Scans for Solana (Surfpool?) Endpoints, (Mon, Aug 10th)
2026-08-11T01:23:40Z•fe38d3835c00657c25409f1a97087e5ba9b6dea5cac5465b8aecdfd9f86e90f2
API-scanningAtuinLinux-forensicsSANS-ISCSolanaSurfpoolautomated-SSH-attacksbotnetcacheablecryptocurrencydiagnostic-toolskeyvnpmpersistenceshell-historysupply-chain-compromisethreat-intelligencevulnerability-scanning
What happened
SANS Internet Storm Center feed covering recent security topics, including automated SSH compromise and persistence, the keyv/cacheable npm supply-chain worm, botnet scanning for diagnostic-tool vulnerabilities, exposed Solana/Surfpool API endpoints, and Linux shell forensic logging with Atuin. The items are informational and do not provide enough detail to associate a specific CVE or assign a definitive incident severity.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- sans_isc_diary
- Record identifier
- fe38d3835c00657c25409f1a97087e5ba9b6dea5cac5465b8aecdfd9f86e90f2
- Enrichment time
- 2026-08-11T01:23:40Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.