Structured data rendered for: graph
INVADERS

Research blog

Vulnerability research, threat hunting, cloud and application security, cybercrime, and supply chain risk.

RSS
CVE-2026-41940 turns exposed cPanel and WHM servers into control-plane takeover targets

Threat Hunting & Intel|5 min read

CVE-2026-41940 turns exposed cPanel and WHM servers into control-plane takeover targets

Read More
CVE-2026-42208 turns exposed LiteLLM gateways into a secrets exposure risk

Cloud & Application Security|5 min read

CVE-2026-42208 turns exposed LiteLLM gateways into a secrets exposure risk

Read More
GlassWorm sleeper extensions turn Open VSX updates into a malware delivery path

Supply Chain Security|5 min read

GlassWorm sleeper extensions turn Open VSX updates into a malware delivery path

Read More
CVE-2026-33032 lets attackers take over exposed nginx-ui servers

vulnerability|5 min read

CVE-2026-33032 lets attackers take over exposed nginx-ui servers

Read More
Firestarter leaves patched Cisco firewalls at continued risk

Threat Hunting & Intel|5 min read

Firestarter leaves patched Cisco firewalls at continued risk

Read More
Pack2TheRoot flaw puts Linux systems with PackageKit on a local root path

vulnerability|5 min read

Pack2TheRoot flaw puts Linux systems with PackageKit on a local root path

Read More
Bitwarden CLI npm compromise exposes CI/CD credential risk

Supply Chain Security|5 min read

Bitwarden CLI npm compromise exposes CI/CD credential risk

Read More
Lovable Incident Raises Cross-Tenant Data Exposure Concerns for AI Development Platforms

Cloud & Application Security|2 min read

Lovable Incident Raises Cross-Tenant Data Exposure Concerns for AI Development Platforms

Read More
CVE-2026-5752 turns the Terrarium sandbox into a root-level escape risk

Cloud & Application Security|4 min read

CVE-2026-5752 turns the Terrarium sandbox into a root-level escape risk

Read More
CISA KEV flags Quest KACE SMA auth bypass as a high-priority risk

vulnerability|5 min read

CISA KEV flags Quest KACE SMA auth bypass as a high-priority risk

Read More
SGLang CVE-2026-5760 turns malicious GGUF models into RCE

vulnerability|5 min read

SGLang CVE-2026-5760 turns malicious GGUF models into RCE

Read More
Apache ActiveMQ RCE CVE-2026-34197 Lands in CISA KEV

vulnerability|5 min read

Apache ActiveMQ RCE CVE-2026-34197 Lands in CISA KEV

Read More