Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
TencShell/Vshell AI-Assisted Intrusions + Project CAV3RN Google Apps Script C2: OTX Pulse Analysis — Enterprise Detection Pack
TencShell/Vshell AI-Assisted Intrusions + Project CAV3RN Google Apps Script C2: OTX Pulse Analysis — Enterprise Detection Pack Two live OTX ...
Midnight Blizzard CaptiveCrunch, codemado AiTM Phishing Stack, GhostDesk Spyware & WP-SHELLSTORM Webshell Botnet: OTX Pulse Analysis — Credential Theft Detection Pack
Threat Intelligence Briefing: AiTM Phishing Industrialization, Nation-State Captive Portal Abuse, and Mass Webshell Deployment Threat Summar...
Microsoft SharePoint Unauthenticated RCE Now Weaponized by Ransomware Gangs — Detection, Hunting, and Remediation Guide
Introduction CISA has confirmed what many of us in IR have suspected for weeks: encryption-based cyber incident gangs — ransomware operators...
Swiss Government SharePoint Breach: 200 Accounts Compromised — Detection and Hardening Guide for On-Prem SharePoint Defenders
Swiss Federal SharePoint Breach: What Happened and Why It Matters Switzerland's federal IT office has confirmed that attackers exploited sec...
wp2shell RCE Chain & CMSmap Webshell Deployment: OTX Pulse Analysis — Enterprise Detection Pack
Threat Summary Recent OTX pulse data indicates the active exploitation of a critical vulnerability chain dubbed "wp2shell" affecting WordPre...
wp2shell Attack Chain: Detecting WordPress Plugin Drops and Command Execution
Introduction Security Arsenal is tracking the active exploitation of the "wp2shell" attack chain, a critical threat targeting WordPress envi...
CVE-2026-63030 & CVE-2026-60137: WordPress wp2shell Mass Exploitation — Defense and Detection Guide
Introduction The WordPress security landscape shifted dramatically this weekend as attackers began actively chaining two critical vulnerabil...
ASD Alert: CMS Webshell Campaigns — Detection and Hardening Guide
Introduction The Australian Signals Directorate (ASD) has issued a critical alert regarding a global, ongoing campaign targeting Content Man...
ShareFile Storage Zones: Emergency Isolation and Active Compromise Detection
Introduction On the evening of July 10, 2026, Progress Software issued an urgent “Service Disruption” notification to ShareFile customers wi...