ThreatNoir Morning Brief — September 17
- •No highlights available yet.
- •Check back soon.
- •New briefings publish daily.

AI-filtered cyber intelligence for security practitioners.
Morning & Evening briefings. No noise. Just signal.
Real attacks. Real defenses. One minute to become stronger.
Sogou Input Method's outdated Chromium engine allows one-click remote code execution through a crafted protocol handler link, enabling UNC3569 to deploy the GrayRabbit backdoor into trusted Tencent processes.
Attackers embedded invisible Unicode characters within finance keywords to bypass email filters, with one campaign reaching 2.37 million messages daily while evading traditional keyword detection.
Eighty-six gigabytes of passenger data including names, bookings, and travel plans were stolen from Manchester Airports Group through exposed Iterable API credentials left in public repositories.
The week in cyber, summarized.