Browse
Topics
Every topic we cover, from ransomware and edge security to supply-chain attacks and AI security. Pick one to see the latest research and news.
Malware & C2 71 posts Backdoors, web shells, rootkits, loaders, and the command-and-control tradecraft behind active intrusions. Supply-chain attacks 58 posts Compromised packages, poisoned updates, and vendor integrations turned hostile across the software and SaaS supply chain. Remote code execution 51 posts The most dangerous class of bug: flaws that let an attacker run their own code on your systems, often with no login required. Detection & threat hunting 48 posts Detection engineering, threat hunting, and the SIEM and endpoint signals that catch attacks the network can't see. AI & LLM security 45 posts Security of AI systems: agent and large-language-model vulnerabilities, prompt injection, model supply chain, and Model Context Protocol (MCP) tooling. Active exploitation 40 posts Vulnerabilities under attack right now: CISA KEV additions, in-the-wild exploitation, and what to patch first. Cloud security 34 posts Misconfigurations, identity, and vulnerabilities across AWS, Azure, GCP, Kubernetes, and the containerized stack. Patch management 31 posts Patch Tuesday roundups, update guidance, and the operational reality of keeping fleets current. Privilege escalation 29 posts Flaws that let an attacker gain admin, root, or kernel-level control from a lesser foothold. Ransomware 27 posts Ransomware attacks, extortion crews, and the intrusions that end in encryption. What happened, who is behind it, and how to cut off the path before the payload runs. WordPress security 25 posts Core and plugin vulnerabilities, backdoors, and account-takeover flaws across WordPress, the web's most-deployed CMS, plus the patches that actually matter. Edge & VPN security 23 posts Vulnerabilities in the internet-facing gear attackers hit first: firewalls, VPNs, and load balancers from Fortinet, Citrix, Ivanti, Palo Alto, and more. Data breaches 21 posts Confirmed breaches and large-scale data theft: what was taken, how it happened, and what exposed organizations should do next. Zero-days 14 posts Previously unknown vulnerabilities exploited or disclosed before a patch existed. Takedowns & law enforcement 12 posts Botnet disruptions, infrastructure seizures, and coordinated law-enforcement operations against cybercrime. Phishing & social engineering 10 posts Credential theft, business email compromise, and the human-targeted attacks that open the door for everything else. Vulnerable drivers (BYOVD) 7 posts Bring-your-own-vulnerable-driver attacks that load a signed but flawed driver to disable endpoint defenses from the kernel. OAuth & SaaS tokens 6 posts OAuth token abuse, connected-app compromise, and the identity layer behind SaaS integrations.
Ready to meet the Guardians?
Deploys fast - agentless for monitoring and cloud, a lightweight agent for deep endpoint security. Just Suriq, standing watch.