Research blog
Vulnerability research, threat hunting, cloud and application security, cybercrime, and supply chain risk.

supply chain attack|4 min read
Trivy GitHub Action compromise exposed CI/CD secrets in a stealth supply-chain attack
Read More

Threat Hunting & Intel|6 min read
Namibia Airports Company breach claim raises admin-access risk
Read More

Threat Hunting & Intel|5 min read
GlassWorm Shifts to Transitive Open VSX Dependencies in Developer Supply-Chain Push
Read More

vulnerability|6 min read
CVE-2026-32746: unpatched GNU Inetutils telnetd flaw enables unauthenticated root RCE
Read More

Threat Hunting & Intel|5 min read
Cline CLI 2.3.0 supply chain attack silently installed OpenClaw on developer systems
Read More

Threat Hunting & Intel|6 min read
FBI seizes Handala sites after destructive Stryker hack
Read More

Threat Hunting & Intel|6 min read
DarkSword iOS Exploit Chain Hits Multiple Threat Actors
Read More

Threat Hunting & Intel|6 min read
DarkSword iOS Exploit Chain Hits Multiple Threat Actors
Read More

vulnerability|6 min read
CVE-2026-32746: Critical GNU Inetutils telnetd flaw exposes legacy systems to root RCE
Read More

Threat Hunting & Intel|5 min read
RondoDox botnet shifts to focused exploitation across 174 flaws
Read More

vulnerability|5 min read
VMware Aria Operations flaws enable credential theft and privilege escalation
Read More

vulnerability|4 min read
CVE-2026-32746: telnetd flaw enables unauthenticated root RCE
Read More
Follow the research
New vulnerability analysis, threat actor reporting, and supply chain research as we publish it.
Recent Posts
- WordPress Site Owners Face Mass Exploitation of Super Forms and Elementor Pro Upload Flaws
- Dropbox breach shows why third-party identity links need zero trust
- CISA's New KEV Additions Put Edge and AI Control Planes on a Short Patch Clock
- ServiceNow Critical Flaws Expose Enterprise Workflows
- PaperCut NG/MF zero-day chain: CISA adds actively exploited flaws to KEV