<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Threat-Intelligence on Suspicious Bytes</title><link>https://suspiciousbytes.com/en/tags/threat-intelligence/</link><description>Recent content in Threat-Intelligence on Suspicious Bytes</description><generator>Hugo</generator><language>en-US</language><lastBuildDate>Wed, 23 Sep 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://suspiciousbytes.com/en/tags/threat-intelligence/index.xml" rel="self" type="application/rss+xml"/><item><title>The Attacker Only Has to Decide Once</title><link>https://suspiciousbytes.com/en/posts/the-attacker-only-has-to-decide-once/</link><pubDate>Wed, 23 Sep 2026 00:00:00 +0000</pubDate><guid>https://suspiciousbytes.com/en/posts/the-attacker-only-has-to-decide-once/</guid><description>&lt;p&gt;For most of security history, the person deceiving you and the person deciding what happens next were the same human, working in real time. That&amp;rsquo;s changing. Once you notice it, it shows up everywhere.&lt;/p&gt;
&lt;p&gt;Look at four recent stories: phishing that abuses a real Microsoft sign-in flow, a North Korean group planting malware through fake job interviews, the same group turning up on a package registry that had never been abused this way, and a crew that let three chained AI agents run a card-theft campaign against more than a hundred companies. They cover different topics but share one shift, at increasing levels of automation.&lt;/p&gt;</description></item></channel></rss>