AboutDFIR.com – The Definitive Compendium Project
Digital Forensics & Incident Response

Submit Resources

Submit Feedback/Resource/Research Idea
Use this singular form for all Research Ideas, Resource submissions, and Site Feedback. We welcome any and all submissions to help make the site more useful to the DFIR community.
Read More
Submit DFIR/CyberSec/InfoSec Job Posting
Are you an employer looking for a qualified candidate to apply to your job posting? Use this form to have your job posted on AboutDFIR.com
Read More

Blog

InfoSec News Nuggets 05/13/2026
Foxconn confirms cyberattack after ransomware crew claims it stole confidential Apple, Nvidia files Foxconn confirmed a cyberattack affecting some North American factories after the Nitrogen ransomwa...
InfoSec News Nuggets 05/12/2026
TanStack, Mistral AI, UiPath Hit in Fresh Supply Chain Attack More than 170 NPM and PyPI packages were compromised in a new Mini Shai-Hulud supply chain campaign affecting TanStack, Mistral AI, UiPat...
InfoSec News Nuggets 05/11/2026
Over 500 Organizations Hit in Years-Long Phishing Campaign SOCRadar reported that Operation HookedWing has stolen more than 2,000 credentials from more than 500 organizations across aviation, critica...
InfoSec News Nuggets 05/08/2026
Ivanti Patches EPMM Zero-Day Exploited in Targeted Attacks Ivanti released May security updates for Endpoint Manager Mobile that fix five vulnerabilities, including CVE-2026-6973, a high-severity fla...
InfoSec News Nuggets 05/07/2026
Claude AI Guided Hackers Toward OT Assets During Water Utility Intrusion Dragos reported that attackers used Claude and GPT models during an intrusion into a municipal water and drainage utility in M...
InfoSec News Nuggets 05/06/2026
Palo Alto Networks warns of firewall RCE zero-day exploited in attacks Palo Alto Networks warned that attackers are exploiting CVE-2026-0300, a critical PAN-OS buffer overflow vulnerability affecting...
InfoSec News Nuggets 05/05/2026
Breaking the code: Multi-stage 'code of conduct' phishing campaign leads to AiTM token compromise Microsoft detailed a large adversary-in-the-middle phishing campaign that targeted more than 35,000 u...
InfoSec News Nuggets 05/04/2026
Over 40,000 Servers Compromised in Ongoing cPanel Exploitation Attackers are exploiting CVE-2026-41940, a critical cPanel and WHM authentication bypass flaw that can give unauthenticated attackers ad...
InfoSec News Nuggets 05/01/2026
US ransomware negotiators get 4 years in prison over BlackCat attacks Two former incident response employees were sentenced to four years in prison each for participating in BlackCat ransomware attac...
InfoSec News Nuggets 04/30/2026
Critical cPanel and WHM bug exploited as a zero-day, PoC now available cPanel says CVE-2026-41940 is an authentication bypass flaw affecting cPanel, WHM, and WP Squared, and BleepingComputer reports ...
InfoSec News Nuggets 04/29/2026
Critical GitHub Vulnerability Exposed Millions of Repositories Researchers disclosed CVE-2026-3854, a critical flaw in GitHub’s internal Git infrastructure that could let any authenticated user execu...
InfoSec News Nuggets 04/28/2026
Medtronic Hack Confirmed After ShinyHunters Threatens Data Leak Medtronic confirmed a cyber incident after the ShinyHunters group claimed to have stolen 9 million records and terabytes of corporate d...