Research blog
Vulnerability research, threat hunting, cloud and application security, cybercrime, and supply chain risk.

Ransomware Groups|4 min read
Phobos ransomware admin pleads guilty as Aether continues
Read More

vulnerability|2 min read
Cisco warns of actively exploited Catalyst SD-WAN Manager flaws (CVE-2026-20122, CVE-2026-20128)
Read More

Cybercrime|3 min read
North Korean Hackers Use Deepfake Video Calls to Target Crypto Firms
Read More

vulnerability|9 min read
CVE-2026-21643 & CVE-2026-24858: Fortinet Critical Flaws | 2026
Read More

supply chain attack|7 min read
Lotus Panda Chrysalis: Notepad++ Supply Chain Attack | 2026
Read More

Cloud & Application Security|6 min read
MaliciousCorgi: VSCode Supply Chain Attack on 1.5M Devs | 2026
Read More

Ransomware Groups|11 min read
Mandiant Findings ShinyHunters Voice Phishing: SaaS Extortion Research
Read More

Cloud & Application Security|14 min read
SolarWinds warns of critical Web Help Desk RCE, auth bypass flaws
Read More

Threat Hunting & Intel|3 min read
CVE-2025-8088: The WinRAR Path Traversal Flaw Powering Global Cyberattacks—From Russian Spies to Ransomware Gangs
Read More

vulnerability|2 min read
IBM API Connect Authentication Bypass Vulnerability
Read More

Infostealer|8 min read
Katz Stealer
Read More

vulnerability|6 min read
Cybersecurity Advisory – WinRAR Zero-Day Exploit by 'RomCom' Hacking Group
Read More
Follow the research
New vulnerability analysis, threat actor reporting, and supply chain research as we publish it.
Recent Posts
- CISA's Latest KEV Additions Put WSO2, Adobe Commerce, SharePoint, and MikroTik on a Short Clock
- AI Agents Turn Retail Skimming Into a Low-Cost Cybercrime Operation
- EvilTokens disruption gives defenders a short window to clean up device-code phishing risk
- North Korea's Contagious Interview campaign turns job tests into malware delivery
- CVE-2026-87902: WordPress Template RCE Risk