Research blog
Vulnerability research, threat hunting, cloud and application security, cybercrime, and supply chain risk.

Ransomware Trends|4 min read
Ransomware in 2025: attacks up, payments flat, median up 368%
Read More

Ransomware Groups|4 min read
Phobos ransomware admin pleads guilty as Aether continues
Read More

vulnerability|2 min read
Cisco warns of actively exploited Catalyst SD-WAN Manager flaws (CVE-2026-20122, CVE-2026-20128)
Read More

Cybercrime|3 min read
North Korean Hackers Use Deepfake Video Calls to Target Crypto Firms
Read More

vulnerability|9 min read
CVE-2026-21643 & CVE-2026-24858: Fortinet Critical Flaws | 2026
Read More

supply chain attack|7 min read
Lotus Panda Chrysalis: Notepad++ Supply Chain Attack | 2026
Read More

Cloud & Application Security|6 min read
MaliciousCorgi: VSCode Supply Chain Attack on 1.5M Devs | 2026
Read More

Ransomware Groups|11 min read
Mandiant Findings ShinyHunters Voice Phishing: SaaS Extortion Research
Read More

Cloud & Application Security|14 min read
SolarWinds warns of critical Web Help Desk RCE, auth bypass flaws
Read More

Threat Hunting & Intel|3 min read
CVE-2025-8088: The WinRAR Path Traversal Flaw Powering Global Cyberattacks—From Russian Spies to Ransomware Gangs
Read More

vulnerability|2 min read
IBM API Connect Authentication Bypass Vulnerability
Read More

Infostealer|8 min read
Katz Stealer
Read More
Follow the research
New vulnerability analysis, threat actor reporting, and supply chain research as we publish it.
Recent Posts
- WordPress Site Owners Face Mass Exploitation of Super Forms and Elementor Pro Upload Flaws
- Dropbox breach shows why third-party identity links need zero trust
- CISA's New KEV Additions Put Edge and AI Control Planes on a Short Patch Clock
- ServiceNow Critical Flaws Expose Enterprise Workflows
- PaperCut NG/MF zero-day chain: CISA adds actively exploited flaws to KEV