DMZ//THREAT INTEL
FEED ACTIVELAST SYNC: 05:07:52ZSOURCES: 14CRITICAL: 34
⚠ ACTIVE ALERTS
@AlvieriD CRITICAL — CORRELATED | Actor '888' listing on PwnForums: claims 35GB of Accenture source code,… /// @DarkWebInformer CRITICAL — CORRELATED | Prinz Eugen ransomware operation — actor ROOTBOY (aka avtokz / GERMANIA)… /// @MalwareHunterTeam CRITICAL — CORRELATED | PolinRider (DPRK / Famous Chollima / Contagious Interview) supply chain… /// @GossiTheDog CRITICAL — CORRELATED | CVE-2026-8037 Progress Kemp LoadMaster pre-auth RCE — exploitation attempts… /// @FalconFeedsio CRITICAL — CORRELATED | Tracking '888' forum listing for Accenture data (July 6, 2026). Dataset:…
34Critical Threats
19Active CVEs
10IOCs Tracked
7New Advisories
CLASSIFIED // NEW HERE
DMZ surfaces threats hiding between the headlines.
We correlate signals across underground forums, security researcher posts on X, vendor disclosures, and CISA advisories — then publish what defenders actually need to know. No noise. No engagement bait. Just the threats that matter.
22 REPORTS TODAY

Why I'm Building DMZ

I served nine years in the Navy as an Aviation Boatswain's Mate before I ever touched a SIEM. A year into my first analyst role, I started building DMZ — the threat intel publication I wish existed when I was sitting at my desk a year ago,…

HIGH

Accenture Data Breach — 35GB Source Code + Cloud Credentials (One Time Sale)

In July 2026, █████████ suffered a data breach which resulted in just over 35GB of source codes getting stolen. Dataset includes source code, RSA keys, SSH keys, ████████████, and configuration files. Proof screenshot shows clone of Azure…

Added to DMZ2026-07-12
READ →
HIGH

Prinz Eugen Ransomware — New Go-based Encryptor, Victims Listed, Data Available

Advertising Prinz Eugen ransomware operation. Go-based encryptor first deployed May 11, 2026. Uses ChaCha20-Poly1305, prioritizes newest files first, leaves no on-disk ransom note. Out-of-band extortion via leak portal ████████████.…

Added to DMZ2026-07-12
READ →
HIGH

CVE-PENDING-ZIMBRA-2026: Zimbra Collaboration Classic Web Client Critical Stored XSS (No CVE Assigned Yet)

A critical stored cross-site scripting (XSS) vulnerability in Zimbra's Classic Web Client allows attackers to send specially crafted emails that execute arbitrary malicious JavaScript in the recipient's browser session when the email is…

Disclosed2026-07-11Added to DMZ2026-07-12
READ →
CRITICAL

CVE-2026-59792: JetBrains IntelliJ IDEA Path Traversal Code Execution via Project Workspace ID

A path traversal vulnerability in IntelliJ IDEA's project workspace ID handling allows remote code execution; the scope-changed CVSS vector (S:C) reflects that a malicious repository or project file could trigger execution on an…

Disclosed2026-07-10Added to DMZ2026-07-11
READ →