🛡️ InfoSec Blue Team Briefing

Wednesday, October 07, 2026

🎧 Audio Briefing

Download MP3

This is the BlueTeamSec briefing for Wednesday the 7th of October 2026, pulled from infosec.pub.

Rapid7 have written up a campaign targeting telecoms providers and network-edge infrastructure with Linux implants including BPFDoor and AVERAT. The attackers are abusing SMTP and DNS for command-and-control, running entirely in memory to evade detection, and targeting unpatched edge devices like network storage units and IoT kit to build persistent relay networks. Worth flagging if you're running infrastructure at the network edge.

And from Northeastern University, an empirical study of data privacy in connected vehicles. Researchers used network interception and man-in-the-middle decryption to show just how much personally identifiable information is being sent to third-party advertisers and trackers through vehicle mobile apps — the practices are largely opaque, and the extent is considerable. One to read if you're dealing with connected vehicle ecosystems or IoT privacy more broadly.

That's your briefing. As always, the original articles are the work of their authors — this analysis was automated.

📰 Articles Covered