Research blog
Vulnerability research, threat hunting, cloud and application security, cybercrime, and supply chain risk.

Featured|Cybercrime|5 min read
Cl0p Turns PTC Windchill Exploitation Into a Purpose-Built Extortion Platform
Cl0p Turns PTC Windchill Exploitation Into a Purpose-Built Extortion Platform Product lifecycle management systems are not usually the first asset class defende...
Read More

vulnerability|5 min read
CISA's Latest KEV Additions Put WSO2, Adobe Commerce, SharePoint, and MikroTik on a Short Clock
Read More

Cybercrime|7 min read
AI Agents Turn Retail Skimming Into a Low-Cost Cybercrime Operation
Read More

Cybercrime|8 min read
EvilTokens disruption gives defenders a short window to clean up device-code phishing risk
Read More

Threat Hunting & Intel|8 min read
North Korea's Contagious Interview campaign turns job tests into malware delivery
Read More

vulnerability|7 min read
CVE-2026-87902: WordPress Template RCE Risk
Read More

supply chain attack|6 min read
Rust crate owners targeted in video-call supply chain campaign
Read More

vulnerability|5 min read
CISA deadline arrives for exploited Linux kernel AF_ALG race condition
Read More

Cybercrime|6 min read
ShinyHunters Breach of Clop Leak Site Shows Ransomware Infrastructure Is a Target Too
Read More

Threat Hunting & Intel|4 min read
Operation RapidRust shows APT36 evolving beyond simple phishing lures
Read More

Cybercrime|8 min read
Meduza Stealer Trial: 3 Alleged Creators Face Court
Read More

supply chain attack|8 min read
Brevo Supply Chain Attack: 100K Sites Served ClickFix
Read More

vulnerability|8 min read
CVE-2026-76460: Cisco ISE Auth Bypass Zero-Day
Read More
Follow the research
New vulnerability analysis, threat actor reporting, and supply chain research as we publish it.
Recent Posts
- CISA's Latest KEV Additions Put WSO2, Adobe Commerce, SharePoint, and MikroTik on a Short Clock
- AI Agents Turn Retail Skimming Into a Low-Cost Cybercrime Operation
- EvilTokens disruption gives defenders a short window to clean up device-code phishing risk
- North Korea's Contagious Interview campaign turns job tests into malware delivery
- CVE-2026-87902: WordPress Template RCE Risk