#IFIN
If you're involved in vulnerability management/VulnOps, the last several months have been overwhelming. But take heart: there is a path forward, despite the madness surrounding us.
Finding the Signal in the Vulnerability Noise | IFIN
The flood of new CVEs can make it hard to know what matters. But there are tools to help find our way.
ifin-intel.org
September 29, 2026 at 3:32 PM
We've been continuously updating this post with the latest information—now including details on exploitation of CVE-2026-88772. And all relevant indicators have been added to our MISP feed.

ifin.network/t/multi...

#ThreatIntel #ThreatIntelligence #IFIN
Multiple Citrix Netscaler 0-Days Exploited
Last Updated: 2026-09-29T14:53:55Z (UTC) What’s Happening Citrix has disclosed 8 critical CVEs. https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096 There’s also an associated blog post. Affected Versions Citrix NetScaler ADC and Citrix NetScaler Gateway 14.1 BEFORE 14.1-73.37 Citrix NetScaler ADC and Citrix NetScaler Gateway 13.1 BEFORE 13.1-64.23 Citrix NetScaler ADC FIPS BEFORE 14.1-73.37 FIPS Citrix NetScaler ADC FIPS and NDcPP BEFORE 13.1-37.279 Indicato...
ifin.network
September 29, 2026 at 3:21 PM
Today is very effectively making the argument for us at IFIN that TLP:CLEAR should be the *default*, and only extremely sensitive intelligence should be withheld. Active exploitation is not a reason to withhold, given the fact that more information always advantages defenders.
September 27, 2026 at 8:25 PM
We are tracking the story about undisclosed 0-days in Citrix Netscaler devices. We have confirmation from multiple source now about the veracity of the claims, although few details from Citrix themselves. This is a developing story.

ifin.network/t/citri...

#ThreatIntel #ThreatIntelligence #IFIN
Citrix Advises Shutdown Due to New, Undisclosed Netscaler 0-Days
Last Updated: 2026-09-26T23:22:28Z (UTC) What’s Happening On 2026-09-26T07:00:00Z (UTC), a Reddit posts in the Citrix community indicated that the presence of two 0-day vulnerabilities in Citrix Netscaler devices. The poster was apparently advised to shut down external devices. Research firm WatchTowr corroborated the report, as did researcher Kevin Beaumont. Both Beaumont and WatchTowr doubled down on the claim later in the day. WatchTowr, while unable to confirm sourcing, stated t...
ifin.network
September 26, 2026 at 11:41 PM
ℹ️Fin d'incident. Les trains reprennent leur itinéraire classique. #RERA
September 25, 2026 at 3:09 PM
The best time to block the finger protocol (port 79/tcp) outbound from your network was like…the second Clinton administration? But now's a good time too.

#ThreatIntel #ThreatIntelligence #IFIN
September 23, 2026 at 9:42 PM
You know, if tech companies are looking for a, uh, less *problematic* non-profit to fund, I have some thoughts...
IFIN | The Independent Federated Intelligence Network
A not-for-profit organization dedicated to the teaching of best practices in cyber threat intelligence, and the mutual sharing of timely, actionable, and relevant intelligence among the community.
ifin-intel.org
September 23, 2026 at 4:05 PM
The consortium introductions continue:
IFIN-HH colleagues work on the modelling of the increase of ambient gamma dose rate over the background due to meteorological factors, especially precipitation and radon progeny contribution.
September 23, 2026 at 12:54 PM
Çok geçmiş olsun,umarım bir an önce sağlığına kavuşur,siz de boş insanlar ifin hiç kendinizi yıpratmayın Jülide hanım onlar zaten kendi sonlarını seçmişler, kötülükleri elbet kendilerini bulur.
September 22, 2026 at 11:03 AM
ifin it's not "Why Can't We Be Friends?" i ain't interested
September 21, 2026 at 11:37 AM
Ifin — Thorn Cache. The gooseberry hides its sweetest fruit behind a cage of thorns — a cache protected by pain. The reward exists, but i...

Draw yours free on Chaos Tarot.
https://chaos-tarot.com/daily-oracle

#chaostarot #tarot #divination
Ifin — Thorn Cache — Draw Free on Chaos Tarot
Ogham daily oracle. The gooseberry hides its sweetest fruit behind a cage of thorns — a cache protected by pain. The reward exists, but i... Try all 7 divination systems free.
chaos-tarot.com
September 20, 2026 at 6:00 AM
“Carlson says he advised Trump to release all #EpsteinFiles, but Trump instead issued a direct order to withhold files related to him, Melania and their inner circle.”
@robertscotthorton.bsky.social

bsky.app/profile/robe...
bsky.app/profile/ifin...
bsky.app/profile/ifin...
bsky.app/profile/ifin...
September 18, 2026 at 6:11 PM
Para için ölüyorlar ne ahlak ne insanlık hiç bir şey yok sank ruhlarını para ifin şeytana satmış gibiler
September 18, 2026 at 4:49 PM
somewhat related: we've all gotten drafted/voluntold to fix bugs and troubleshoot in a piece of software that behind the scenes is a justification to hire fewer employees going forward

developer is getting paid, we're just doing QC because our asses are on the line ifin it cannae work
September 18, 2026 at 4:46 PM
Got a #cybersecurity question? Don't ask AI. Ask people who know.

Join us at https://ifin.network.
IFIN
The Independent Federated Intelligence Network
ifin.network
September 17, 2026 at 7:36 PM
Does anyone know of a currently maintained list of bad actor ASNs?

cc @ifin

#threatintel
September 17, 2026 at 1:06 PM
If you need help analyzing a sample or a second pair of eyes, drop IFIN a line.

#ThreatIntelIsMutualAid
September 16, 2026 at 3:56 PM
RE: https://infosec.exchange/@ifin/117281504825590408

Have any #threatintel leads or tips? Share them on https://ifin.network or hit us up on Mastodon!
infosec.exchange
September 16, 2026 at 3:51 PM