In this episode, we'll look at how Copy Fail (CVE-2026-31431) works and highlight key forensic detection opportunities.
*** If you enjoy this video, please consider supporting 13Cubed on Patreon at patreon.com/13cubed. ***
📖 Chapters
00:00 - Intro
01:19 - Demo
🛠 Resources
CVE-2026-31431 (Copy Fail) Forensics:
Cloudflare has made post-quantum encryption support for IPsec generally available, implementing hybrid ML-KEM to protect against future quantum computing threats. The company has validated interoperability with Cisco and Fortinet, demonstrating practical compatibility across major networking vendors.
Warnings about helpdesk impersonation scams and Iran-linked hackers targeting critical sectors in the US, plus the most damaging scams of 2025 - here's some of what made the headlines this month
Hello! Yes, it's all a disaster again! Let's get this party started: No comments today, so imagine this: We wrote something that we find very funny, Nobody else gets it, But everyone humors us Just like a typical watchTowr Labs blog introduction. As with all watchTowr
Bitdefender Labs has identified Operation Road Trap, a widespread smishing campaign delivering fraudulent toll and parking violation notices to mobile users across 12 countries since December 2025. The attackers impersonate legitimate transport authorities and parking services to deceive drivers, with over 79,000 malicious messages confirmed and the campaign remaining active as of April 2026.
ESET Research has identified a previously unknown China-aligned APT group called GopherWhisper that specifically targets Mongolian governmental institutions. The discovery adds another player to the threat landscape focused on state-level espionage in the Asia-Pacific region.
An exposed server provided insight into a large-scale exploitation and credential harvesting operation utilizing the modular Bissa scanner platform. The threat actors integrated Claude Code and OpenClaw AI tools into their workflow to support troubleshooting, orchestration, and refinement of their collection pipeline across multiple victims. This case demonstrates how adversaries are operationalizing AI assistants to scale and automate mass exploitation campaigns.
CTO says new AI model is "every bit as capable" as world's best security researchers.
The AI Conversation I've Been Avoiding
13Cubed·7.3K views · 4 months ago
I’ve got some thoughts about AI. Let’s talk about how it’s changing digital forensics, how I actually use it in practice, and what you need to know if you’re in or entering the field.
*** If you enjoy this video, please consider supporting 13Cubed on Patreon at patreon.com/13cubed. ***
📖 Chapters
00:00 - Intro
00:43 - Public Models
05:17 - Local Models
06:37 - DF/IR Tools + AI
08:25 - Vibe Coding
10:02 - Career Advice
#Forensics #DigitalForensics #DFIR #ComputerForensics #WindowsForensics
ESET researchers have identified a new variant of NGate malware embedded within a trojanized NFC payment application, marking another evolution of the threat. The discovery suggests the malware may have been developed with AI assistance, indicating an escalation in the sophistication of its creation methods.
Your biggest risk may be a vendor you trust. How can SMBs map their third-party blind spots and build operational resilience?
Can Zero Trust Security save us? ThreatLocker Test
PC Security Channel·25K views · 4 months ago
Threatlocker Review: Threatlocker is a security solution based on the Zero Trust model: We tested it against various malware, security attacks, simulations to see how it holds up in the real world.
Fraud victims face heightened risk of secondary exploitation when scammers target them during recovery efforts using compiled "sucker lists" of prior victims. Recovery scams capitalize on victims' vulnerability and desire to recoup losses, potentially compounding financial and emotional harm. Understanding these targeting tactics is essential for victims to protect themselves from additional fraud attempts.