Security Insights
Latest threat analysis, industry news, and security best practices from our expert team.
Microsoft Exchange OWA Zero-Day (XSS): Active Exploitation and Mitigations
Microsoft Exchange OWA Zero-Day (XSS): Active Exploitation and Mitigations Introduction Defenders, we have a situation. Microsoft has issued...
Siemens gWAP Unauthenticated RCE via Axios (ICSA-26-134-01): Detection and Remediation
Introduction A critical security advisory (ICSA-26-134-01) has been released for Siemens gPROMS Web Applications Publisher (gWAP), a solutio...
Kimsuky PebbleDash, Vidar Stealer & ASO RAT: OTX Pulse Analysis — Enterprise Detection Pack
Threat Summary Recent OTX pulses indicate a surge in diverse threat campaigns ranging from state-sponsored espionage to financially motivate...
TroyDen & FAMOUS CHOLLIMA Campaigns: AI-Generated Lures & npm Supply Chain Attack — OTX Intelligence Briefing
Threat Summary The OTX pulses reveal two major active campaigns targeting software developers and technology sectors. The TroyDen Lure Facto...
The Gentlemen RaaS, TroyDen & AI-Generated Infostealers: OTX Pulse Analysis — Enterprise Detection Pack
Threat Summary Recent OTX pulses indicate a convergence of credential theft and ransomware operations exploiting supply chain vectors and AI...
QILIN Ransomware Gang: 15 New Victims in 4 Days — Cross-Sector Campaign & Critical Vulnerability Exploitation
QILIN Ransomware Gang: 15 New Victims in 4 Days — Cross-Sector Campaign & Critical Vulnerability Exploitation Threat Actor Profile — QILIN Q...
Agentic AI vs. Zombie Assets: Automating Cloud Risk Remediation
In the rush to the cloud, organizations accumulate digital debris. Abandoned test environments, forgotten S3 buckets, and orphaned EC2 insta...
CVE-2026-20182: SD-WAN Controller Vulnerability — Detection and Remediation Guide
CVE-2026-20182: SD-WAN Controller Vulnerability — Detection and Remediation Guide Introduction The recent disclosure of CVE-2026-20182 by Ra...
Supply Chain Attack: Malicious Node-IPC Versions (v9.1.6, v9.2.3, v12.0.1) — Detection and Remediation
Introduction A critical supply chain compromise has been identified within the widely used node-ipc npm package. Security researchers at Soc...