Threadlinqs IntelligenceStart free

Daily debrief · Friday2026-10-02

Daily Intelligence Briefing — Friday, October 2, 2026

5 critical9 high4 medium

On 2026-10-02, Threadlinqs published 15 new threat reports and updated 3, 5 rated critical and 9 high, spanning 96 MITRE ATT&CK techniques and 2 named threat actors. Coverage that day added 162 new detection rules and 276 extracted indicators.

New threats
153 updated
Critical / high
145 critical · 9 high
ATT&CK techniques
96Observed in the day’s reports
Threat actors
2Named in the reports
Indicators
276Count only · values are Red+
Detection rules
162New that day · rule text is Blue+

Edition date: · Last updated:

Summary & highlights

Sony PS5 'Relapse' Jailbreak Exploit Chains JSC Memory Corruption and Kernel UAF (aio_multi_wait) on Firmware 7.00-13.60. City of Vicksburg, Mississippi shuts down systems after ransomware attack. Multiple Vulnerabilities in Apache HTTP Server 2.4.0 through 2.4.68 (20 CVEs, fixed in 2.4.69).

Highlights

  • TL-2026-2839 — Revolut customers targeted by phishing texts and fake liveness-check page days after social-engineering data breach
  • TL-2026-2840 — CloudSyncD macOS Backdoor Delivered via Fake Zoom Installer
  • TL-2026-2844 — Frontline Education data breach via exploited third-party software vulnerability exposes school district employee SSNs
  • TL-2026-2848 — Antino Backdoor Uses Outlook and OneDrive for C2 in China-Nexus Espionage Campaign (UAT-11587)
  • TL-2026-2892 — Forgeable Session Cookie (Hard-Coded HMAC Secret) in Yard Management System Bypasses Entra ID MFA and Enables User and Admin Impersonation

Theme of the day

Routine activity — no dominant theme emerged.

  • no-known-exploitation
  • no-cve
  • patched
  • vulnerability
  • social-engineering

Threats published

18 threat lines in the 2026-10-02 debrief, most severe first; entries marked (update) revise an earlier report. Each links to its full profile.

Techniques observed

96 MITRE ATT&CK and ATLAS techniques appear across the day’s reports.

Threat actors

2 named threat actors across the reports.

Nation-state attribution

  • China
  • Brazil

Threat categories

  • VULNERABILITY
  • RANSOMWARE
  • PHISHING
  • MALWARE
  • DATA_BREACH
  • APT

Severity breakdown

  • critical5
  • high9
  • medium4
  • low0

Indicator & detection coverage

Counts only: the indicator values and detection rule text behind them are tiered.

276 indicators of compromise · Red and above. Compare plans
  • network 73
  • file 65
  • entity 40
  • package 38
  • infrastructure 25
  • behavioral 18
  • malware 11
  • tool 4
  • technique 2
162 new detection rules (100% of the day’s threats covered) · Blue and above. Compare plans