings. MacSync added to the summary, body and sourcing note. | |
| F11 editorial-advisory | — | 'mobile' tag on a macOS desktop campaign degrades tag filtering | Accepted. Tag removed. | |
| F11 editorial-advisory | — | T1552.001 and the 'infostealer' tag outrun the source: Sonatype says the second stage is itself a loader for a further payload and describes no credential access, leaving the payload class undetermine | Accepted. Both dropped; the credential-rotation guidance stays in the body as defender remediation rather than observed behaviour. | |
| F11 editorial-advisory | — | T1195.002 has no matching body behaviour — no software supply chain was compromised; it fits the referenced Anthropic entry, not this one | Accepted. Dropped, leaving T1190, which the verifier confirms is well supported. Deliberately did not substitute T1199 — the mapping is now the honest evidence- | |
| F11 editorial-advisory | — | Recency accounting applied inconsistently: three entries rest on primaries published before window start, one is justified and two are silent, while the ICO drop leads with the window as its ground | Accepted. Added a dedicated section stating the basis for all three and correcting the ICO drop's ordering (relevance first, window second). | |
| F11 editorial-advisory | — | The NCSC-NL advisory URL is a client-side redirect stub that returns no content to machine readers; the resolvable canonical is the /2026/<id>.html form | Accepted. Source URL swapped to the resolved canonical, which was fetched and verified. | |
| F11 editorial-advisory | — | Redact/Pink/Falcon recorded as hard aliases on actor:unc6671 encodes GTIG's hedged assessment as identity, while Helix — same evidence, same sentence — is a separate key with a hedged edge | Partially accepted, with reasoning recorded rather than a silent change: aliases retained because they are the store's phrase-matching and dedup surface and GTI | |
| F11 editorial-advisory | — | access.redhat.com now carries a primary role but has no sources.json record, since adobe-psirt took this run's single candidate slot | Accepted as a note. Queued for the next fire's candidate slot in the coverage notes so the accrual is not lost. |
Iteration #? NEEDS_FIXES · 1 finding (truth=1, editorial=0, advisory=0) · Claude Sonnet 5 · 10m 05s
| F-code | Section | Item · URL/quote | Verifier summary | Remediation · outcome |
|---|---|---|---|---|
| F4 hallucinated-fact | — | The body, sourcing note and the tool:overlord-rat registry summary all stated that Jamf documents Overlord as a payload in DPRK-linked 'developer-targeting' activity. Jamf makes two separate observati | Verified against the Jamf text before applying — the source separates the two observations exactly as reported and states it 'has noted the similarities but doe |
Iteration #? NEEDS_FIXES · 6 findings (truth=3, editorial=2, advisory=1) · Claude Opus 5 · 17m 34s
| F-code | Section | Item · URL/quote | Verifier summary | Remediation · outcome |
|---|---|---|---|---|
| F1 broken-url | — | Disclosure date off by one throughout: the cited Red Hat records carry public_date 2026-08-05 (CVE-2026-16443 at 13:39Z, the other six at 02:02Z) and the string 2026-08-06 appears nowhere on them. 202 | Verified against all seven saved Red Hat JSON records — public_date is 2026-08-05 in every one. Corrected the four Red Hat source dates and inline citations to | |
| F2 generic-url | — | T1505.003 (Web Shell) names a behaviour no cited source describes and the body never maps — Adobe's seven rows are SSRF, template injection, two SQL injections, incorrect authorization, eval injection | Accepted. Dropped, leaving T1190 + T1059 as the evidence-bound set. This is the second speculative technique id this loop has removed, both on the same principl | |
| F3 claim-not-supported | — | 'Insider variant' in the title, summary and an action item mislabels the threat model: the word insider appears zero times in the Unit 42 post, which describes privileged developer accounts harvested | Verified (zero hits for 'insider'). Retitled to the account-takeover variant and corrected the summary, the action label and two body phrasings, with the acquis | |
| F4 hallucinated-fact | — | The entry's whole hook — five days, build 9398 as the previous fix, a third wave — rests on APSB26-114 facts that appear in neither cited source, leaving the reader no link; and 'since early July' pre | Accepted. Added APSB26-114 (2026-07-29) as a corroborating source and cited it on the five-days clause and the wave count; corrected 'early July' to 'late June' | |
| F5 missing-citation | — | The entry withheld Microsoft's count of more than 250 front-end domains and its explicit instruction to hunt the file<word><word> generation pattern rather than maintain a domain list — the one networ | Accepted, and the reasoning was wrong on my side: a generation pattern is not an indicator, which is why the other two entries carry theirs. Added the count and | |
| F6 strengthen-primary-source | — | The notes body carried workflow-internal vocabulary the style rule bars from reader-facing text — sub-agent, main agent, phase numbers, spawn, and the S1-S4 labels. The verifier recommended no action | Fixed anyway rather than deferred: the rule is explicit about the run record's notes body, and 'other records do it too' is an argument for the weekly audit to |
Iteration #? NEEDS_FIXES cap-breach · 1 finding (truth=1, editorial=0, advisory=0) · Claude Sonnet 5 · 15m 54s
| F-code | Section | Item · URL/quote | Verifier summary | Remediation · outcome |
|---|---|---|---|---|
| F3 claim-not-supported | — | The hedge-fund victim characterisation was attributed to BleepingComputer relaying Bloomberg, in both the body and the sourcing note. The article says 'Reuters and Bloomberg reported' the named victim | Fetched the article live and verified — it does say Reuters and Bloomberg. Corrected both locations to name both, and added that private-equity firms were among |
Verification & coverage notes
The run record's narrative body, verbatim. This is where the run accounts for its own judgement calls — every borderline drop and judged-not-relevant item with its reason, dedup decisions, single-source items and their carve-outs, contradictions, and per-source coverage gaps — so nothing the run considered disappears silently.
Verification & coverage notesrun record body
2026-08-07T0411Z-intel · Claude Opus 5 · window 26 h · 8 entries published
Verification & coverage notes
Eight entries from ten candidates across four research domains, plus one item recovered by the end-of-triage completeness check after each of two domains passed it to the other. The window was a standard 24-hour gap with no scheduler irregularity; the previous fire's record shows publish_status: ok, so nothing was carried forward.
What the completeness sweep changed
- Recovered and published: the Sonatype "Flooding Dropper" npm campaign. The vulnerability-advisory domain surfaced it, judged it outside its own remit because no CVE is involved, and passed it to the research and incident domains; neither carried it back. Rather than let a hand-off between domains fall through the gap, it was read from the primary and decided directly. Published 2026-08-05, which is outside the 26-hour window but inside the 72-hour developing-story window — Sonatype states the campaign is active and that its naming convention is already evolving, which is what that wider window exists for. The previous fire had it in window and missed it.
- Two domains returned the same story. The research and incident domains both surfaced the Google Threat Intelligence Group post on UNC6671. Merged into one entry rather than two: one return carried the corroborating second source and the ransom economics, the other the technique mapping. One story, one entry.
- Confirmed negative results rather than assumed ones. The vulnerability-advisory sweep reported no in-window CISA KEV addition. Because a missed KEV addition is the most expensive false negative this pipeline can produce, the catalog was re-checked directly before composing: catalog version 2026.08.06, newest addition dated 2026-08-05 (the JetBrains TeamCity flaw already published here on 08-06), nothing dated 08-06 or 08-07. The negative result holds. The home-region sweep also searched specifically for a third Swiss or European SharePoint victim and for any European water/OT development, and found neither.
Corrections applied during composition
Four of the returned evidence quotes failed a literal substring check against the fetched pages and were repaired before anything was written, not after:
- A Microsoft sentence was truncated mid-clause and presented with a closing period, dropping "and automated security systems while maintaining access to intended macOS targets". Restored in full.
- A second Microsoft "quote" was three separate source sentences spliced into one, and it removed the source's own hedging — "usually remains unchanged" had become "remains unchanged", and "may be converted" had become "cause conversion". Replaced with a single contiguous sentence; the hedged behaviour is now described in the body in plain language instead.
- A Unit 42 quote differed only by a straight apostrophe where the source uses a curly one. Corrected to the source's character.
- A Sonatype quote contained a non-breaking space the extraction had not preserved. Replaced with a cleaner contiguous sentence from the same post that carries more operational value.
Two factual corrections also came out of reading the primaries rather than the summaries:
- Adobe CVE-2026-48331 impact. The research return carried NVD's description, which characterises the impact as privilege escalation. Adobe's own per-CVE table in APSB26-120 records arbitrary code execution at CVSS 10.0. The vendor bulletin is the authority for its own product and is what the entry follows; the discrepancy is noted in the entry's sourcing note.
- The UNC6671 brand linkage is an assessment, not a confirmation. Both returns framed GTIG as having confirmed the multi-brand continuation. GTIG's own sentence states the overlaps "support our assessment" and explicitly names splintered affiliates and shared phishing-as-a-service infrastructure as plausible alternatives. The entry carries it at the strength GTIG gives it, and the registry summary was written the same way.
One further precision point on the deep dive: GTIG's payment figure is not an average across all cases. Its sentence is that in over 53% of tracked cases final payments averaged $750,000, which is what the entry says.
Recency accounting, stated consistently
Three of the eight entries rest on primaries published just before this window opened at 2026-08-06T02:11Z, and the run should say so in one place rather than justify one and pass over the others. Sonatype's Flooding Dropper post (2026-08-05T20:43Z) is carried under the 72-hour developing-story window and says so in its own sourcing note. Microsoft's ClickFix analysis (2026-08-05T15:48Z, about 10 hours before window start) and Reuters' Meta report (2026-08-05T22:29Z, about 4 hours before) are carried on the same basis — both are actively developing stories, and the Meta one additionally reached this window through in-window relays on 08-06. The UK ICO item was dropped with the window as its leading ground, which reads inconsistently against those three; the honest ordering is that it fails the relevance test first (a records-management process failure rather than tradecraft a SOC detects) and the window boundary is secondary. Recorded so the reasoning matches the dispositions.
Contradiction
- Contradiction: Adobe CVE-2026-48331 impact — Adobe's own per-CVE table in APSB26-120 records "Arbitrary code execution" at CVSS 10.0, while NVD's description and NCSC-NL's advisory NCSC-2026-0278 both describe the same SSRF as enabling privilege escalation. The entry follows the vendor bulletin as the authority for its own product and names the disagreement in its sourcing note rather than picking a side silently. Two of the three parties disagree with the primary on wording; none disagrees on the score, the affected range or the fix.
Sourcing and classification
- Single-source entries, all under the original-research pattern rather than a carve-out: the macOS ClickFix gate (Microsoft Threat Intelligence), the Overlord RAT downloader (Jamf Threat Labs), AI token jacking (Unit 42) and Flooding Dropper (Sonatype Research Labs). Each is a lab's own first-hand analysis with no independent second assessor, so each carries credibility 2 rather than 1. A same-day press write-up of one of these posts would not have made any of them multi-source.
- Keycloak sourcing substitution. Keycloak's upstream GitHub Security Advisories are the natural per-CVE authority but github.com is unreachable from this environment, and OSV had not yet ingested the advisories, which were disclosed on 2026-08-05 (all seven returned HTTP 404). Red Hat's own per-CVE records were used instead — a first-party vendor authority for Keycloak and Red Hat Build of Keycloak — with CERT-FR independently corroborating the affected and fixed version boundaries. Every CVSS score the research return reported was confirmed against Red Hat's records. This also resolved a gap that return had flagged: GitHub had rendered a duplicate description for CVE-2026-16442 from a sibling advisory, so only that CVE's title and score were confirmed there; Red Hat's record describes its mechanics directly, so the entry states them without hedging.
- Meta incident attribution boundaries. The model name is The Information's reporting relayed by Reuters, not Meta's statement, which names no model — attributed accordingly. The shared-vendor finding does not rest on inference: Reuters names Irregular as Meta's evaluator, and Anthropic's own post names Irregular as the third-party evaluation partner behind its three incidents. Reuters also separates the root causes across the cluster (configuration error for Meta and Anthropic; an agent independently exploiting an unknown vulnerability in OpenAI's case), so the four disclosures are not presented as one mechanism.
Borderline drops
borderline-drop: Snowflake mass credential-theft campaign — Canadian defendant pleads guilty (US DOJ, 2026-08-05)— legal closure on a 2024 campaign. Global scale is genuinely met, but the operative lesson (unprotected credentials on a cloud data platform are sufficient for a mass-victim breach) has been public since 2024 and is unchanged, no new technique is disclosed, and no Swiss or European victim is named. Nothing a responder does differently in the next seven days. If a future filing names EU victim organisations, that is a fresh nexus and a new entry.borderline-drop: press narrows the Swiss federal SharePoint breach CVE to two candidates (BleepingComputer, 2026-08-06)— both named CVEs are already in this store's CVE index from the July on-premises SharePoint wave, and the source itself says it remains unclear whether either was used. The entry published on 08-05 already tells exposed-SharePoint operators to run a compromise assessment and rotate machine keys, so the reader's actions do not change. An unconfirmed CVE attribution on a home-region incident is the shape that teaches readers to discount the brief. A confirmation from the federal authority or the victim would be a material delta and an immediate update.out-of-window: UK ICO enforcement notice and reprimand, Metropolitan Police Service — primary source 2026-08-05, window_hours=26— published before this window opened and not an update, background, or patched-version reference. It would also have been dropped on relevance: unredacted-document disclosure and a bulk-email recipient exposure are records-management process failures rather than tradecraft a SOC detects. Flagged here because the item falls in the gap between two fires' windows and the previous fire did not carry it, which is a boundary effect the operator may want to know about rather than a defect in this run.
Returned-but-dropped items reviewed and upheld without restoring any: WordPress 7.0.3 / CVE-2026-64638 (needs a victim click, no exploitation, forced auto-update release); two Cisco advisory bundles (internally found, authentication required, no exploitation); an Oracle PeopleSoft alert whose page metadata dates to June; the ENISA CVE-programme announcement (administrative, no SOC action); two dcod.ch items that trace back to a July circular and a November 2025 disclosure; a netzwoche Liechtenstein follow-up naming two of four already-reported offline systems; a Zimperium post that rehashes a hunt.io primary; two CrowdStrike AI-agent architecture posts; a Recorded Future neurotechnology piece; Unit 42's and Microsoft's own CHAINDROP write-ups (corroborating an entry already published on 08-06). Three closer calls, also upheld: two Swiss ransomware leak-site claims in window (MITC AG and Pharma Test Apparatebau AG) with no victim statement and no high-reliability journalism behind them — the correct drop even with a home-region nexus, and worth re-checking next fire; and two French healthcare disclosures (Biosynex, Hospices Civils de Lyon) that are thin single-source victim statements with no named vector or actor, repeating a third-party-access pattern already well documented here. The French healthcare pair was the closest of all the drops given the direct sector and region nexus.
Coverage and telemetry
- Coverage gaps: ssd-disclosure (listing shell, no dated items enumerable — rotation priority, see fetch_failures); searchlight-cyber (listing carries no dates, so recency unanswerable; all visible titles already covered); infoguard-labs, cisa-directives, msrc-blog, google-tag, trellix, paradigm-shift-research (all previously documented recipe gaps, unchanged this run); prodaft (stale reader cache, root-caused above); cert-at, lab52, zataz, ncsc-ch-focus, ncsc-ch-incidents (reachable, genuinely nothing in window — quiet, not missed).
- Essential-coverage: no misses. All 15 essential-tier sources were attempted — the 11 allocated to the vulnerability-advisory domain and the 4 allocated to the home-region domain.
access.redhat.comis now a cited-but-untracked source host: Red Hat Product Security carries the primary role on this run's top-ranked vulnerability entry but has no record insources/sources.json, because adobe-psirt took this run's single candidate slot. Queued for the next fire's slot so the accrual is not lost.- A structural observation for the weekly audit rather than a gap in this run: no research-lab source carries
tier: essential, so the highest-yield publishers (Talos, Unit 42, Microsoft, Mandiant and the rest) are reachable only through the staleness rotation — and because they are swept most often they sort last in it, which means a 24-hour window would systematically miss the posts they published that day. This run compensated by giving the research domain an explicit standing-majors block of 23 publishers on top of its rotation slice, and three of its four items came from that block. The compensation worked, but it is a per-run instruction rather than a property of the source list. - The url-liveness ledger holds 89 rows across 48 hosts while the returned telemetry reports roughly 140 fetch calls, so the ledger is materially under-populated relative to actual fetching. It is complete enough to have supported the triage spot-checks and the source bookkeeping, but the append discipline is not being followed uniformly and the next audit should treat the ledger as a partial record.
source_health.pyprobed 175/175 sources in 85 s with zeroUNSOLVEDflags and noneeds-bridgeorneeds-demoteclassifications, so no standing repair order fired this run.- ATT&CK pin is at v19.1 with v19.2 published upstream on 2026-08-05. Left unchanged deliberately: a dataset bump mid-run can revoke ids the run's own entries depend on, and dataset freshness is the weekly routine's duty. Every technique id in this run's eight entries validates against the pinned v19.1.
- Watchlist: no product or supplier watchlist is configured in the org profile, so both sweeps are documented no-ops (
products checked=0, hits=0; suppliers checked=0, hits=0) and no entry carrieswatchlist_hit. - No closed-source intel:
intel/holds no in-window date directory, so no closed-source intake ran. - Deep dive: one, on UNC6671, in the
identity-infracategory. That category was also used on 08-04, which the rotation rule demotes by one rank, and the run record owes an explanation: no other candidate independently earned long-form treatment, the window had published no deep dive yet, and the GTIG report genuinely supports the length — multi-brand infrastructure correlation, ransom economics, a documented targeting progression, and detection and hardening content specific enough to implement. The depth is in the source rather than manufactured to fill a slot.
← Operations dashboard · run-record contract: docs/pipeline.md