Research blog
Vulnerability research, threat hunting, cloud and application security, cybercrime, and supply chain risk.

Data Protection|9 min read
Crunchyroll confirms support data exposure after vendor incident
Read More

Cybercrime|4 min read
LeakBase arrest is a warning to review stolen credential exposure now
Read More

vulnerability|6 min read
CVE-2026-4681: PTC warns of imminent Windchill and FlexPLM RCE risk
Read More

vulnerability|5 min read
CVE-2026-21992: Oracle emergency patch for pre-auth RCE
Read More

supply chain attack|5 min read
Poisoned Trivy scanner led to malicious LiteLLM releases on PyPI
Read More

vulnerability|5 min read
CVE-2026-3055: Citrix warns NetScaler SAML deployments face critical memory leak risk
Read More

vulnerability|6 min read
CVE-2026-20131: Interlock hit Cisco FMC before disclosure
Read More

Threat Hunting & Intel|8 min read
AsyncRAT SEO Poisoning Campaign Targets Software Downloads
Read More

Threat Hunting & Intel|7 min read
ClayRat Android spyware collapse after arrest in Russia
Read More

vulnerability|6 min read
CVE-2025-32975: Quest KACE SMA auth bypass exploited in the wild
Read More

Data Protection|6 min read
Mazda Thailand Breach Exposed 692 Partner and Employee Records
Read More

Cloud & Application Security|6 min read
CVE-2026-33017: Langflow RCE Hits Exposed AI Pipelines
Read More
Follow the research
New vulnerability analysis, threat actor reporting, and supply chain research as we publish it.
Recent Posts
- WordPress Site Owners Face Mass Exploitation of Super Forms and Elementor Pro Upload Flaws
- Dropbox breach shows why third-party identity links need zero trust
- CISA's New KEV Additions Put Edge and AI Control Planes on a Short Patch Clock
- ServiceNow Critical Flaws Expose Enterprise Workflows
- PaperCut NG/MF zero-day chain: CISA adds actively exploited flaws to KEV