AboutDFIR.com – The Definitive Compendium Project
Digital Forensics & Incident Response

Submit Resources

Submit Feedback/Resource/Research Idea
Use this singular form for all Research Ideas, Resource submissions, and Site Feedback. We welcome any and all submissions to help make the site more useful to the DFIR community.
Read More
Submit DFIR/CyberSec/InfoSec Job Posting
Are you an employer looking for a qualified candidate to apply to your job posting? Use this form to have your job posted on AboutDFIR.com
Read More

Blog

InfoSec News Nuggets 02/10/2026
Winter Olympics hit by suspected 'Russian origin' cyberattack - as one of Europe's largest universities also reports major cybersecurity incident Italy said it blocked a wave of cyberattacks describe...
InfoSec News Nuggets 02/09/2026
Please Don’t Feed the Scattered Lapsus ShinyHunters This piece profiles an extortion crew (“SLSH”) that pairs data theft with direct, personal harassment of executives and their families, including t...
InfoSec News Nuggets 02/06/2026
Data breach at govtech giant Conduent balloons, affecting millions more Americans A previously disclosed ransomware incident involving Conduent is now believed to impact far more people than initiall...
InfoSec News Nuggets 02/05/2026
The Notepad++ supply chain attack — unnoticed execution chains and new IoCs Kaspersky details multiple distinct infection chains observed in the Notepad++ update compromise, including rotating C2 inf...
InfoSec News Nuggets 02/04/2026
Notepad++ supply chain attack: Researchers reveal details, IoCs, targets Rapid7-linked research says the Notepad++ update mechanism was hijacked in targeted fashion and attributed to the China-linked...
InfoSec News Nuggets 02/03/2026
APT28 Leverages CVE-2026-21509 in Operation Neusploit A ThreatLabz writeup on a campaign attributed to APT28 using weaponized RTF files to exploit CVE-2026-21509 and drop multiple payloads. Notes inc...
InfoSec News Nuggets 02/02/2026
Here’s how we disrupted a massive, malicious proxy network Google says it disrupted IPIDEA, a large malicious residential proxy network used by criminals to route traffic and hide activity. It also n...
InfoSec News Nuggets – 01-30-2026
Google Disrupts IPIDEA — One of the World's Largest Residential Proxy Networks Google announced on Wednesday that it worked together with other partners to disrupt IPIDEA, which it described as one o...
InfoSec News Nuggets – 01-29-2026
Fortinet Patches Actively Exploited FortiCloud SSO Zero-Day (CVE-2026-24858) Fortinet has begun releasing security updates to address CVE-2026-24858, a critical zero-day vulnerability that allowed at...
InfoSec News Nuggets – 01-28-2026
Critical vm2 Node.js Sandbox Escape Vulnerability Allows Remote Code Execution A critical sandbox escape vulnerability (CVE-2026-22709) has been disclosed in vm2, the popular Node.js library used to ...
InfoSec News Nuggets – January 27, 2026
Microsoft reveals actively exploited Office zero-day, provides emergency fix (CVE-2026-21509) Microsoft released emergency Office security updates to fix a security feature bypass vulnerability (CVE-...
InfoSec News Nuggets – 01-26-2026
Sandworm Hackers Linked to Failed DynoWiper Attack on Poland's Power Grid Russian state-sponsored hacking group Sandworm has been attributed to what Polish officials called the "largest cyber attack"...