DAILY BRIEF
India Threat Brief
Thursday, 17 September 2026
Your 2-minute shift-start brief — CERT-In advisories, critical CVEs, active threats, and a detection query.
Critical & High CVEs
Last 48h — CVSS ≥ 7.0
No critical CVEs in the last 48 hours — good news.
CVE Watch — filter by your stack →
Active Threats — Last 24h
Ransomware, exploits, breaches
No major threat alerts in the last 24 hours.
All security news →
Detection Query of the Day
Thursday
DNS Exfiltration Hunt
KQL
DnsEvents
| where Name has_any('.tk','.ml','.ga','.cf') or strlen(Name) > 50
| summarize count() by Name, ClientIP
| where count_ > 10
| order by count_ desc
Full KQL Hunt Library →
MITRE ATT&CK Spotlight
Technique of the Day
T1078
Valid Accounts
Adversaries use existing valid accounts to gain access. Includes domain, local, cloud, and default accounts.
Today's Headlines
Last 24h
No headlines in the last 24 hours. Check back tomorrow morning.
Full news feed →