#chains


Attack Chains, Not Just Attack Surfaces: Why Testing Individual Techniques Misses the Point

Sep 15, 2026 // 14:30

Security teams have gotten pretty good at testing against what can hurt them. Can this EDR agent catch this payload? Will my organization fail the […]

Real emails, hijacked payments: Two H1 2026 attack chains

Aug 8, 2026 // 01:05

Gen Threat Labs followed two H1 2026 campaigns where attackers used legitimate accounts, browser settings and blockchain data as part of the attack path. The […]

LiteLLM Flaw CVE-2026-42271 Exploited in the Wild, Chains to Unauthenticated RCE

Jun 9, 2026 // 11:17

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a high-severity flaw impacting BerriAI LiteLLM to its Known Exploited Vulnerabilities (KEV) catalog, citing […]

SloppyLemming Group Deploys Dual Malware Chains Against South Asian Governments

Mar 3, 2026 // 12:16

The threat actor SloppyLemming (also known as Outrider Tiger or Fishing Elephant) has launched a sophisticated cyber-espionage campaign targeting government and critical infrastructure entities in Pakistan and Bangladesh. According to […]