Research blog
Vulnerability research, threat hunting, cloud and application security, cybercrime, and supply chain risk.

vulnerability|5 min read
Exim BDAT flaw makes mail servers urgent RCE patch targets
Read More

Cloud & Application Security|5 min read
LiteLLM SQL injection flaw puts AI gateways on the front line
Read More

vulnerability|5 min read
Dirty Frag Linux kernel zero-day gives local users a fast path to root
Read More

Threat Hunting & Intel|5 min read
TCLBANKER turns WhatsApp and Outlook into trusted malware delivery channels
Read More

vulnerability|5 min read
Dirty Frag Linux kernel zero-day gives local users a fast path to root
Read More

vulnerability|4 min read
CVE-2026-0300 puts exposed PAN-OS User-ID portals on a zero-day attack path
Read More

Threat Hunting & Intel|5 min read
DAEMON Tools supply-chain attack turns trusted installers into a malware delivery path
Read More

Cloud & Application Security|5 min read
Vishing and SSO abuse are accelerating rapid SaaS extortion
Read More

Cloud & Application Security|5 min read
ConsentFix v3 turns Azure OAuth phishing into a scalable token theft risk
Read More

Cybercrime|5 min read
BlackCat case shows ransomware risk inside trusted cyber roles
Read More

Cloud & Application Security|5 min read
PyTorch Lightning supply-chain compromise puts AI developer credentials at risk
Read More

vulnerability|6 min read
CVE-2026-31431: Copy Fail turns routine Linux access into reliable root compromise
Read More
Follow the research
New vulnerability analysis, threat actor reporting, and supply chain research as we publish it.
Recent Posts
- WordPress Site Owners Face Mass Exploitation of Super Forms and Elementor Pro Upload Flaws
- Dropbox breach shows why third-party identity links need zero trust
- CISA's New KEV Additions Put Edge and AI Control Planes on a Short Patch Clock
- ServiceNow Critical Flaws Expose Enterprise Workflows
- PaperCut NG/MF zero-day chain: CISA adds actively exploited flaws to KEV